Senior Associate, Information Security

Publicis Groupe Holdings B.V

Toronto

On-site

CAD 100,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Publicis Groupe Holdings B.V is looking for a Senior Associate, Information Security in Toronto, Ontario. This role involves leading investigations of cyber security incidents, managing incident responses, and conducting complex forensic investigations. Candidates should have a minimum of 4 years of experience in a relevant security role and possess a strong understanding of cloud environments, EDR tools, and incident response frameworks. A salary range of $100,000-$120,000 is provided, depending on qualifications and experience.

Qualifications

  • Experience investigating and analyzing malware.
  • Minimum 4 years in a relevant security role.
  • Experience collecting and analyzing logs from cloud environments.

Responsibilities

  • Lead investigations and response to cyber security incidents.
  • Analyze compromised systems and coordinate data gathering.
  • Maintain knowledge of tools and practices in advanced persistent threats.

Skills

EDR Experience - CrowdStrike and/or SentinelOne
4+ years in forensics or incident response
Experience with Azure, AWS, GCP
System and application log analysis
Familiarity with MITRE ATT&CK
Incident response program management
Strong communication skills
Social engineering and phishing knowledge
Network and web application security
Scripting language proficiency (Python, Bash, PowerShell)

Job description

Overview

The Senior Associate, Information Security is part of a global team and is responsible for incident response of cyber security incidents that are associated with our businesses, clients, and vendors; is technically skilled and ensures incident containment, remediation, and closure. This individual will be expected to work closely with the legal, data privacy, business, and client teams. They should be comfortable with interacting with senior executives, including C-level staff.

Responsibilities
  • Incident Commander to lead investigation and response of cyber security incidents.
  • Analyze compromised/potentially compromised systems.
  • Coordinate evidence/data gathering and document security incident reports.
  • Manage, review, and present written and oral reports in a pertinent, concise, and accurate manner for distribution to management.
  • Maintain current knowledge of tools and best practices in advanced persistent threats, tools, techniques, procedures of attackers, forensics, and incident response.
  • Perform complex forensic investigations into system breaches, data leaks, and system weaknesses.
  • Provide technical expertise to staff on security incident monitoring, triage, response, threat & vulnerability management, and security analysis.
  • Provide strategic direction on types of Incident Management activities that will drive efficiencies across company, including automation with AI tools.
Qualifications
  • EDR Experience- CrowdStrike and/or SentinelOne with experience investigating and analyzing malware and other malicious activity.
  • 4 or more years of experience in an analytical role of either forensics analyst (Linux, Windows, or MacOS), threat analyst, incident response, SOC analyst, or security engineer/ consultant.
  • Experience with cloud environments such as: Azure, AWS, GCP – knowing how to collect and analyze logs from Guard Duty/ Defender and CloudTrail, etc.
  • Experience with system and application log and artifact collection and analysis (Windows, Linux, Mac, etc.).
  • Familiarity with the MITRE ATT&CK or related frameworks.
  • Experience developing and managing incident response programs with focus on efficiency through AI development.
  • Strong communication skills with confidence leading Incident Response calls with different stakeholders; followed by producing detailed incident reports.
  • Proficient in social engineering, phishing, and related fraud schemes.
  • Strong general knowledge of security concepts and expertise in network and web application security issues.
  • Experience with a scripting language such as Python, Bash, PowerShell, or other scripting language in an incident handling environment.
Work Schedule
  • Core work hours are Monday through Friday, 9:00 AM-5:00 PM. Must also be flexible and be available to work non-standard business hours upon request or as needed.
  • Must be available via cell phone for VIP support.
Travel
  • Local travel between sites may be required.
  • Occasional travel to sites outside the local area may be required.
Salary Range

Transparency matters to us. The salary range for this position is $100,000-$120,000 per year. Actual compensation within this range will be based on a variety of factors, including relevant experience, knowledge, skills, and applicable certifications. This range reflects what we reasonably expect to offer based on current market data.

Job description only reflects management’s assignment of essential functions. Management reserves the right to assign or reassign duties and responsibilities to this job at any time. This job description in no way states or implies that these are the only duties to be performed by the employee(s) currently in this position. Employee(s) will be required to follow any other job related instructions and to perform any other job-related duties requested by any person authorized to give instructions or assignments.

A review of this position has excluded the marginal functions of the position that are incidental to the performance of fundamental job duties. All duties and responsibilities are essential job functions and requirements and are subject to possible modification to reasonably accommodate individuals with disabilities. To perform this job successfully, the incumbent(s) will possess the skills, aptitudes, and abilities to perform each duty proficiently. Some requirements may exclude individuals who pose a direct threat or significant risk to the health or safety of themselves or others. The requirements listed in this document are the minimum levels of knowledge, skills, or abilities. This document does not create an employment contract, implied or otherwise, other than an "at-will" relationship.

Re:Sources USA is an Equal Opportunity / Affirmative Action employer. All qualified applicants to Re:Sources USA will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, or protected veteran status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Incident Response Senior Consultant (Remote, CAN)
Incident Response Senior Consultant (Remote, CAN)

CrowdStrike • Toronto

On-site
CAD 100,000 - 165,000
Competitive vacation and holidays
Parental and adoption leaves
Professional development opportunities
+2
Manager, Security Incident Response
Manager, Security Incident Response

TechAlliance of Southwestern Ontario, London Economic Development Corporation • Toronto

On-site
CAD 80,000 - 120,000
Information Security Operations Lead
Information Security Operations Lead

Jobtailor • Toronto

On-site
CAD 110,000 - 150,000
Incident Response Senior Consultant
Incident Response Senior Consultant

Jobgether • Canada

Remote
CAD 100,000 - 165,000
Remote work opportunity
Equity opportunities
Professional development
Sr. Analyst, Falcon Complete (Remote, CAN)
Sr. Analyst, Falcon Complete (Remote, CAN)

CrowdStrike • Winnipeg

On-site
CAD 125,000 - 200,000
Market leading compensation
Equity and benefits
Professional development
+1
Sr. Analyst, Falcon Complete (Remote, CAN)
Sr. Analyst, Falcon Complete (Remote, CAN)

CrowdStrike • Calgary

Hybrid
CAD 125,000 - 200,000
Market leading compensation
Wellness programs
Generous vacation and holidays
+4
Sr. Analyst, Falcon Complete (Remote, CAN)
Sr. Analyst, Falcon Complete (Remote, CAN)

CrowdStrike • Toronto

On-site
CAD 125,000 - 200,000
Market-leading pay
Wellness programs
Parental leave
+1
Sr. Analyst, Falcon Complete (Remote, CAN)
Sr. Analyst, Falcon Complete (Remote, CAN)

CrowdStrike • Halifax

On-site
CAD 125,000 - 200,000
Market-leading compensation
Wellness programs
Vacation and holidays
+5
Analyst I, Falcon Complete (Remote, PST/MST)
Analyst I, Falcon Complete (Remote, PST/MST)

CrowdStrike • Vancouver

Hybrid
CAD 90,000 - 135,000
Market-leading compensation
Wellness programs
Generous vacation
+5
Sr. Analyst, Falcon Complete (Remote, CAN)
Sr. Analyst, Falcon Complete (Remote, CAN)

CrowdStrike • Vancouver

On-site
CAD 125,000 - 200,000
Competitive compensation
Wellness programs
Paid time off
+5