- Company Name
- Lundin Mining Corporation
- Job Title
- Cybersecurity Specialist
- Job Description
-
**Job Title:** Cybersecurity Specialist
**Role Summary:**
Lead the design, implementation, and maintenance of enterprise threat detection, response, and endpoint visibility systems. Drive proactive threat hunting, incident response, and automation to protect critical infrastructure.
**Expectations:**
- 7+ years of experience in cybersecurity engineering, threat detection, or SOC operations.
- Proven expertise with CrowdStrike Falcon, next‑gen SIEMs (LogScale, Splunk, Sentinel), and Tanium.
- Advanced proficiency in PowerShell scripting; familiarity with Python or Bash.
- Strong knowledge of MITRE ATT&CK, cyber kill chain, threat intelligence feeds, and network protocols (TCP/IP, DNS, HTTP).
**Key Responsibilities:**
- Design and optimize detection rules, correlation logic, and dashboards in LogScale and other SIEMs.
- Build custom detections and behavioral analytics informed by attacker TTPs.
- Integrate endpoint, cloud, and infrastructure data sources into the threat detection ecosystem.
- Lead threat hunting campaigns across CrowdStrike, Tanium, and SIEM data sets.
- Investigate and respond to incidents, conduct forensic analyses, and lead post‑incident reviews.
- Utilize Tanium for endpoint management, compliance, patching, and automated remediation.
- Develop and maintain PowerShell scripts for automation of detection, remediation, and forensic collection.
- Build integrations among EDR, SIEM, SOAR, ticketing, and other security tools.
**Required Skills:**
- CrowdStrike Falcon (EDR, Real‑Time Response, detections, threat graph).
- Next‑gen SIEM proficiency (LogScale, Splunk, Sentinel).
- Tanium Endpoint Management.
- PowerShell scripting; optional Python/Bash skill set.
- CQL (CrowdStrike Query Language) and log query optimization.
- Deep understanding of MITRE ATT&CK, cyber kill chain, and threat intel integration.
- Experience with SOAR platforms (Cortex XSOAR, Sentinel Playbooks, Splunk Phantom).
- Exposure to cloud environments (AWS, Azure, GCP) and native security tooling.
- Strong analytical, problem‑solving, and communication skills.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
- Certifications (preferred): GIAC GCIA, GCIH, GCFA; CISSP; CrowdStrike CCFR; Tanium Certified Administrator; Microsoft SC‑200.