07 Sep
|
Jobtailor
|
Toronto
- Protect Kepler's corporate, cloud, and operational infrastructure.
- Own, operate, and continuously improve vulnerability management, security monitoring and SIEM, endpoint security, infrastructure hardening, and incident response capabilities.
- Provide security engineering expertise for infrastructure, cloud environments, networks, systems, and related technologies.
- Review architectures, identify security risks, and recommend practical controls and mitigation measures.
- Assess and improve controls across networks, servers, operating systems, cloud infrastructure, databases, firewalls, identity systems, and other infrastructure technologies.
- Develop and maintain secure configuration and system-hardening standards based on CIS Benchmarks and NIST guidance.
- Integrate security requirements into infrastructure design, implementation, and operational processes.
- Manage vulnerability scanning, findings analysis, risk prioritization, remediation coordination, metrics, and vulnerability management technologies.
- Own SIEM and monitoring capabilities, onboard log sources, develop and tune detection use cases, monitor visibility, and coordinate with MDR/SOC providers.
- Own endpoint security and EDR/XDR capabilities; investigate alerts and support containment, remediation, and recovery.
- Contribute to cybersecurity incident investigations, containment, remediation, recovery, evidence collection, and post-incident reviews.
- Assess and secure AWS and/or Microsoft Azure environments, including IAM, logging, network security, and automation opportunities.
- Support Government of Canada and regulated-environment security requirements, assessments, audits, inspections, certification activities, remediation, and control documentation.
- Report to the VP, Information Security & CISO and collaborate with IT, Engineering, Operations, Security, Facilities,
program teams, and external providers.
Requirements
- 7+ years of progressive experience in cybersecurity, with demonstrated hands-on experience in infrastructure security, security engineering, security operations, or a related technical security role.
- Strong hands-on knowledge of infrastructure security across Windows, Linux, networking, cloud, and enterprise IT environments.
- Demonstrated experience operating or supporting enterprise vulnerability management platforms, including vulnerability scanning, analysis, prioritization, and remediation.
- Experience with SIEM and security monitoring technologies, including log analysis, security investigations, detection use cases, and monitoring.
- Experience with endpoint security and EDR/XDR technologies, including alert investigation, containment, and security policy management.
- Robust understanding of network security concepts including firewalls, network segmentation, intrusion detection/prevention, secure protocols, and network monitoring.
- Experience supporting cybersecurity incident investigations and remediation.
- Experience securing cloud environments such as AWS and/or Microsoft Azure.
- Knowledge of infrastructure and operating-system hardening and secure configuration practices.
- Knowledge of NIST Cybersecurity Framework (CSF), NIST SP 800-171, NIST SP 800-53, and CIS Controls/Benchmarks.
- Understanding of identity and access management, privileged access, authentication, authorization,
and least-privilege principles.
- Ability to analyze technical security risks and communicate findings and recommendations to technical and non-technical stakeholders.
- Strong problem-solving skills with demonstrated ownership and accountability.
- Strong organizational skills and ability to manage multiple priorities in a fast-paced environment.
- Ability to work independently while collaborating effectively across Security, IT, Engineering, Operations, and other teams.
- Ability to obtain and maintain a Government of Canada security clearance appropriate to the role.
Core Competencies
Demonstrates extensive expertise in cybersecurity, focusing on infrastructure security, vulnerability management, and incident response. Proficient in securing cloud environments, implementing security controls, and collaborating across teams to enhance security posture.
Highest-signal resume keywords
- Cybersecurity Expertise
- Vulnerability Management
- SIEM Technologies
- Cloud Security (AWS/Azure)
- Incident Response
ATS Optimization Keywords
Hard Skills
- Infrastructure Security
- Security Engineering
- Vulnerability Scanning
- Endpoint Security
- Network Security
- Operating System Hardening
- Secure Configuration Practices
- NIST Cybersecurity Framework
- CIS Controls/Benchmarks
- Identity and Access Management
Soft Skills
- Problem-Solving
- Organizational Skills
- Collaboration
Industry Keywords
- Government of Canada Security Clearance
- Cybersecurity Incident Investigations
- Risk Analysis
- Security Policy Management
- Technical Security Risks
Tools & Technologies
- EDR/XDR Technologies
- Security Monitoring Technologies
- SIEM
- Cloud Infrastructure
- Vulnerability Management Platforms
#J-18808-Ljbffr
📌 Senior Infrastructure Security Specialist (Toronto)
🏢 Jobtailor
📍 Toronto