03 Aug
|
Affinity
|
Calgary
Client's Information Services Unit manages and maintains the company’s infrastructure, provides technical support, ensures data security and accessibility, implements new technology, strategies for future development, manages vendors, and ensures compliance with relevant laws and regulations. We depend on our talented people who are constantly looking for innovative ways to improve our processes and existing technologies. Our focus is to collaborate with our customers and colleagues to deliver cutting‑edge technologies to improve the way we work, maximize productivity, and reduce cost while supporting environmental solutions. Client Pipeline Corporation is seeking a highly skilled and experienced Senior Cyber Security Analyst – Cyber Security Operations to join our Cyber Security team. This role focuses on the monitoring, detection, and response to cyber threats across Client’s enterprise and operational environments, while also advancing automation and AI‑driven security capabilities. The successful candidate will play a critical role in safeguarding systems, data, and infrastructure by leveraging advanced security tooling, analytics, and modern technologies including AI. Responsibilities Responsibilities will include, but not be limited to: Security Monitoring & Incident Response: Monitor and analyze security alerts and events across enterprise security platforms (SIEM, EDR/XDR, cloud security tools). Lead and support cyber security incident response activities, including investigation, containment, eradication, and recovery. Perform root cause analysis and post-incident reviews to strengthen detection and response capabilities. Develop and maintain incident response playbooks and procedures. Leverage automation and AI-driven analytics to improve threat detection, reduce response times, and enhance investigation quality. Security Operations, Automation & Tooling: Operate and optimize cyber security technologies including SIEM, EDR/XDR, firewalls, email security, and cloud-native security controls.
Design and implement automation workflows (playbooks, orchestration, integrations) to improve efficiency and consistency of cyber operations. Identify opportunities to eliminate manual processes through scripting, orchestration, and AI-assisted workflows. Support onboarding of current data sources and ensure logging coverage, retention, and visibility requirements are met. Continuously improve detection use cases through tuning, threat intelligence integration, and machine learning / AI capabilities. AI Security & Emerging Technology Controls: Design and implement security controls for AI-enabled systems and platforms, including data protection, access control, and monitoring of AI usage. Assess and mitigate risks associated with the use of AI technologies (e.G., data leakage, model misuse, prompt injection, unauthorized access). Partner with architecture, governance, and business teams to ensure AI solutions are deployed securely and in alignment with organizational standards. Contribute to the development of standards, guardrails, and best practices for secure use of AI across the organization. Security Control Design & Implementation: Develop and implement cyber security controls across email, endpoint, network, cloud, and identity domains. Conduct risk assessments and recommend security improvements aligned to business and regulatory requirements. Collaborate with architecture and project teams to embed security into new initiatives. Provide mentorship and technical guidance to junior analysts and team members. Act as a senior escalation point for complex incidents and investigations. Work closely with IT, OT,
and business stakeholders to ensure security is integrated into operational processes. Compliance & Reporting: Ensure compliance with Client’s cyber security policies, standards, and regulatory requirements (e.G., SOX). Develop and report on key security metrics including incident trends, MTTD/MTTR, and operational effectiveness. Support audits, assessments, and continuous improvement initiatives. Qualifications Required Qualifications Significant experience (e.G., 5–10+ years) in Cyber Security Operations, SOC, or Security Engineering roles. Strong hands‑on experience with security tooling (SIEM, EDR/XDR, firewalls, vulnerability management). Proven analytical and troubleshooting skills. Experience responding to and managing cyber security incidents in enterprise environments. Experience implementing, managing, and optimizing cybersecurity tools. Experience designing automation or orchestration workflows within a cyber operations setting. Familiarity with AI/ML concepts as applied to cyber security is considered an asset. Excellent verbal and written communication skills. Bachelor’s degree in Computer Science, Engineering, Security, or equivalent experience. Preferred Qualifications Relevant certifications (e.G., CISSP, GCIA, GCIH) are highly desirable. Experience with cloud platforms (Azure, AWS, GCP). Experience with ServiceNow or similar ITSM platforms. Familiarity with scripting/automation (Python, PowerShell). Experience in Operational Technology (OT) environments is an asset. Experience with SOAR platforms or AI-assisted security tooling. Personal Attributes: Excellent problem‑solving and analytical skills. Passionate about cybersecurity, emerging technologies, and continuous learning. Self‑motivated, proactive, and able to manage priorities in a fast‑paced workplace. Strong collaborative team player with leadership capabilities. Dedicated to continuous improvement, innovation, and operational excellence. #J-18808-Ljbffr
📌 Lead Cyber Security Operations Role (Calgary)
🏢 Affinity
📍 Calgary