Information Security Engineer managing endpoint security and threat intelligence systems for Finning Canada. Collaborating with SOC and IT teams to enhance cybersecurity posture and incident response.
Responsibilities
Manage Endpoint Security Solutions: Oversee and maintain endpoint security tools such as Endpoint Detection and Response (EDR), antivirus, and Data Loss Prevention (DLP) systems
Manage the lifecycle, configuration, and integration health of external threat intelligence tooling to enhance detection, response, and strategic risk awareness
Policy Development and Implementation: Develop and enforce endpoint security policies and configurations to ensure compliance with organizational standards
Fine-tune EDR Detections and Rules: Create, update, and optimize EDR rules, alerts, and dashboards to ensure efficiency minimize false positive and benign positive rates
Collaboration: Work closely with IT and other security teams to ensure endpoint security measures are integrated and effective
Documentation and Reporting: Maintain detailed documentation of endpoint security configurations, incidents, and response actions
Generate reports on security metrics and trends
Platform Health: Work closely with peers to audit, co-ordinate remediation, and report on overall platform health
Incident Response Escalation: Collaborate on investigating security incidents when required
Data Enrichment: Identify opportunities to ensure incidents and detections are populated with contextual information required to make effective decisions during the incident response process
Requirements
Bachelor's degree in Cybersecurity, Information Technology, or a related field
At least 3 years of experience with endpoint security as well as threat intelligence tools and technologies
Strong understanding of endpoint protection, detection, and response
Proficiency in incident response and forensic analysis
Knowledge of operating systems (Windows, Linux, macOS) and their security features
Relevant certifications such as OSCP, GCIH, or CompTIA CySA+
EDR solutions (e.g., Defender, CrowdStrike, Microsoft Sentinel), antivirus software, DLP systems
Director of Security & Infrastructure leading infrastructure and security operations at a Montreal tech company. Ensuring reliability, scalability, and security across product teams.
IT Security Advisor role involves protecting IT assets and advising on security measures. Collaborates on compliance and incident management initiatives to ensure safety and integrity.
Loss Prevention Store Security Agent at TJX ensuring safety and security in retail stores. Assist with theft prevention, customer service, and surveillance operations.
Information Security Engineer overseeing security tools and policies for a global remote company. Lead efforts in enhancing security posture and compliance in a fast - growing organization.
Senior Information Security Advisor ensuring business priorities align with information security requirements and fostering a strong security culture. Strategic partner supporting executives in informed decision - making.
Information Security Officer responsible for safeguarding information assets in Alberta. Joining the Government's Cyber Threat Hunting Team in an important role focused on cybersecurity.
Conseiller en sécurité financière abordant la vente d'assurance à des clients et membres. Contribuer à la satisfaction client et à l'analyse de besoins en solutions personnalisées.
Senior Consultant leading cloud security assessments and architecture reviews across Azure, AWS, and GCP. Advising clients on data protection, identity - centric controls, and security operations.