Best part time jobs in Montreal!

Security Consultant -jnr & snr – contract and full time


This is a Contract position in Montréal, QC posted September 16, 2017.

Job Description

The job description is only for one role. There are many open. If you have experience with SIEM’s and Security related troubleshooting etc then we would like to hear from you


• Immediately reporting to the Lead Engineer, Risk Operations Center


• Assist in risk-driven and business-sensitive interpretation of findings and data captured by the Secure Operations Centre teams

• Coordinate with customer advisory, operational teams and management and subject matter experts to ensure operational alignment to established corporate goals and customer specific service requirements/objectives

• Function as an agent of delivery for all Information/Cyber Security, control and compliance related activities specific to SOC activities. Examples include, but will not be limited to:

o As needed, participate in system specific investigations, including low level analysis and forensic/root cause determination related to threats and indicators of compromise

o Adapting Cyber Security operational processes and procedures to accommodate new/evolving threats, risks and changes to the organizations security posture o Work within the confines of all established and evolving customer operational processes to facilitate change, respond to incidents and investigate problems

o Conduct structured organizational risk assessments based on well understood and universally adopted risk management methodologies. May include Threat Risk Assessments; Operational Risk Assessments; etc.

o Assist other customer operational teams in considering and structuring service management enabled practices to enhance customer cyber resiliency and reduce operational overhead

o Conduct system exposure profiling (threat hunting) through the use of technologies which conduct vulnerability scanning, configuration analysis and measurement.

o Respond as the final point of escalation in all operational cyber security specific incidents and root cause investigations

o Deliver concise, risk-centric deliverables (documentation, processes and supporting artifacts, operational run books, etc.) that meet the demands of customer agreements. This includes creation and delivery of reports to assist in appropriately changing the direction of a customer’s Cyber Security Posture.

• Acquire, maintain, and expand industry and discipline-specific expertise for key focus areas including IT Operations, Information Security, Information Security Compliance, etc. o Stay aware and abreast of changes in the IT industry and understand the relationship between these changes and the risk posed to business

• Assist in providing other internal teams education and updates specific to changes in the risk landscape of the customers and the industry 3. Accountable

• Successful execution of all operational processes enacted within the SOC

• Achievement of associated service levels objectives

• Maintenance of the relationship with all customer operational, security and governance teams

• Participating in Continuous Service Improvement and service modification activities within the SOC

• Determine how technology specific changes will further enhance the capabilities of the Cyber Security Operations Centre 4. Consulted

• The Lead Investigator will be directly consulted, as needed, for reasons including, but are not limited to:

o Security specific service design

o Service alterations that will impact the SOC

o Process review, re-engineering, and continuous improvement where other operational teams may impact the SOC.

o Internal risk measurements where the customer must substantiate and qualify its control and posture

o Changes, adaptations and execution of customer Cyber Security Roadmap, including policy, measurements for governance and alterations to the state of a given customers business risk profile

5. Informed

• Any changes to a project where the project outcome or expectation will result in increased or decreased

operational burden for the SOC

• All changes to the security service delivery portfolio, including those enacted by Management

• All changes to the organization that impact how Cyber Security specific services will be delivered

• Any and all changes to business process where operational specific deliverables, service levels, KPI’s and objectives are impacted