JSOC - Principal Cybersecurity - Incident Response
Tasks
- Analyze threat indicators
- Collect and track incident metrics
- Conduct threat hunting
- Contain and eradicate threats
- Coordinate escalation for complex investigations
- Define detection strategy
- Design tabletop exercises
- Develop incident response playbooks
- Improve SOC processes
- Integrate security tools via APIs
- Investigate security incidents
- Lead alert triage
- Lead post-incident reviews
- Maintain runbooks and documentation
- Manage incident response lifecycle
- Mentor SOC team
- Present incident findings to leadership
- Recover from incidents
Perks/Benefits
- Career growth opportunities
- Community involvement opportunities
- Health and wellbeing resources
- Hybrid work environment
- Inclusion and collaborative environment
- Paid sick days
- Paid vacation
Skills/Tech-stack
API Integration | AWS | Automation and response | Azure | Cloud Native | Cloud Native Security Monitoring | Cloud Security | Cloud-native Security | Content Filtering | CrowdStrike Falcon | Cybersecurity Framework | DDoS | Detection engineering | Detection rules | Detection-as-code | Disk forensics | EDR | ESQL | Elastic Security | Email Security | Event management | Firewalls | Forensic triage | GCP | IDS/IPS | Incident Response | KQL | Linux | MacOS | Memory Forensics | Mitre Attack | NIST Cybersecurity | NIST Cybersecurity Framework | Network Forensics | Operating Systems | Phishing Email Security | SIEM | SOAR | Security Automation | Security Information | Security Information and Event | Security Information and Event Management | Security Orchestration | Security Orchestration Automation | Security Orchestration Automation and Response | Security monitoring | Threat hunting | Timeline Analysis | WAF | Windows | “as-code”
Education
N/A
Related jobs
-
Senior DFIR Specialist CAD 111K-175KAdversary Emulation | Cloud Forensics | Detection engineering | Digital forensics | Endpoint ForensicsFlexible work environment | Mentorship | Remote workSenior-level Full TimeCanada - Remote R2d ago
-
Cyber Threat Hunter Specialist CAD 120K-154KDetection engineering | EDR | Incident Response | KQL | MITRE ATT&CKDry cleaning services | Flexible work arrangement | Gym access | Online learning | Paid vacationSenior-level Full Time1 Presidents Choice Circle, Brampton, ON, …2d ago
-
Accreditation | Case Development | Data Analysis | Penetration Testing | SIEMSenior-level Full TimeGatineau, QC4d ago
-
Clinical Assessment | Clinical judgment | Crisis intervention | Critical incident response | Customer ServiceProfessional development opportunitiesMid-level Full TimeCape Breton, Nova Scotia, Canada5d ago
-
DevSecOps Specialist CAD 78K-103KAWS | Agile | Azure | CI/CD | ConfluenceOn-call rotation | Security clearance required | Weekend and holiday supportEntry-level Full TimeOttawa, Ontario5d ago
-
Senior Cybersecurity Network Specialist CAD 120K-140KChange Management | Enterprise Firewalls | Firewall Policy | Firewall policy management | Flow analysisSenior-level Full TimeToronto, ON, CA6d ago
-
Senior Security Advisor - Incident Response CAD 101K-124KAWS Security | Access Management | Azure Security | Chain of Custody | Cloud SecurityEmployee share purchase plan | Extra paid time off | Flexible work arrangements | Hybrid work model | TelemedicineSenior-level Full TimeCalgary, 1200 321- 6th Ave., Canada9d ago
-
AWS | Application Firewall | Azure Cloud | Azure Cloud Security | Azure SecurityMid-level Full TimeToronto, 40 King St W., Corp, …12d ago
-
CSIRT | Cyber Risk | Cyber Risk Management | Cybersecurity | Cybersecurity PolicyEmployee networks | Paid adoption leave | Paid parental leave | Professional development opportunities | Vacation and holidaysSenior-level Full TimeCAN ON Remote, Canada R13d ago
-
Team Lead Cyber Security CAD 74K-131KAccess Control | Audit Readiness | COBIT | Cloud Security | ComplianceSenior-level Full TimeToronto, ON, CA13d ago
-
Junior AI Specialist CAD 79K-97KAWS | Azure | Cloud platform | Docker | EncryptionCritical illness insurance | Dental insurance | Disability insurance | Employee and Family Assistance Plan | Equity programEntry-level Full TimeBurnaby, BC, Canada13d ago
-
Cloud Services GRC Specialist CAD 128K-165KAWS | Asset Management | Audit Coordination | Azure | Business ContinuityAccidental death and dismemberment insurance | Cancer Care Program | Dental insurance | Employee assistance plan | Employee discountsMid-level Full TimeOttawa 20 Colonnade, Canada15d ago
-
JSOC - Principal SIEM Engineer CAD 120K-138KAWS | Apache Kafka | Bash | Beats | CI/CDCareer growth and development | Community causes opportunities | Health and wellbeing resources | Hybrid work with at least 3 days in office | Inclusive and collaborative work environmentSenior-level Full TimeToronto, ON, M2N 5M9, CA15d ago
-
Brand Protection | Credential harvesting | DNS | Dark Web | Dark web monitoringCareer growth and development | Community involvement | Health and wellbeing resources | Hybrid work environment | Inclusive collaborative environmentMid-level Full TimeToronto, ON, M2N 5M9, CA15d ago
-
JSOC - Cybersecurity Specialist - Incident Response CAD 80K-100KAPI Integration | Alert triage | Cloud Security | Content Filtering | CrowdStrike FalconCareer growth and development | Community involvement opportunities | Health and wellbeing resources | Hybrid work environment | Inclusive and collaborative environmentMid-level Full TimeBC, CA15d ago
-
API Integration | Automation and response | Cloud Security | Content Filtering | CrowdStrike FalconCareer growth and development opportunities | Community causes involvement | Health and wellbeing resources | Hybrid work environment | Inclusive collaborative environmentSenior-level Full TimeBC, CA15d ago
-
Specialist, Cybersecurity and Resilience CAD 106K-133KActive Directory | Automated remediation | Business Continuity | Business Continuity Planning | Continuity planningMid-level Full TimeCaledon, Ontario, Canada19d ago
-
Identity and Access Management Lead, IT Security CAD 104K-131KABAC | API Integration | Access Certification | Automation | Cloud ComputingSenior-level Full TimeVanier Hall, Canada21d ago
-
JSOC - Cybersecurity Specialist - Incident Response CAD 80K-100KAPI Integration | Alert triage | Application Firewall | Automation and response | Content FilteringCareer growth and development | Community involvement opportunities | Health and wellbeing resources | Hybrid work environment | Inclusive collaborative team environmentMid-level Full TimeToronto, ON, M2N 5M9, CA21d ago
-
API Integration | Alert triage | Automation and response | CrowdStrike Falcon | Cybersecurity FrameworkCareer growth opportunities | Community involvement opportunities | Health and wellbeing resources | Hybrid work environment | Paid sick daysSenior-level Full TimeToronto, ON, M2N 5M9, CA21d ago
-
IT Security Specialist CAD 95K-119KAWS | Active Directory | Disaster Recovery | Disaster Recovery Planning | EDRAnnual performance bonuses | Employee share purchase plan | Flexible working arrangements | Health benefits | Health spending accountEntry-level Full TimeToronto, ON, CA22d ago
-
ABAC | API Security | AWS | AWS KMS | Access ControlDental coverage | Flexible time off | Medical coverage | Personalized career roadmap | Professional developmentSenior-level Full TimeMontreal22d ago
-
Principal Software Engineer CAD 75K-89KABAC | API Design | API Versioning | Access Management | Active DirectorySenior-level Full TimeToronto, Ontario22d ago
-
Senior Cybersecurity Specialist CAD 113K-163KAWS Security | Archer GRC | Azure Security | BurpSuite | DASTSenior-level Full TimeCAN, Ontario, Toronto, 200 Bloor Street …23d ago
-
Technical Support Specialist 2 CAD 86K-106KARP | DHCP | DNS | Detection and Response | Detection and preventionCritical illness insurance | Disability insurance | Employee & family assistance plan | Flexible leave | Group Registered Retirement Savings PlanMid-level Full TimeBurnaby, BC, Canada25d ago