
Cybersecurity - Cloud Security - Manager
- Toronto, ON
- Permanent
- Temps-plein
- Expressing configuration and development of Sentinel and Defender using Infrastructure as Code (IaC)
- Providing Overall Cybersecurity expertise to the team and our clients
- Development of advanced Sentinel queries and playbooks
- Logic App development
- Potential Live Cybersecurity Response in a Managed Services/Operations setting
- Helping leverage AI to automate Investigation and Response
- The development of Cybersecurity decoy systems to lure attackers off track leveraging Microsoft tools
- Endpoint Detection and Response support and administration
- Microsoft Security Knowledge: Proficiency in Microsoft security products is essential, particularly in Microsoft Sentinel and Microsoft Defender. This includes familiarity with the implementation, administration, and troubleshooting of both tools
- Threat Detection and Analysis Skills: An understanding of threat detection and response is critical. This includes the ability to create, manage, and investigate incidents and alerts, understanding security threats, anomalies, and breach patterns.
- Azure Knowledge: Since Microsoft Sentinel is a cloud-based SIEM, knowledge about Azure cloud services, Azure Log Analytics, and how these integrate with Sentinel is needed. You need to understand how to ingest data from various sources into Azure Sentinel.
- Security Incident and Event Management (SIEM): Knowledge of SIEM concepts and capabilities is crucial.
- Programming and Scripting: Familiarity with scripting languages, such as PowerShell or KQL (Kusto Query Language, used in Azure Sentinel for data querying)
- Good executive presence
- Ability to work independently or team with others as required
- Minimum of 5 years of Cybersecurity experience
- Excellent collaboration and presentation skills, and the confidence to challenge senior colleagues and stakeholders from a diverse range of backgrounds
- Professional services firm experience
- Being bilingual (English & French) would be an asset
- Microsoft Security Engineer Associate certification
- Microsoft Security Operations certifications
- Other Cloud Certification
- Other Cybersecurity certifications
- Support and coaching from some of the most engaging colleagues in the industry
- Learning opportunities to develop new skills and progress your career
- The freedom and flexibility to handle your role in a way that's right for you