Cybersecurity Incident Response Specialist

2 months ago


Vancouver, British Columbia, Canada Autodesk Full time

Job Summary

The Cybersecurity Incident Response Specialist will be responsible for monitoring, identifying, assessing, containing, and responding to various information security events in a large and complex environment. This role will analyze, triage, and report on these incidents and investigations for Autodesk.

Key Responsibilities

  • Monitor and analyze security events from various Endpoint Detection and Response (EDR), Network and Cloud security tools to detect anomalies and report remediation actions in both commercial and FedRAMP networks.
  • Detect and respond to security incidents, coordinating cross-functional teams to mitigate and eradicate threats.
  • Triage security incidents and conduct response actions to detect, contain, and remediate identified security incidents.
  • Analyze firewall logs, server, and application logs to investigate events and incidents for anomalous activity and produce reports of findings.
  • Conduct reviews and analysis of proxy logs, Microsoft Windows and Active Directory logs, and malicious code to identify, contain, eradicate, and ensure recovery from incidents.
  • Investigate security incidents reported by third parties or external security researchers.
  • Determine root cause analysis and create post-mortem documentation for security incidents.
  • Track security events and incidents in a SOAR tool.
  • Develop and document threat-driven response playbooks to support security incidents.
  • Provide knowledge sharing, mentoring, and support of team members where applicable.
  • Maintain current knowledge of the threat landscape and emerging security threats.
  • Provide support as on-call personnel during security incidents for the team.
  • Work in a 24/7 environment to include rotating night and weekend shifts.
  • Maintain a high level of confidentiality and integrity.

Requirements

  • Bachelor's degree in Computer Science, Information Security, or equivalent professional experience.
  • 5+ years of cybersecurity experience in incident response.
  • Technical depth in one or more specialties including: Malware analysis, Host analysis, and Digital forensics.
  • Strong understanding of Security Operations and Incident Response process and practices.
  • Experience performing security monitoring, response capabilities, log analysis, and forensic tools.
  • Strong understanding of operating systems including Windows, Linux, and OSX.
  • Experience with SIEM, SOAR, EDR, Network, AWS, and Azure security tools.
  • Experience with IR and Forensic investigations within Cloud environments such as AWS and Azure.
  • Experience with one or more scripting languages (PowerShell, Python, Bash, etc.).


  • Vancouver, British Columbia, Canada CyberClan Full time

    CyberClan Job DescriptionCyberClan is a leading cybersecurity company established in 2006, with a team of experts dedicated to solving complex cyber security challenges. We specialize in providing Incident Response services to clients in the insurance, legal, and commercial sectors.Job Title: Incident Response CoordinatorSummary/Objective:Develop and...


  • Vancouver, British Columbia, Canada CyberClan Full time

    CyberClan Job DescriptionCyberClan is a leading cybersecurity company established in 2006, with a team of experts dedicated to solving complex cyber security challenges. We specialize in providing Incident Response services to clients in the insurance, legal, and commercial sectors.Job Title: Incident Response CoordinatorSummary/Objective:Develop and...


  • Vancouver, British Columbia, Canada Autodesk Full time

    Job SummaryThe Security Incident Response Engineer is a critical member of our team, responsible for monitoring, identifying, assessing, containing, and responding to various information security events in a large and complex environment. This role requires a strong understanding of system security design, network/cloud security best practices, and in-depth...


  • Vancouver, British Columbia, Canada Aritzia Full time

    About the RoleThe Senior Engineer, Threat & Vulnerability, is a critical member of our Cybersecurity team, responsible for investigating and mitigating security threats to Aritzia's infrastructure.Key ResponsibilitiesInvestigate security incidents or vulnerabilities reported by third parties or external security researchers.Respond to vulnerability reports...


  • Vancouver, British Columbia, Canada Aritzia Full time

    About the RoleThe Senior Engineer, Threat & Vulnerability, is a critical member of our Cybersecurity team, responsible for investigating and mitigating security threats to Aritzia's infrastructure.Key ResponsibilitiesInvestigate security incidents or vulnerabilities reported by third parties or external security researchers.Respond to vulnerability reports...


  • Vancouver, British Columbia, Canada College of Physicians and Surgeons of BC Full time

    Cybersecurity Specialist Job DescriptionAt the College of Physicians and Surgeons of BC, we are seeking a highly skilled Cybersecurity Specialist to join our team. As a key member of our IT operations, you will be responsible for protecting our computer systems and networks from cyber threats.This role involves monitoring, detecting, investigating,...


  • Vancouver, British Columbia, Canada College of Physicians and Surgeons of BC Full time

    Cybersecurity Specialist Job DescriptionAt the College of Physicians and Surgeons of BC, we are seeking a highly skilled Cybersecurity Specialist to join our team. As a key member of our IT operations, you will be responsible for protecting our computer systems and networks from cyber threats.This role involves monitoring, detecting, investigating,...


  • Vancouver, British Columbia, Canada Mark Anthony Wine & Spirits Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Specialist to join our team at Mark Anthony Wine & Spirits. As a key member of our security team, you will be responsible for ensuring the security and integrity of our organization's networks, systems, and data.Key ResponsibilitiesMonitor and inspect our networks, systems, and security tools to detect...


  • Vancouver, British Columbia, Canada TrustFlight Full time

    TrustFlight Cybersecurity Specialist Job DescriptionAt TrustFlight, we're revolutionizing the aviation industry with cutting-edge technology. We're seeking a highly skilled Cybersecurity Specialist to join our Operations team and play a pivotal role in safeguarding our operations and maintaining our pioneering status.Key Responsibilities:Conduct thorough...


  • Vancouver, British Columbia, Canada TrustFlight Full time

    TrustFlight Cybersecurity Specialist Job DescriptionAt TrustFlight, we're revolutionizing the aviation industry with cutting-edge technology. We're seeking a highly skilled Cybersecurity Specialist to join our Operations team and play a pivotal role in safeguarding our operations and maintaining our pioneering status.Key Responsibilities:Conduct thorough...


  • Vancouver, British Columbia, Canada Mark Anthony Wine & Spirits Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Specialist to join our team at Mark Anthony Wine & Spirits. As a key member of our security operations team, you will be responsible for ensuring the security and integrity of our organization's networks, systems, and data.Key ResponsibilitiesMonitor and inspect our networks, systems, and security...


  • Vancouver, British Columbia, Canada TrustFlight Full time

    TrustFlight Cybersecurity SpecialistWe are seeking a highly skilled Cybersecurity Specialist to join our Operations team at TrustFlight, a pioneer in digitizing the aviation industry. As a key member of our team, you will play a pivotal role in safeguarding our operations and maintaining our pioneering status.Key Responsibilities:Conduct thorough security...


  • Vancouver, British Columbia, Canada TrustFlight Full time

    TrustFlight Cybersecurity SpecialistWe are seeking a highly skilled Cybersecurity Specialist to join our Operations team at TrustFlight, a pioneer in digitizing the aviation industry. As a key member of our team, you will play a pivotal role in safeguarding our operations and maintaining our pioneering status.Key Responsibilities:Conduct thorough security...


  • Vancouver, British Columbia, Canada TrustFlight Full time

    TrustFlight Cybersecurity SpecialistWe are seeking a highly skilled Cybersecurity Specialist to join our Operations team at TrustFlight, a pioneer in digitizing the aviation industry. As a key member of our team, you will play a pivotal role in safeguarding our operations and maintaining our pioneering status.Key Responsibilities:Conduct thorough security...


  • Vancouver, British Columbia, Canada TrustFlight Full time

    TrustFlight Cybersecurity SpecialistWe are seeking a highly skilled Cybersecurity Specialist to join our Operations team at TrustFlight, a pioneer in digitizing the aviation industry. As a key member of our team, you will play a pivotal role in safeguarding our operations and maintaining our pioneering status.Key Responsibilities:Conduct thorough security...


  • Vancouver, British Columbia, Canada T-Net British Columbia Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Operations Specialist to join our team at T-Net British Columbia. As a key member of our IT security team, you will play a critical role in supporting our cybersecurity functions, including detection, monitoring, and response.Key ResponsibilitiesIncident Response and Management: Identify, triage,...


  • Vancouver, British Columbia, Canada T-Net British Columbia Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Operations Specialist to join our team at T-Net British Columbia. As a key member of our IT security team, you will play a critical role in supporting our cybersecurity functions, including detection, monitoring, and response.Key ResponsibilitiesIncident Response and Management: Identify, triage,...

  • Incident Response Lead

    2 months ago


    Vancouver, British Columbia, Canada Aon Full time

    Job SummaryAon is seeking a highly skilled Cybersecurity Manager to join our team. As a key member of our Cybersecurity team, you will be responsible for managing high-profile and sophisticated cases as a first responder.Key ResponsibilitiesManage the most sophisticated forensic analyses handled by the firm.Investigate network intrusions and other...

  • Incident Response Lead

    2 months ago


    Vancouver, British Columbia, Canada Aon Full time

    Job SummaryAon is seeking a highly skilled Cybersecurity Manager to join our team. As a key member of our Cybersecurity team, you will be responsible for managing high-profile and sophisticated cases as a first responder.Key ResponsibilitiesManage the most sophisticated forensic analyses handled by the firm.Investigate network intrusions and other...


  • Vancouver, British Columbia, Canada CyberClan Full time

    CyberClan Incident Response Coordinator Job DescriptionCyberClan is seeking a highly skilled Incident Response Coordinator to join our team. As an Incident Response Coordinator, you will be responsible for orchestrating a proactive and efficient response to security incidents, safeguarding the organization's assets, reputation, and operations to minimize...