Linux Security Engineer – Vulnerability Management, Hardening & Patch Security | Toronto, ON, Canada

Location
Toronto, Ontario, Canada
Employment Type: Full-Time, Permanent
Candidate Requirement: Candidates currently located in Canada only
Job Category
- Information Technology (IT) & Software
- Engineering & Technical
- Legal & Compliance
- Others / Miscellaneous
Job Overview
A full-time, permanent opportunity is available for a Linux Security Engineer in Toronto, Ontario. The role focuses on Linux security hardening, vulnerability management, patching, configuration compliance, endpoint security, and security automation across enterprise Linux environments.
The successful candidate will work closely with Linux and Platform Engineering teams to ensure new Linux systems meet security requirements from deployment through their operational lifecycle. Key responsibilities include managing Qualys vulnerability findings, enforcing CIS benchmarks and security baselines, coordinating patching activities, and supporting security automation using Puppet, Foreman, and ServiceNow.
This position provides opportunities for career growth and professional development in Linux security engineering, vulnerability management, infrastructure security, DevSecOps, security automation, and enterprise cybersecurity operations.
Key Responsibilities
- Partner with Linux and Platform Engineering teams to define and enforce Linux hardening standards.
- Ensure new Linux systems meet required security standards from deployment.
- Own the Linux vulnerability management lifecycle.
- Triage and prioritize Qualys vulnerability findings according to established SLAs.
- Work with Linux teams to drive vulnerability remediation through Puppet and Foreman.
- Track and report missed-target vulnerabilities across Linux estates.
- Escalate outstanding vulnerabilities with documented remediation or delegation plans.
- Validate Linux configuration compliance against CIS benchmarks and organizational security baselines.
- Identify Puppet module gaps and raise remediation requirements with Platform Engineering.
- Coordinate patching schedules and maintenance windows across Linux environments.
- Monitor adherence to enterprise patching schedules.
- Support evaluation and adoption of ServiceNow as a unified patching orchestration platform.
- Help replace manually created patch-related change tickets with automated scheduled pipeline execution.
- Deploy and validate CrowdStrike Falcon endpoint security agents across Linux hosts.
- Collaborate with Linux teams to troubleshoot and validate endpoint security deployments.
- Contribute to bi-weekly vulnerability reporting for senior leadership.
- Maintain security documentation, compliance evidence, and remediation tracking.
Requirements & Qualifications
Technical Skills
- Strong Linux security engineering experience.
- Experience with Linux hardening and security configuration management.
- Knowledge of vulnerability management and remediation processes.
- Experience working with Qualys or similar vulnerability management platforms.
- Experience with Puppet and Foreman.
- Strong understanding of CIS Benchmarks and enterprise security baselines.
- Experience coordinating Linux patching and maintenance activities.
- Knowledge of ServiceNow and security or patch orchestration workflows.
- Experience with CrowdStrike Falcon or Linux endpoint security agents.
- Understanding of security automation and scheduled pipeline execution.
Professional Skills
- Strong collaboration skills with Linux and Platform Engineering teams.
- Ability to prioritize vulnerabilities according to SLAs and business risk.
- Strong analytical and problem-solving capabilities.
- Experience preparing vulnerability reports for senior leadership.
- Strong documentation and communication skills.
- Ability to manage multiple remediation activities and maintenance schedules.
Candidate Eligibility
- Candidates must currently be located in Canada.
- Position is based in Toronto, Ontario.
- Full-time, permanent employment opportunity.
Salary, Benefits & Career Growth
Salary is not specified in the job description.
This permanent opportunity provides career growth through hands-on experience in Linux security, vulnerability management, infrastructure hardening, patch management, endpoint security, compliance, and security automation. Professionals can further develop their expertise with enterprise security tools, Linux configuration management, vulnerability remediation, and security orchestration platforms.
Specific employee benefits, training programs, certification support, and other employment terms should be confirmed directly with the recruiting team.
Application Process
Application Process (Website):
Apply only through the official job link, if provided by the employer.
Click Apply Now on the website and follow the application instructions.
HR Email for Application
Send your updated resume directly
Recruitment Manager: Pooja Sehrawat
Important: Please apply only if you are currently located in Canada.
To apply for this job email your details to pooja.sehrawat@zodiac-solutions.com
