Cyber Security Specialist

Requisition ID:  189807 
Career Group:  Corporate Office Careers 
Job Category:  IT Cyber Security Operations 
Travel Requirements:  0 - 10%
Job Type:  Full-Time
 

Country: Canada (CA) 
Province: Alberta; Nova Scotia; Ontario  
City: Mississauga / Calgary / Stellarton
Location: Tahoe Office, Calgary Office, Foord St. Office

 
Embark on a rewarding career with Sobeys Inc., celebrated among Canada’s Top 100 employers, where your talents contribute to our commitment to excellence and community impact.

Our family of 128,000 employees and franchise affiliates share a collective passion for delivering exceptional shopping experiences and amazing food to all our customers. Our mission is to nurture the things that make life better – great experiences, families, communities, and our employees. We are a family nurturing families.  
 
A proudly Canadian company, we started in a small town in Nova Scotia but we are now in communities of all sizes across this great country. With over 1,600 stores in all 10 provinces, you may know us as Sobeys, Safeway, IGA, Foodland, FreshCo, Thrifty Foods, Lawtons Drug Stores or another of our great banners but we are all one extended family. 
 

Ready to Make an impact?

 

 

The Specialist, Cyber Incident Management will be a hands-on cybersecurity professional responsible for investigating and responding to a wide range of security incidents. You will leverage various security tools, collaborate with internal teams and external partners, and contribute to the continuous improvement of our incident response capabilities. This role requires a keen analytical mind, strong problem-solving skills, and the ability to operate effectively under pressure.

 

 

Sobeys is full of exciting opportunities, and we are always looking for bright new talent to join our team! We currently have a full-time opportunity for a Cyber Security Specialist. This role can be based out of one our main offices including: Stellarton, NS; Mississauga, ON; Calgary, AB.

Here’s where you’ll be focusing:

 

 

Key Responsibilities:

 

  • Conduct efficient and thorough investigations of security alerts, events, and incidents using a variety of security tools, including SIEM, Firewall, WAF, EDR, IDS/IPS, and Email Security Gateways.
  • Analyze security logs, network traffic, and endpoint data to identify indicators of compromise (IOCs) and determine the scope and impact of incidents.
  • Perform initial triage and containment actions to limit the spread and impact of security incidents.
  • Engage with end-users and other teams to validate suspicious activities and gather additional context for investigations.
  • Collaborate closely with our Managed Security Service Provider (MSSP), fostering a strong partnership for seamless alert escalation and information exchange.
  • Effectively escalate security gaps, findings, and critical incidents to appropriate internal teams for timely remediation.
    Clearly document incident response activities, investigation findings, remediation steps, and lessons learned for future reference and reporting.
  • Contribute to the fine-tuning of security use cases within the SIEM to reduce alert fatigue, minimize repetitive alerts, and decrease false positives, enhancing overall security operations efficiency.
  • Collaborate with the Threat Management team in the creation, testing, and refinement of new security use cases and detection rules.
  • Develop and maintain incident response playbooks, Standard Operating Procedures (SOPs), and other operational documentation.
  • Provide technical support and guidance to other IT teams on security best practices, emerging threats, and incident prevention.
  • Participate in on-call rotations, including nights and weekends, to ensure timely response to critical security incidents outside of regular business hours.
  • Stay up-to-date with the latest cybersecurity threats, vulnerabilities, and industry best practices.

 

#LI-Hybrid    #LI-VJ1

What you have to offer:

 

Qualifications:


Mandatory:

 

  • An undergraduate degree or diploma in computer science, information security, or a related technical discipline.
  • 3+ years of industry experience working in Cybersecurity operations (e.g., SOC Analyst/Specialist, Incident Responder).
  • Strong understanding of network and system security concepts, including TCP/IP, operating systems (Windows, Linux), common attack vectors, and defensive strategies.
  • Proficiency in using a variety of security tools and technologies, including but not limited to: SIEM, EDR, IDS/IPS, Firewalls, Email security gateways, Proxy, etc.
  • Excellent analytical and problem-solving skills with a methodical approach to complex investigations.
  • Strong attention to detail and the ability to work effectively and make sound decisions under pressure during critical incidents.
  • Ability to work on on-call rotations, including nights and weekends, to respond to security incidents outside of regular business hours.
  • Excellent written and verbal communication skills, with the ability to articulate technical information clearly to both technical and non-technical audiences.
  • Strong interpersonal skills, with the ability to build rapport and collaborate effectively with diverse teams and external partners.
  • Relevant industry certification such as Security+, CySA+, CEH, or equivalent.

 

Nice to have:

 

  • Proven experience working directly in or closely with Managed Security Service Providers (MSSPs).
  • Knowledge and experience working in a complex retail technology environment is highly desired.
  • Experience in Digital Forensics and Incident Response (DFIR) beyond typical SecOps, involving complex and large-scale incidents such as Business Email Compromise (BEC), Ransomware, or Website Compromise.
  • Advanced technical industry certifications in the field of DFIR, such as GCIH, GCFA, or similar.

 

At Sobeys we require our teammates to have the ability to adhere to a hybrid work model that requires your presence at one of our office locations at least three days per week. This requirement is integral to our commitment to team collaboration and the overall success of our office culture.

 

We offer a comprehensive Total Rewards package, which varies by role and designed to help our teammates to live better – physically, financially and emotionally. 

Some websites share our job opportunities and may provide salary estimates without our knowledge. These estimates are based on similar jobs and postings for general comparison, but these numbers are not provided by our organization nor monitored for accuracy. 

We will consider factors such as your working location, work experience and skills as well as internal equity, and market conditions to ensure the selected candidate is paid fairly and competitively. We look forward to discussing the specific compensation details relevant to this role with candidates who are selected to move forward in the recruitment process. 

 

Our Total Rewards programs, for full-time teammates, goes well beyond your paycheque:

  • Competitive Benefits Package, tailored to meet your needs, including health and dental coverage, life, short- and long-term disability insurance.
  • Access to Virtual Health Care Platform and Employee and Family Assistance Program.
  • A Retirement and Savings Plan that provides you with the opportunity to build and add value to your savings.
  • A 10% in-store discount at our participating banners and access to a wide range of other discount programs, making your purchases more affordable.
  • Learning and Development Resources to fuel your professional growth.
  • Parental leave top-up
  • Paid Vacation and Days-off

 

We are committed to accommodating applicants with disabilities throughout the hiring process and will work with applicants requesting accommodation at any stage of this process.