Jobs
>
Toronto

    Specialist Cyber Operations - Toronto, Canada - Air Canada

    Air Canada
    Air Canada background
    Full time
    Description

    Job Description


    Description

    Being part of Air Canada is to become part of an iconic Canadian symbol, recently ranked the best Airline in North America. Let your career take flight by joining our diverse and vibrant team at the leading edge of passenger aviation.

    The Cyber Security Operations Centre Specialist will be working in a fast paced and innovative environment for one of North America's top airlines. The role is responsible for the protection of Air Canada's public digital assets that provide services to our customers and employees. Air Canada's cyber security systems are foundational to protecting the data and systems that allow its customers to fly safely. Cyber security threats continue to evolve, and the Cyber Security Operations Centre Specialist role will evolve with it. As a specialist you will be expected to lead the technical direction of cyber security technologies protecting our web applications, collaborate with development teams, design and implement mitigating strategies against bots, scarpers, and attacks against Air Canada.

    Purpose

  • Responsible for the security posture of Air Canada's technology environment.
  • Responsible for Web Application Firewall, monitoring, onboarding of applications, responding to outages and attacks.
  • Responsible for continued improvement of preventative and mitigating strategies on our Web Applications.
  • Functional Accountabilities

  • Develop and manage Web Application Firewall (WAF) services.
  • Work with Content Delivery services for major web applications.
  • Develop and maintain use cases to identify and prevent suspicious, atypical traffic or general attacks against Air Canada Web Applications. Test and validate rules with a high degree of confidence.
  • Act as an escalation point for development and business teams impacted by outages or attacks.
  • Create, support, and maintain all pertinent documentation, which includes but is not limited to, root cause analysis, standard operating procedures, incident response playbooks, applicable standards for monitoring and security tooling.
  • Monitor compliance with information security policies and procedures.
  • Develop, manage, measure and report on key service-level metrics showcasing the effectiveness of the Cyber Security Operations program.
  • Provide expertise in the definition, selection and implementation of IT Security and Business Continuity related controls to the IT Department.
  • Develop and communicate operational security objectives; inspire, motivate and train team members to follow and achieve organizational security standards.
  • Identifies, analyzes patterns, and responds accordingly to security events.
  • Support and manage DNS changes.
  • Facilitate registrar purchases and transfers for domains.
  • Responsibilities

  • Lead business and technology analysis efforts for the Cyber Security Operations Centre.
  • Lead requirements and analysis efforts, including translating business requirements.
  • Lead Planning and monitoring processes for a particular functional area (Web Application Security).
  • Define and maintain methods, techniques and calculations for identifying ways to improve security operational processes.
  • Be a senior technical resource and subject matter expert on matters related to cyber security and web application security including WAF and CDN.
  • Build relationships throughout the organization to enhance and support our focus on safe, secure, and reliable operations.
  • Maintain up-to-date understanding of security threats, countermeasures, security tools and network technologies.
  • Act as a senior resource for a group of junior resources.
  • Qualifications

  • A relevant University degree/technical certification, and/or relevant experience commensurate to the role.
  • 7-12 years of IT technology, operations and people leadership experience in a large company.
  • Certification in any Information Security (Any advanced blue /red team training).
  • Demonstrated experience (5 years +): Incident/Major Incident, ITIL process concepts and execution (Incident Management, Problem Management, and Change Management), cyber security incident response, Enterprise SIEM technologies (ie. Sentinel, Arcsight, Splunk, QRadar, LogRhythm), Threat intelligence management.
  • Experience with packet flow concepts, TCP/UDP traffic, HTTP and interactions between clients and servers, firewall technologies, and IPS technologies
  • Familiarity with various types of attacks targeting web applications such as SQLi, XSS, CSRF, etc.
  • Knowledge of the OWASP top 10 threats.
  • Experience with key WAF concepts such as Anti-Bot, Anti-DDOS, rate limiting.
  • This position requires a high level of availability and flexibility as shift work may be part of the requirement as this role is part of our 24/7 IT Operations.
  • Able to communicate effectively and to work collaboratively with all levels of the organization with superior verbal and written skills.
  • Superior customer service and client interfacing skills.
  • Certification in any WAF technologies an asset.
  • Behavioral Competencies

  • Excellent communication skills, capable of conveying complex security and caching concepts to both technical and non-technical stakeholders.
  • Ability to work effectively under pressure and in rapidly changing environments or uncertain conditions.
  • Takes responsibility for the results and actively participates in the future direction of the organization.
  • Ability to work cooperatively with others on a team, and to establish and maintain effective business relationships.
  • Ability to maintain a professional and assertive demeanor under challenging situations and possesses confidence to act on critical decisions.
  • Able to handle multiple tasks in a fast-paced environment.
  • Working Conditions:

  • After hours on-call support for escalations.
  • Ability to travel and work effectively with remote teams.
  • Three times a week in the office at core locations.
  • Conditions of Employment:

  • Candidates must be eligible to work in the country of interest, at the time any offer of employment is made and seeking any required work permits/visas or other authorizations which may be required is the sole responsibility of the candidates applying for this position.
  • Linguistic Requirements

    Based on equal qualifications, preference will be given to bilingual candidates.

    Diversity and Inclusion

    Air Canada is strongly committed to Diversity and Inclusion and aims to create a healthy, accessible and rewarding work environment which highlights employees' unique contributions to our company's success.

    As an equal opportunity employer, we welcome applications from all to help us build a diverse workforce which reflects the diversity of our customers, and communities, in which we live and serve.

    Air Canada thanks all candidates for their interest; however only those selected to continue in the process will be contacted.



  • Raise Toronto, ON, Canada

    IT Security Analyst Location: Scarborough, ON, Hybrid · Contract Length: 6 Months, Possible of extension. · We at Raise are hiring an IT Security Analyst for one of our top clients. After establishing themselves as an industry leader, they're now expanding their team to meet ri ...


  • Cineplex Toronto, Canada Full time

    Work location: · Home Office 1303 Yonge StCity: · TorontoWhat you will do: · Senior Manager, Cyber Security Operations · This is a hybrid role, based out of the Cineplex Head Office at 1303 Yonge St, Toronto, 3 days per week. · The Cineplex Cyber Security Team has an immediate op ...


  • Compest Solutions Inc Toronto, Canada

    **- ( Cyber Technology Compliance Operations Standard - Project)** · **Max Rate: CAD $60/hr on Inc** · **Bank domain** · **Location: GTA** · **Work Type: Hybrid (3 days in office)** · **Technical Writer** · - Produce a **Cyber Technology Compliance Operations Standard**: · - Requ ...


  • Chartered Professional Accountants of Canada Toronto, Canada

    **About Chartered Professional Accountants of Canada** · Chartered Professional Accountants of Canada (CPA Canada) works collaboratively with the provincial, territorial and Bermudian CPA bodies, as it represents the Canadian accounting profession, both nationally and internation ...


  • Atlantis IT group Toronto, Canada

    **Technical Security Analyst** · **Toronto, ON (**Onsite)** · **Long Term** · **Job description**: · 5+ years of IT experience with at least 3 years of progressive experience in Cyber Security risk management and Security GRC (Governance, Risk and Compliance). Completion of CISM, ...


  • State Street Toronto, Canada

    Who we are looking for · Why this role is important to us · The team you will be joining plays an important role in the overall success of the organization. Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance ...


  • State Street Toronto, Canada

    Who we are looking for- · This role can be performed in a hybrid model, where you can balance work from home and office to match your needs and role requirements. · Why this role is important to us · The team you will be joining plays an important role in the overall success of t ...


  • Scotiabank Toronto, Canada

    Requisition ID: 197409 · Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. · **The Team** · Contributes to the overall success of the Cyber Operations Management (COM) and contributes to the overall success of the Cyber Securit ...


  • Royal Bank of Canada Toronto, Canada

    **Job Summary** · Develops and implements global risk management reports, systems, and processes to minimize investments risks. Applies extensive, in-depth knowledge, skills, and practices to perform complex assignments. · **What is the opportunity?** · Reporting to the Senior Di ...


  • Roots Toronto, Canada

    Roots is more than just an/the iconic Canadian retailer, we are a group of passionate employees who act with integrity, trust each other, and do what is right. We work in a space where people can grow and develop, with a team of people who own results and are dedicated to seeing ...

  • Royal Bank of Canada

    Scrum Master

    1 day ago


    Royal Bank of Canada Toronto, Canada

    **Come Work with Us** · At RBC, our culture is deeply supportive and rich in opportunity and reward. You will help our clients thrive and our communities prosper, empowered by a spirit of shared purpose. · Whether you're helping clients find new opportunities, developing new tech ...

  • University Health Network

    Project Coordinator I

    5 hours ago


    University Health Network Toronto, Canada

    **PROJECT COORDINATOR I** · **Job Posting #**: 923154 · **Site**: Princess Margaret Cancer Centre · **Department**: UHN Digital · **Reports to**: Regional Chief Information Security Officer · **Hours**: 37.5 hours per week · **Salary**: Commensurate with experience and consistent ...


  • ydc pro Inc Toronto, Canada

    Hi All, · We are hiring for **Security Consultant (Cyber + Networking) **Position for **Toronto** Location · Work type: Contract and Hybrid · Client: Ministry · Residential Status**:Must be PR or Citizen** · **Must Haves**: · **Cyber Security and Network Security** · - 2+ years h ...


  • Zortech Solutions Toronto, Canada

    Skills and Responsibilities: · - Proven experience in network engineering, operations and deployment, or a similar field, preferably in a large-scale environment. · - Bachelor's degree in engineering, Information Technology, Computer Science, or related field. · - Excellent writt ...


  • TD Bank Toronto, Canada

    **TD Description** · Stay current and competitive. Carve out a career for yourself. Grow with us. · **Department Overview** · - Reporting to the Vice President, Enterprise Technology Risk Management, the Associate Vice President, Enterprise Technology Risk Management will be resp ...


  • Q1 Technologies Toronto, Canada

    Skills and Responsibilities: · - Proven experience in network engineering, operations and deployment, or a similar field, preferably in a large-scale environment. · - Bachelor's degree in engineering, Information Technology, Computer Science, or related field. · - Excellent writt ...


  • BDO Toronto, Canada

    **Putting people first, every day** · BDO is a firm built on a foundation of positive relationships with our people and our clients. Each day, our professionals provide exceptional service, helping clients with advice and insight they can trust. In turn, we offer an award-winning ...


  • Tata Consultancy Services Toronto, Canada

    **About TCS** · TCS operates on a global scale, with a diverse talent base of more than 600,000 associates representing 153 nationalities across 55 countries. TCS has been recognized as a Global Top Employer by the Top Employers Institute - one of only eight companies worldwide t ...

  • CDW

    Junior Consultant

    1 day ago


    CDW Toronto, Canada

    As a Fortune 200 leader, we are the driven professionals and technology experts Canadian companies turn to most often to serve their information technology, security and privacy needs. Our Cyber Risk associate consultant positions provide you with accelerated opportunities to tur ...


  • RSM US LLP Toronto, Canada

    We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, inclusive culture ...