Threat Researcher

1 month ago


Waterloo, Canada eSentire Full time

About eSentire

Founded in 2001, the company’s mission is to hunt, investigate and stop cyber threats before they become business-disrupting events. Combining cutting-edge machine learning XDR technology, 24/7 Threat Hunting, and proven security operations leadership, eSentire mitigates business risk and enables security at scale.

The Team eSentire difference means enterprises are protected by the best in the business with a named Cyber Risk Advisor, 24/7 access to SOC Cyber Analysts, Elite Threat Hunters, and industry-leading threat intelligence research from eSentire’s Threat Response Unit (TRU). eSentire provides Managed Risk, Managed Detection and Response and Incident Response services.

Our Team

eSentire is looking for highly capable individuals to be part of our Tactical Threat Response team. eSentire is a recognized industry leader and one of Canada’s Fastest-Growing Tech company. We work in a collaborative and innovative work environment with brilliant and passionate people who strive and encourage others to do their best. Join us to gain rewarding and developing career experience with the ability to grow and make an impact on your work.
The Opportunity

**Responsibilities**:

- Identifying, organizing, and processing new novel detection techniques
- Triaging new detectors
- Detector development
- Deployment and Support
- Ongoing tuning and maintenance
- Work with security vendors to understand integrations and threat coverage for new threats.

Desired Skills
- Threat Modeling: Experience with threat modeling frameworks, such as MITRE ATT&CK to identify how adversaries will attack infrastructure, what their goals may be, and where detection opportunities exist.
- Investigation Theory: Solid understanding of common cyber threats, attack vectors, and threat actor techniques
- Threat Hunting: Understand adversary behavior, develop a hypothesis, design hunts, and interpret the results.
- Independent self-starter: Strong analytical and problem-solving skills with the ability to think critically and creatively in a fast-paced environment.
- Excellent communication skills: Written and verbal, with the ability to effectively convey complex technical concepts to both technical and non-technical stakeholders.
- One or more certs in CCSK, CISSP, OSCP, GIAC or equivalent

**Requirements**:

- Experience analyzing large security data sets
- Experience with one or more data types (Log, PCAP, EDR, Cloud)
- Experience with a broad range of best-in-class security tools that may include:

- Carbon Black
- CrowdStrike
- SumoLogic
- Microsoft Defender
- Microsoft Sentinel
- Experience implementing repeatable processes.
- Experience in fast-paced environments
- Knowledge of Mitre ATT&CK
- Knowledge of attacker tactics, techniques, and procedures
- Knowledge of operating systems and networking
- Knowledge of Incident Response/Forensics
- Knowledge of data analysis and analytics

Work Conditions
- Work will be remote 9 to 5 office hours.
- The position does not require the availability for on-call rotation, extended travel, or 24/7 shift coverage.
- In case of emergency working hours might be modified.

Why a Career with eSentire?

**Our Culture**: At eSentire we work in a collaborative and innovative work environment. We work with brilliant and passionate people who strive and encourage others to do their best. eSentire’s idea-rich environment welcomes creative and sometimes unconventional perspectives

**Growth Opportunities**: At eSentire you will have the opportunity to grow and make an impact from your work. We encourage innovation in all who become a part of our team. With growing operations internationally, there are many lateral and upward advancement opportunities for rewarding and developing careers with eSentire. We’re strong believers in continuing education and provide the resources that you need to continue learning.

**Employee Perks**: We provide breakfast, snacks and refreshments (at our physical office locations in Waterloo, London, and Cork), flexible working hours and vacation, company-wide equity and bonus programs, subsidies for continuing education and health & wellness, and attractive compensation and benefits plans. We make it our obligation to the team to stay current with compensation trends in the tech field
We thank all applicants in advance for applying. Only individuals selected for interviews will be contacted.

LI-J1
LI-Hybrid



  • Waterloo, Canada eSentire Full time

    About eSentire Founded in 2001, the company’s mission is to hunt, investigate and stop cyber threats before they become business-disrupting events. Combining cutting-edge machine learning XDR technology, 24/7 Threat Hunting, and proven security operations leadership, eSentire mitigates business risk and enables security at scale. The Team eSentire...


  • Waterloo, Canada BlackBerry Full time

    Worker Sub-Type: Regular **Job Description**: The security of BlackBerry products is not just part of our heritage; _BlackBerry Secure_ is a passion that runs deep throughout the company. We continue to envision, enable, and secure new forms of communication that are connecting the world in extraordinary ways. We have the most sophisticated end-to-end...


  • Waterloo, Canada BlackBerry Full time

    Worker Sub-Type: Regular **Job Description**: The SOC analyst is responsible for activities relating to monitoring and responding to security events. The SOC analyst receives, researches, triages and documents all security events and alerts as they are received. This individual supports multiple security-related platforms and technologies, interfacing with...


  • Waterloo, Canada eSentire Full time

    About eSentire Founded in 2001, the company’s mission is to hunt, investigate and stop cyber threats before they become business-disrupting events. Combining cutting-edge machine learning XDR technology, 24/7 Threat Hunting, and proven security operations leadership, eSentire mitigates business risk and enables security at scale. The Team eSentire...

  • Microsoft Consultant

    1 month ago


    Waterloo, Canada eSentire Full time

    About eSentire Founded in 2001, the company’s mission is to hunt, investigate and stop cyber threats before they become business-disrupting events. Combining cutting-edge machine learning XDR technology, 24/7 Threat Hunting, and proven security operations leadership, eSentire mitigates business risk and enables security at scale. The Team eSentire...


  • Waterloo, Canada Altis Technology Full time

    Reporting to: Director of Information Security Overview: This position involves contributing to the day-to-day delivery of the client's information security program, operations, and security compliance efforts. The role is critical in supporting the Security team in identifying and protecting against cyber threats. Team members will work directly with...


  • Waterloo, Canada Altis Technology Full time

    Reporting to: Director of Information Security Overview: This position involves contributing to the day-to-day delivery of the client's information security program, operations, and security compliance efforts. The role is critical in supporting the Security team in identifying and protecting against cyber threats. Team members will work directly with...


  • Waterloo, Canada Altis Technology Full time

    Reporting to:Director of Information Security Overview:This position involves contributing to the day-to-day delivery of the client's information security program, operations, and security compliance efforts. The role is critical in supporting the Security team in identifying and protecting against cyber threats. Team members will work directly with internal...


  • Waterloo, Canada Altis Technology Full time

    Reporting to:Director of Information SecurityOverview:This position involves contributing to the day-to-day delivery of the client's information security program, operations, and security compliance efforts. The role is critical in supporting the Security team in identifying and protecting against cyber threats. Team members will work directly with internal...


  • Waterloo, Canada QNX Software Systems Full time

    Worker Sub-Type:Regular Job Description: BlackBerry is seeking a Senior Technical Marketing Engineer to support the Technical Marketing team and wider Product Marketing Group. The objective for this role is to own and deliver the technical validation of our products & solutions while assisting the team to deliver insightful Technical Marketing Assets that...


  • Waterloo, Canada QNX Software Systems Full time

    Worker Sub-Type:Regular Job Description: BlackBerry is seeking a Senior Technical Marketing Engineer to support the Technical Marketing team and wider Product Marketing Group. The objective for this role is to own and deliver the technical validation of our products & solutions while assisting the team to deliver insightful Technical Marketing Assets that...

  • SOC Analyst I

    6 days ago


    Waterloo, Canada eSentire Full time

    About eSentire Founded in 2001, the company’s mission is to hunt, investigate and stop cyber threats before they become business-disrupting events. Combining cutting-edge machine learning XDR technology, 24/7 Threat Hunting, and proven security operations leadership, eSentire mitigates business risk and enables security at scale. The Team eSentire...


  • Waterloo, Canada Altis Technology Full time

    Reporting to: Director of Information SecurityOverview: This position involves contributing to the day-to-day delivery of the client's information security program, operations, and security compliance efforts. The role is critical in supporting the Security team in identifying and protecting against cyber threats. Team members will work directly with...


  • Waterloo, Canada Altis Technology Full time

    Reporting to: Director of Information Security Overview: This position involves contributing to the day-to-day delivery of the client's information security program, operations, and security compliance efforts. The role is critical in supporting the Security team in identifying and protecting against cyber threats. Team members will work directly with...


  • Waterloo, Canada Altis Technology Full time

    Reporting to: Director of Information SecurityOverview: This position involves contributing to the day-to-day delivery of the client's information security program, operations, and security compliance efforts. The role is critical in supporting the Security team in identifying and protecting against cyber threats. Team members will work directly with...


  • Waterloo, Canada Altis Technology Full time

    Reporting to: Director of Information SecurityOverview: This position involves contributing to the day-to-day delivery of the client's information security program, operations, and security compliance efforts. The role is critical in supporting the Security team in identifying and protecting against cyber threats. Team members will work directly with...


  • Waterloo, Canada BlackBerry Full time

    Worker Sub-Type: Regular **Job Description**: SUMMARY: As a member of the Cyber Security team, the Cyber Security Analyst will be responsible for ensuring that BlackBerry systems are designed and implemented securely. The primary focus will be reviewing architecture and design from a security and compliance standpoint ensuring deployments meet or exceed...

  • Microsoft Consultant

    1 month ago


    Waterloo, Canada eSentire Full time

    About eSentire Founded in 2001, the company’s mission is to hunt, investigate and stop cyber threats before they become business-disrupting events. Combining cutting-edge machine learning XDR technology, 24/7 Threat Hunting, and proven security operations leadership, eSentire mitigates business risk and enables security at scale. The Team eSentire...


  • Waterloo, Canada Huawei Full time

    Our team has an immediate Co-op opening for an Engineer.Responsibilities: Design and implement a prototype technology for cloud-focused threat detectionFocus on researching and improving hypervisor technologies to enhance system securityWhat you’ll bring to the team:Currently enrolled in a university pursuing a degree in Computer Engineering, Electrical...


  • Waterloo, Canada Huawei Full time

    Our team has an immediate Co-op opening for an Engineer.Responsibilities: Design and implement a prototype technology for cloud-focused threat detectionFocus on researching and improving hypervisor technologies to enhance system securityWhat you’ll bring to the team:Currently enrolled in a university pursuing a degree in Computer Engineering, Electrical...