Senior Specialist, Incident Response (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Specialist, Incident Response (Cybersecurity): Investigating and managing cybersecurity incidents across global environments with an accent on digital forensics and root cause analysis. Focus on evidence preservation, containment of security threats, and developing automation for investigative efficiency.
Location: Montreal, Canada (Hybrid: up to 2 days/week from home)
Company
provides technology and communication innovations to the global air travel industry, powering airports, airlines, and borders worldwide.
What you will do
- Manage the full incident response lifecycle from analysis and containment to recovery and post-incident review.
- Perform digital forensic investigations across endpoints, servers, cloud, network, and SaaS environments.
- Collaborate with SOC, CSIRT, and IT teams to coordinate remediation efforts and produce technical reports.
- Investigate insider threats, policy violations, and data loss incidents.
- Develop automation scripts and tools using Python or PowerShell to enhance evidence collection and workflows.
- Improve forensic readiness, logging, and operational processes across the enterprise environment.
Requirements
- Proven experience in digital forensics, incident response, and cyber investigations within large enterprise environments.
- Hands-on expertise with EDR/XDR platforms, SIEM solutions, and security monitoring technologies.
- Proficiency in Python and/or PowerShell, with working knowledge of KQL.
- Solid understanding of the MITRE ATT&CK framework and threat actor TTPs.
- Location: Must be based in Montreal, Canada.
Nice to have
- Professional certifications such as GCFA, GNFA, GCIH, GREM, GCFE, CISSP, or OSCP.
- Experience with cloud security investigations across Azure, AWS, or GCP.
- Proficiency with tools like FTK, EnCase, Velociraptor, KAPE, Autopsy, or Volatility.
- Experience in aviation, transportation, critical infrastructure, or operational technology (OT) environments.
Culture & Benefits
- Flex Week: Work from home up to 2 days per week.
- Flex Day: Flexible workday schedules to suit your life and plans.
- Flex Location: Ability to work from any location in the world for up to 30 days a year.
- Professional development via LinkedIn Learning and internal training programs.
- Employee wellbeing support through 24/7 EAP and Champion Health platform.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →