Senior Security Engineer – Insider Threat & Investigations
Job Summary
Join the team redefining how the world experiences design.
Hey gday mabuhay kia ora 你好 hallo vítejte!
Thanks for stopping by. We know job hunting can be a little time consuming and youre probably keen to find out whats on offer so well get straight to the point.
Where and how you can work
Our flagship campus is in Sydney. We also have a campus in Melbourne and co-working spaces in Brisbane Perth and Adelaide. But you have choice in where and how you work we trust our Canvanauts to choose the balance that empowers them and their team to achieve their goals.
What youd be doing in this role
As Canva scales change continues to be part of our DNA. But we like to think thats all part of the fun. So this will give you the flavour of the type of things youll be working on when you start but this will likely evolve.
At the moment this role is focused on:
Lead high-complexity investigations involving sophisticated techniques and potential legal or regulatory considerations
Coordinate closely with Legal People and Security teams on investigation scope evidence handling privacy considerations and response activities
Write detailed investigation reports documenting findings evidence impact and recommendations for technical and non-technical stakeholders
Respond to security events from detection through to containment remediation and resolution
Create and improve detection logic correlation rules and alerts across SIEM and EDR platforms
Proactively run threat hunting and anomaly detection exercises across Canvas environment
Design and improve scalable tooling workflows and operational processes that strengthen Canvas incident detection investigation and response capabilities
Act as an escalation point and incident coordinator during active investigations and security incidents
Participate in a collaborative on-call rotation supporting critical security investigations and incident response activities
Mentor and support the growth of teammates through knowledge sharing operational guidance and investigation best practices
Youre probably a match if
You have experience leading or coordinating security investigations digital forensics or incident response activities in complex environments
Youre comfortable working cross-functionally with Legal People and Security teams and can communicate clearly during high-pressure situations
Youre able to translate complex technical concepts for diverse audiences including non-technical stakeholders
Youve built or improved detection automation case management or response workflows at scale
You have hands-on experience investigating macOS environments alongside Linux and Windows systems
Youre comfortable designing building and improving security tooling and operational workflows
Youre confident working with SIEM EDR endpoint telemetry and security investigation tooling
You enjoy solving ambiguous problems and proactively improving systems processes and operational maturity
You bring empathy sound judgement humility and a collaborative mindset to sensitive investigations and incident coordination
You have programming or scripting experience in languages such as Python Golang or Java
Nice to have experience
Experience with insider threat programs or user behaviour analytics (UBA/UEBA)
Familiarity with DLP technologies and endpoint monitoring solutions
Experience building security automation or orchestration tooling
Exposure to legal evidence handling privacy investigations or law enforcement collaboration
Experience operating in cloud-native or large-scale SaaS environments
About the team
The Security Group is responsible for protecting Canva systems and data from information security threats. Our teams work together and with other groups across Canva to deliver preventive and detective controls that reduce security risk at scale.
The Security Operations team supports internal groups including Legal People and Security. We work to protect Canvas intellectual property customer data and strategic information through proactive detection investigation and mitigation of threats while maintaining a culture of trust and transparency.
Canvas goal is to become the worlds most trusted platform which makes security a top priority. This team plays a critical role in safeguarding Canvas systems data and the information our users entrust to us every day.
Whats in it for you
Achieving our crazy big goals motivates us to work hard - and we do - but youll experience lots of moments of magic connectivity and fun woven throughout life at Canva too. We also offer a range of benefits to set you up for every success in and outside of work.
Heres a taste of whats on offer:
Equity packages - we want our success to be yours too
Inclusive parental leave policy that supports all parents & carers
An annual Vibe & Thrive allowance to support your wellbeing social connection office setup & more
Flexible leave options that empower you to be a force for good take time to recharge and supports you personally
Check out for more info.
Other stuff to know
We see AI as a powerful amplifier of creativity and technology at Canva. Were evolving how we assess AI skills in our Technology hiring experience - youll tackle interactive real-time challenges that reflect the kind of work we some interviews you may also be asked to solve a problem using an AI tool to show how you approach challenges with tech by your side. Your recruitment partner will walk you through what to expect.
We make hiring decisions based on your experience skills and passion as well as how you can enhance Canva and our culture. When you apply please tell us the pronouns you use and any reasonable adjustments you may need during the interview process.
We celebrate all types of skills and backgrounds at Canva so even if you dont feel like your skills quite match whats listed above - we still want to hear from you!
Please note that interviews are conducted virtually.
Remote Work :
Yes
Employment Type :
Full-time
About Company
We're a global online visual communications platform on a mission to empower the world to design. Featuring a simple drag-and-drop user interface and a vast range of templates ranging from presentations, documents, websites, social media graphics, posters, apparel to videos, plus a hu ... View more