drjobs Security Information and Event Management (SIEM) and XDR Technical Advisor

Security Information and Event Management (SIEM) and XDR Technical Advisor

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Ottawa - Canada

Yearly Salary drjobs

$ 101874 - 127511

Vacancy

1 Vacancy

Job Description

Priority may be given to the following designated employment equity groups: women Indigenous Peoples* (First Nations Inuit and Métis) persons with disabilities and racialized persons*.

* The Employment Equity Act which is under review uses the terminology Aboriginal peoples and visible minorities.

Candidates are asked to self-declare when applying to this hiring process.

City:Ottawa

OrganizationalUnit:Knowledge Information and Technology Services

Classification:CS-3

Tenure:Continuing

Language Requirements:English

Work arrangements:Due to the nature of the work and operational requirements this position is eligible for a hybrid work arrangement (combination of working onsite and telework). Employees in this position who telework will be required to travel to the designated work site at least three times per week or a minimum of 60% of their regular work schedule at their own expense.

At the NRC we recognize that Indigenous candidates may have important connections to their communities and you may be eligible for an exception to this work arrangement. Alternative work arrangements may also be considered to accommodate candidates as required. To learn more about these options please contact the NRC Hiring team using the contact information below.

Discover the possible

Anything is possible at the NRC named in 2025 one of Canadas Top Employers for Young People Top Employer in the National Capital Region and Forbes Canadas Best Employers!

As Canadas leading research and technology organization our world-renowned research pushes the boundaries of science and engineering to make the impossible possible. Every day we explore new ideas through innovative research and help companies discover possibilities that impact Canadas future and the world.

At the NRC youll also discover new possibilities. Our supportive workplace fosters a culture of creativity welcoming fresh perspectives and innovation at all levels. We value teamwork. Youll collaborate across multiple fields and with the brightest minds to find creative solutions. Most importantly youll discover whats possible within you as you grow make valuable contributions and progress in your professional journey. From ground-breaking discoveries to a life-changing career discover your possible at the NRC.

The role

We are looking for a Security Information and Event Management (SIEM) and XDR Technical Advisor to support our Chief Information Officer Branch. The Technical Advisor Cloud and Data Security would be someone who shares our core values of Integrity Excellence Respect and Creativity.

The key activities for this position are the following:

  1. Develop implement and manage the Security Information and Event Management (SIEM) platform to aggregate and correlate data from multiple security systems;
  2. Develop implement and manage the Extended Detection and Response (XDR) platform to improve the automation of vulnerability event and incident management as they relate to Identity Endpoint Network Cloud etc.;
  3. Develop implement and manage NRCs Insider Threat and Data Loss Prevention (DLP) program in collaboration with NRCs Information Management group;
  4. Coordinate the integration and the evolution of multiple cyber security tools on all NRC-managed assets into a comprehensive and coherent suite of tools;
  5. Configure dashboards and reports for cyber security events incidents and vulnerabilities;
  6. Establish key performance indicators to evaluate the effectiveness of NRCs cyber defence strategy and to ensure that the Cyber Defence Teams objectives are being achieved;
  7. Ensure the onboarding and integration of new NRC projects into cyber security services;
  8. Develop operational cyber security instruments (policies directives standards guidelines and configuration baselines) tailored to the NRC.
  9. Achieve and maintain industry standard security certification appropriate for the position.

Screening criteria

Applicants must demonstrate within the content of their application that they meet the following screening criteria in order to be given further consideration as candidates:

Education

A University or College degree in Computer Sciences or a College diploma in Computer sciences or an equivalent combination of experience and education

For information oncertificates and diplomas issued abroad please see Degree equivalency

  1. Significant experience in the IM/IT field specifically in roles related to cyber security within a Security Operations Center (SOC) or similar environment;
  2. Significant experience as a system administrator particularly with cyber security tools such as antivirus vulnerability management detection and response data loss prevention etc.;
  3. Significant experience in event and incident management (i.e. preparation; detection and analysis; containment eradication and recovery; post-incident activity);
  4. Strong experience in scripting or programming;
  5. General experience in implementing adequate technical and organizational safeguards to protect IT assets information and the continuity of IT services;
  6. Experience in writing various types of documentation such as reports briefing notes technical guides and standard operating procedures;
  1. Extensive knowledge of the general principles of Cyber Security operations;
  2. Significant knowledge of SIEM/XDR technologies and specifically Microsoft Sentinel Microsoft 365 Defender and Microsoft Defender for Cloud;
  3. Strong knowledge of query and scripting tools such as Microsoft PowerShell and Kusto as well as reporting tools such as Power BI Report Builder;
  4. Broad knowledge of activities and technologies relevant to cyber security including endpoint security patch management incident management change management network monitoring malware analysis vulnerability assessments data loss prevention technologies etc.;
  5. Broad knowledge on all aspects of an IT infrastructure including server and workstation hardware and software Windows and Linux operating systems Windows Active Directory TCP/IP networks and network architecture as they apply to IT security (e.g. zoning) encryption and communication technologies cloud computing etc.;
  6. General knowledge of cyber security related policies directives standards and guidelines used in the Government of Canada;
  7. General knowledge of cyber security standards and frameworks from NIST CSE ISO CIS etc;

Platform specific security certification (e.g. Microsoft AWS) will be considered an asset;

Current industry standard security certification (e.g. CISSP CISM CCSP CISA) will be considered an asset;

Please direct your questions with therequisition number (24181) to:

E-mail:

Telephone:

Closing Date: 17 October 2025 - 23:59 Eastern Time

For more information on career tools and other resources check outCareer tools and resources

*If you are currently a term or continuing employee at NRC please apply through the SuccessFactors Careers module from your NRC computer.


Required Experience:

Unclear Seniority

Employment Type

Temp

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.