×
Register Here to Apply for Jobs or Post Jobs. X

Cybersecurity Vulnerability Engineer

Job in Ottawa, Ontario, Canada
Listing for: Thales
Full Time position
Listed on 2026-08-08
Job specializations:
  • IT/Tech
    Cybersecurity, Network Security, Information Security & Data Protection, Systems Engineer
Salary/Wage Range or Industry Benchmark: 123000 - 173000 CAD Yearly CAD 123000.00 173000.00 YEAR
Job Description & How to Apply Below

Location:

Ottawa, Canada In fast changing markets, customers worldwide rely on Thales. Thales is a business where brilliant people from all over the world come together to share ideas and inspire each other. In aerospace, transportation, defence, security and space, our architects design innovative solutions that make our tomorrow's possible. For decades, Ottawa has been a global technology leader. Today, Canada’s capital holds one of the brightest and most diverse technological ecosystems in North America.

Voted as Canada’s best place to live 2017 by Maclean's, Ottawa offers a low cost of living with a high quality of life. The Thales Ottawa office has been a major supplier and long-term trusted partner to DND, enabling the Canadian Armed Forces and the Canadian Coast Guard to achieve mission success.

This is a remote and localized role in Ottawa, ON.

Position Summary

Cyberattacks have been on the rise around the globe, with hackers and other criminals targeting businesses large and small to steal valuable information or bring computer networks to a halt. Cyber Security analysts are valued for their ability to protect an organization’s information and systems from such attacks. This position is responsible for providing ongoing information security services to all aspects of the on premise and cloud corporate IT environments.

The Cybersecurity Vulnerability Engineer will require working across several security functions and have a strong primary focus on incident response activities.

Key Areas of Responsibility
  • Must be able to monitor and evaluate newly disclosed and emerging vulnerabilities from Thales CTI, OSINT, Thales CERT, PSIRT, vendor advisories, security researchers, vulnerability databases, and other trusted sources.
  • Must be able to Initiate and coordinate enterprise vulnerability-response activities for vulnerabilities with potential impact to Thales businesses and networks.
  • Must be able to Engage infrastructure, IT, application, cloud, product, and security teams to validate exposure and determine required actions.
  • Must have working knowledge of threat actor tactics and techniques.
  • Must be able to establish clear ownership, priorities, response timelines, and escalation paths.
  • Must be able to track remediation and mitigation activities through completion and validate that identified risk has been appropriately addressed.
  • Must be able to escalate missed timelines, unresolved ownership, significant technical uncertainty, or material residual risk to appropriate leadership.
  • Must be able to maintain clear status reporting for technical teams, cybersecurity leadership, and other stakeholders.
  • Must be able to analyze newly disclosed vulnerabilities to understand affected components, exploitation prerequisites, attack vectors, required privileges, exploitability, potential impact, and available mitigations.
  • Must be able to review CVEs, vendor advisories, security-research publications, proof-of-concept information, exploit intelligence, and relevant technical documentation.
  • Must be able assess whether vulnerable technologies or configurations are present in the enterprise and partner with technology owners to validate actual exposure.
  • Responsible for translating complex vulnerability information into clear, actionable guidance for infrastructure, application, product-development, and leadership teams.
  • Responsible for partnering with detection and incident-response teams when a vulnerability requires investigation for possible prior exploitation or additional monitoring.
Basic Qualifications
  • Bachelor’s degree in computer information systems, programming, engineering or a related field with a minimum of 5+ years of cybersecurity experience, including at least 3–4 years in vulnerability management, vulnerability analysis, security engineering, incident response, threat intelligence, penetration testing, or a closely related technical security function.
  • 5 to 7 years of experience in Cybersecurity domains.
  • 3 to 5 years of experience in demonstrated experience analyzing CVEs and determining their relevance and actual impact within complex enterprise environments.
  • Strong understanding of vulnerability…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary