Typical Day in Role:
• Works as part of Cyber Automation & Defense (CAD) team and will be responsible for identifying security exposures in the organization’s network and advise on appropriate compensating controls.
• Works with other technology and security teams to develop use cases and implement controls needed to close exposures. The intent of the use cases is to detect and alert for security events.
• Development of Data Loss Prevention rules and policies
• Thrives in a fast-paced environment coordinating multiple issues and threats that can be occurring simultaneously
• Solutions for multiple security domains (Security Management, Security Engineering, Identity and Access Management, etc.).
• Works on different types of projects (from large complex to simple)
• Collaborates with various business lines, IT support functions and IS&C Control function
• Analyze security exposures and identify the remedial and compensating factors in the organization’s network.
• Advise on appropriate implementation of compensating controls including priority and success criteria.
• Work with other technology and security teams to implement controls needed to close exposures.
Candidate Requirements/Must Have Skills:
1) 8+ years’ experience of Data Loss Prevention methodologies, rule and policy creation, DLP incident investigation
2) 8+ years’ combined experience involving Vulnerability Assessment, Risk assessment, Security Operations Centre (SOC)
3) 2+ years of hands-on technical working experience in management of security threats and cybersecurity use case development based on MITRE Framework
4) 2 years technical writing and documentation experience
5) Knowledge of Cloud computing, XDR & EDR
Nice-To-Have Skills:
• Experience in Reporting and Documentation
• Bilingual in Spanish is an asset
• Experience conducting security research
Soft Skills Required:
• Has advanced communication (verbal/written/presentation) skills
• Ability to manage multiple initiatives/workstreams simultaneously
• Strong Analytical skills and detail orientated
• Strong problem-solving skills, collaborating across the organization to solve complex problems
• Strong team player – needs someone who can collaborate effectively
Education:
• Post-secondary education in Computer Science or in a related field
• Certifications (CISSP, CISM, CCSP, CRISC) are nice to have