Current jobs related to Cyber Security Director - TroisRivières, Quebec - Canonical
-
Technical Director
2 months ago
Trois-Rivières, QC, Canada Jeunesse Sportive de Judo Full timeEducation: College/CEGEP - Experience: 5 years or more - or equivalent experience **Area of work experience**: - Management **Security and safety**: - Criminal record check **Transportation/travel information**: - Willing to travel **Personal suitability**: - Organized - Values and ethics **Screening questions**: - Are you currently legally able to work...
Cyber Security Director
2 months ago
This senior leadership position in cyber security is responsible for managing the Security Operations (SecOps) team at Canonical. The team is responsible for designing, implementing, and evolving Canonical's security practices, techniques, tools, systems, and policies. They are the primary owners of the strategy and practices that determine how Canonical secures its data, internal infrastructure, and build processes.
Key Responsibilities- Team Leadership: Hire and mentor a team of outstanding technical security professionals to drive the security agenda at Canonical.
- Security Standards and Playbooks: Define Canonical's SecOps security standards and playbooks to ensure consistency and best practices across the organization.
- Architecture and Design: Own and drive the architecture and design of the Security Operations Center (SOC) to ensure it meets the evolving security needs of Canonical.
- Security Architecture: Analyze and improve Canonical's security architecture to identify and mitigate potential risks.
- Tool Selection and Implementation: Evaluate, select, and implement new security tools and practices to enhance the security posture of Canonical.
- Threat Response: Identify, contain, and guide the remediation of security threats and cyber attacks to minimize their impact.
- Thought Leadership: Grow the presence and thought leadership of Canonical's SecOps practice through public presentations, industry events, and threat intelligence sharing.
- Open Source Contributions: Contribute to open source threat intelligence initiatives to enhance the security of the wider open source ecosystem.
- Security Practices: Drive threat modeling, table top exercises, and other SecOps practices across Engineering, IS, and Canonical to ensure a unified security approach.
- Learning and Development: Develop Canonical's SecOps learning and development materials to upskill the security team.
- Communication: Publish blog posts, whitepapers, and conference presentations to share knowledge and best practices with the security community.
- Metrics and Reporting: Identify, implement, and track SecOps Key Performance Indicators (KPIs) to measure the effectiveness of the security team.
- Agile Engineering: Plan and deliver SecOps work in the framework of Canonical's agile engineering practice to ensure seamless integration with development teams.
- Proven Track Record: Proven track record of mitigating advanced threat actors and nation-state threats.
- Technical Expertise: Expert technical understanding of SOCs from the ground up, including strategies for logging, firewalls, network segmentation, honeypots, etc.
- Linux Security: Expert knowledge of Linux security and ability to define, implement, automate, and measure effective incident response playbooks.
- Security Architecture: Knowledge of security architecture and market-leading security tools, including experience contributing to and consuming threat intelligence feeds.
- Security Risk Management: Experience in security risk management frameworks such as NIST CSF.
- Academic Background: Undergraduate degree in Computer Science or STEM, or a compelling narrative about your alternative path.
- Leadership and Management: Leadership and management ability, with a track record of driving results and going above-and-beyond expectations.
- Communication Skills: Excellent business English writing and presentation skills, with confidence to report security performance metrics with accountability for accuracy and completeness.
- Offensive or Defensive Security: Experience in offensive or defensive security teams with hands-on ability.
- Open Source Security Tools: Experience with open source security tools.
- Security Standards: Experience with security standards such as ISO 27001.
- Security Posture Management: Experience with security posture management of corporate endpoints.