Senior Security Detection Engineer providing expertise for RBC's Global Cyber Security. Develops automation for security use cases to enhance detection and response capabilities.
Responsibilities
Provide global accountability to provide technical and subject matter expertise supporting cyber uses cases developed from security systems and infrastructure for security monitoring
Work with RBC technology and/or application partners (Cybersecurity, Technology Infrastructure, SOC) to develop and strengthen use cases for continuous security monitoring
Develop runbooks for those use cases that align with security operations processes and streamline the incident investigation and response tasks
Work with Defensive Threat Operations Correlation Engineering to facilitate log ingestion and use case development in our SIEM platforms
Periodically review use case library, perform attestation on existing use cases, participate in tuning discussions/activities and provide improvement recommendations where necessary/possible
Develop and maintain lines of communication with various security groups, Security Operations Centre leadership and technology stakeholders
Develop processes to support a maturing program
Provide operational metrics and reports as needed
Requirements
2 to 5 years of industry experience
Experience in cloud environments (AWS, Azure, GCP, OCP)
Intermediate experience with Python
Experience with building detections in SIEM
Experience with automation in SOAR
Educational background in IT, Engineering, Cybersecurity and/or equivalent relevant experience
Demonstrated technical leadership ability
In-depth understanding of Security Operations and Security Technologies, with previous experience working in a SOC environment
Understanding of common exploitation techniques and awareness of new threats
Strong analytical and complex problem-solving skills
Expert understanding of SIEM technology and operations
Strong Networking and Enterprise IT Infrastructure knowledge with TCP/IP packet level knowledge
Certifications in information security (GCIH, GCSA, GPCS, GCTD, GCFR)
Certifications in cloud platforms (AWS, Azure, GCP, or OCP)
Experience in working within a large, global financial services company
A good understanding of modern, cloud centric architectures and DevOps principles.
Benefits
A comprehensive Total Rewards Program including bonuses and flexible benefits
Competitive compensation
Leaders who support your development through coaching and managing opportunities
Ability to make a difference and lasting impact
Work in a dynamic, collaborative, progressive, and high-performing team
A world-class training program in financial services
Flexible work/life balance options
Opportunities to do challenging work
Job title
Senior Security Detection Engineer – Global Security
Agent de sécurité humanitaire coordonnant des programmes de sécurité et d'accès en Colombie pour l'IRC, avec un focus sur le soutien aux communautés vulnérables.
Data Security Specialist at MUFG enabling secure use of data across emerging technologies. Managing data security posture and collaborating with stakeholders on data protection strategies.
Principal Product Security Engineer at MYOB using skills to help businesses thrive and shape the future of work. Collaborating with team members to enhance security and customer experience.
Consultant for Network Security Solutions focusing on project management and customer workshops in network security. Engaging with high - tech security solutions for international clients.
IT Consultant specializing in Microsoft 365 and Azure Security solutions with project and client management. Responsibilities include technical workshops, migration planning, and system documentation.
Security Engineer managing security applications and systems for client support at Leonardo. Collaborating on detection and prevention measures in cybersecurity across multiple locations.
Product Infrastructure Security Engineer securing Palantir's data - driven software products against advanced threats. Collaborating with teams to ensure secure architecture and implementation.
Product Infrastructure Security Engineer working at Palantir on product security for critical platforms. Collaborating with engineering teams to embed security in every layer of the product.
Product Infrastructure Security Engineer enhancing security in Palantir's platforms and software, collaborating with engineering on secure design practices.
Product Infrastructure Security Engineer ensuring security at every layer of Palantir's data - driven software solutions. Collaborating with teams to identify vulnerabilities and improve product security.