Senior Cybersecurity Analyst
Ventes et marketingDescription
MHIRJ is the merger of two significant legacies: Mitsubishi Heavy Industries (MHI) and the CRJ Series program. We provide comprehensive solutions for operations, engineering, and customer support, including maintenance, refurbishment, technical publications, marketing and sales activities for the global regional aircraft industry. We are seeking a Senior Cybersecurity Analyst to join our team!
The Senior Cybersecurity Analyst plays a key role in MHIRJ's cybersecurity team, responsible for protecting the company's information systems, data, and networks. This person leads security monitoring and incident response activities, contributes to improving security controls and processes, and serves as a technical and procedural reference for junior analysts and IT teams.
Your Contribution as a Senior Cybersecurity Analyst
Security Monitoring and Incident Response
- Lead daily security alert monitoring activities (EDR, SIEM, email security, M365 security, etc.).
- Conduct in-depth analysis and investigation of security events to distinguish false positives from real incidents.
- Handle medium to high-severity incidents (phishing, malware, compromised accounts, data exfiltration, etc.) and coordinate actions with IT teams and stakeholders.
- Document incidents, root causes, and corrective measures, then improve procedures based on lessons learned.
Access and Identity Management
- Provide guidance and oversee the implementation of access controls (principle of least privilege, role-based access, onboarding, transfers, and offboarding).
- Collaborate with IAM and Infrastructure teams to enhance identity security (MFA, privileged access, conditional access, etc.).
- Review access patterns and support periodic access recertification exercises for critical systems.
Support for Vulnerability and Patch Management
- Analyze vulnerability assessment results and contribute to prioritizing patches based on risk and criticality.
- Work closely with Infrastructure, Network, and Application teams to ensure remediation tracking and escalate as needed when timelines or risks are deemed unacceptable.
- Participate in the continuous improvement of the vulnerability management program (SLA, reports, dashboards, etc.).
Governance, Compliance, and Security Awareness
- Contribute to the development and maintenance of security procedures, standards, and operational guidelines.
- Participate or lead the preparation of evidence required for audits, customer security questionnaires, and compliance activities (e.g., controls aligned with ISO 27001 and OEM manufacturer requirements).
- Provide recommendations and contribute to cybersecurity awareness activities (phishing simulations, targeted training).
Tool Management and Process Improvement
- Serve as an expert resource for certain security tools (EDR, Tanium, SIEM, Microsoft 365 security, email security, etc.).
- Participate in the design and implementation of use cases, dashboards, and alerts in SIEM platforms and related systems.
- Propose and implement improvements to security processes, operational procedures, and automation (scripts, orchestration, integrations).
- Mentor junior analysts on tools, techniques, and best practices.
- What is Required to Succeed:
Education and Experience
- Bachelor's degree in information technology, computer science, cybersecurity, or equivalent experience.
- Generally 5 years or more of experience in cybersecurity, within a Security Operations Center (SOC), incident response, or infrastructure security in an enterprise environment.
Solid Understanding of the Following
- Networks: TCP/IP, VPN, firewalls, proxies, DNS, routing.
- Operating Systems: Windows Server, Windows workstations, and basic Linux knowledge.
- Core Services: Active Directory, Microsoft 365 (M365/O365), virtualization, and basic cloud computing (Azure and/or AWS).
- Practical experience with several of the following technologies:
- Endpoint security and EDR solutions (e.g., CrowdStrike or equivalent).
- SIEM and log management (use case creation, analysis, and basic adjustments).
- Vulnerability and patch management (e.g., Tanium, Qualys).
- Email and Microsoft 365 security controls, web filtering, and identity security (MFA, conditional access).
Behavioral Skills
- Excellent analytical and problem-solving skills; ability to explain technical issues in business terms.
- Strong autonomy and sense of responsibility; ability to lead incidents and initiatives to completion.
- Excellent written and verbal communication skills; ability to collaborate effectively with IT teams and business stakeholders.
- Team player and willingness to support the development of junior team members.
Assets
- Knowledge of frameworks such as ISO 27001, NIST CSF, or SOC 2.
- Scripting and automation skills (PowerShell, Python) to optimize recurring tasks.
- Relevant certifications (e.g., Security+, CySA+, AZ-500, MS-500, SSCP, CISSP, GIAC).
- Experience in the aviation, industrial, or operational technology (OT) sectors.
- English is required for the position as the selected candidate will need to regularly communicate with colleagues, clients, or partners located outside of Quebec.
If your experience matches the qualifications required for this position, we encourage you to apply - we would like to get to know you!
Why Join Us?
Are you passionate about aviation? Are you eager to have a significant impact on clients? Aspiring to a fulfilling career as a Senior Cybersecurity Analyst, you will have the opportunity to:
- Actively contribute to strengthening cybersecurity in the aerospace industry.
- Support and resolve real incidents, across diverse projects and challenges related to cloud and on-premises environment security.
- Collaborate with experienced professionals in cybersecurity, infrastructure, and engineering.
At MHIRJ, we recognize and appreciate your contribution to our unified team. We live by our values and embody our behaviors that drive our success. Take off with a team that shares your passion and supports your journey. Let's soar together at MHIRJ!
We offer comprehensive benefits for you and your family, as well as numerous career advancement opportunities.
- Competitive health, dental, and vision insurance
- Annual vacation bank
- Competitive remuneration and annual bonus plan
- Retirement savings plans
- Employee discounts and more!
*MHIRJ is an equal opportunity employer and encourages women, Indigenous peoples, people with disabilities, and visible minorities to apply.* #MHIRJ1
Cette offre a été agrégée depuis indeed. Groupe Sentinella n'est pas l'employeur; postuler vous redirige vers le site original. Le texte intégral appartient à l'auteur de l'offre.
Envie qu'on travaille pour vous ?
Inscrivez-vous au banc de talents Sentinella. On vous contacte dès qu'un mandat correspond à votre profil — y compris des postes comme celui-ci.
Rejoindre le banc de talents