About the Role
Join the Partner Solutions (PSI) team as a Security Advisor Specialist in incident management. We are a passionate team driven by innovation and a desire to push boundaries in a dynamic environment that supports learning and professional growth.
Responsibilities
- Ensure optimal triage of security alerts while supporting the escalation and eradication of cybersecurity incidents within established timelines.
- Identify anomalies, investigate advanced cyber events, and provide third-level support for investigations and confirmed incidents.
- Participate in the cybersecurity incident lifecycle, from preparation through post-mortem.
- Ensure optimal coverage by reviewing detection rules, recommending improvements, and proposing new rules.
- Contribute to the creation, enhancement, review, and maintenance of documentation.
- Collaborate with various internal teams on projects and initiatives as a subject matter expert (SME).
- Respond to user requests related to cybersecurity.
- Participate in the 24/7 support rotation.
Requirements
- Strong understanding of log sources (EDR, SIEM, NDR, DNS, email, web proxy, identity (AD/Azure AD)).
- Strong understanding of query languages: CQL, KQL, SQL; correlation and pivoting techniques.
- Strong understanding of detection engineering: rule writing, ATT&CK mapping.
- Understanding of phishing/social engineering techniques, initial access vectors, privilege escalation, lateral movement, and exfiltration.
- Five (5) to eight (8) years of experience in the information security (cybersecurity) field.
- Expert knowledge of security incident management principles.
- Excellent analytical, synthesis, and problem-solving skills.
- Outstanding team spirit.
- Initiative-taking and self-directed.
- Strong attention to detail and excellent communication skills.
- Ability to mentor team members and transfer knowledge.
- Demonstrated commitment to training, self-learning, and maintaining cybersecurity technical skills.
- Authorization to work in Canada is required.
Skills
- EDR
- SIEM
- NDR
- DNS
- Email security
- Web proxy
- Active Directory (AD)
- Azure AD
- CQL
- KQL
- SQL
- Detection engineering
- Rule writing
- ATT&CK mapping
- Phishing
- Social engineering
- Incident management
Location
- Canada
Work Type
- Hybrid
- 24/7 support rotation
Experience Level
- 5-8 years in information security (cybersecurity)
- Expert knowledge in security incident management
Education Level
- Bachelor’s degree in Information Technology, Systems Security Management, or other relevant experience.
Salary/Compensations
- 118,700 - 145,100 (for a 35-hour workweek)
- Annual bonus target of 15% with potential payout up to double the target
- Share plan & other savings: up to 12% of salary or more
Benefits
- Flexible work arrangements
- Hybrid work model
- Possibility to purchase up to 5 extra days off per year
- Telemedicine
- Wellness account
- Share plan
- Defined benefit pension plan offering guaranteed income for life
About the Company
- Our employees are at the heart of everything we do. Together, we help people, businesses, and society prosper in good times and be resilient in bad times.
- Our employee promise represents Intact’s commitment to you in exchange for living our Values, striving to do your best work, being open to change and investing in your career.
- In return, we promise to provide support, opportunities and performance-led financial rewards at a workplace where you can shape the future, win as a team and grow with us.
- Pay at Intact is about much more than just salary.
- As part of our commitment to Win As A Team, we share our success with employees through our annual bonus plan and Employee Share Purchase Plan (ESPP) – with Intact matching 50% of your net shares.
- Our pension offerings provide flexibility and long-term security for our employees beyond their careers.
- We acknowledge that we work, meet and travel across the land currently called Canada, originally inhabited by First Nations, Metis and Inuit people.
Equal Opportunity
- We are an equal opportunity employer.
- At Intact, our Value of respect is founded on seeing diversity as a strength. We strive to create an accessible workplace where employees feel valued, included and encouraged to share their unique perspectives.
- We encourage applications from individuals who are members of equity-deserving groups, including but not limited to women, Indigenous peoples, persons with disabilities, Black people, and members of the 2SLGBTQI+ community.
- We have policies to ensure equal access and participation for people with disabilities, including providing workplace adjustments (accommodations).
- If we can provide a specific adjustment to make the recruitment process more accessible for you, please let us know when we reach out about a job opportunity. We’ll work with you to meet your needs.
