Threat Researcher - Toronto, Canada - eSentire

eSentire
eSentire
Verified Company
Toronto, Canada

3 weeks ago

Sophia Lee

Posted by:

Sophia Lee

beBee Recruiter


Description
About eSentire

Founded in 2001, the company's mission is to hunt, investigate and stop cyber threats before they become business-disrupting events.

Combining cutting-edge machine learning XDR technology, 24/7 Threat Hunting, and proven security operations leadership, eSentire mitigates business risk and enables security at scale.


The Team eSentire difference means enterprises are protected by the best in the business with a named Cyber Risk Advisor, 24/7 access to SOC Cyber Analysts, Elite Threat Hunters, and industry-leading threat intelligence research from eSentire's Threat Response Unit (TRU).

eSentire provides Managed Risk, Managed Detection and Response and Incident Response services.

Our Team

eSentire is looking for highly capable individuals to be part of our Tactical Threat Response team. eSentire is a recognized industry leader and one of Canada's Fastest-Growing Tech company.

We work in a collaborative and innovative work environment with brilliant and passionate people who strive and encourage others to do their best.

Join us to gain rewarding and developing career experience with the ability to grow and make an impact on your work.

The Opportunity


Responsibilities:


  • Identifying, organizing, and processing new novel detection techniques
  • Triaging new detectors
  • Detector development
  • Deployment and Support
  • Ongoing tuning and maintenance
  • Work with security vendors to understand integrations and threat coverage for new threats.
Desired Skills

  • Threat Modeling: Experience with threat modeling frameworks, such as MITRE ATT&CK to identify how adversaries will attack infrastructure, what their goals may be, and where detection opportunities exist.
  • Investigation Theory: Solid understanding of common cyber threats, attack vectors, and threat actor techniques
  • Threat Hunting: Understand adversary behavior, develop a hypothesis, design hunts, and interpret the results.
  • Independent selfstarter: Strong analytical and problemsolving skills with the ability to think critically and creatively in a fastpaced environment.
  • Excellent communication skills: Written and verbal, with the ability to effectively convey complex technical concepts to both technical and nontechnical stakeholders.
  • One or more certs in CCSK, CISSP, OSCP, GIAC or equivalent

Requirements:


  • Experience analyzing large security data sets
  • Experience with one or more data types (Log, PCAP, EDR, Cloud)
  • Experience with a broad range of bestinclass security tools that may include:
  • Carbon Black
  • CrowdStrike
  • SumoLogic
  • Microsoft Defender
  • Microsoft Sentinel
  • Experience implementing repeatable processes.
  • Experience in fastpaced environments
  • Knowledge of Mitre ATT&CK
  • Knowledge of attacker tactics, techniques, and procedures
  • Knowledge of operating systems and networking
  • Knowledge of Incident Response/Forensics
  • Knowledge of data analysis and analytics
Work Conditions

  • Work will be remote 9 to 5 office hours.
  • The position does not require the availability for oncall rotation, extended travel, or 24/7 shift coverage.
  • In case of emergency working hours might be modified.
Why a Career with eSentire?


Our Culture:
At eSentire we work in a collaborative and innovative work environment. We work with brilliant and passionate people who strive and encourage others to do their best. eSentire's idea-rich environment welcomes creative and sometimes unconventional perspectives


Growth Opportunities:
At eSentire you will have the opportunity to grow and make an impact from your work. We encourage innovation in all who become a part of our team. With growing operations internationally, there are many lateral and upward advancement opportunities for rewarding and developing careers with eSentire. We're strong believers in continuing education and provide the resources that you need to continue learning.


Employee Perks:

We provide breakfast, snacks and refreshments (at our physical office locations in Waterloo, London, and Cork), flexible working hours and vacation, company-wide equity and bonus programs, subsidies for continuing education and health & wellness, and attractive compensation and benefits plans.

We make it our obligation to the team to stay current with compensation trends in the tech field

We thank all applicants in advance for applying. Only individuals selected for interviews will be contacted.

LI-SJ1
LI-Remote

More jobs from eSentire