Specialist, Cyber Security Control & Defense
Tasks
- Collaborate with SOC and incident response teams
- Conduct root cause analysis
- Configure SIEM alerts
- Develop detection logic for emerging threats
- Document alert configurations
- Enrich alerts using SOAR
- Implement anomaly detection
- Integrate threat intelligence feeds
- Investigate alert performance issues
- Maintain SIEM alert rules
- Maintain version control for audit requirements
- Map detections to MITRE ATT&CK
- Provide Tier 3 support for alerting issues
- Recommend detection coverage improvements
- Report detection coverage
- Report false positive rates
- Report response times
- Research behavioral analytics detection techniques
- Simulate attack scenarios
- Support SOAR alert triage automation
- Track alert performance metrics
- Tune alert rules to reduce false positives
- Validate alert performance with testing
Perks/Benefits
- Community engagement programs
- Cross-functional development opportunities
- Employee resource groups
- Flexible vacation
- Personal days
- Sick days
- Tuition assistance
- Upskilling via online courses
- Workplace accommodations
Skills/Tech-stack
Alert Tuning | Anomaly Detection | Azure Sentinel | Behavioral analytics | EDR | IBM QRadar | Incident Response | MITRE ATT&CK | NDR | Powershell | Python | SIEM | SOAR | Security monitoring | Splunk | Threat Intelligence | Threat detection
Education
Bachelor of Engineering | Bachelor of Science | Master of Science
Related jobs
-
API | Access Management | CSPM | Cloud Computing | DSPMDental insurance | Fully remote | Health insurance | Home office setup reimbursement | Life insuranceMid-level Full TimeCanada R11h ago
-
AI Act | AI Governance | Access Management | Application Security | Architecture ReviewsFull-time position | Hybrid schedule 3 days on site | Hybrid work | Monday to Friday hours | Potential permanent employmentMid-level ContractWaterloo, Canada1d ago
-
Application Security | Code review | Forensic analysis | Incident Response | Malware triageSenior-level Full TimeOttawa, ON, Canada1d ago
-
AWS | Abuse prevention | Alerting | Azure | Distributed SystemsEmployee assistance program | Flexible remote work | Generous time off | Home office stipend | Open source opportunitiesSenior-level Full TimeCanada1d ago
-
IS Security Architect CAD 133K-166KAccess Management | CASB | CSPM | CWPP | Cloud SecurityBCAA membership | Flexible benefits | Hybrid work schedule | Paid time off | Pension planSenior-level Full Time*Head Office, Canada1d ago
-
Infrastructure Analyst (Network Security) CAD 111K-140KAccess Control | Access Control Lists | Application Firewall | Firewall Policy | Firewall policy managementDefined benefit pension plan | Hybrid work schedule | Occasional travel | On-call availabilityMid-level Full TimeOttawa, Canada1d ago
-
Security Automation Engineer (Autonomous Workflow) CAD 82K-154KAPI Integration | Authentication | CI/CD | CrowdStrike | Data EnrichmentAccident and life insurance | Health insurance | Retirement savings plans | Tuition reimbursementMid-level Full TimeFCP, Canada1d ago
-
Senior Forward Deployed Incident Response Consultant CAD 166K-171KCTF | Cloud Forensics | Digital forensics | Disk forensics | Forensic analysisSenior-level Full TimeOttawa, ON, Canada3d ago
-
Associate Principal Threat Intelligence Analyst CAD 122K-140KAutomation | Case management | Data Analysis | Hadoop | HunchlyMid-level Full TimeOakville, Ontario, Canada3d ago
-
Senior-level Full TimeRemote Canada R3d ago
-
Mid-level Full TimeRemote Canada R3d ago
-
Senior Security Engineer, Add-ons Operations CAD 94K-139KAutomated Moderation | CI/CD | Code review | Django | Google CloudBirthday day off | Country specific holidays | Disability | Employee Referral Bonus Program | Employee assistance programSenior-level Full TimeRemote Canada R3d ago
-
DevOps Solutions Architect CAD 110K-130KAWS | Active Directory | Ansible | Azure | Azure Active DirectorySenior-level Full TimeToronto, Ontario, Canada3d ago
-
Cyber Security Manager CAD 150K-170KAwareness Training | Breach notification | CISM | CISSP | Cyber SecurityExtended health and dental benefits | Flexible work options | Mental health resources | Paid time off | RRSP matchingMid-level Full TimeSurrey, British Columbia, Canada3d ago
-
API Gateway | AWS | AWS CDK | AWS CloudFormation | AWS CloudWatchSenior-level ContractToronto, Canada4d ago
-
API | AWS | AWS Kinesis | Agile | AnsibleCareer growth | Employee benefits | Hybrid work environmentSenior-level Full TimeMontreal 700, Canada R4d ago
-
Lead Information Security Engineer CAD 60K-211KAPI | AWS | Access Management | Bash | Cloud Computing401k match | Dental insurance | Disability insurance | Employee Assistance Program (EAP) | EquitySenior-level Full TimeOffice - CAN - Ontario, Waterloo, …4d ago
-
Senior Lead Application Security Engineer CAD 117K-167KAKS RBAC | Access Control | Active Directory | Admission control | Application SecurityHybrid work opportunities | Permanent full-time employmentSenior-level Full TimeVancouver, British Columbia, Canada4d ago
-
Agile | Automation | CI/CD | Checkpoint | CiscoAutomation and security transformation exposure | Contract opportunity | Cross-functional collaboration | Inclusive workplace | Modernization exposureSenior-level Full TimeCanada5d ago
-
AWS CloudFormation | CSPM | Cause analysis | Cloud Security | Cloud Security PostureCareer progression support | Equity grants | Flexible working arrangements | Fully remote-first | Health dental and wellness benefitsSenior-level Full TimeCanada R5d ago
-
Verafin – Cloud Security Developer CAD 95K-115KAWS | AWS Native | AWS native security | AWS-native security services | Boto3Hybrid work environmentMid-level Full TimeCA-Toronto-York St 24/25, Canada5d ago
-
Specialist Network Security Design CAD 94K-135KAPI Security | Access Management | Application Firewalls | Bash | Cause analysisCareer growth opportunities | Paid trainingSenior-level Full TimeRocky View County, Alberta, Canada; Vaughan, …5d ago
-
Director, Cyber Security CAD 140K-173KAccess Management | Azure | Cloud Security | Database security | Detection and ResponseAnnual performance reviews | Defined Contribution Pension Match | Employee assistance program | Employer paid premiums | Extended health and dentalExecutive-level Full TimeWinnipeg, Manitoba, Canada5d ago
-
Senior Security Operations Engineer I CAD 132K-171KAWS | Cloud Security | Cloud platform | Cybersecurity Framework | Digital forensicsHealth insurance | Parental leave | Professional development stipend | Remote work flexibilitySenior-level Full TimeRemote - Canada R5d ago
-
Enterprise Security Engineer CAD 141K-193KAnthropic | Cloudflare | Conditional Access | Configuration as Code | CrowdStrike FalconCommute within distance | Downtown Toronto office | In person four days per weekSenior-level Full TimeToronto, Canada5d ago