Skip to content
← Back to job listings

Senior Infrastructure Security Specialist

Kepler · Toronto, Canada

RemoteImported listingfull-time5 days ago

About The Role

Join Kepler, a leading space technology company, as a Senior Infrastructure Security Specialist. In this role, you will be responsible for protecting Kepler's corporate, cloud, and operational infrastructure. You will work closely with various teams to identify security risks, implement practical security controls, and ensure the security and resilience of Kepler's infrastructure. You will also support security requirements associated with regulated and Government of Canada environments.

  • Assumer la responsabilité de la gestion et de l'amélioration continue des capacités de sécurité de l'infrastructure, y compris la gestion des vulnérabilités, la surveillance de la sécurité et le SIEM.
  • Collaborer avec les équipes informatiques, d'ingénierie et d'exploitation pour identifier les risques de sécurité, mettre en œuvre des contrôles de sécurité pratiques et garantir la sécurité de l'infrastructure.
  • Fournir une expertise en ingénierie de la sécurité pour les infrastructures existantes et nouvelles, les environnements cloud, les réseaux et les systèmes.
  • Experience securing cloud environments such as AWS and/or Microsoft Azure
  • Ability to obtain and maintain a Government of Canada security clearance appropriate to the role
  • Strong problem-solving skills with demonstrated ownership and accountability
  • Strong organizational skills and the ability to manage multiple priorities in a fast-paced environment
  • Knowledge of security frameworks and standards such as NIST Cybersecurity Framework (CSF), NIST SP 800-171, NIST SP 800-53, and CIS Controls/Benchmarks
  • Experience with endpoint security and EDR/XDR technologies, including alert investigation, containment, and security policy management
  • Ability to work independently while collaborating effectively across Security, IT, Engineering, Operations, and other teams
  • Experience supporting cybersecurity incident investigations and remediation
  • Understanding of identity and access management, privileged access, authentication, authorization, and least-privilege principles
  • Ability to analyze technical security risks and clearly communicate findings and recommendations to technical and non-technical stakeholders
  • Strong hands-on knowledge of infrastructure security across Windows, Linux, networking, cloud, and enterprise IT environments
  • Knowledge of infrastructure and operating-system hardening and secure configuration practices
  • Strong understanding of network security concepts including firewalls, network segmentation, intrusion detection/prevention, secure protocols, and network monitoring
  • Demonstrated experience operating or supporting enterprise vulnerability management platforms, including vulnerability scanning, analysis, prioritization, and remediation
  • 7+ years of progressive experience in cybersecurity, with demonstrated hands-on experience in infrastructure security, security engineering, security operations, or a related technical security role
  • Experience with SIEM and security monitoring technologies, including log analysis, security investigations, detection use cases, and monitoring
  • Bachelor’s degree in computer science, Information Security, Engineering, Information Technology, or a related discipline, or an equivalent combination of education and relevant professional experience
  • Relevant security or technology certifications such as CISSP, GIAC, CCSP, Security+, CISM, CISA, or equivalent technical certifications
  • Experience with infrastructure-as-code, cloud security tooling, or automated configuration management
  • Experience with security automation or scripting using technologies such as Python, PowerShell, Bash, or APIs
  • Understanding of Government of Canada personnel, information, IT, and facility security requirements
  • Experience supporting security audits, assessments, compliance activities, or customer security reviews
  • Familiarity with Government of Canada security requirements and guidance, including ITSG-33, ITSP.10.171, the Canadian Program for Cyber Security Certification (CPCSC), and the Contract Security Program (CSP)
  • Experience working with an external MDR/MSSP/SOC provider
  • Experience supporting Government of Canada contracts or environments handling Protected or Classified information
  • Hands-on experience with Tenable, Securonix, SentinelOne, or comparable vulnerability management, SIEM, and endpoint security platforms

This is an external listing. JobSpring does not represent or verify the employer. Report this listing