Contract Duration: 1 year
Possibility of extension & conversion to FTE
Number of Positions: 2
Schedule Hours: Monday-Friday, 9am-5pm
Story Behind the Need
Business group: Cyber Security Operations Centre.
Project: Critical incident management and foundational playbook review and creation for an effective Incident Response function, supporting the Security Incident Management workstream.
Typical Day in Role:
• Monitoring & response of Data Loss Prevention rules and policies
• Thrives in a fast-paced environment coordinating multiple issues and threats that can be occurring simultaneously
• Collaborates with various business lines, IT support functions and IS&C Control function
• You are passionate about utilizing your technical knowledge to perform cybersecurity investigations using various analytical methods.
• You excel in using available intrusion detection infrastructure to detect and remediates threats.
• You enjoy investigating and reviewing suspicious activities (E.g. Phishing) reported by customers or other employees of the bank.
• You enjoy taking part in initiatives to contribute to the strategic direction for security related technologies or other controls that need to be put in place to reduce the threat levels to the company.
• You thrive in effectively breaking down complex technology knowledge & communicating same to non-technical people.
Candidate Requirements/Must Have Skills:
1) You have 8+ year of hands-on technical working experience in performing any of network security, information security, network and IT support or any other related fields.
2) 1+years’ experience of Data Loss Prevention methodologies, rules and policy creation
3) 2+ Experience building and running a TTP framework methodology for pattern and behavior-based content development
4) 2+ years’ combined experience with involving red team (Vulnerability Assessments, Web app assessments), consulting (Compliance, policy creation), SOC and Device Management
5) CompTIA Security+, CompTIA Networking+, CompTIA CySA, ITIL, CCNA (Anyone or similar certification is required).
Nice-To-Have Skills:
• You possess advanced communication (verbal/written/presentation) skills in English. The same in Spanish is a strong asset.
Soft Skills Required:
• Has advanced communication (verbal/written/presentation) skills
• You have developed capabilities in prioritizing and completing assigned tasks in a timely manner and provide oversight and training to other less experienced team members.
• You have a working knowledge of various network principles, cyber security concepts, investigation procedures, and adversary techniques.
• You have a strong analytical and problem resolution skills.
You can demonstrate ability to conduct investigations across multiple security technologies
Education:
• Post-secondary education in Computer Science or in a related field
• Certifications (CISSP, CISM, CCSP, CRISC) are nice to have
Best VS. Average Candidate:
Ideal candidate has experience merging all the requirement: developing security use cases, DLP rules and policy creation management to detect security events and has the right working attitude
Candidate Review & Selection
• 1st round MS Teams video panel interview – HM and 2 team members (30 minutes)
• 2nd round MS Teams video – Director (30 minutes)
The team will be assessing both soft and technical skills.