Specialist, Threat Response
at Teck
Vancouver, BC, Canada -
Start Date | Expiry Date | Salary | Posted On | Experience | Skills | Telecommute | Sponsor Visa |
---|---|---|---|---|---|---|---|
Immediate | 28 Feb, 2025 | USD 103000 Annual | 29 Jan, 2025 | N/A | Powershell,Security Tools,Python,Risk,Incident Response,Threat Management,Writing | No | No |
Required Visa Status:
Citizen | GC |
US Citizen | Student Visa |
H1B | CPT |
OPT | H4 Spouse of H1B |
GC Green Card |
Employment Type:
Full Time | Part Time |
Permanent | Independent - 1099 |
Contract – W2 | C2H Independent |
C2H W2 | Contract – Corp 2 Corp |
Contract to Hire – Corp 2 Corp |
Description:
QUALIFICATIONS
- 5+ years of experience in cybersecurity with a focus on incident response and threat management
- Certified Information Systems Security Professional (CISSP) and Certified Information Security Manager (CISM) or equivalent certifications
- Proven track record in security operations automation
- Experience in crafting and implementing automated incident response strategies
- Additional relevant certifications (e.g., CEH, GIAC, GCIH) are a plus
- Proficiency in incident response and security automation platforms (e.g., SOAR, XDR, Cortex XSOAR, Splunk Phantom)
- Strong coding and scripting skills in Python, PowerShell, or similar languages
- Experience with automating incident response tasks and processes
- Understanding of APIs and integration techniques for security tools
- Excellent analytical and problem-solving skills
- Strong leadership and team management capabilities
- Embodied Teck values in daily activities by being responsible and courageous, respectful and inclusive, alongside humble and driven
- You are aware of, have a desire to, with knowledge in, and the ability to increase maturity by building on context, manage and assess risk and trade-offs, and to standardize process through writing and review
- An emphasis and desire to keep Teck Safe by anticipating needs
- Demonstrated personal accountability, radical transparency and a growth mindset
Responsibilities:
- Be a courageous safety leader, adhere to and sponsor safety and environmental rules and procedures
- Champion the 3 lines of defense model for risk management and act as a 2nd line of defense facilitator regularly interacting with the 1st line of defense
- Develop and implement automated incident response strategies and playbooks using SOAR platforms and custom scripts
- Coordinate and lead response efforts during security incidents, ensuring effective containment, eradication, and recovery
- Integrate incident response tools with other security platforms to enable seamless, automated threat identification and response
- Conduct regular testing and validation of automated incident response processes
- Collaborate with the threat intelligence and detection teams to ensure a comprehensive and coordinated security approach
- Ensure timely and accurate reporting on threat response activities to senior management
REQUIREMENT SUMMARY
Min:N/AMax:5.0 year(s)
Information Technology/IT
IT Software - Network Administration / Security
Information Technology
Graduate
Proficient
1
Vancouver, BC, Canada