Skip to Main Content

Job Title


Cloud Security Engineer


Company : RPMGlobal


Location : Toronto, Ontario


Created : 2025-05-19


Job Type : Full Time


Job Description

Who we areYou know those big cities that still feel like small towns? Where everyones friendly and helps each other out? Thats like Doane Grant Thornton. Except here were all professionals and there isnt a mayor or a general store. What were trying to say is that were a large and growing professional services firm that still feels like a community. We employ over 3000 people across Canada, and we truly care about our colleagues, our clients and the communities where we work and live. Thats whats most important to us. Were building a thriving organization thats purpose driven and still want to remember what your favourite milkshake flavour is.Our special culture shines through when we have the opportunity to connect in person. Thats why were working in a model where teams are required to be together in the office 4 days per week.As a Cloud Security Engineer your responsibilities will include:Serve as an Information Security Advisor to various lines of business by providing subject matter expertise related to new services, products, and projectsAssess applications, infrastructure, business units, business processes, and external suppliers for information security risks, identifying potential threats and exposuresConduct security reviews of planned initiatives across the organization and produce high-quality Threat Risk Assessment reports that clearly articulate risksDemonstrate and apply strong project management, documentation, and communication skillsServe as the subject matter expert on several production security technologies, staying abreast of emerging security support technologies and industry trendsAssist team lead with interpret requirements documents, architecture diagrams, solution designs, and other written and verbal information to determine if a project, application, infrastructure, or external supplier presents a security risk to DoaneGTProvide recommendations to development and operational teams to address security weaknesses and identify potential new security solutionsCoordinate with Learning & Development on staff security training programConduct email phishing simulation testing and report analyticsWork with team lead on quarterly privileged access reviews and remediation workplansCoordinate the annual IT Audit exercise with internal and external auditorsResponding to the client security questionnairesAssist with other cybersecurity-related tasksAdditionally, you will:Assist in security and architecture reviews, understand engineering stacks, services, and data flowsAssist in design, implement, automate, and document security solutions and processes for Microsoft Azure, SaaS applications, and other cloud platformsDeploy security solutions in cloud environments, including Microsoft Azure and M365Assist and train team members in the use of cloud security tools and resolution of security issuesResearch and maintain an extensive knowledge base of current cloud technology advancements, trends, and directions, identifying potential threats and exposuresAssist in investigating and remediating security incidents and issuesCreate and support KPIs and KRIs that measure risk reduction and progress over time in the cloudHelp governance, compliance, and risk management teams ensure the system consistently meets cybersecurity requirementsAct as a mentor across teams to enable a best-of-breed approach to cloud security and cloud managementProtect systems from data breaches at all timesMonitor, operate, and improve system uptime, performance, high availability, and disaster recovery readinessCollaborate with other operational and development teams during triage and resolution of operational issuesAssist with other cybersecurity-related tasksDeploy, monitor and fine-tune SIEM solutions, threat hunting, security event analysis, and forensic investigationsDeploy, monitor and manage vulnerability solutionsManage and monitor security Web Broker cloud access solutionsWorking closely with DevOps team and taking a lead from Team Lead on security pen testing of the codeDoane Grant ThorntonIf youre a bit like us, youre driven to connect with how others are feeling and thinking. Here we walk in others shoes before taking action. Just imagine being part of a team that puts we before me, where flexAbility is a mindset, and where you trust your colleagues to have your back. At Doane Grant Thornton, youll work with inspiring leaders who support your development, both personally and professionally. This is a place where your insatiable curiosity enables you to think, see and hear from a variety of perspectives, a place where every day is different and having the courage to grow is part of who you are. And when all this comes together, well thats when the magic happens!Want to learn more about who we are and how we live our purple every day? Read our colleagues stories at youve got what it takes to be a Cloud Security Engineer? Like the colour purple? Great. Here's a few more boxes were also hoping you can tick:Bachelor's degree in engineering, computer science, information systems, business, or other related major3+ years of information security consulting and advisory experienceCompTIA Security+, CompTIA Network+ or GIAC Security Essentials (GSEC)CISSP, CCSP, CRISC, Ethical Hacker is an asset5+ years of experience with Microsoft Azure Cloud Platform5+ years of experience with Microsoft AAD, M365, and Endpoint Manager3+ years of experience with Endpoint solutions (Microsoft Defender)Experience with ERM/GRC tools, threat assessments, and security testing methodologiesWorking knowledge of security standards including ISO 27001 and NIST 2.0Must have CISSP with CISA, CRISC, GIAC, or similar certification considered an assetStrong initiative, analytical, and critical thinking skillsUnderstanding of networking and developing working relationships with various key stakeholdersSolid business and technical acumenExperience in developing security metrics, KRIs, and KPIs for leadershipAbility to synthesize information into succinct, concise, and logical summaries and reportsAbility to work with teams to achieve goals and meet deadlines in a fast-paced environmentCapability to work under pressure with time constraints and prioritize competing priorities appropriatelyKnowledge of Microsoft M365 services including Exchange Online; familiarity with Mimecast is preferredKnowledge of Microsoft Azure policy configurations for security modules such as Defender, Conditional Client Access, Application Protection Policy, etc.Familiarity with IT auditing toolsAt Doane Grant Thornton were focused on making a difference in the lives of our clients, our colleagues and our communities. Thats our purpose. Or, as we like to say, living our purple.What's in it for you?Profit sharing, Flex days, RRSP contributions, Firmwide holiday closure, Wellness benefits, Concierge-like benefits, Work from anywhere in Canada in the summer for 4 weeks, and more!Are you ready to Discover Your Purple?#LI-Onsite #J-18808-Ljbffr