Cybersecurity Operations Engineer

Hydro Ottawa Limited

$89K — $134K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Undergraduate degree in Engineering from an accredited university
  • Professional Engineer, licensed or able to be licensed in Ontario
  • Ability to obtain cybersecurity designations (CEH, OCSP, CISA, CISM, CISSP, GIAC) within two years
  • Experience in electric utility engineering environment preferred
  • Proficiency in scripting languages (Python, PowerShell) beneficial

Responsibilities

  • Orchestrate and automate responses to security alerts and engineering automated playbooks
  • Conduct internal security investigations into policy violations and access breaches
  • Collect and preserve digital forensic evidence for management-related actions
  • Monitor employee system logs for compliance breaches and report to management
  • Analyze threat intelligence to update detection rules and SIEM watchlists

Benefits

  • Hybrid Work Model offering flexibility
  • Support for professional development and certification opportunities
  • Engagement in innovative cybersecurity initiatives
  • Access to advanced technological resources and tools
  • Work in a dynamic environment focused on a smart energy future
Full Job Description

Please Note: If you are a current Hydro Ottawa employee with access to Workday, apply to this job via the Workday application.

We are seeking a Cybersecurity Operations Engineer, a strategic thinker who can take initiatives from concept to completion and engineer the way to a smart energy future.

JOB SUMMARY

The Cybersecurity Operations Engineer is responsible for the programmatic design, automation, and architectural integrity of Hydro Ottawa’s cybersecurity infrastructure. Working within the Cybersecurity team to protect the organization’s critical infrastructure and assets, this role leverages an engineering framework to design baseline system configurations, build automated integration pipelines, and orchestrate workflows to proactively prevent, detect, and manage cyber threats across corporate applications, identity systems, and infrastructure platforms. 

Under the guidance of the Supervisor, Cybersecurity, the Cybersecurity Operations Engineer acts as the primary technical asset for cybersecurity systems architecture, incident response, automation activities, authentication policies, enterprise application interfacing,  and day-to-day user support operations. The Cybersecurity Operations Engineer is responsible for evaluating, scripting, and supporting the development of all new system integrations, ticketing workflows, and related business processes to ensure advanced security controls, compliance baselines, and identity architectures are strictly incorporated across the corporate environment.

Additionally, the role serves as a core technical resource for confidential internal security investigations, regularly isolating and preserving digital forensic evidence relating to employee policy violations, data exfiltration, or labour relations breaches.

MAJOR RESPONSIBILITIES

  • Programmatically orchestrate, analyze and respond to security alerts by designing,  identifying root causes and contributing factors, testing, and engineering automated playbooks to continuously harden infrastructure against future events and eliminate manual workflows.

  • Conduct confidential internal security investigations into potential policy violations, unauthorized access, and data exfiltration by personnel.

  • Regularly collect, analyze, and preserve digital forensic evidence required by Management for employee disciplinary actions, grievances, or formal labour relations proceedings.

  • Monitor internal employee system logs and network activities on a confidential basis to identify and report scrutiny irregularities or compliance breaches directly to Management. 

  • Proactively monitor and analyze actionable threat intelligence from industry feeds and open-source intelligence (OSINT) to programmatically update detection rules, SIEM watchlists, and automated playbooks against emerging cyber threats. 

  • Conduct exposure management across corporate systems to detect vulnerabilities, prioritize risk mitigation efforts, and guide other IT teams on architectural remediation.

  • Ensure strict alignment with corporate security frameworks through continuous validation of compliance baselines across internal endpoints, host infrastructure, and directory access permissions.

  • Address, respond to, and resolve incoming tickets within the corporate ticketing system, serving as a primary point of contact for security operations.

  • Provide advanced technical support and engineering guidance to internal units, resolving complex authentication blocks, systemic vulnerabilities, and integration constraints.

  • Act as the engineering liaison to  the CSaaS Security Operations Center (SOC) to investigate security detections, manage data sources, and troubleshoot device connectivity.

  • Engineer, maintain, and secure core network trust infrastructure, by deploying automated solutions to manage trust certificates for internal resources (e.g., workstations, servers, websites).

  • Develop, write, and maintain custom scripts (e.g., PowerShell, Python, Bash) to automate repetitive security tasks, streamline log analysis, and optimize operational pipelines.

  • Architect, test, and implement secure integrations between new software applications, cloud environments, and existing core IT infrastructure.

  • Build, program, and maintain API integrations and automated pipelines to sync security tooling, directory services, and cloud platforms (e.g., Google Cloud, IBM).

  • Perform formal security compliance and architectural reviews on new system integrations, certifying that deployment configurations strictly follow secure designs and corporate frameworks.

  • Audit and review onboarded software assets and emerging tools to certify that all enterprise deployment pipelines align with established corporate policies and cybersecurity requirements.

  • Manage endpoint configuration and user policies by enforcing centralized and automated registry-level enforcement baselines.

  • Program and scale Identity and Access Management (IAM) environments, specifically configuring complex authentication policies, single sign-on (SSO), and automated identity governance.

  • Deploy, monitor, and maintain IdP authentication policies across the enterprise, managing user access and application-specific access rules.

  • Create analysis workflows and associated business processes to ensure cybersecurity needs and architectural designs are successfully incorporated in the practices and solutions of other corporate Divisions.

  • Participate in the technical development, planning and execution of new cybersecurity initiatives.

  • Perform other related duties as required.

EDUCATION AND EXPERIENCE

  • Undergraduate degree in Engineering from an accredited university

  • Professional Engineer, licensed or able to be licensed in the province of Ontario

  • Completion of—or the ability to obtain within two years—one or a combination of the following designations: CEH, OCSP, CISA, CISM, CISSP or GIAC certifications (i.e. GCIH, GPEN, etc.)

  • Experience in an electric utility engineering environment considered an asset

  • Experience in cloud security is considered an asset

  • Proficiency in scripting languages such as Python, Powershell considered an asset

  • Strong computer skills; proficient in the use of office productivity and collaboration tools, preferably Google Workspace, as well as different Microsoft tools

  • English essential, both oral and written; Bilingual (English/French) considered an asset

This is a management group opportunity and salary will be commensurate with qualifications.

Hydro Ottawa offers a Hybrid Work Model. Hybrid work is position specific, details of the hybrid model will be discussed with successful candidates.

Hydro Ottawa may use artificial intelligence (“AI”) during the recruitment process to aid in the screening and selection of candidates.


Location:
Ottawa, ON

This is a management group opportunity. The annual salary range for this position identified below depends on experience, education, and professional designation. The successful candidate will be offered a salary within this range based on their qualifications.

Pay Range Minimum:
$89,420.99Pay Range Maximum:
$134,130.81

Posting End Date (if applicable):
September 13, 2026

Similar Jobs

More Jobs at Hydro Ottawa Limited

More Information Technology Jobs

Find similar Cybersecurity Operations Engineer jobs: