Senior Security Operations Engineer I
New
S
SamsaraCybersecurity
This role is open to candidates residing in Canada; must reside in the Pacific Time Zone, Mountain Time Zone or Central Time Zone of the United States or Canada, Pacific Time Zone, Mountain Time Zone or Central Time ZoneFull-TimeSenior
Salary$132,600 — $171,600 CAD
Apply NowOpens the employer's application page
Job Details
- Experience
- 5+ years of experience in Security Incident Response; 3+ years of experience working on insider threat initiatives or employee investigations
- Required Skills
- AWSPythonGCPLinux
Requirements
- Have 5+ years of experience in Security Incident Response.
- Communicate investigative findings and strategies to technical staff, executive leadership, and legal.
- Build scripts or tools for investigation processes, with proficiency in Python.
- Have practical experience leading security incident response, including monitoring and triaging alerts and coordinating across teams.
- Understand analysis and forensic techniques on macOS, Windows, and Linux.
- Have experience using SIEM tools to perform log reviews.
- Have experience with cloud architecture and security, including AWS or GCP, and cloud-based services.
- Reside in the Pacific, Mountain, or Central Time Zone of the United States or Canada.
- Preferred: 3+ years of experience with insider threat initiatives or employee investigations.
- Preferred: Bachelor's or Master's degree in Computer Science, Information Security, or a related field, or relevant industry experience.
- Preferred: GIAC Certified Incident Handler (GCIH) certification.
- Preferred: Familiarity with NIST Cybersecurity Framework, ISO 27001, and FedRAMP.
Responsibilities
- Monitor security events and provide technical analysis on alerts.
- Lead information security incidents and employee investigations from response-strategy development through incident closure.
- Provide incident updates to key stakeholders throughout incidents.
- Deliver clear, concise security guidance for incident response and insider threat initiatives.
- Coordinate the development of services, capabilities, integrations, and technology implementations supporting security operations, incident response, and insider threat.
- Create and maintain runbooks, automated workflows, and process improvements.
- Mentor and train security operations engineers on data collection, analysis, and technical reporting.
View Full Description & ApplyYou'll be redirected to the employer's site