Cyber Security Engineer
London, Ontario, Canada
CARFAX
CARFAX ist ein internationaler Anbieter von Gebrauchtwagenhistorien für sicheren Gebrauchtwagenhandel. ✓Sicher kaufen ✓Lukrativ verkaufen ✓ImportcheckAt CARFAX, we believe in the power of teamwork and value in-person interactions so that we can collaborate and thrive together. This position will require 2 days per week in our London, ON office subject to change with future business needs. What you’ll be doing:
- Design, deploy, and maintain security solutions such as Endpoint Detection and Response (EDR), data-loss prevention (DLP), web application firewalls (WAF), zero-trust, and other security detection/prevention technologies.
- Lead the investigation and response to security incidents and breaches, ensuring timely resolution and documentation, while monitoring security alerts and events using Security Information and Event Management (SIEM) systems
- Conduct regular vulnerability assessments and security audits to identify and remediate security gaps.
- Maintain application static/dynamic/dependency scans and conduct penetration testing for identifying risks and coordinate reporting and remediation with stakeholders
- Configure and maintain cloud and infrastructure security configurations to ensure a secure enterprise risk posture.
- Serve as a subject matter expert on cybersecurity issues and provide guidance to stakeholders and other business units.
- Maintain detailed documentation of security policies, procedures, incident response activities, and assessment results.
- Assist with risk assessments and compliance activities to identify potential security risks and develop strategies to mitigate them.
- Evaluate and recommend new security tools and technologies to enhance the organization's security posture.
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field. Master’s degree preferred.
- Professional certifications such as CISSP, CEH, CISM, or equivalent.
- Minimum of 3-5 years of experience in cybersecurity engineering or a related role.
- Strong technical skills and experience with security technologies (e.g., SIEM, Endpoint Detect & Response, firewalls, IDS/IPS).
- Working knowledge of Vulnerability Managements, Cloud Security, Application Security, Incident Response., and Security Awareness & Training
- Working knowledge of security tools, languages and operating systems used in security practices (BURP Suite, Nessus, NMAP, Python, Kali Linux, etc.)
- In-depth knowledge of cybersecurity principles, protocols, and best practices.
- Experience with regulatory requirements and compliance standards (e.g., ISO 27001, NIST, PCI-DSS, HIPAA, GDPR).
- Excellent analytical, problem-solving, decision-making and communication skills.
- Ability to manage multiple tasks and projects in a fast-paced environment.
- Proven ability to work independently and as part of a team.
- Competitive compensation, benefits and generous time-off policies
- 4-Day summer work weeks and a winter holiday break
- 401(k) / DCPP matching
- Annual bonus program
- Casual, dog-friendly, and innovative office spaces
- For a comprehensive list of benefits, please visit our website: https://jobs.jobvite.com/carfax/p/benefits
- 10X Virginia Business Best Places to Work
- 10X Washingtonian Great Places to Work
- 9X Washington Post Top Workplace
- 3X St. Louis Post-Dispatch Best Places to Work
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security Audits Burp Suite CEH CISM CISSP Cloud Compliance Computer Science EDR Firewalls GDPR HIPAA IDS Incident response IPS ISO 27001 Kali Linux Monitoring Nessus NIST Nmap Pentesting Python Risk assessment SIEM Vulnerabilities Vulnerability management
Perks/benefits: Career development Competitive pay Pet friendly Salary bonus Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.