About this role
Why you’ll love working here:
- high-performance, people-focused culture
- our commitment that equity, diversity, and inclusion are fundamental to our work environment and business success, which helps employees feel valued and empowered to be their authentic selves
- learning and development initiatives, including workshops, Speaker Series events and access to LinkedIn Learning, that support employees’ career growth
- membership in HOOPP’s world class defined benefit pension plan, which can serve as an important part of your retirement security
- competitive, 100% company-paid extended health and dental benefits for permanent employees, including coverage supporting our team's diversity and mental health (e.g., gender affirmation, fertility and drug treatment, psychological support benefits of $2,500 per year, parental leave top-up, and a health spending account).
- optional post-retirement health and dental benefits subsidized at 50%
- yoga classes, meditation workshops, nutritional consultations, and wellness seminars
- the opportunity to make a difference and help take care of those who care for us, by providing a financially secure retirement for Ontario healthcare workers
Job Summary
HOOPP's Information Technology teams deliver innovative technology solutions to help build a stronger financial future for the healthcare community. As a Senior Cloud Security Engineer, you will have the opportunity to influence technical decisions, challenge existing approaches, and help shape the future of cloud security at HOOPP.
Our Information Security Operations team plays a key role in securing HOOPP's cloud environments and supporting our cloud-first strategy. As a Senior Cloud Security Engineer, reporting to the Senior Manager, Information Security Operations, you will be responsible for designing, implementing, and improving security controls, governance, monitoring, and security architecture across our multi cloud environment with a focus on AWS.
We cultivate a culture that emphasizes innovation, collaboration, practicality, and the courage to challenge the status quo. This role is well suited to someone who combines technical depth with curiosity, sound judgment, product thinking, systems thinking, and a willingness to test new ideas. You will look beyond immediate symptoms, identify underlying needs, and develop solutions that are secure, sustainable, and valuable in delivering the pension promise. Success in this role requires the ability to navigate ambiguity, ask thoughtful questions, and turn emerging technologies into practical solutions that deliver measurable business impact.
What you will do:
- Design, implement, and continuously enhance cloud security controls, standards, and guardrails across AWS and Azure environments to protect critical business services and data.
- Partner with Cloud Engineering, Infrastructure, and project teams to embed secure-by-design principles throughout the cloud lifecycle and enable scalable, resilient solutions.
- Provide strategic security guidance on cloud architectures, emerging technologies, and platform capabilities, balancing risk management with business objectives.
- Proactively identify, assess, and remediate cloud security risks, vulnerabilities, and misconfigurations to strengthen HOOPP's overall security posture.
- Enhance cloud logging, monitoring, threat detection, and security automation capabilities to improve visibility, operational effectiveness, and response readiness.
- Conduct security assessments, risk reviews, audits, and technology evaluations, providing practical recommendations that support informed decision-making and continuous improvement.
- Collaborate with Security Operations teams to investigate security events, strengthen cloud-focused detection and response capabilities, and drive effective resolution of security issues.
- Evaluate and support the secure adoption of emerging technologies, including AI and automation solutions, identifying opportunities to improve security outcomes, streamline processes, and challenge the status quo through innovation.
What you bring:
- 7+ years of experience in information technology and cybersecurity, including securing enterprise cloud environments.
- Strong hands-on experience designing, implementing, and securing AWS environments using cloud-native security services such as Security Hub, GuardDuty, CloudTrail, AWS Config, KMS, WAF, IAM, and related capabilities.
- Experience with cloud security governance, monitoring, vulnerability management, security assessments, and continuous improvement of security posture.
- Strong understanding of cloud networking, security architecture, and secure design principles.
- Experience with Infrastructure as Code (IaC), security automation, and cloud engineering tools such as Terraform, CloudFormation, or comparable frameworks.
- Knowledge of DevSecOps practices, CI/CD security, AI technologies, and modern engineering tools, including AI-assisted development platforms, is considered an asset.
- Strong problem-solving, analytical, and critical-thinking skills, with the ability to navigate ambiguity, use data to inform recommendations, and develop practical solutions to complex challenges.
- Demonstrated ability to balance security, usability, operational requirements, cost, and business value when making recommendations and decisions.
- Proven ability to build trusted relationships, communicate effectively with technical and non-technical audiences, and collaborate across engineering, infrastructure, architecture, security, and project teams.
- Naturally curious and committed to continuous learning, with a willingness to challenge assumptions respectfully, contribute innovative ideas, take ownership, and drive improvements from concept through implementation.
- Experience securing Microsoft Azure environments is considered an asset.
- Bachelor's degree in a related field or an equivalent combination of education and practical experience.
- Professional security or cloud certifications are an asset, but not required (e.g., CISSP, CCSP, AWS Solutions Architect Associate or Professional).
- undefined)
The expected annual base salary range for this role is: $103,000 - $153,000 CAD
The actual base salary offered to the successful candidate may vary based on multiple factors including, but not limited to, individual's expertise and level of experience applicable to the role they are being offered.
This role is eligible to participate in discretionary incentive plan(s), subject to the terms and conditions of the applicable incentive plan text.
This job posting is for a newly created role.
HOOPP may use artificial intelligence tools to assist in screening, assessing and selecting applicants for this position. These tools support our recruitment process but do not replace human judgment and decision-making.