Back to job search
VI
Visier Inc.Verified Job Source

Staff Information Security Engineer - Threat Detection & Response

Own the end-to-end threat detection and response strategy, including the design of detection pipelines and incident response processes. Lead the integration of AI-accelerated operations and collaborate cross-functionally to harden architectural defenses.

  • Hybrid
  • Vancouver, BC
  • Posted Jul 24, 2026
  • 1 position

Job summary

Visier is the global leader in Workforce Intelligence that powers every people decision. We bring Workforce AI to life for HR departments through our award-winning, agentic AI technology by surfacing the insights leaders need to plan, decide, and act with confidence in the moments that matter most. As the market leader in people analytics, workforce planning, organizational design, and manager effectiveness solutions, we fuel smarter decision-making for organizations across the globe. Our mission is to help businesses lead with insight at scale as they continuously transform. Founded in 2010 by the pioneers of business intelligence, we have over 85,000 customers in 75 countries—including enterprises like BASF, Panasonic, Domino’s Pizza, Experian, Amgen, eBay, and Ford Motor Company. Position Overview This senior technical IC role owns Visier’s threat detection and response capabilities end-to-end—driving the overarching strategy, tooling engineering, detection content, and incident response processes. Operating within a high-leverage team, you will scale our security capabilities through advanced engineering and AI, directly safeguarding our multi-cloud platform, corporate identity, and sensitive customer data from sophisticated global threats. Your work will ensure our defensive posture continuously evolves ahead of the threat landscape. Bring your 8+ years of deep information security expertise, mastery of modern SIEM architectures, and calm incident command experience to a team where you will operate with high autonomy. You will leverage your technical depth to champion engineering-first security practices, safely adopt generative AI workflows, and mentor peers to elevate our collective defense. WHAT YOU’LL DELIVER: * End-to-End Pipeline Resilience: Design and operate a cohesive detection pipeline spanning multi-cloud, SaaS, identity, and endpoint telemetry to eliminate visibility gaps and ensure comprehensive logging infrastructure. * Proactive Detection Engineering: Build, test, and tune high-fidelity detections using a modern detection-as-code framework mapped to the MITRE ATT&CK matrix, drastically minimizing false positives while prioritizing critical threat coverage. * Incident Lifecycle Ownership: Author robust playbooks, runbooks, and escalation criteria that define how Visier handles security incidents, ensuring immediate containment during major events. * Continuous Defensive Evolution: Lead blameless post-incident reviews and seamlessly translate post-mortem findings into automated detections and architectural hardening requirements. * Cross-Functional Security Integration: Partner closely with software developers, SREs, and offensive security functions to convert emerging vulnerabilities and organization-specific risks into highly targeted defensive rules. * AI-Accelerated Operations: Securely integrate and pioneer the use of Generative AI tools to accelerate detection development, alert triage, telemetry enrichment, and automated responses. WHAT YOU’LL BRING TO THE TABLE * Education & Experience: 8+ years of hands-on experience in information security, with a proven track record of designing, owning, and scaling threat detection architectures or major incident response programs. * Detection-as-Code Mastery: Expert-level detection engineering skills utilizing modern SIEM environments (Splunk Enterprise Security preferred) alongside fluent structural mapping to the MITRE ATT&CK framework. * Cloud & Infrastructure Fluency: Deep technical experience analyzing and building threat coverages across enterprise multi-cloud environments (AWS, Azure, or GCP), core identity providers, and endpoint/EDR telemetry. * Incident Command Presence: Proven experience acting as an Incident Commander, successfully steering cross-functional technical teams through high-pressure, complex, and high-visibility security incidents. * Security Automation & Scripting: Strong hands-on coding proficiency (Python, Go, or Bash) to build resilient automation pipelines, data enrichments, and automated response playbooks. * Strategic Communication: Exceptional ability to translate deeply technical indicators of compromise and complex security risks into clear, high-level business insights for executive stakeholders. 🌱 Most importantly, you share our values… * You roll up your sleeves * You make it easy * You are proud * You never stop learning * You play to win 🚀 How we work & what we offer... * Fixed hybrid work model: 3 days a week in office (Tuesday, Wednesday, Thursday) * Modern, pet-friendly downtown office spaces with collaborative areas and an on-site gym * Annual company All Hands in Vancouver, our entire organization travels to our Vancouver HQ for a week of team building, learning and breakout sessions * Competitive salary, and top-tier health and wellness benefits * Stock options and/or bonus based on your role, location, and employment type * Generous paid time off, including volunteering days and extra days over the December holidays The base pay range for this position in the 130,000 - 170,000 /year + bonus Benefits and working arrangements may vary depending on your seniority, location and employment type. The compensation offered will be determined by factors such as relevant qualifications, experience, knowledge and skills. Many of our positions are eligible for additional types of compensation (e.g., commission plans, bonus, etc.) which our Talent Acquisition team will share with you if you interview for the role. Instagram [https://www.instagram.com/visier_inc/] - @visier_inc Linkedin [https://www.linkedin.com/company/visier-analytics/] - https://www.linkedin.com/company/visier-analytics/ Visier Candidate Privacy Notice and Recruiter Policy [https://www.visier.com/candidate-privacy-notice-and-recruiter-policy/]

What you’ll do

Own the end-to-end threat detection and response strategy, including the design of detection pipelines and incident response processes. Lead the integration of AI-accelerated operations and collaborate cross-functionally to harden architectural defenses.

Requirements

Requires 8+ years of information security experience with expertise in SIEM, detection-as-code, and multi-cloud environments. Must have proven experience as an Incident Commander and proficiency in scripting languages like Python, Go, or Bash.

Benefits

• Health and wellness benefits • Stock options • Bonus • Paid time off • Volunteering days • Holiday days • On-site gym

Listed skills

  • GoPreferred
  • PythonPreferred

Other relevant skills

Identified from the job description. Confirm important requirements above.

  • Threat Detection
  • Incident Response
  • SIEM Architecture
  • Detection-as-Code
  • MITRE ATT&CK
  • Multi-cloud Security
  • Python
  • Go
  • Bash
  • Incident Command
  • Splunk Enterprise Security
  • EDR Telemetry
  • Generative AI
  • Security Automation
  • Cloud Infrastructure
  • Strategic Communication

Job areas

  • Security & Safety
  • Technology
  • Software
  • Engineering
  • Data & Analytics

Additional details

Minimum experience
10+ years
Posting language
English
Working hours
40 hours per week
Office presence
3 days per week