Senior Infrastructure Security Specialist

Jobtailor

Toronto

On-site

CAD 110,000 - 160,000

Full time

9 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Jobtailor is seeking a senior cybersecurity professional to safeguard and improve the company's infrastructure across on-premises and cloud environments. You will own vulnerability management, SIEM operations, endpoint security, and incident response, coordinating with IT, engineering and operations.

Key responsibilities include securing AWS/Azure environments, implementing CIS/NIST controls, and communicating risks to both technical and non-technical stakeholders.

Qualifications

  • 7+ years of progressive cybersecurity experience with hands-on infrastructure security roles.
  • Hands-on knowledge across Windows, Linux, networking, cloud, and enterprise IT environments.
  • Experience operating enterprise vulnerability management platforms, including scanning, analysis, prioritization, and remediation.
  • Experience with SIEM and security monitoring, including log analysis, detection use cases, and monitoring.
  • Experience with endpoint security and EDR/XDR; alert investigation and containment.
  • Strong understanding of network security concepts including firewalls, segmentation, IDS/IPS, secure protocols.
  • Experience supporting cybersecurity incident investigations and remediation.
  • Experience securing AWS and/or Microsoft Azure.
  • Knowledge of infrastructure and OS hardening; secure configuration practices.
  • Knowledge of NIST CSF, SP 800-171, SP 800-53, and CIS Controls/Benchmarks.
  • Understanding of IAM, privileged access, authentication, authorization, and least-privilege principles.
  • Ability to communicate risks and recommendations to technical and non-technical stakeholders.
  • Strong problem-solving, ownership, and accountability.
  • Excellent organizational skills and multi-priority management.
  • Ability to work independently while collaborating across teams.
  • Ability to obtain Government of Canada security clearance.

Responsibilities

  • Protect Kepler's corporate, cloud, and operational infrastructure.
  • Own, operate, and improve vulnerability management, SIEM, endpoint security, hardening, and incident response capabilities.
  • Provide security engineering for infrastructure, cloud environments, networks, systems, and related technologies.
  • Review architectures, identify security risks, and recommend practical controls and mitigation measures.
  • Assess and improve controls across networks, servers, operating systems, cloud infrastructure, databases, firewalls, identity systems, and other infrastructure technologies.
  • Develop and maintain secure configuration and system-hardening standards based on CIS Benchmarks and NIST guidance.
  • Integrate security requirements into infrastructure design, implementation, and operational processes.
  • Manage vulnerability scanning, findings analysis, risk prioritization, remediation coordination, metrics, and vulnerability management technologies.
  • Own SIEM and monitoring capabilities, onboard log sources, develop and tune detection use cases, monitor visibility, and coordinate with MDR/SOC providers.
  • Own endpoint security and EDR/XDR capabilities; investigate alerts and support containment, remediation, and recovery.
  • Contribute to cybersecurity incident investigations, containment, remediation, recovery, evidence collection, and post-incident reviews.
  • Assess and secure AWS and/or Microsoft Azure environments, including IAM, logging, network security, and automation opportunities.
  • Support Government of Canada and regulated-environment security requirements, assessments, audits, inspections, certification activities, remediation, and control documentation.
  • Report to the VP, Information Security & CISO and collaborate with IT, Engineering, Operations, Security, Facilities, program teams, and external providers.

Skills

Cybersecurity expertise
Vulnerability management
SIEM & monitoring
Cloud security (AWS/Azure)
Incident response & investigations
Network security concepts
IAM & Privileged Access
OS hardening & secure configurations
NIST CSF / 800-171 / 800-53 / CIS
Problem-solving & ownership

Tools

EDR/XDR tools
Vulnerability management platforms
SIEM platforms / Log analysis

Job description

  • Protect Kepler's corporate, cloud, and operational infrastructure.
  • Own, operate, and continuously improve vulnerability management, security monitoring and SIEM, endpoint security, infrastructure hardening, and incident response capabilities.
  • Provide security engineering expertise for infrastructure, cloud environments, networks, systems, and related technologies.
  • Review architectures, identify security risks, and recommend practical controls and mitigation measures.
  • Assess and improve controls across networks, servers, operating systems, cloud infrastructure, databases, firewalls, identity systems, and other infrastructure technologies.
  • Develop and maintain secure configuration and system-hardening standards based on CIS Benchmarks and NIST guidance.
  • Integrate security requirements into infrastructure design, implementation, and operational processes.
  • Manage vulnerability scanning, findings analysis, risk prioritization, remediation coordination, metrics, and vulnerability management technologies.
  • Own SIEM and monitoring capabilities, onboard log sources, develop and tune detection use cases, monitor visibility, and coordinate with MDR/SOC providers.
  • Own endpoint security and EDR/XDR capabilities; investigate alerts and support containment, remediation, and recovery.
  • Contribute to cybersecurity incident investigations, containment, remediation, recovery, evidence collection, and post-incident reviews.
  • Assess and secure AWS and/or Microsoft Azure environments, including IAM, logging, network security, and automation opportunities.
  • Support Government of Canada and regulated-environment security requirements, assessments, audits, inspections, certification activities, remediation, and control documentation.
  • Report to the VP, Information Security & CISO and collaborate with IT, Engineering, Operations, Security, Facilities, program teams, and external providers.
Requirements
  • 7+ years of progressive experience in cybersecurity, with demonstrated hands-on experience in infrastructure security, security engineering, security operations, or a related technical security role.
  • Strong hands-on knowledge of infrastructure security across Windows, Linux, networking, cloud, and enterprise IT environments.
  • Demonstrated experience operating or supporting enterprise vulnerability management platforms, including vulnerability scanning, analysis, prioritization, and remediation.
  • Experience with SIEM and security monitoring technologies, including log analysis, security investigations, detection use cases, and monitoring.
  • Experience with endpoint security and EDR/XDR technologies, including alert investigation, containment, and security policy management.
  • Strong understanding of network security concepts including firewalls, network segmentation, intrusion detection/prevention, secure protocols, and network monitoring.
  • Experience supporting cybersecurity incident investigations and remediation.
  • Experience securing cloud environments such as AWS and/or Microsoft Azure.
  • Knowledge of infrastructure and operating-system hardening and secure configuration practices.
  • Knowledge of NIST Cybersecurity Framework (CSF), NIST SP 800-171, NIST SP 800-53, and CIS Controls/Benchmarks.
  • Understanding of identity and access management, privileged access, authentication, authorization, and least-privilege principles.
  • Ability to analyze technical security risks and communicate findings and recommendations to technical and non-technical stakeholders.
  • Strong problem-solving skills with demonstrated ownership and accountability.
  • Strong organizational skills and ability to manage multiple priorities in a fast-paced environment.
  • Ability to work independently while collaborating effectively across Security, IT, Engineering, Operations, and other teams.
  • Ability to obtain and maintain a Government of Canada security clearance appropriate to the role.
Core Competencies

Demonstrates extensive expertise in cybersecurity, focusing on infrastructure security, vulnerability management, and incident response. Proficient in securing cloud environments, implementing security controls, and collaborating across teams to enhance security posture.

Highest-signal resume keywords
  • Cybersecurity Expertise
  • Vulnerability Management
  • SIEM Technologies
  • Cloud Security (AWS/Azure)
  • Incident Response
ATS Optimization Keywords
Hard Skills
  • Infrastructure Security
  • Security Engineering
  • Vulnerability Scanning
  • Endpoint Security
  • Network Security
  • Operating System Hardening
  • Secure Configuration Practices
  • NIST Cybersecurity Framework
  • CIS Controls/Benchmarks
  • Identity and Access Management
Soft Skills
  • Problem-Solving
  • Organizational Skills
  • Collaboration
Industry Keywords
  • Government of Canada Security Clearance
  • Cybersecurity Incident Investigations
  • Risk Analysis
  • Security Policy Management
  • Technical Security Risks
Tools & Technologies
  • EDR/XDR Technologies
  • Security Monitoring Technologies
  • SIEM
  • Cloud Infrastructure
  • Vulnerability Management Platforms
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Director, IT & Cybersecurity
Director, IT & Cybersecurity

Jobtailor • Toronto

On-site
CAD 150,000 - 190,000
Senior Infrastructure Security Specialist
Senior Infrastructure Security Specialist

Kepler • Toronto

Hybrid
CAD 140,000 - 190,000
Competitive compensation with equity
Health, dental, and vision insurance—+
Unlimited vacation and parental leave
+5
SOC Cybersecurity Analyst – Permanent Position
SOC Cybersecurity Analyst – Permanent Position

Jobtailor • Montreal (administrative region)

On-site
CAD 70,000 - 90,000
RQ09515 - Technology Architect - Senior
RQ09515 - Technology Architect - Senior

Rubicon Path • Toronto

On-site
CAD 120,000 - 150,000
Intermediate Security Specialist
Intermediate Security Specialist

Randstad Canada • Toronto

On-site
CAD 90,000 - 120,000
IT Security Analyst II
IT Security Analyst II

VC3 • Canada

On-site
USD 85,000 - 120,000
401K/RRSP company matching
Comprehensive benefits
IT Security Analyst II
IT Security Analyst II

VC3, Inc. • Canada

Hybrid
CAD 90,000 - 120,000
Senior Security Specialist - Cloud (Global Security)
Senior Security Specialist - Cloud (Global Security)

Jobgether • Toronto

Hybrid
CAD 120,000 - 180,000
Bonuses
Stock options
Training budget
+2
Security Analyst
Security Analyst

EIZIE • West Hawk Lake

On-site
CAD 80,000 - 110,000
Competitive salary
Health and dental benefits
Professional development
+5
RQ09054 - Security Specialist - Threat Risk Assessment - Senior
RQ09054 - Security Specialist - Threat Risk Assessment - Senior

Rubicon Path • Toronto

On-site
CAD 85,000 - 110,000