Senior Cyber Security Engineer
Hexagon Geosystems Voir toutes les offres
- Canada
- Permanent
- Temps-plein
- Event Detection and Response – the EDRs protecting all Windows and MacOS endpoints, Windows and Linux servers in Hexagon.
- Endpoint Privilege Management, an endpoint protection solution, was selected and deployed for parts of Hexagon's Windows endpoints.
- Network Detection and Response - the NDR solution was selected and deployed to parts of the Hexagon Network.
- Internal PKI, the Public Key Infrastructure used for internal purposes.
- Vulnerability Management – the vulnerability identification agent deployed to Hexagon’s servers.
- Investigation, triage and analysis of time-sensitive security incidents reported by the monitoring team.
- Coordinate with IT operational resources on proper IT hygiene, closing coverage gaps, and addressing visibility and protection gaps.
- Coordinate with IT operational resources on proper incident response, including containment, internal communication, eradication and recovery.
- Troubleshoot performance issues caused by the security tools.
- Contribute to the design, implementation, and improvement of integrations between Hexagon security and IT components.
- Develop automations that implement best practices, improve security, and provide visibility and reporting.
- Participate in Proof-of-Concept initiatives for new systems at Hexagon, with a particular emphasis on automation, integration, and operational efficiency.
- Ability to attain a reliability level security clearance within Canada
- Minimum 5 years’ experience in a cybersecurity engineering role
- Experience securing both on-premises and cloud environments, in both Windows and Linux environments
- Office 365 Security knowledge
- Hands-on experience with various security tools (EDR, NDR, SIEM, etc.)
- Technical capabilities and experience in IT systems and working with IT teams
- Network protocols, network and application security
- Operating systems and system services
- Web and host-based application firewalls, IPS, IDS and Network detection & response technologies
- Antimalware and endpoint event detection and response technologies
- Understanding of APIs (as a consumer /as developer) and integration/automation concepts.
- Security of cloud services (IaaS / PaaS / SaaS)
- The Senior Cyber Security Engineer will need to be proficient in scripting on both Windows (PowerShell) and Linux (Python / Bash / other), and Cloud IaC environments
- Understanding of security management frameworks such as ISO27001 and exposure to maturity models such as CMMC and VAD/TISAX
- Security Architectures and principles, such as Zero trust