Visionpool Business Services is hiring a Senior Cyber Security Specialist who will be responsible for supporting the overall cyber security posture through the implementation and monitoring of advanced security controls across premise and cloud environments. This position will ensure compliance with industry-specific security frameworks and standards while proactively identifying and mitigating cyber security risks.
THIS OPPORTUNITY IS LOCATED ON SITE IN REGINA, SK.
RESPONSIBILITIES:
- Incident Reports & Analysis – Conduct detailed security incident investigations and prepare reports, including post-incident lessons learned documentation for cyber security issues.
- Vulnerability Assessment Reports – Perform regular vulnerability scans and track remediation efforts using Tenable One, communicating risk levels and progress to stakeholders.
- Security Posture Metrics – Generate periodic security posture and compliance reports, including Azure Secure Score Dashboards, to inform management of current security status and improvements.
- Compliance Documentation – Maintain documentation demonstrating the alignment of security controls with frameworks such as NIST, CSF, ISO 27001, and applicable CSA standards for audits and compliance.
- Updated Security Artifacts – Keep security policy documents, standard operating procedures, network diagrams, and system security plans current, especially for nuclear-related projects and systems.
QUALIFICATIONS:
- University Degree in Computer Science, Computer Engineering, or Information Security.
- Minimum 5 years of hands-on experience in IT Security and Cyber Security operations, including security monitoring and incident response.
- Relevant Professional Security Certifications such as CISSP, CISM, GIAC, or Microsoft Certified Azure Security Engineer Associate.
- Experience with cloud and enterprise security technologies, specifically Microsoft Azure, Microsoft Defender Suite, Microsoft Sentinel, and vulnerability management tools like Tenable One.
- Ability to configure and utilize these tools for threat detection, analysis, and automated response.
- Proficiency in Powershell, JSON, Kusto Query, and Logic Apps.
- Knowledge of industry cyber security frameworks and standards such as NIST, CSF, ISO/IEC 27001/27002, or CSA standards.
- Understanding of incident response methodologies and best practices for managing cyber security incidents.
- Excellent analytical and problem-solving skills to assess complex systems for security risks.
- Ability to analyze logs, alerts, and forensic data from various sources to identify and resolve security issues.
- Must be eligible for and able to maintain a Government of Canada Level II (Secret) Security Clearance.
ASSET:
- Experience working in highly regulated or critical infrastructure environments such as energy utilities or the nuclear industry.