Information Security Engineer
Finning Voir toutes les offres
- Calgary, AB
- 100.000-120.000 $ par an
- Permanent
- Temps-plein
· Great people and place to work with a hybrid work opportunity
· Career advancement and training opportunities
· Pension and employee stock purchase plans with company contributions
· Extensive health benefits including group medical and dental benefits, and short-term and long-term disability benefits
· For this position, the expected salary range is between $100,000 and $120,000 annually. This range reflects our commitment to providing competitive compensation that aligns with industry standards and your qualifications.Job Description:Major Job Responsibilities:
- Manage Endpoint Security Solutions: Oversee and maintain endpoint security tools such as Endpoint Detection and Response (EDR), antivirus, and Data Loss Prevention (DLP) systems.
- Manage the lifecycle, configuration, and integration health of external threat intelligence tooling to enhance detection, response, and strategic risk awareness.
- Policy Development and Implementation: Develop and enforce endpoint security policies and configurations to ensure compliance with organizational standards, based on use cases developed in co-ordination with SOC leadership.
- Fine-tune EDR Detections and Rules: Create, update, and optimize EDR rules, alerts, and dashboards to ensure efficiency minimize false positive and benign positive rates.
- Collaboration: Work closely with IT and other security teams to ensure endpoint security measures are integrated and effective.
- Documentation and Reporting: Maintain detailed documentation of endpoint security configurations, incidents, and response actions. Generate reports on security metrics and trends.
- Platform Health: Work closely with peers to audit, co-ordinate remediation and report on overall platform health through the utilization of the Microsoft Secure Score environment.
- Incident Response Escalation: Collaborate on investigating security incidents when required, performing forensic analysis and root cause determination.
- Data Enrichment: Identify opportunities to ensure incidents and detections are populated with contextual information required to make effective decisions during the incident response process.
- Growth Opportunities: Endpoint Security Engineer can advance to roles such as Security Operations Center (SOC) Manager, Security Architect, or Cybersecurity Consultant.
- Continuous Learning: Staying updated with the latest security trends, threats, and technologies is crucial. Pursuing advanced certifications and participating in cybersecurity conferences and training can enhance career prospects.
- Educational Background: Bachelor's degree in Cybersecurity, Information Technology, or a related field.
- Experience: At least 3 years of experience with endpoint security as well as threat intelligence tools and technologies.
- Strong understanding of endpoint protection, detection, and response.
- Proficiency in incident response and forensic analysis.
- Knowledge of operating systems (Windows, Linux, macOS) and their security features.
- Certifications: Relevant certifications such as OSCP, GCIH, or CompTIA CySA+ are highly desirable.
- Endpoint Security Tools: EDR solutions (e.g., Defender, CrowdStrike, Microsoft Sentinel), antivirus software, DLP systems.
- External Threat Intelligence Tooling: ZeroFox, Mandiant TI, Recorded Future, Crowdstrike Falcon Intelligence.
- Scripting Languages: Python, PowerShell.
- Security Tools: Firewalls, Intrusion Detection Systems (IDS), Intrusion Prevention Systems (IPS).
- Excellent analytical and problem-solving skills.
- Strong communication skills for effective collaboration with other teams.
- Ability to manage multiple tasks and work under pressure.