Senior Security Detection Engineer providing expertise for RBC's Global Cyber Security. Develops automation for security use cases to enhance detection and response capabilities.
Responsibilities
Provide global accountability to provide technical and subject matter expertise supporting cyber uses cases developed from security systems and infrastructure for security monitoring
Work with RBC technology and/or application partners (Cybersecurity, Technology Infrastructure, SOC) to develop and strengthen use cases for continuous security monitoring
Develop runbooks for those use cases that align with security operations processes and streamline the incident investigation and response tasks
Work with Defensive Threat Operations Correlation Engineering to facilitate log ingestion and use case development in our SIEM platforms
Periodically review use case library, perform attestation on existing use cases, participate in tuning discussions/activities and provide improvement recommendations where necessary/possible
Develop and maintain lines of communication with various security groups, Security Operations Centre leadership and technology stakeholders
Develop processes to support a maturing program
Provide operational metrics and reports as needed
Requirements
2 to 5 years of industry experience
Experience in cloud environments (AWS, Azure, GCP, OCP)
Intermediate experience with Python
Experience with building detections in SIEM
Experience with automation in SOAR
Educational background in IT, Engineering, Cybersecurity and/or equivalent relevant experience
Demonstrated technical leadership ability
In-depth understanding of Security Operations and Security Technologies, with previous experience working in a SOC environment
Understanding of common exploitation techniques and awareness of new threats
Strong analytical and complex problem-solving skills
Expert understanding of SIEM technology and operations
Strong Networking and Enterprise IT Infrastructure knowledge with TCP/IP packet level knowledge
Certifications in information security (GCIH, GCSA, GPCS, GCTD, GCFR)
Certifications in cloud platforms (AWS, Azure, GCP, or OCP)
Experience in working within a large, global financial services company
A good understanding of modern, cloud centric architectures and DevOps principles.
Benefits
A comprehensive Total Rewards Program including bonuses and flexible benefits
Competitive compensation
Leaders who support your development through coaching and managing opportunities
Ability to make a difference and lasting impact
Work in a dynamic, collaborative, progressive, and high-performing team
A world-class training program in financial services
Flexible work/life balance options
Opportunities to do challenging work
Job title
Senior Security Detection Engineer – Global Security
Enterprise Services Manager leading the Technical Account Management team at Proofpoint. Responsible for maximizing customer value of products and services while ensuring high customer satisfaction.
Information Systems Security Engineer providing technical solutions and support for Department of Defense systems. Leveraging industry knowledge to increase operational efficiencies focusing on classified data systems.
Network Security Architect at Dell influencing security culture and designing secure network environments. Collaborating across teams and developing strategies for modern network security.
Senior Enterprise Security Engineer performing security assessments and threat modeling for Salesforce systems. Collaborating with teams and defining security standards across diverse technology environments.
Fullstack Software Engineer focusing on security to ensure resilience and data protection at health tech company Alan. Involved in building foundational security and authentication systems.
Security Engineer building trust foundations for bare - metal platforms at OpenAI. Designing and operating core security infrastructure for reliable compute platforms across global infrastructure.
Cybersecurity Consultant involved in deploying security tools and supporting compliance projects in Andorra. Working with cross - functional teams to enhance cybersecurity measures and documentation.
Microsoft Success Manager helping partners grow secure, scalable Microsoft practices across ANZ. Championing Microsoft security solutions and supporting partner success strategies in the region.
Assistant AVP overseeing a 5 - member team for Access Management services in Pune and Mumbai, ensuring high standards of service delivery and compliance.
Own global security systems infrastructure for QVC, managing access control and networked security systems across multiple regions. Collaborate with IT to ensure security and technology initiatives meet organizational needs.