Job Description
Purpose of the Job:
The Lead Cyber Security Engineer – Cyber Defense is responsible for designing, fixing and maintaining tools and processes to ensure fast and flawless cyber security threat detection, investigation and response along with keeping systems related to cyber operations up-to-date and effective. Their primary responsibilities will be integrating new vendors/tools with SIEM, troubleshooting SIEM-related technology stack, onboarding new log sources, leading projects for new initiatives, architecting new and existing designs, keeping SIEM-related content and configurations up-to-date and working with security engineering team to make sure that detection capabilities are tuned and enabled. They will also automate processes related to security operations to increase effectiveness of detection and response.
Knowledge/Skill Requirements:
- Training/degree/diploma/certificate in Computer Science, Cyber Security/Engineering or related field
- A minimum six (6) years in an information/cyber security engineering role
- SANS SEC511 or SEC530, Microsoft AZ-500 or AZ-305, ISC2 SSCP or similar certification is preferred
- Extensive experience in Azure logic app design and configurations
- Extensive experience in Microsoft Sentinel KQL
- Extensive technical expertise in Azure services and portals such as Defender for Cloud, Defender for Endpoint, Defender for Identity, Defender for Cloud Apps and Defender for IoT, Sentinel, Log Analytic Workspace, Azure monitoring, Data Collection Rules, Azure Entra ID, Azure policies, Enterprise apps and registrations
- Ability to code in python
- Ability to work in a fast-paced environment with minimal guidance and supervision.
- Experience in at least two of the following disciplines in terms of security engineering: threat intelligence, security event correlation (SIEM), security monitoring, threat hunting, security analytics (UEBA), security investigations and security incident response.
- Ability to adapt to constantly changing technical, regulatory, and compliance environments.
- The incumbent is expected to interact with all employees including executives and thus good verbal and written skills are important.
- Experience working in a banking or financial services environment is an asset
- Strong technical background in encryption technologies, network communication protocols (SMTP, DNS, HTTP/s and IP), and Azure services (Sentinel, diagnostics, storage accounts and identities)
- Ability to think out of the box for solutions to technical problems
- Experienced in NIST CSF, Mitre Att@ck and Cyber Kill Chain
- Ability to work independently without the need for direction from supervisors or other managers in the projects and technical configurations
- Ability to manage, deploy and configure Linux systems and trouble shoot issues on Linux systems
Requirements
Knowledge/Skill Requirements:
- Training/degree/diploma/certificate in Computer Science, Cyber Security/Engineering or related field
- A minimum six (6) years in an information/cyber security engineering role
- SANS SEC511 or SEC530, Microsoft AZ-500 or AZ-305, ISC2 SSCP or similar certification is preferred
- Extensive experience in Azure logic app design and configurations
- Extensive experience in Microsoft Sentinel KQL
- Extensive technical expertise in Azure services and portals such as Defender for Cloud, Defender for Endpoint, Defender for Identity, Defender for Cloud Apps and Defender for IoT, Sentinel, Log Analytic Workspace, Azure monitoring, Data Collection Rules, Azure Entra ID, Azure policies, Enterprise apps and registrations
- Ability to code in python
- Ability to work in a fast-paced environment with minimal guidance and supervision.
- Experience in at least two of the following disciplines in terms of security engineering: threat intelligence, security event correlation (SIEM), security monitoring, threat hunting, security analytics (UEBA), security investigations and security incident response.
- Ability to adapt to constantly changing technical, regulatory, and compliance environments.
- The incumbent is expected to interact with all employees including executives and thus good verbal and written skills are important.
- Experience working in a banking or financial services environment is an asset
- Strong technical background in encryption technologies, network communication protocols (SMTP, DNS, HTTP/s and IP), and Azure services (Sentinel, diagnostics, storage accounts and identities)
- Ability to think out of the box for solutions to technical problems
- Experienced in NIST CSF, Mitre Att@ck and Cyber Kill Chain
- Ability to work independently without the need for direction from supervisors or other managers in the projects and technical configurations
- Ability to manage, deploy and configure Linux systems and trouble shoot issues on Linux systems
Similar Jobs
Manager, DevOps
eqbank
On-siteFull-time
Bilingual, Reverse Mortgage Account Specialist (FR/ENG)
eqbank
On-siteFull-time
Technology Workplace Services Technician
eqbank
On-siteFull-time
Commercial Mortgage Analyst, CMHC
eqbank
On-siteFull-time
Technology Workplace Services (TWS) - Winter Intern 2026
eqbank
On-siteInternship
Senior Insider Risk Analyst
eqbank
On-siteFull-time
Senior Analyst, Fraud Strategy & Analytics
eqbank
On-siteFull-time
Residential Mortgage Underwriter, Bilingual / Souscripteur hypothécaire, Bilingue
eqbank
On-siteFull-time
Bilingual, Customer Service Specialist (FR/ENG)
eqbank
On-siteFull-time
Bilingual, Customer Service Specialist (FR/ENG)
eqbank
On-siteFull-time
Quality Assurance Specialist, Bilingual (English and French)
eqbank
On-siteFull-time
Default Administrator
eqbank
On-siteFull-time
Senior Analyst, Enterprise Data Governance
eqbank
On-siteFull-time
Bilingual Renewal Advisor (6 months contract)
eqbank
On-siteContract
Lead Receptionist, Office Experience (Full-Time)
eqbank
On-siteFull-time
Disclaimer: Real Jobs From Anywhere is an independent platform dedicated to providing information about job openings. We are not affiliated with, nor do we represent, any company, agency, or agent mentioned in the job listings. Please refer to our Terms of Services for further details.
