Threat Detection Engineering Senior Associate
Toronto - 18 York Street, Canada
CAD 84K-134K Senior-level Full Time
Tasks
- Create use case design documents and investigation playbooks
- Define and track key risk indicators and performance metrics and compliance metrics
- Develop SIEM rule logic
- Implement SIEM use cases using MITRE ATTACK TTPs
- Lead SIEM use case workshops
- Maintain and enhance SIEM use case library
- Perform use case coverage assessments
- Research emerging threats vulnerabilities and zero day attacks
- Review and update playbooks and documentation
- Test and document use cases before production deployment
- Track use case tuning requests
- Tune and optimize SIEM environments
Perks/Benefits
- N/A
Skills/Tech-stack
Amazon Web Services | Apache | ArcSight | Azure DevOps | Azure Sentinel | CI/CD | Elastic | Exabeam | Git | GitHub CI | GitHub CI/CD | Google Cloud | IBM QRadar | JSON | Linux | LogRhythm | Machine Learning | Microsoft Azure | Mitre Attack | OpenSSL | SIEM | SSL | Splunk | TCP | Threat Intelligence | Vulnerability Management | Web Services | YAML
Education
N/A
Related jobs
-
Mid-level Full TimeToronto, ON, CA11h ago
-
Security Analyst CAD 100K-120K365 Security | Artificial Intelligence | Attack Simulation | Attack surface | Attack surface managementDental insurance | Education assistance program | Fitness benefit | Generous vacation time | Health insuranceMid-level Full TimeToronto, Ontario, Canada22h ago
-
Cybersecurity Architect CAD 120K-137KAWS | Active Directory | Azure | Behavior analytics | CVEHybrid work | On-call rotationSenior-level Full TimeToronto, ON, CA1d ago
-
Cybersecurity | Incident Management | Incident Response | Linux | Log integrationMid-level Full TimeVaughan - 200 Apple Mill Road, …1d ago
-
PeopleSoft Administrator with Platform Engineering CAD 75K-113KAnsible | Azure Repos | Batch scripting | CI/CD | DevOpsAccessibility accommodations | Employee development opportunities | Employee resource groups | Flexible vacation | Online coursesMid-level Full TimeToronto, ON, CA, M5H 1H11d ago
-
Bilingual Senior Specialist, Network Administrator CAD 104K-130KAnsible | Automation | Backup and Recovery | Disaster Recovery | FirewallDefined benefit pension plan | Group insurance plan | Inclusive workplace culture | Paid vacation | Training and mentorshipSenior-level Full TimeOttawa1d ago
-
Security Analyst CAD 80K-91KCloud Security | Cybersecurity | IPS | Identity Security | Incident ResponseHybrid work model | On campus work schedule requirement | Professional development opportunities | Security screening requiredMid-level Full TimeVictoria, BC, Canada1d ago
-
SOC Engineer CAD 85K-140KAWS | Access Management | Cloud Security | Digital Forensics and Incident Response | Digital forensics401k employer match | Annual training allowance | Child care resources | ERG membership opportunities | Employee stock purchase programMid-level Full TimeVancouver, British Columbia2d ago
-
Senior Information Security Analyst CAD 101K-135KAI tools | Access Management | Access reviews | Awareness Training | Cause analysisEmployer matched RRSP | Health benefits | Health spending account | Hybrid work model | Paid floater daysSenior-level Full TimeMontréal, Quebec, Canada2d ago
-
JSOC - Senior Security Engineer CAD 100K-120KAPI Integration | Automation | Bash | Brand Protection | CI/CDCareer growth opportunities | Community involvement opportunities | Health and wellbeing resources | Hybrid work environment | Paid sick daysSenior-level Full TimeToronto, ON, M2N 5M9, CA2d ago
-
AWS | Detection engineering | EDR | Microsoft 365 | Microsoft Azure24 7 Virtual Care Services | Career development | Educational assistance | Emergency travel insurance | Employee assistance programMid-level Full TimeCalgary, AB, Canada2d ago
-
Application Security Engineer Prin CAD 112K-200KAPI Security | AWS | Application Security | Application Security Testing | AzureCharity support days | Recognition programs | Time away from work programs | Volunteer days | Wellness programsMid-level Full TimeCanada2d ago
-
Application Security Engineer Prin CAD 112K-200KAPI Security | AWS | Atlassian Suite | Azure | Black box testingCommunity Charity Opportunities | Recognition | Time away from work programs | Volunteer days | Wellness initiativesSenior-level Full TimeCanada2d ago
-
Sr. Consultant, Supplier Risk Management (Cyber) CAD 75K-88KAPI Testing | Agile Testing | Black Kite | Cloud Computing | CybersecurityEmployee assistance programs | Family assistance programs | Hybrid work arrangement | Social points based recognition program | Wellbeing supportSenior-level Full TimeToronto-81 Bay, 19th Floor, Canada2d ago
-
Analyste principal - Sécurité de l'information et conformité | Senior Analyst - Information Security and Compliance CAD 95K-110KChange Management | Cisco | Encryption | Fortinet | Incident ResponseFlexible scheduling | Group insurance | Hybrid work model | RRSP matching | Regular check-insSenior-level Full TimeMontréal, QC4d ago
-
Team Lead, CSOC CAD 110K-150KCause analysis | EDR | FedRAMP | Firewalls | IDS/IPSAnnual vacation | Extended health benefits | Maternity parental enhancement program | Paid sick days | RRSP contribution matching programSenior-level Full TimeVancouver, British Columbia, Canada4d ago
-
Cyber Security Analyst CAD 65K-80KAccess Management | Active Directory | Azure Active Directory | Business Continuity | Cybersecurity PolicyCommunity involvement opportunities | Digital pharmacy access | Employee and family assistance program | Gym subsidy program | Health and dental benefitsMid-level Full TimeWinnipeg, MB, CA5d ago
-
Information Security Analyst (1-Year Contract) CAD 68K-104KAntivirus | Cause analysis | Detection Systems | Development Lifecycle | EncryptionMid-level ContractToronto, ON - Remote R5d ago
-
Senior Application Security Consultant, Mandiant CAD 166K-166KApplication Security | Cloud Security | Code review | Cybersecurity Consulting | Exploit DevelopmentTravel up to 20 percentSenior-level Full TimeOntario, CA; Alberta, CA5d ago
-
Threat Response Manager, Global CAD 98K-148KCI/CD | Cloud Security | Computer Networking | Containers | Cyber Kill ChainCareer development | Hybrid work environment | Inclusive work environment | Total rewards package | Wellbeing supportMid-level Full TimeToronto - 18 York Street, Canada5d ago
-
DevSecOps Lead CAD 101K-139KAWS | Automation | Azure | Cloud Security | DrataHealth and well-being benefits | Long-Term disability benefit | Professional development programs | Recognition program | Retirement and savings planSenior-level Full TimeMontreal, Quebec, CA, H4M2Z25d ago
-
DevSecOps Lead CAD 100K-135KAWS | Access Management | Automation | Azure | Cloud SecurityDental care | Extended health care | Health insurance | Long-term disability | Professional development programsSenior-level Full TimeMontreal, Québec, CA, H4M2Z25d ago
-
Crypto Engineer CAD 75K-136KAzure | Bash | Cloud Security | Cloud platform | ConfluenceCommunity engagement | Cross-functional development | Employee resource groups | Flexible vacation | Online coursesMid-level Full TimeToronto, ON, CA, M5H 1H15d ago
-
Agile methodology | All Source Threat Intelligence | Automation | Centralized Log Management | Data Loss PreventionEmployee recognition program | Employee share purchase plan | Hybrid work arrangement | Paid time off | Purpose DaySenior-level Full TimeToronto-81 Bay, 17th Floor, Canada5d ago
-
AI in Security | AI in Security Operations | AWS | AWS CloudTrail | AWS CloudWatch401k employer match | Adoption benefits | Annual training allowance | Career development | Child care resourcesMid-level Full TimeVancouver, British Columbia5d ago