Location: 8x/month onsite, Toronto
Length: 6 months + likely extensions
Interviews: 2
Rate: 65-85/hr
Why Open: Expected Vacancy
We may use artificial intelligence tools to assist with the screening, assessment, or selection of potential applicants for this position.
Key Responsibilities:
Daily Compliance Monitoring
- Monitor the VMG (Vulnerability Management Governance) Dashboard on a daily basis
- Capture screenshots and maintain records for audit and historical tracking purposes
- Document compliance status, findings, and trends
- Create and manage Jira tickets for identified compliance items
- Identify and file "mistagged" tickets for assets incorrectly represented in VMG reports, routing them back to the VMG team for correction
AI Agent Automation Oversight
- Monitor and manage AI agent automation processes supporting compliance checks
- Validate automated findings and escalate anomalies or automation failures as needed
Remediation & Findings Management
- Actively investigate and remediate identified compliance issues across OCP, AKS, KCP, and EKS environments
- Escalate issues requiring deeper technical intervention to the appropriate on-call engineer
- Track, manage, and drive closure of Findings related to known CVEs
- Maintain accurate status updates on open findings through resolution
Cross-Team Collaboration
- Participate in a bi-weekly rotation alongside members from OCP, AKS, and KCP teams
- Coordinate with the standard on-call/on-desk engineer for EKS-related items
- Report status and escalate blockers to the pod's leadership rotation (directors, senior director, and principals) as needed
- Support setup and maintenance of a dedicated Jira board for tracking pod tasks, findings, and tickets
Required Qualifications
- Experience with Kubernetes-based container orchestration platforms (OpenShift, AKS, and/or EKS)
- Familiarity with vulnerability management and compliance dashboards/tooling (e.g., VMG or similar platforms)
- Working knowledge of CVE tracking, triage, and remediation processes
- Proficiency with Jira for ticket creation, tracking, and workflow management
- Ability to work independently within a rotating on-call/on-desk coverage model
- Strong documentation habits and attention to detail
- Effective communication skills for cross-team coordination and escalation
Preferred Qualifications
- Prior experience in a compliance, security, or platform reliability role within a cloud-native environment
- Exposure to AI/automation-driven compliance tooling
- Experience supporting multi-cloud or hybrid Kubernetes environments (Azure, AWS, on-prem OpenShift)
- Familiarity with security frameworks or governance processes in a regulated enterprise environment