Cyber Security Specialist

3 weeks ago


Montréal, Canada SSENSE Full time

Company Description

SSENSE (pronounced [es-uhns]) is a global technology platform operating at the intersection of culture, community, and commerce. Headquartered in Montreal, it features a mix of established and emerging luxury brands across womenswear, menswear, kidswear, and Everything Else.

SSENSE has garnered critical acclaim as both an e-commerce engine and a producer of cultural content, generating an average of 100 million monthly page views. Approximately 80% of its audience is between the ages of 18 to 40. It is privately held and has achieved high double digit annual growth and profitability since its inception.

**Job Description**:
SSENSE is looking for a Red Team Cyber Security Specialist to join the Information Security team. They will work seamlessly within the Information Security team and with our Platform and Engineering teams to drive all aspects of Security for SSENSE. This team is responsible for challenging and improving SSENSE’s overall cybersecurity capabilities by driving Red Team assessments and automated emulation of adversary techniques.

Reporting to the Enterprise Security Architect, the Red Team Cyber Security Specialist is responsible for supporting SSENSE IT product and engineering teams in helping to identify, manage remediation, and mitigate vulnerabilities in SSENSE’s environment. You'll act as an advisor to help build standards, policies, and set improved guidelines for SSENSE to ensure the reliability, availability, and security of SSENSE, its customers and its partners.

**Security Testing/ Red Team activities (50%)**:

- Setup and drive an automated internal testing simulation to spot gaps in our detection solutions.
- Build up and operate a lab for testing purposes incl. hacking workbench.
- Run and explore new hacking tools and frameworks in our environment.
- Perform end to end Red Team engagements including follow-up activities (e.g. lessons learned, result presentations to management and peers).
- Continuously improve our defensive capabilities, e.g. by running adversary simulations, tabletop exercises.
- Perform testing and analysis of new exploits/PoCs affecting products in our environment.
- Enable and guide new team members.

**Security project support (35%)**:

- Co-develop and initiate security improvement activities and initiatives related to internal projects
- Perform security evaluations and assessments of projects and third parties
- Provide suggestions and input into security policies and standards for SSENSE
- Monitor relevant security dashboards and tools for areas of concern and document and manage risk mitigation/acceptance accordingly

**Security operations support (15%)**:

- Provide hands-on support to our internal Security Incident Management team in case of high-severity incidents.
- Support evaluation of new Information Security Operations solutions
- Support in managing and operating enterprise security tools
- Identify, recommend, and coordinate improvements and enhancements to network and system security
- Detect and assess threats, incidents, and determine potential impact and mitigations

**Qualifications**:
**Requirements**:

- BA/BS or MS Degree in Computer Science or 5+ years of industry experience.
- A minimum of **3 years hands-on working experience** in Red Team operations and/or network Penetration Testing in an enterprise, military or law enforcement environment.
- In-depth security knowledge on one of the following: Active Directory, AWS, Google Cloud Infrastructure.
- Hands-on experience with well known Red Team tools like Cobalt Strike, Metasploit, Bloodhound, Mythic etc.
- Proficiency with at least one scripting language (e.g. Python, Bash, Powershell).
- Certification preferred:

- Security+
- Offensive Security Certifications (e.g. OSCP, OSCE, OSED)
- SANS GDAT, GXPN, GPEN

**SKILLS**
- Ability to communicate technical concepts and complexity to all types of audiences
- Strong Incident management expertise
- Knowledge on investigation and forensics
- Strong collaboration and influencing skills
- High work ethic and results-oriented
- High sense of accountability and ownership
- Solution-oriented mindset and can-do attitude to overcome challenges
- Team player with superior communication skills
- Ability to thrive in a fast-paced environment and master frequently changing technologies and techniques

Additional Information
**WORLD CLASS TECHNOLOGY**

Technology is at the core of everything we do at SSENSE. Driven by an engineering mindset and a problem-solving attitude, we blend fashion with technology to deliver an unparalleled experience to our customers as we build seamless, custom solutions to deliver the SSENSE offering.

**WORLD CLASS TEAM**
The SSENSE tech team is responsible for an international headless commerce platform. Working in an agile environment, our squads are made up of experienced innovators in Product Management, QA, Design, DevOps, Software Development, Machine Learning, Data Engineering, and Se



  • Montréal, Canada Business Development Bank of Canada Full time

    We are banking at another level. Choosing BDC as your employer means working in a healthy, inclusive, and skilled workplace that puts forward the best conditions to bring together unique teams where employees are empowered to act. It also means being at the centre of ambitious economic and financial projects to see further and to do things differently, to...


  • Montréal, QC, Canada AtkinsRéalis Full time

    Spécialiste en cyber sécurité (ICS/OT) Vous êtes à la recherche d’une opportunité enrichissante en tant que spécialiste en cyber sécurité (ICS/OT)? Ce rôle correspond à la mission de AtkinsRéalis de transformer, d'adopter les technologies numériques et de garantir la croissance continue de ses capacités en cybersécurité industrielle dans...


  • montréal, Canada QUANTEAM - North America (RAINBOW PARTNERS Group) Full time

    IT Infra & Cyber Security Specialist – Vulnerability Management WHO WE ARE As the founding entity of RAINBOW PARTNERS, Quanteam is a consulting firm specializing in Banking, Finance, and Financial Services. Guided by our core values of closeness, teamwork, diversity, and excellence, our team of 1,


  • Montréal, QC, Canada Cyber Crime Full time

    Ubisoft Welcome to the official website for Ubisoft, creator of Assassin's Creed, Just Dance, Tom Clancy's video game series, Rayman, Far Cry, Watch Dogs and many others. Learn more about our breathtaking games here! View company page The incumbent will play a pivotal role in ensuring the safety and security of our Pan-Canadian Studios;...


  • Montréal, QC, Canada AtkinsRéalis Full time

    Spécialiste en cyber sécurité (ICS/OT) Vous êtes à la recherche d’une opportunité enrichissante en tant que spécialiste en cyber sécurité (ICS/OT)? Ce rôle correspond à la mission de AtkinsRéalis de transformer, d'adopter les technologies numériques et de garantir la croissance continue de ses capacités en cybersécurité industrielle...

  • IT Security

    1 month ago


    Montréal, QC, Canada Dialogue Full time

    Senior IT & Security Compliance Specialist Senior IT & Security Compliance Specialist Your role as Senior IT & Compliance Specialist The Senior IT & Security Compliance Specialist will contribute to ensuring Dialogue is secure and compliant by managing the SOC2 and ITGC audits. Contributing to a strong security and risk management culture through...


  • Montréal, QC, Canada Soho Square Solutions Full time

    Role: Cyber Security Advisor Duration: 12 Months (Temp-to-perm) (Renewable) Bilingual: French & English Location: Montreal, QC Hybrid Role A career as a Senior Advisor – Cyber-Resilience Initiatives and Operations means having a positive impact on our organization by daily improving the Bank's capabilities to defend itself against all types of...


  • Montréal (St-Laurent ), Canada CAE Full time

    Role and Responsibilities Working within the Cybersecurity team, the Global Cybersecurity Advisor will engage with stakeholders across Civil and D&S (Germany & Canada) lines of business to represent the collective cybersecurity interests of the team during project engagements through various primary activities listed below.Developing and maintaining an...


  • Montréal, Canada Axium Infrastructure Full time

    En tant qu'administrateur de la sécurité réseau / cyber analyste, vous serez à l'avant-garde pour assurer la sécurité et l'intégrité de notre infrastructure réseau tout en analysant et en répondant aux cyber menaces. Ce rôle nécessite un mélange d'expertise technique en administration de la sécurité réseau et en analyse des cyber menaces,...


  • Montréal, QC, Canada Axium Infrastructure Full time

    En tant qu'administrateur de la sécurité réseau / cyber analyste, vous serez à l'avant-garde pour assurer la sécurité et l'intégrité de notre infrastructure réseau tout en analysant et en répondant aux cyber menaces. Ce rôle nécessite un mélange d'expertise technique en administration de la sécurité réseau et en analyse des cyber menaces,...


  • Montréal, QC, Canada Axium Infrastructure Full time

    En tant qu'administrateur de la sécurité réseau / cyber analyste, vous serez à l'avant-garde pour assurer la sécurité et l'intégrité de notre infrastructure réseau tout en analysant et en répondant aux cyber menaces. Ce rôle nécessite un mélange d'expertise technique en administration de la sécurité réseau et en analyse des cyber menaces,...


  • Montréal, QC, Canada Axium Infrastructure Full time

    En tant qu'administrateur de la sécurité réseau / cyber analyste, vous serez à l'avant-garde pour assurer la sécurité et l'intégrité de notre infrastructure réseau tout en analysant et en répondant aux cyber menaces. Ce rôle nécessite un mélange d'expertise technique en administration de la sécurité réseau et en analyse des cyber menaces,...

  • Cyber-Security Expert

    1 month ago


    Montréal, QC, Canada Noverka Conseil Full time

    At Noverka, our values illustrate who we are and define our convictions: Human, Transparent, Passionate. We are driven by innovation and success, both in our relationships and in our practices. Finding the right job for the right person is what we do best! Our client, an organization in the banking sector is looking for a Cyber-Security Expert – Expert....


  • Montréal, QC, Canada Axium Infrastructure Full time

    En tant qu'administrateur de la sécurité réseau / cyber analyste, vous serez à l'avant-garde pour assurer la sécurité et l'intégrité de notre infrastructure réseau tout en analysant et en répondant aux cyber menaces. Ce rôle nécessite un mélange d'expertise technique en administration de la sécurité réseau et en analyse des...


  • Montréal, Canada Desjardins Full time

    At Desjardins, we believe in equity, diversity and inclusion. We're committed to welcoming, respecting and valuing people for who they are as individuals, learning from their differences, embracing their uniqueness, and providing a positive workplace for all. At Desjardins, we have zero tolerance for discrimination of any kind. We believe our teams should...


  • Montréal, QC, Canada Tundra Technical Solutions Inc. Full time

    Required Skills Relevant cyber security and privacy industry certifications (e.g. CISSP, CISM, CIPP, CIPM, etc.) an asset Strong knowledge and understanding of cyber security concepts, protocols, industry best practices, strategies, frameworks and regulations such as SOX, PCI DSS, ISO, CoBIT, NIST, PIPEDA, GDPR Relevant experience defining business...


  • Montréal, Canada Cogeco Communications Inc. Full time

    Our culture lifts you up—there is no ego in the way. Our common purpose? We all want to win for our customers. We aim to always be evolving, dynamic, and ambitious. We believe in the power of genuine connections. Each employee is a part of what makes us unique on the market: agile and dedicated. Time Type: Regular Job Description: L’Auditeur Principal...


  • Montréal, QC, Canada Soho Square Solutions Full time

    Role: Cyber Security Advisor Duration: 12 Months (Temp-to-perm) (Renewable) Bilingual: French & English Montreal, QC A career as a Senior Advisor – Cyber-Resilience Initiatives and Operations means having a positive impact on our organization by daily improving the Bank's capabilities to defend itself against all types of cyber events through your...

  • Senior IT

    1 month ago


    Montréal, QC, Canada Dialogue Full time

    Senior IT & Security Compliance Specialist Senior IT & Security Compliance Specialist Your role as Senior IT & Compliance Specialist The Senior IT & Security Compliance Specialist will contribute to ensuring Dialogue is secure and compliant by managing the SOC2 and ITGC audits. Contributing to a strong security and risk management culture through...


  • Montréal-Est, Canada emergiTEL Full time

    Job Description The Manager, Cyber Security GRC & Process Improvement and his/her team are responsible for the cybersecurity controls, methodology and risk assessment, as well as compliance with the standards follows. The manager and his/her team are also responsible for evaluating, designing, and