Senior Security Engineer - Incident Response in London
Senior Security Engineer - Incident Response

Senior Security Engineer - Incident Response in London

London Full-Time 48000 - 84000 £ / year (est.) No home office possible
Canva

At a Glance

  • Tasks: Lead incident response and monitor security threats across cloud environments.
  • Company: Join Canva, a vibrant design platform with a collaborative culture.
  • Benefits: Equity packages, flexible leave, and a wellbeing allowance.
  • Why this job: Make a real impact in security while working with cutting-edge technology.
  • Qualifications: Experience in incident response and knowledge of cloud security architectures.
  • Other info: Dynamic team environment with opportunities for personal and professional growth.

The predicted salary is between 48000 - 84000 £ per year.

Join the team redefining how the world experiences design. We know job hunting can be a little time consuming and you’re probably keen to find out what’s on offer, so we’ll get straight to the point.

Where and how you can work:

The buzzing Canva London campus features several buildings around beautiful leafy Hoxton Square in Shoreditch. While our global headquarters is in Sydney, Australia, London is our HQ for Europe, with all kinds of teams based here, plus event spaces to gather our team and communities. You’ll experience a warm welcome from our Vibe team at front of house, amazing home cooked food from our Head Chef and a variety of workspaces to hang out with your team mates or get solo work done. That said, we trust our Canvanauts to choose the balance that empowers them and their team to achieve their goals and so you have choice in where and how you work.

What you’d be doing in this role:

  • Leading incident response coordination and acting as escalation point for security incidents across Canva’s cloud-native infrastructure, including participation in the on-call roster.
  • Monitoring and investigating security threats across AWS, GCP, and hybrid environments, proactively hunting for anomalous behaviour and potential intrusions.
  • Building and maintaining detection rules, automation workflows, and response playbooks using detection-as-code methodologies.
  • Developing tools and solutions for security incident alerting, management, and communication that prevent incident recurrence.
  • Maintaining comprehensive incident response documentation, leading post-incident reviews, and producing detailed incident reports.
  • Championing security best practices across secure development, network security, and security operations.
  • Contributing to strategic projects that enhance the organization’s overall security posture.

You’re probably a match if:

  • You have demonstrable experience in incident response, security operations, and coordinating security events from detection through resolution.
  • You possess strong knowledge of cloud security architectures, attack techniques, and hands-on experience with cloud providers (AWS, GCP, or Azure).
  • You’ve worked extensively with endpoint detection and response (EDR) platforms for investigations, analysis, and response actions.
  • You have an investigative mindset with ability to leverage OSINT techniques and solve ambiguous security problems with elegant solutions.
  • You excel at documentation, communication, and stakeholder management while effectively prioritising multiple tasks in a dynamic, fast-paced environment.
  • You understand the role of security within the organization and apply risk-based decision making to security operations.
  • You’re comfortable working with Linux, macOS, and modern security tooling.

Beneficial experience (not required, but helpful):

  • Background in forensic acquisition and analysis, including maintaining chain of custody.
  • Incident response in containerized and Kubernetes environments.
  • Ability to perform static and dynamic malware analysis.
  • Proficiency in scripting and programming languages (Python, Go, or similar).
  • Experience with security automation platforms and SOAR tools.
  • Familiarity with detection-as-code practices and version control workflows.
  • Knowledge of MITRE ATT&CK framework and threat intelligence platforms.

About the team:

The Security Group is responsible for protecting Canva systems and data from information security threats. Our teams work together, and with other groups, to deliver preventive and detective controls and processes that reduce security risk. The group runs programs across Enterprise Security, Application Security, Risk Management, and Threat Detection and Response domains. The Detection and Response team leads Canva’s understanding of the threats we face, continuously improves our ability to detect relevant threat actor activity, and leads the company’s response to potential intrusions.

What’s in it for you?

Achieving our crazy big goals motivates us to work hard - and we do - but you’ll experience lots of moments of magic, connectivity and fun woven throughout life at Canva, too. We also offer a range of benefits to set you up for every success in and outside of work. Here’s a taste of what’s on offer:

  • Equity packages - we want our success to be yours too.
  • Inclusive parental leave policy that supports all parents & carers.
  • An annual Vibe & Thrive allowance to support your wellbeing, social connection, office setup & more.
  • Flexible leave options that empower you to be a force for good, take time to recharge and support you personally.

Other stuff to know:

We make hiring decisions based on your experience, skills and passion, as well as how you can enhance Canva and our culture. When you apply, please tell us the pronouns you use and any reasonable adjustments you may need during the interview process. We celebrate all types of skills and backgrounds at Canva so even if you don’t feel like your skills quite match what’s listed above - we still want to hear from you! Please note that interviews are conducted virtually.

Senior Security Engineer - Incident Response in London employer: Canva

Canva is an exceptional employer that fosters a vibrant and inclusive work culture at its London campus, located in the creative hub of Shoreditch. Employees enjoy a range of benefits including equity packages, flexible leave options, and a supportive parental leave policy, all while being part of a dynamic team dedicated to innovation in security. With ample opportunities for personal and professional growth, Canva empowers its Canvanauts to thrive both in their careers and personal lives.
Canva

Contact Detail:

Canva Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior Security Engineer - Incident Response in London

✨Tip Number 1

Get your networking game on! Reach out to folks in the industry, especially those already at Canva. A friendly chat can open doors and give you insider info that could make your application stand out.

✨Tip Number 2

Prepare for the interview like it’s a security incident response drill. Brush up on your knowledge of cloud security architectures and be ready to discuss your hands-on experience with AWS or GCP. Show us you know your stuff!

✨Tip Number 3

Practice your problem-solving skills! We love candidates who can think on their feet. Be ready to tackle hypothetical security scenarios and demonstrate your investigative mindset during the interview.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re serious about joining our team at Canva.

We think you need these skills to ace Senior Security Engineer - Incident Response in London

Incident Response Coordination
Cloud Security Architecture
AWS
GCP
Endpoint Detection and Response (EDR)
OSINT Techniques
Documentation Skills
Stakeholder Management
Risk-Based Decision Making
Linux
macOS
Scripting Languages (Python, Go)
Security Automation Platforms
Detection-as-Code Practices
MITRE ATT&CK Framework

Some tips for your application 🫡

Be Yourself: When you're writing your application, let your personality shine through! We want to get to know the real you, so don’t be afraid to show your passion for security and how it aligns with our mission at Canva.

Tailor Your Application: Make sure to customise your application to highlight your experience in incident response and cloud security. Use keywords from the job description to show us that you’re a perfect fit for the role!

Showcase Your Skills: Don’t just list your skills; give us examples of how you've used them in real situations. Whether it's monitoring threats or developing detection rules, we want to see how you’ve made an impact in your previous roles.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for this exciting opportunity to join our team!

How to prepare for a job interview at Canva

✨Know Your Stuff

Make sure you brush up on your incident response knowledge and cloud security architectures. Familiarise yourself with AWS, GCP, and any relevant tools or methodologies mentioned in the job description. Being able to discuss specific experiences and how they relate to the role will show that you're not just a good fit, but the perfect one.

✨Show Off Your Problem-Solving Skills

Prepare to share examples of how you've tackled ambiguous security problems in the past. Use the STAR method (Situation, Task, Action, Result) to structure your answers. This will help you demonstrate your investigative mindset and ability to leverage OSINT techniques effectively.

✨Communicate Clearly

Since this role involves stakeholder management, practice articulating your thoughts clearly and concisely. Be ready to explain complex security concepts in simple terms. This will not only showcase your communication skills but also your understanding of the role's importance within the organisation.

✨Ask Insightful Questions

Prepare a few thoughtful questions about the team, their current challenges, or the tools they use. This shows your genuine interest in the role and helps you gauge if the company culture aligns with your values. Plus, it’s a great way to engage with your interviewers and leave a lasting impression.

Senior Security Engineer - Incident Response in London
Canva
Location: London

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>