Senior Security Operations Engineer I

New
S
SamsaraCybersecurity
This role is open to candidates residing in Canada; must reside in the Pacific Time Zone, Mountain Time Zone or Central Time Zone of the United States or Canada, Pacific Time Zone, Mountain Time Zone or Central Time ZoneFull-TimeSenior
Salary$132,600 — $171,600 CAD
Apply NowOpens the employer's application page

Job Details

Experience
5+ years of experience in Security Incident Response; 3+ years of experience working on insider threat initiatives or employee investigations
Required Skills
AWSPythonGCPLinux

Requirements

  • Have 5+ years of experience in Security Incident Response.
  • Communicate investigative findings and strategies to technical staff, executive leadership, and legal.
  • Build scripts or tools for investigation processes, with proficiency in Python.
  • Have practical experience leading security incident response, including monitoring and triaging alerts and coordinating across teams.
  • Understand analysis and forensic techniques on macOS, Windows, and Linux.
  • Have experience using SIEM tools to perform log reviews.
  • Have experience with cloud architecture and security, including AWS or GCP, and cloud-based services.
  • Reside in the Pacific, Mountain, or Central Time Zone of the United States or Canada.
  • Preferred: 3+ years of experience with insider threat initiatives or employee investigations.
  • Preferred: Bachelor's or Master's degree in Computer Science, Information Security, or a related field, or relevant industry experience.
  • Preferred: GIAC Certified Incident Handler (GCIH) certification.
  • Preferred: Familiarity with NIST Cybersecurity Framework, ISO 27001, and FedRAMP.

Responsibilities

  • Monitor security events and provide technical analysis on alerts.
  • Lead information security incidents and employee investigations from response-strategy development through incident closure.
  • Provide incident updates to key stakeholders throughout incidents.
  • Deliver clear, concise security guidance for incident response and insider threat initiatives.
  • Coordinate the development of services, capabilities, integrations, and technology implementations supporting security operations, incident response, and insider threat.
  • Create and maintain runbooks, automated workflows, and process improvements.
  • Mentor and train security operations engineers on data collection, analysis, and technical reporting.
View Full Description & ApplyYou'll be redirected to the employer's site
$132,600 — $171,600 CAD
Apply Now