Show more filters
Not found. Please try another title

Cloud Security Engineer

McColl Turner LLP

3.8
2 reviews
McColl Turner LLP
Job Type   /   Job Level
Full-time   /   Others/Any
Job Location
Toronto, Ontario, Canada
A free Jobstore account is required to proceed to the employer site.
Office Location Toronto, ON

Alternate Location

Req # 11925

Posting Category Existing Vacancy

Apply Now

Who We Are

You know those big cities that still feel like small towns? Where everyone’s friendly and helps each other out? That’s like Doane Grant Thornton. Except here we’re all professionals and there isn’t a mayor or a general store. What we’re trying to say is that we’re a large and growing professional services firm that still feels like a community. We employ about 3000 people across Canada, and we truly care about our colleagues, our clients and the communities where we work and live. That’s what’s most important to us. We’re building a thriving organization that’s purpose driven and still want to remember what your favourite milkshake flavour is.

Cloud Security Engineer

The Cloud Security Engineer is responsible for safeguarding Azure-based cloud platforms, applications, and services. This position combines robust cloud security architecture, practical security penetration testing, and close collaboration with SOC and engineering teams to ensure comprehensive protection. The role demands deep knowledge in Azure security, DevSecOps practices, and ethical hacking methods to proactively detect and resolve security vulnerabilities across cloud environments, CI/CD pipelines, and production workloads. The engineer acts as both a defensive and offensive security specialist, embedding security by design and continuously validating protections through testing and automation.

As a Cloud Security Engineer Your Responsibilities Will Include

Cloud & Azure Security

  • Design, implement, and maintain security controls for Microsoft Azure, including identity, network, compute, storage, and platform services.
  • Secure Azure workloads using native services such as Microsoft Defender for Cloud, Azure Policy, Entra ID (Azure AD), Key Vault, and networking security controls.
  • Conduct reviews of cloud security architecture to identify risks, misconfigurations, and design gaps.
  • Enforce secure configuration baselines and guardrails across cloud environments.

Security Penetration Testing & Ethical Hacking

  • Perform hands-on penetration testing on cloud infrastructure, networks, firewalls, applications, APIs, and identities.
  • Execute threat modelling, attack simulation, and adversary emulation based on real-world attack methods.
  • Validate security controls using continuous testing, red-teaming, and purple-team collaboration with SOC.
  • Assess findings, evaluate business risk, and provide actionable remediation guidance to engineering teams.
  • Forensics investigations, demonstrate substantial skills to use various tools and techniques
  • AI security – identify security gaps in AI workloads and agents and data protection

DevSecOps & Secure Engineering

  • Integrate security into CI/CD pipelines, infrastructure-as-code, and application development workflows.
  • Manage and incorporate security testing tools (SAST, DAST, SCA, IaC scanning) within DevSecOps pipelines.
  • Collaborate with engineering teams to remediate vulnerabilities early in the development lifecycle.
  • Automate security controls, testing, and compliance validation wherever feasible.

SOC & Incident Support

  • Work closely with SOC teams to enhance detection, response, and coverage for cloud-based threats. SIEM use case development and testing
  • Support security incident investigations, forensic analysis, and post-incident reviews.
  • Develop attack detection use cases and provide tuning guidance to improve security monitoring.

Governance, Risk & Continuous Improvement

  • Contribute to security standards, patterns, and guidance in alignment with industry frameworks. Good understanding of ISO 27001 and NIST audit controls
  • Provide security metrics, technical risk insights, and recommendations for improvement.
  • Stay updated on emerging cloud threats, new attack techniques, and defensive technologies.

Doane Grant Thornton

If you’re a bit like us, you’re driven to connect with how others are feeling and thinking. Here we walk in others shoes before taking action. Just imagine being part of a team that puts “we before me”, where flexAbility is a mindset, and where you trust your colleagues to have your back. At Doane Grant Thornton, you’ll work with inspiring leaders who support your development, both personally and professionally. This is a place where your insatiable curiosity enables you to think, see and hear from a variety of perspectives, a place where every day is different and having the courage to grow is part of who you are. And when all this comes together, well that’s when the magic happens!

Want to learn more about who we are and how we live our purple every day? Read our colleagues’ stories at www.discoveryourpurple.ca

Think You’ve Got What It Takes To Be a Cloud Security Engineer? Like The Colour Purple? Great. Here's a Few More Boxes We’re Also Hoping You Can Tick

  • Bachelor’s degree in engineering, computer science, information systems, business, or a relevant field.
  • 5+ years of experience with Microsoft Azure Cloud Platform.
  • 5+ years of experience with Microsoft AAD, M365, and Endpoint Manager.
  • 5+ years of experience with Endpoint solutions (Defender XDR and its entire platform).
  • 5+ years of experience with Network Access Control solutions (Aruba ClearPass, Central).
  • 5+ years of experience with Privileged Access Management Solutions (CyberArk).
  • 5+ years of experience in cloud security practices.
  • 5+ years of experience implementing and configuring IT infrastructure systems, including operating systems, applications, databases, firewalls, and networks.
  • Extensive experience in Linux and MS Windows operating systems: configuration, installation, tuning, maintenance, and monitoring.
  • Extensive experience with Cloud Security and SASE solutions (e.g., Zscaler).
  • Extensive experience with SIEM solutions (Rapid 7, Sentinel).
  • Experience with AWS and Azure security design, architecture, and implementations.
  • In-depth knowledge of Defender, Azure security architecture, identity and access management, network security, and platform security.
  • Strong offensive security skills, including vulnerability exploitation, attack simulation, and adversary techniques.
  • Practical experience with penetration testing tools and methods (web, API, cloud, and identity attacks).
  • Thorough understanding of CI/CD pipelines, infrastructure-as-code, and secure software development.
  • Proficiency in scripting or automation (PowerShell, Python, Bash).
  • Comprehensive understanding of networking, operating systems, authentication, and authorization concepts.
  • Deploy and fine-tune SIEM solutions such as Sentinel, perform threat hunting, analyze security events, and conduct forensic investigations.
  • Deploy and manage vulnerability solutions, including Rapid 7, Defender, etc.
  • At least one or more industry-recognized security certifications, such as:
  • OSCP, OSCE, CEH, GPEN, GWAPT
  • CompTIA Security+, GIAC, Certified Ethical Hacker (CEH)
  • CISSP, CCSP, or equivalent
  • Azure security certifications (e.g., AZ-500 or equivalent)
  • Red team, blue team, or purple team experience.
  • Familiarity with cloud attack simulation frameworks and threat modelling methodologies.
  • Understanding of regulatory, risk, and compliance frameworks (ISO 27001, NIST).
  • Experience mentoring engineers and security practitioners.
  • Experience working with multi-cloud or hybrid environments.
  • Strong problem-solving and analytical skills.
  • Ability to communicate complex security issues clearly to both technical and non-technical audiences.
  • Pragmatic and risk-based approach to security.
  • Self-starter with a continuous learning mindset.
  • Effective team player with strong collaboration skills.

At Doane Grant Thornton we’re focused on making a difference in the lives of our clients, our colleagues and our communities. That’s our purpose. Or, as we like to say, living our purple.

What's in it for you?

Profit sharing, Flex days, RRSP contributions, Firmwide holiday closure, Wellness benefits, Concierge-like benefits, Work from anywhere in Canada in the summer for 4 weeks, and more!

At Doane Grant Thornton, we believe compensation should reflect more than just market data—it should reflect you. We’re serious about compensation. We benchmark regularly across a wide spectrum of roles, industries, sectors, and levels to ensure our ranges are both competitive and current. But we don’t stop there. We also consider the unique strengths, experiences, and impact each individual brings to the table. Our salary ranges are reviewed annually, and where you land within the range depends on a mix of factors—your background, your skills, and how your contributions align with internal equity. To help start the conversation, the current salary range for this role is $87,300–$120,100 in Toronto. If the role is available in other locations, the range may differ to reflect local market factors.

Our special culture shines through when we have the opportunity to connect in person. That’s why we’re working in a model where teams are required to be together in the office 4 days per week.

Are you ready to Discover Your Purple?

Doane Grant Thornton is committed to employment equity, human rights and respectful workplace principles throughout the life cycle of employment, including at the recruitment and hiring stages. We welcome applications from members of all equity deserving groups, including persons with disabilities, women, racialized and/or Indigenous applicants. Should you require accommodation in relation to the recruitment process, please notify us by emailing careers@doane.gt.ca and we will work with you to meet your accommodation needs.

Back

Apply Now
A free Jobstore account is required to proceed to the employer site.
Jobs in Canada   »   Jobs in Ontario   »   Jobs in Toronto   »   Cloud Security Engineer

More jobs

People also search