Talent.com
Celestica
ThreatLocker SpecialistCelestica • Toronto, ON, CA
ThreatLocker Specialist

ThreatLocker Specialist

Celestica • Toronto, ON, CA
30+ days ago
Job type
  • Full-time
Job description

08 - Specialist, Information Security
Req ID:
Remote Position: Hybrid
Region: Americas
Country: Canada
State/Province: Ontario
City: Toronto

Summary

This role is critical for ensuring endpoint application control remains secure and usable for engineering teams, particularly by acting as a dedicated support function during the stabilization phase of a "Default-Deny" rollout.


In this role, you will be responsible for designing, implementing, auditing, and maintaining ThreatLocker policies across our organization (and/or client environments). You will play a critical role in preventing ransomware, malware, and unauthorized software execution by managing Application Whitelisting (Allowlisting), Ringfencing, Storage Control, and Elevation Control.


The ideal candidate has a strong background in system administration or cybersecurity, possess a deep understanding of Windows operating systems, and is passionate about achieving a true Zero Trust security posture.

Key Responsibilities

ThreatLocker Administration & Management

  • Policy Creation & Tuning: Design, implement, and maintain ThreatLocker Application Allowlisting policies to ensure only authorized software can execute.
  • Ringfencing: Configure and manage Ringfencing policies to restrict what authorized applications can do (e.g., stopping PowerShell from talking to the internet or blocking Word from launching cmd.exe).
  • Elevation Control: Implement and manage least-privilege access, creating rules for users to run specific applications as administrators without granting full local admin rights.
  • Storage Control: Define and enforce policies for securing USB drives, network shares, and local files against unauthorized access or data exfiltration.
  • Manage allowlisting, Learning Mode, and temporary exceptions.


Monitoring, Auditing & Incident Response

  • Approval Queue Management: Monitor and process daily ThreatLocker approval requests from users efficiently, balancing security with operational productivity.
  • Learning Mode Audits: Review, analyze, and baseline new endpoints during the "Learning Mode" phase to ensure seamless transitions to "Secured Mode."
  • Log Analysis & Reporting: Investigate blocked files, denied executions, and policy violations. Use ThreatLocker audit logs to identify potential security incidents or shadow IT.
  • Integration: Collaborate with the SOC/SIEM team to forward ThreatLocker logs and integrate them into the broader security monitoring ecosystem.
  • Triage blocked applications, scripts, DLLs, and installers.
  • Track service metrics to ensure business productivity.


Maintenance & Strategy

  • Environment Maintenance: Keep ThreatLocker agents updated across all endpoints and servers.
  • Testing & Validation: Test software updates and patch deployments in a sandbox environment to ensure they comply with existing ThreatLocker rules before company-wide rollout.
  • Documentation: Maintain clear, up-to-date documentation of standard operating procedures (SOPs), policy exceptions, and approval workflows.
  • Maintain Ringfencing and policy standards.

Required Experience

  • ThreatLocker Expertise: Minimum of 3 years of hands-on experience specifically managing, configuring, and troubleshooting ThreatLocker in a production environment.
  • IT/Cybersecurity Background: 3+ years of experience in System Administration, Helpdesk Tier 3, Network Engineering, or a Cybersecurity operations role.
  • OS Proficiency: Deep, foundational knowledge of Windows OS (Registry, File Systems, Services, Active Directory, and Group Policy).
  • Experience with macOS or Linux is a strong plus.
  • Scripting: Basic familiarity with PowerShell or Command Prompt for troubleshooting and automation.

Knowledge/Skills/Competencies

Soft Skills

  • Analytical Thinking: Ability to dissect complex application dependencies (e.g., figuring out why a niche accounting software was blocked by a specific DLL file).
  • Customer-Centric Communication: Ability to explain security restrictions to non-technical staff diplomatically and find ways to enable business operations safely.
  • Attention to Detail: Zero Trust requires precision; a misplaced rule can either cause a security gap or halt business operations.

Preferred Certifications (A Plus, Not Required)

  • ThreatLocker Professional or ThreatLocker Expert certifications.
  • CompTIA Security+, CySA+, or Network+.
  • Microsoft Certified: Windows Server or Azure Administrator.

Physical Demands

  • Duties of this position are performed in a normal office environment.
  • Duties may require extended periods of sitting and sustained visual concentration on a computer monitor or on numbers and other detailed data. Repetitive manual movements (e.g., data entry, using a computer mouse, using a calculator, etc.) are frequently required.

Salary

Salary

The stated range includes Base Salary and target Short-Term Incentive (STI) compensation only. A comprehensive benefits package is offered in addition to this range.

The range described in this posting is an estimate by the Company, and may change based on several factors, including but not limited to a change in the duties covered by the job posting, or the credentials, experience or geographic jurisdiction of the successful candidate.

Salary Range: $89,-, CAD/year

Notes

This job description is not intended to be an exhaustive list of all duties and responsibilities of the position. Employees are held accountable for all duties of the job. Job duties and the % of time identified for any function are subject to change at any time.

Celestica is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws.
At Celestica we are committed to fostering an inclusive, accessible environment, where all employees and customers feel valued, respected and supported. Special arrangements can be made for candidates who need it throughout the hiring process. Please indicate your needs and we will work with you to meet them.

Create a job alert for this search

ThreatLocker Specialist • Toronto, ON, CA

Similar jobs

Penetration Testing Service Specialist

ScotiabankToronto, ON, CA
Full-time

Advance your career with Scotiabank in Toronto as a Penetration Testing Service Specialist.Collaborate with development teams to fortify security protocols and manage vulnerability assessments.This... Show more

 • Promoted

Security specialist

Flip retailToronto, Ontario, Canada
Full-time

Security Specialist vacancy in Toronto Canada.Security Specialist mainframe - REMOTE Duty: Safety Specialist data processor Kind: Contract Period: TBD Rate: Based on experience Safety Expert Abilit... Show more

 • Promoted

Rq00671 - 2 X Sr. Security Specialist

Source CodeToronto, Canada
Full-time

Security Specialist 2 openings - 2 submissions10-month contracts (195 business days)ONSITE 5 days - 525 University AvenueMust Haves:In-depth knowledge ofrisk management frameworks (e.ISO 31000, NIS... Show more

 • Promoted

RQ09054 - Security Specialist - Threat Risk Assessment - Senior

Rubicon PathToronto
Full-time

RQ09054 - Security Specialist - Threat Risk Assessment - Senior.Job Openings RQ09054 - Security Specialist - Threat Risk Assessment - Senior.About the job RQ09054 - Security Specialist - Threat Ris... Show more

 • Promoted

Expert Threat Intelligence Specialist Toronto

United States Digital Space LLCToronto, ON, CA
Full-time

Become an Expert Threat Intelligence Specialist in Toronto, leveraging your experience to combat cyber threats.Collaborate with an elite team on the forefront of financial security and risk reducti... Show more

 • Promoted

Intact Senior Security Specialist

IntactToronto, Ontario, Canada
Full-time

Join Intact as a Senior Security Advisor, focusing on Vault management and security architecture.Utilize your expertise in AWS and GCP to drive security strategies.You will manage the deployment an... Show more

 • Promoted

Cryptography and IAM Specialist

Moneris Solutions Corptoronto, on, Canada
Full-time

Shape the future of security at Moneris as a Cryptography and IAM Specialist based in Toronto with remote flexibility.This role emphasizes cryptographic architecture and secrets management.Reportin... Show more

 • Promoted

Security Specialist - Senior_10+yrs

Maarut IncToronto, Ontario, Canada
Full-time

The Cyber Security Centre of Excellence (COE) is seeking one (1) Senior Cyber Security Specialist to support in strengthening Ontario’s cyber security infrastructure as the province collectively mo... Show more

 • Promoted

Cyber Security Specialist

Empire LifeToronto, Ontario, Canada
Full-time

This range is provided by Empire Life.Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Direct message the job poster from Empire Life Please note... Show more

 • Promoted

Security Specialist (Toronto)

TeckhorizonToronto, ON, CA
Full-time

Our Client is looking for a Senior Security Specialist with strong experience across penetration testing, red team exercises, threat hunting, vulnerability assessments, source code review, and netw... Show more

 • Promoted

Platform Security and Compliance Specialist

RAN BioLinksToronto, ON, CA
Full-time

MAESTRO seeks a Platform Security and Compliance Specialist based in Canada to secure clinical research data.In this role, you'll handle access controls, data governance, and compliance strategy cr... Show more

 • Promoted

Senior Technical Specialist, Corporate Security

Jaide HealthToronto, Ontario, Canada
Full-time +1

Base salary range: For this role, candidates located in Canada can expect a base salary range, described in the posting.Actual compensation is determined based on skills, experience, and role level... Show more

 • Promoted

Rq09355 - Ibm Datapower Security Specialist

Source CodeToronto, Canada
Full-time

IBM Data PowerExperience withIBM DataPower XML GatewayHands-on experience debugging IBM DataPower transactions.Experience SupportingIBM API ConnectExperience with Unix scripting & deployment au... Show more

 • Promoted

Sr Security Specialist - Vulnerability Manager, Tenable

CDW CanadaToronto, ON, CA
Full-time

At CDW, we make it happen, together.Trust, connection, and commitment are at the heart of how we work together to deliver for our customers.It’s why we’re coworkers, not just employees.Coworkers wh... Show more

 • Promoted

Rq09054 - Security Specialist - Threat Risk Assessment - Senior

Rubicon PathToronto, Canada
Full-time

RQ09054 - Security Specialist - Threat Risk Assessment - Senior Job Openings RQ09054 - Security Specialist - Threat Risk Assessment - SeniorAbout the job RQ09054 - Security Specialist - Threat Risk... Show more

 • Promoted

Security Engineer (IAM)

Sentrytoronto, on, Canada
Full-time

Software runs the world and the pace is faster than ever.Sentry helps developers fix errors and performance issues before users notice, so teams can spend less time firefighting and more time build... Show more

 • Promoted

Lead - Vulnerability Perimeter Protection Security Specialist

Covenant HRToronto
Full-time

Our esteemed client is a leading financial services organization operating in the banking sector, recognized for its commitment to innovation, cybersecurity excellence, and enterprise-scale technol... Show more

 • Promoted

Security Engineer I (Contract)

FunnelCakeToronto, Ontario, Canada
Full-time

At Varicent, We’re Not Just Transforming The Sales Performance Management (SPM) Market—we’re Redefining How Organizations Achieve Revenue Success.Our Cutting-edge SaaS Solutions Empower Revenue Lea... Show more

 • Promoted

Target Security Specialist - $20.2 An Hour

TargetToronto County, Canada
Full-time

Responsible for maintaining a safe and secure environment for guests and team members by preventing theft, responding to incidents, and enforcing security policies. Show more

 • Promoted

Security Specialist - $95,500 - $119,400 A Year

Beem Credit UnionToronto County, Canada
Full-time

Security Specialist to enhance threat detection, incident response, and cloud security using Microsoft Azure technologies, SIEM, and automation.Responsible for SOC capabilities and MSSP oversight. Show more