Serve as a senior technical expert within the IT Security Operations Centre, leading complex security incident investigations and advanced threat hunting activities. Drive continuous improvement of security monitoring capabilities through custom detection development, automation, and forensic analysis. Act as technical escalation point for SOC analysts while coordinating cross-functional response efforts during critical security events. Enhance organizational security posture through proactive threat identification, root cause analysis, and development of advanced security tools and procedures.## ## Knowledge Skills and Abilities, Key Responsibilities :
Core Competencies
Security Monitoring & Detection
Advanced Infrastructure Security Knowledge
: Demonstrated expertise in network security architecture, endpoint protection, and cloud security principles
Security Information and Event Management (SIEM)
: Proficiency with Splunk Enterprise Security or similar platforms for advanced correlation, threat hunting, and analytics
Endpoint Detection & Response (EDR)
: Expert-level experience with Microsoft Defender for Endpoint (or equivalent), including configuration management, alert triage, and response automation
Threat Intelligence Integration
: Ability to incorporate threat feeds into detection systems and develop custom detection rules based on emerging threats
Advanced Analytics
: Experience with behavioural analytics, anomaly detection, and machine learning-based security monitoring techniques
Incident Response & Forensics
Incident Management Leadership
: Ability to take ownership of complex security incidents from initial detection through complete remediation
Digital Forensics
: Expertise in memory forensics and network forensics to establish incident timeline and scope
Malware Analysis
: Advanced skills in static and dynamic malware analysis, including disassembly, debugging, unpacking, and sandbox analysis
Threat Hunting
: Proactive identification of threats that have evaded existing security controls through hypothesis-driven investigations
Incident Coordination
: Experience leading cross-functional response teams and communicating effectively with stakeholders during security incidents
Technical Expertise
Scripting & Automation
: Strong programming skills in PowerShell, Python, and other relevant languages for security automation and custom tool development
Active Directory & Identity Management
: Deep understanding of AD architecture, LDAP queries, and common attack vectors against identity infrastructure
Operating System Security
: Comprehensive knowledge of Windows, Linux, and macOS security mechanisms and hardening techniques
Network Security
: Expertise in network protocols, traffic analysis, and network-based detection techniques
Cloud Security
: It would be advantageous (but not required) if the candidate had experience securing assets across major cloud platforms (AWS, Azure) and understanding cloud-specific security controls
Key Responsibilities
Security Operations
Lead complex security investigations requiring advanced forensic techniques and cross-platform analysis
Develop and maintain custom detection rules, playbooks, and response procedures
Perform regular threat hunting exercises to identify potential compromises
Analyze and validate security alerts escalated from Tier 1 analysts
Conduct root cause analysis for security incidents and develop mitigation strategies
Engineering & Development
Design and implement security monitoring improvements and automation workflows
Develop custom scripts and tools to enhance detection and response capabilities
Maintain and optimize security tooling, including SIEM content, EDR policies, and detection rules
Collaborate with security architecture teams to improve defensive posture
Contribute to continuous improvement of security monitoring and response processes
Leadership & Knowledge Transfer
Serve as technical escalation point for Tier 1 SOC analysts
Document findings, methodologies, and lessons learned from security incidents
Collaborate with threat intelligence teams to enhance detection capabilities
Qualifications
Required Experience
5+ years of experience in cybersecurity with at least 3 years in a SOC or incident response role
Demonstrated expertise with SIEM platforms, preferably Splunk Enterprise Security
Advanced knowledge of Microsoft Defender for Endpoint or similar EDR solutions
Experience with memory forensics tools (e.g., Volatility) and malware analysis techniques
Proficiency in at least one scripting language (PowerShell, Python, Perl)
Relevant Certifications (not required)
GIAC Certified Incident Handler (GCIH)
GIAC Reverse Engineering Malware (GREM)
GIAC Certified Forensic Analyst (GCFA)
Certified Information Systems Security Professional (CISSP)
Offensive Security Certified Professional (OSCP)
Personal Attributes
Exceptional analytical and problem-solving abilities
Strong communication skills with ability to explain technical concepts to various audiences
Self-motivated with ability to work under pressure during security incidents
Detail-oriented with strong documentation habits
Collaborative mindset and team-oriented approach to security operationsThis role requires a security professional who can handle complex security incidents, perform advanced technical analysis, and provide leadership during critical security events. The successful candidate will combine technical depth with operational excellence to strengthen our security posture and respond effectively to emerging threats.## ## Key Relationships and Department Overview : IT Security, Trading IT, Middle Office teams.We are accelerating our investments in renewable energy, including hydrogen, ammonia and other low-carbon energy technologies required for the transition to a low carbon future. We are committed to responsible business practices and we work with our stakeholders to improve environmental and social standards, bringing greater trust and transparency to global supply chains.
#J-18808-Ljbffr
Créer une alerte emploi pour cette recherche
Security Engineer • Calgary, AB, CA
Recherches populaires
Offres similaires
Control Systems IT Security Engineer | PCD & OT Networks
CGI • Calgary
Temps plein
A leading IT service provider in Calgary is seeking an IT Security Engineering Consultant.This entry-level full-time role involves operating cyber security controls, providing IT support, and maint...Voir plus
Dernière mise à jour : il y a 13 jours • Offre sponsorisée
Network Security Analyst - Onsite Contract
Compugen Inc • Calgary
Temps plein +1
Network Security Analyst - Onsite Contract.Join to apply for the Network Security Analyst - Onsite Contract role at Compugen Inc.
Compugen is Canada's largest privately‑owned Technology Ally.To inno...Voir plus
Dernière mise à jour : il y a 13 jours • Offre sponsorisée
Information Technology Private Tutoring Jobs Airdrie
Superprof • Airdrie, Canada
Temps plein +1
Superprof is Canada's #1 tutoring platform, and we're actively recruiting passionate tutors! Whether you're a student, a professional, or simply someone who loves teaching, join the largest communi...Voir plus
Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
Security Engineer
ITCO Solutions, Inc. • calgary, ab, ca
Temps plein
What You Will DoWrite code to integrate services using vendor-supplied APIs.Write code to manage asset inventory.Write code to modify data records.
Work with tech leads and project managers to commu...Voir plus
Dernière mise à jour : il y a 1 jour • Offre sponsorisée
Security Engineer - calgary
ITCO Solutions, Inc. • calgary, ab, ca
Temps plein
What You Will DoWrite code to integrate services using vendor-supplied APIs.Write code to manage asset inventory.Write code to modify data records.
Work with tech leads and project managers to commu...Voir plus
Dernière mise à jour : il y a 1 jour • Offre sponsorisée
Enterprise Security Architect - calgary
CQ Search Group Ltd. • calgary, ab, ca
Temporaire
We are seeking a highly experienced.Identity & Access Management, Privileged Access Management (PAM), and enterprise-level identity modernization.
CyberArk, SailPoint, Azure Privileged Identity Mana...Voir plus
Dernière mise à jour : il y a 1 jour • Offre sponsorisée
Cyber Security Architect >
Heritage Plus • Calgary
Temps plein
At Parkland, our purpose is to Power Journeys & Energize Communities.We are a prominent independent supplier and marketer of fuel and petroleum products and a leading convenience store operator.As ...Voir plus
Dernière mise à jour : il y a 13 jours • Offre sponsorisée
Intermediate Protection and Control Engineer
Spark Power • Calgary, AB, Canada
Temps plein
Spark Power, a trusted partner in energy in North America, is looking for an.Spark Power provides a wide range of services to clients, including power system field services, engineering services, m...Voir plus
Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
Sr. Infrastructure Engineer with Kubernetes
Confidential • calgary, ab, ca
Temps plein
The role seeks a highly experienced Infrastructure Specialist to spearhead the design, deployment, and operational excellence of a modern cloud-native infrastructure.
The ideal candidate must posses...Voir plus
Dernière mise à jour : il y a 2 jours • Offre sponsorisée
Senior Controls Engineer
Propak Systems Ltd. • Airdrie, AB, Canada
Temps plein
The position is responsible for planning and directing large engineering projects, setting priorities, allocating resources, and making necessary decisions on day-to-day operating matters within th...Voir plus
Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
Lead Application Security & Incident Response Engineer
AVEVA • Calgary
Temps plein
A leading industrial software company in Calgary is seeking a Principal Security Engineer to lead application security efforts and protect the technology environment.
This hands-on role requires exp...Voir plus
Dernière mise à jour : il y a 1 jour • Offre sponsorisée
Engineer Lead (Process) - Cryogenic LPG / NGL Recovery
Propak Systems Ltd. • Airdrie, AB, Canada
Temps plein
In this position, Propak can offer the following career development opportunities : .Work on a variety of gas processing and heavy oil projects for domestic and international clients.The scope of the...Voir plus
Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
IT Security Engineer
Trafigura Group • Calgary
Temps plein
Serve as a senior technical expert within the IT Security Operations Centre, leading complex security incident investigations and advanced threat hunting activities.
Drive continuous improvement of ...Voir plus
Dernière mise à jour : il y a 13 jours • Offre sponsorisée
Enterprise Security Architect
CQ Search Group Ltd. • calgary, ab, ca
Temporaire
We are seeking a highly experienced.Identity & Access Management, Privileged Access Management (PAM), and enterprise-level identity modernization.
CyberArk, SailPoint, Azure Privileged Identity Mana...Voir plus
Dernière mise à jour : il y a 1 jour • Offre sponsorisée
Remote Linux Security & Cryptography Engineer - $150,000 - $200,000 A Year - Remote
Affirm • Calgary, Canada, CA
Télétravail
Temps plein
Join to apply for the Senior Platform Security Engineer role at Affirm Get AI-powered advice on this job and more exclusive features.
Affirm is reinventing credit to make it more honest and friend...Voir plus
Dernière mise à jour : il y a 1 jour • Offre sponsorisée
Lead specialist - cybersecurity
Parkland • Calgary, AB, Canada
Temps plein
As of November 1, 2025, Sunoco LP has successfully completed its acquisition of Parkland Corporation.For more information, please visit.
A place where you can take your career in the direction you w...Voir plus
Dernière mise à jour : il y a 8 jours • Offre sponsorisée
Senior Architect - Hays
Hays • airdrie, ab, ca
Temps plein
We are seeking a security professional for the role of Cybersecurity Advisor who can apply his or her security knowledge to provide holistic cybersecurity advisory services to the enterprise.In col...Voir plus
Dernière mise à jour : il y a 1 jour • Offre sponsorisée
IT & Security Administrator for ISO Certified Medical Tech
ViTAA Medical Solutions • Calgary
Temps plein
A growing medical device company in Calgary, Canada, is seeking an entry-level IT Operations Manager.The role involves managing company-wide IT infrastructure, ensuring cyber-security, and training...Voir plus
Dernière mise à jour : il y a 2 jours • Offre sponsorisée