03 Oct
|
gexel tÉlÉcom international
|
Canada
03 Oct
gexel tÉlÉcom international
Canada
Whatcouldbeyournextchallenge?
JoinHitachiCyber,agloballeaderincybersecurity,andbecomepartofadynamicteamofexpertsdedicatedtoprotectingorganizationsacrossvariousindustries.AsanInformationSecuritySpecialist,you'llplayakeyroleindeliveringcutting-edgesecurityservices,leveragingtoolslikeMicrosoftSentinelandGoogleSecOps(Chronicle)todetect,respond,andpreventthreats.
You'llplayakeyroleinqualityassurance,vulnerabilitymanagementcoordination,reporting,andproactivethreatanalysisandhelpingclientsstrengthentheirsecuritypostureandstayaheadofemergingthreats.
We are hiring two Information Security Specialists. One position requires fluency in French and English (FR/EN), while the other requires fluency in English and Spanish (EN/ES).
Yourmission:
- Investigate and triage alerts in Google SecOps, using entity context, timelines, and case views to understand the full scope of an incident.
- Write and refine UDM search queries for investigations, threat hunting, and reporting, and build dashboards that give clients visibility into their setting.
- Review and tune existing detection rules in Google SecOps, working with engineering to adjust thresholds, reference lists, and exclusions to cut down on false positives.
- Use curated detections, threat intelligence feeds, and risk scoring to prioritize what matters and escalates appropriately.
- Support the onboarding of new log sources into Google SecOps, validating that events are ingesting correctly and flagging parsing or field-mapping issues to the engineering team.
- Work with SOAR playbooks in Google SecOps to streamline triage and enrichment, and suggest improvements where manual steps are slowing the team down.
- Perform quality assurance reviews of SOC-generated incidents to ensure alerts from Microsoft Sentinel, Google SecOps, and other SIEM platforms are accurately captured, classified, and escalated.
- Collaborate with SOC analysts and engineering teams to improve alert fidelity, rule tuning, and incident-handling procedures.
- Prepare monthly operational and security performance reports and deliver presentations to clients, summarizing key metrics, incident trends, and improvement actions.
- Schedule and track vulnerability scans, ensuring scans are completed on time and results are communicated to relevant stakeholders.
- Support the onboarding and validation of new log sources, ensuring they are properly integrated into SIEM platforms for effective monitoring.
- Maintain and update documentation for alert flows, incident management procedures, and escalation paths.
- Conduct threat hunting activities and recommend new correlation rules or detections based on emerging threats
📌 Information Security Specialist (2 openings: French-English or English-Spanish) (Canada)
🏢 gexel tÉlÉcom international
📍 Canada