user avatar

Cyber Security Specialist

22nd Century Technologies, Inc.

Posted today
Secret
Unspecified
Unspecified
IT - Security
Regina (On-Site/Office)

OnSite: Regina SK Onsite will only be considered

Position and/or Project Description:
Looking to bring in staff augmented contractor professional services of a Cyber Security Specialist. The Cyber Security Specialist is responsible for the support to strengthen our overall cyber security posture through implementation and monitoring of advanced security controls across on prem and cloud environments. This role will ensure compliance with industry specific security frameworks and standards while proactively identifying and mitigating cybersecurity risks. This is a contracted role and must be onsite full-time.

Mandatory Education/Certifications:
University degree in Computer Science, Computer Engineering, Information Security or a related field; an equivalent combination of education and extensive professional experience in cybersecurity will be considered. At least 5 years of hands-on experience in IT security or cybersecurity operations, including involvement in security monitoring and incident response.

Desired Education/Certifications:
One or more relevant professional security certifications are strongly desired - for example, CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), GIAC certifications (SANS Institute), or vendor-specific credentials such as Microsoft Certified: Azure Security Engineer Associate. These certifications demonstrate a depth of knowledge and commitment to ongoing professional development.

Mandatory Experience:
• Technical Expertise: Proven experience with cloud and enterprise security technologies - specifically Microsoft Azure, Microsoft Defender suite, Microsoft Sentinel (SIEM), and vulnerability management platforms (such as Tenable One). Demonstrated ability to configure and use these tools for threat detection, analysis, and automated response. Proficiency in PowerShell, JSON, Kusto Query (KQL), Logic Apps, or a similar language.
• Frameworks & Methodologies: Strong familiarity with industry cybersecurity frameworks and standards (e.g. NIST Cybersecurity Framework, ISO/IEC 27001/27002, and relevant CSA security standards). Knowledge of incident response methodologies and best practices for handling and managing cybersecurity incidents.
• Analytical Skills: Excellent analytical and problem-solving skills with the ability to assess complex systems for security risks. Capable of analyzing system logs, alerts, and forensic data across various sources (network, endpoint, cloud) to identify and resolve security issues.
• Security Clearance: Must be eligible to obtain and maintain a Government of Canada Level II (Secret) Security Clearance. This requires a comprehensive background check; the candidate must possess the personal reliability and integrity to meet federal security screening requirements. (Ref: Levels of security - Canada.ca)

Desired Experience:
• Industry Experience: Experience working in highly regulated or critical infrastructure environments (energy utilities, nuclear industry, etc.) is an asset. Familiarity with the unique cybersecurity challenges and regulatory requirements of industrial or power systems (including SCADA/ICS environments) will be beneficial.
• Communication & Teamwork: Strong verbal and written communication skills with an ability to articulate cybersecurity risks and strategies to both technical and non-technical stakeholders. Proven ability to work effectively in a collaborative team environment, contributing to collective goals and mentoring others in best practices.

Deliverables:
Incident Reports and Analysis: Detailed security incident investigation reports and post-incident lessons-learned documentation for any cybersecurity incidents.
• Vulnerability Assessment Reports: Regular vulnerability scan results and remediation tracking reports (utilizing Tenable One) to communicate risk levels and progress to stakeholders.
• Security Posture Metrics: Periodic security posture and compliance reports, including Azure Secure Score dashboards and other metrics, to inform management of the current state and improvements over time.
• Compliance Documentation: Documentation demonstrating alignment of security controls with NIST CSF, ISO 27001, and applicable CSA standards, to support regulatory audits and internal compliance requirements.
• Updated Security Artifacts: Up-to-date cybersecurity artifacts such as security policy documents, standard operating procedures, network diagrams, and system security plans for nuclear-related projects and systems.
group id: 10216532
Find 22nd Century Technologies, Inc. on Social Media
Network Employers
user avatar
About Us
We are one of the fastest growing IT Service Integrator & Workforce Solution companies in the US. Founded in 1997, we are a Certified National Minority Business Enterprise with 6,000+ people including 600+ Cyber SMEs nationwide supporting our customers in all 50 states, Canada, & Mexico. With HQs in Somerset, NJ & Mclean, VA, we have 14 offices throughout the US. As part of our unrelenting focus on quality & compliance, our delivery is based on Certified Matured Processes including CMMI L3 Dev & SVC, ISO 20000, ISO 27001, & ISO 9001 quality processes. With a strong focus on the public sector, we currently hold government contracts with 14 out of 15 Federal Executive agencies including DoD, 37 other Federal agencies, 50 States, 115+ Local agencies, & 37 School Districts. In the last three years, we have expanded our services to Fortune 500 & other commercial clients & currently support 80+ commercial clients. Recognized among “Best Company to Work For” by Forbes.

22nd Century Technologies, Inc. Jobs


Job Category
IT - Security
Clearance Level
Secret