100 - 125 Posted: 1 day ago
Job Description
<p><h3>Senior Cybersecurity Specialist – Incident Response</h3><p>Join to apply for the <b>Senior Cybersecurity Specialist – Incident Response</b> role at <b>Sage</b></p>
<p>As a Senior Cybersecurity Specialist – Incident Response, you'll join a global team and play a key role in protecting Sage’s global systems, data, and customers. This is a hands‑on, senior technical role focused on advanced incident response, threat hunting, and continuous improvement rather than tier‑one alert triage. You will monitor and investigate medium to critical security events, respond to threats, conduct forensics, and proactively hunt for indicators of malicious activity across cloud and on‑premises environments. You will also develop playbooks, enhance detection rules, and refine processes that strengthen our overall cyber defence capabilities.</p>
<h3>Location</h3>
<p>Hybrid – 3 days per week from our Vancouver office and 2 days from home.</p>
<h3>Work Schedule</h3>
<p>Monday–Friday, 8 am–4 pm PST, with occasional adjusted hours (6 am–2 pm PST) when supporting UK colleagues during planned PTO. Part of a shared on‑call rotation, one weekend per month.</p>
<h3>Minimum Qualifications</h3>
<ul>
<li>3–5 years of experience working in cybersecurity leading medium to critical security incident response.</li>
<li>Hands‑on experience in incident response, including triage, containment, remediation, and end‑to‑end security investigations.</li>
<li>Experience partnering with Product Development/Engineering, IT, Legal, Cloud Ops, and wider cybersecurity teams to lead remediation.</li>
<li>Proficiency working with SIEM and EDR tools to investigate large datasets and diverse telemetry.</li>
<li>Experience in threat hunting, including writing or tuning detection rules.</li>
<li>Knowledge of cyber threat intelligence practices, including analyzing TTPs, using intelligence frameworks, and actioning intelligence to enhance detections and response.</li>
<li>Ability to work the required hours and on‑call rotation as outlined above.</li>
</ul>
<h3>Ideal / Bonus Qualifications</h3>
<ul>
<li>Strong digital forensics skills, including analysis, timeline reconstruction, and interpreting artefacts across Windows, macOS, Linux, and cloud environments.</li>
<li>Experience in cloud incident response across Azure, AWS, or GCP, including familiarity with cloud‑native logging, identity systems, and investigation techniques.</li>
<li>Knowledge of application security, including investigating application‑layer attacks, abuse cases, and SaaS‑specific threats.</li>
<li>Advanced knowledge of cybersecurity and information security control best practices supported by qualifications such as CISSP, SANS, or specialised IR/forensics/threat‑hunting credentials.</li>
</ul>
<h3>Key Responsibilities</h3>
<ul>
<li>Lead the response and management of cybersecurity incidents to ensure rapid containment, effective remediation, and secure recovery.</li>
<li>Perform proactive threat hunting across endpoints, servers, cloud environments, and applications to identify malicious behaviour, emerging threats, and security gaps.</li>
<li>Enhance detection rules and tuning to improve threat visibility and reduce false positives.</li>
<li>Apply threat intelligence to improve detections, prioritise investigations, and strengthen incident response.</li>
<li>Conduct forensics to identify root cause and reconstruct attacker activity.</li>
<li>Take ownership of investigations, making informed technical decisions and driving actions through to resolution.</li>
<li>Enhance processes, playbooks, and procedures to improve the quality and efficiency of event, threat, and incident handling.</li>
<li>Lead cyber defence aspects of projects or key workstreams in larger initiatives.</li>
<li>Mentor junior team members and support their development.</li>
<li>Monitor and investigate security alerts from SIEM, EDR, NDR, cloud platforms, and other security systems.</li>
</ul>
<h3>Benefits</h3>
<ul>
<li>100 % paid premiums for health, dental, and vision coverage</li>
<li>RRSP contribution match (100 % up to 4 %)</li>
<li>35 days paid time off (11 holidays, 16 vacation days, 3 personal days, 5 sick days)</li>
<li>Work Away, an opportunity to work & play for 10 weeks in a country of your choice (from a Sage‑approved list)</li>
<li>18 weeks of paid parental leave for birth, adoption, or surrogacy offered 1 year after your start date</li>
<li>5 days paid yearly to volunteer (through Sage Foundation)</li>
<li>$5,250 tuition reimbursement per calendar year starting 6 months after your hire date</li>
<li>Sage Wellness Rewards Program (annual fitness reimbursement)</li>
<li>Library of on‑demand career development options and ongoing training offerings</li>
</ul>
<h3>Compensation</h3>
<p>Compensation offered will be determined by factors such as location, level, job‑related knowledge, education, and experience. For this role, in locations where a salary range is required, the target base salary range for new hires is C$125,000 to C$145,000. In addition to base salary, employees will participate in a bonus plan (20 %) based on company and individual performance.</p>
<h3>Additional Information</h3>
<p>Seniority level: Mid‑Senior level</p>
<p>Employment type: Full‑time</p>
<p>Job function: Engineering and Information Technology</p>
<p>Industries: Software Development</p></p>
#J-18808-Ljbffr
Create Your Resume First
Give yourself the best chance of success. Create a professional, job-winning resume with AI before you apply.
It's fast, easy, and increases your chances of getting an interview!
Application Disclaimer
You are now leaving Techaroundworld.com and being redirected to a third-party website to complete your application. We are not responsible for the content or privacy practices of this external site.
Important: Beware of job scams. Never provide your bank account details, credit card information, or any form of payment to a potential employer.