×
Register Here to Apply for Jobs or Post Jobs. X

Elastic SIEM Architect; Secret clearance

Job in Ottawa, Ontario, Canada
Listing for: Ateko, backed by Bell Canada
Full Time position
Listed on 2026-06-11
Job specializations:
  • Manufacturing / Production
    Systems Engineer
Salary/Wage Range or Industry Benchmark: 60000 - 80000 CAD Yearly CAD 60000.00 80000.00 YEAR
Job Description & How to Apply Below
Position: Elastic SIEM Architect (Secret clearance)

Valid Secret security clearance required Elastic SIEM Architect (Design, Implementation & Deployment) Role Overview

Lead the architecture, design, and deployment of a large-scale, multi-tenant Elastic SIEM platform on GCP, supporting Central Logging Service (CLS) and Event Correlation & Behaviour Analytics (ECBA).

Key Responsibilities
  • Design scalable, multi-cluster Elastic architecture for high EPS environments
  • Develop data lifecycle strategy (hot/warm/cold/archive tiers)
  • Implement tenant isolation and RBAC models
  • Design and deploy cross-cluster search (CCS) and replication (CCR)
  • Integrate Elastic with:
  • SOAR
  • Network visibility Tools
  • External systems (EDR, identity, firewalls)
  • Ensure HA, DR, backup, and failover capabilities
  • Optimize for performance, scale, and cost efficiency
  • Support SA&A, security, and compliance requirements
  • Collaborate with GCP, XSOAR, and network teams
Required Skills
  • Deep expertise in Elasticsearch / Elastic Stack
  • Strong knowledge of log pipelines and data engineering
  • Experience with multi-tenant SIEM architectures
  • Understanding of security detection frameworks (MITRE ATT&CK)
  • Experience with cloud platforms (GCP preferred)
  • Strong troubleshooting and performance tuning skills
Ideal Candidate Experience
  • 7–10+ years in SIEM / Security Engineering / Architecture
  • Proven experience with large-scale Elastic deployments (high EPS)
  • Experience with multi-cluster architectures (Cross-Cluster Search (CCS), Cross-Cluster Replication (CCR), Index Lifecycle Management (ILM))
  • Hands-on with Elastic Agent / Beats / ingestion pipelines
  • Background in regulated environments
  • Familiarity with SOC operations and detection engineering
  • Experience with distributed systems and HA/DR design
ACCESSIBILITY

We’re committed to fostering an inclusive, equitable, and accessible workplace where every team member feels valued, respected, and supported, and has the opportunity to reach their full potential. We welcome and encourage applications from people with disabilities.

Accommodations are available on request for candidates taking part in all aspects of the selection process. For a confidential inquiry, simply email your recruiter directly or to make arrangements.

If you have questions regarding accessible employment at Ateko please email our Human Resources team at

#J-18808-Ljbffr
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary