Information Security Specialist handling cyber threats and incidents for TD's Cyber Security Incident Response Team. Leading investigations and enhancing security posture across the organization.
Responsibilities
Detect, investigate, and respond to cyber threats targeting TD
Work within the Cyber Security Incident Response Team (CSIRT)
Lead in complex investigations and develop detection and hunting techniques
Strengthen incident response capabilities
Identify and mitigate cyber threats
Collaborate with stakeholders to reduce risk and enhance security posture
Guide partners on technology throughout incidents
Lead or contribute to containment and recovery plans for Cybersecurity Incidents
Ensure technology, processes, and governance are in place to monitor current and emerging threats
Develop operational enhancements for Cybersecurity including alerting, monitoring, and detection
Adhere to internal policies and regulatory guidelines
Influence behavior to reduce risk and foster a strong technology risk management culture
Requirements
University degree or equivalent hands-on work experience
7+ years of hands-on relevant experience
Expert knowledge of Information Technology (IT) security and Incident Management practices across multiple cybersecurity domains
Strong hands-on experience with traditional incidents response detection tools such as SIEM, EDR, XDR, Firewall, WAF, email proxies, NIDS, and equivalent
Advanced hands-on experience in all modern Operating Systems (Window/NIX/Cloud/Mobile)
Advanced scripting skills, can read data structures and software binary code
Advanced knowledge of Enterprise, technology controls, cybersecurity, and cyber risk issues
Strong communications, leadership and people building skills within Information Technology and/or Cybersecurity
A demonstrated ability to participate in complex, comprehensive and large projects
Must be eligible for employment under regulatory standards applicable to the position
SOC analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Investigating escalated alerts and improving 24×7 security operations.
SOC cybersecurity analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Improving 24×7 detection, investigation, and incident response capabilities.
Senior Security Operations Engineer monitoring incidents and leading forensics for Samsara’s IoT - connected operations platform. Building security automation and supporting insider - threat investigations.
Senior SOC analyst leading threat detection, investigations, and incident response for Financeit, a Canadian point - of - sale financing provider. Building its new SOC’s automation, AI - threat coverage, and operational standards.
Security Operations Engineer securing Tailscale’s networking platform through device, identity, access, and vulnerability management. Supporting distributed teams and automating security operations across core business systems.