Senior Infrastructure Security Specialist

Posted 9 Days Ago
Be an Early Applicant
Toronto, ON, CAN
Hybrid
Senior level
Aerospace
The Role
Own and improve infrastructure security across corporate, cloud, network, endpoint, and operational environments. Responsibilities include vulnerability and configuration management, SIEM and security monitoring, EDR/XDR, incident response, cloud security, infrastructure hardening, security automation, and support for Government of Canada regulated environments. The role coordinates with IT, Engineering, Operations, and external security providers to reduce risk, remediate vulnerabilities, improve detection, and maintain compliance evidence.
Summary Generated by Built In
At Kepler Communications, we're not just imagining the future of on-demand space connectivity - we're leading it!

Our mission is to provide real-time on-orbit connectivity for critical missions, enabling a new era of data-driven intelligence and innovation. With 33 satellites launched to date, Kepler operates the first commercial optical data relay constellation, enabling real-time, continuous space communications while supporting advanced on-orbit compute and hosted payload capabilities. 

Industry-leading technology is only part of the story. What sets Kepler apart is our team: bold thinkers, skilled builders, and passionate problem-solvers who thrive on pushing the boundaries of what’s possible in space. We believe great ideas come from diverse perspectives, and we’re committed to creating an environment where you can grow, lead, and make a global impact. 
 
If you’re ready to reach higher, move faster, and do work that shapes the future space economy - this is your launchpad. Come build the future with Kepler! 
 
 
What We Offer:
* Competitive compensation with a robust equity plan to share in our success. 
* Comprehensive coverage for health, dental, and vision insurance—including dependents. 
* Unlimited vacation, supportive parental leave policy, and company-wide holiday shutdown. 
* Semi-annual company-wide parties and frequent in-office team events. 
* Relocation packages available for approved roles. 
* $1,500 annual professional development fund to support your growth. 
* Fully stocked Toronto office kitchen with snacks, drinks, games and top-notch kitchen appliances. 
* Town Halls, Celebration Calls, and Company-wide events to stay connected and engaged. 
* We’re a certified Great Place to Work®, seven years in a row!

As Senior Infrastructure Security Specialist, you will protect Kepler’s corporate, cloud, and operational infrastructure. Reporting to the VP, Information Security & CISO, you will own and improve infrastructure security capabilities, including vulnerability management, security monitoring, endpoint protection, system hardening, and incident response.

You will partner with IT, Engineering, Operations, and other teams to reduce security risk while supporting Kepler’s growth. The role also supports regulated and Government of Canada environments that may process Protected or Classified information.

This Toronto-based role follows a hybrid model, with approximately 40% of time spent on-site.

Key Responsibilities:

    Infrastructure Security

    • Provide security expertise for infrastructure, cloud environments, networks, systems, databases, and identity technologies
    • Review architectures and infrastructure changes to identify risks and recommend practical controls
    • Develop secure configuration and hardening standards based on CIS Benchmarks, NIST guidance, and industry best practices
    • Support network security controls, including firewalls, segmentation, secure remote access, and intrusion detection and prevention
    • Partner with IT and Engineering to incorporate security into infrastructure design and operations
    • Vulnerability Management

      • Own Kepler’s infrastructure vulnerability management program
      • Manage authenticated scanning, validate coverage, assess findings, and prioritize remediation based on risk
      • Coordinate remediation with system owners and track vulnerabilities through resolution or approved risk acceptance
      • Measure vulnerability exposure, remediation performance, scanning coverage, and exceptions
      • Administer platforms such as Tenable or equivalent technologies
      • Security Monitoring and Endpoint Protection

        • Own and improve Kepler’s SIEM, security monitoring, and EDR/XDR capabilities
        • Integrate log sources and develop detection use cases across infrastructure, cloud, applications, identity, and security tools
        • Monitor logging coverage, platform health, and detection effectiveness
        • Investigate security alerts and support containment, remediation, and recovery
        • Coordinate investigations and service improvements with Kepler’s MDR/SOC provider
        • Administer platforms such as Securonix, SentinelOne, or comparable technologies
        • Incident Response, Cloud and Automation

          • Support incident investigations involving infrastructure, endpoints, networks, identity, and cloud environments
          • Analyze security telemetry, collect evidence, and coordinate containment and recovery
          • Assess and improve security controls within AWS and/or Microsoft Azure
          • Identify opportunities to automate monitoring, vulnerability management, and security operations using scripts, APIs, and security tools
          • Government and Regulated Environments

            • Implement technical controls for Government of Canada and other regulated environments
            • Support audits, security assessments, inspections, certifications, and remediation activities
            • Maintain documentation and evidence demonstrating that required security controls are operating effectively

Required Skills & Qualifications:

    • Seven or more years of cybersecurity experience in infrastructure security, security engineering, or security operations
    • Strong knowledge of Windows, Linux, networking, cloud platforms, and enterprise IT security
    • Strong hands-on experience administering and operating vulnerability management, SIEM/security monitoring, and EDR/XDR technologies
    • Experience investigating and responding to cybersecurity incidents
    • Knowledge of network security, infrastructure hardening, identity and access management, privileged access, and least-privilege principles
    • Experience securing AWS and/or Microsoft Azure environments
    • Familiarity with NIST CSF, NIST SP 800-171, NIST SP 800-53, and CIS Controls and Benchmarks
    • Ability to communicate technical risks and recommendations to technical and non-technical stakeholders
    • Strong ownership, problem-solving, organization, and cross-functional collaboration skills
    • Ability to obtain and maintain an appropriate Government of Canada security clearance

Bonus Points:

    • Experience with Tenable, Securonix, SentinelOne, or comparable platforms
    • Experience working with an MDR, MSSP, or SOC provider
    • Experience supporting Government of Canada contracts or environments handling Protected or Classified information
    • Familiarity with ITSG-33, ITSP.10.171, the Canadian Program for Cyber Security Certification, and the Contract Security Program
    • Experience with security audits, compliance activities, Python, PowerShell, Bash, APIs, or infrastructure as code
    • Relevant certification such as CISSP, GIAC, CCSP, Security+, CISM, or CISA
    • Relevant degree or an equivalent combination of education and professional experience

What Success Looks Like:

    You will strengthen Kepler’s infrastructure security without unnecessarily slowing the business. Vulnerabilities will be effectively remediated, monitoring will provide appropriate visibility, incidents will be investigated quickly, and environments supporting sensitive government programs will meet applicable security requirements.

$114,000 - 164,000 CAD
Actual total compensation will be determined at the Company’s discretion and is based on a variety of job-related factors, which may include, but are not limited to, relevant knowledge, skills, experience, performance, and education and/or training. The Company encourages all qualified applicants to apply, even if the posted salary range does not align with their expectations, as it does not reflect our total compensation package. 
Job Type: This is for a current vacancy

Employment Equity & Accommodation Statement 
Kepler Communications is an equal opportunity employer committed to building a diverse and inclusive workplace. We welcome applications from all qualified individuals, including women, Indigenous peoples, persons with disabilities, members of visible minorities, and people of all sexual orientations and gender identities. 
 
If you require accommodation during any stage of the recruitment process, please contact our People & Culture team at [email protected], and we will work with you to meet your needs. 

Skills Required

  • 7+ years of progressive cybersecurity experience, including hands-on infrastructure security, security engineering, security operations, or related technical security experience
  • Strong hands-on infrastructure security knowledge across Windows, Linux, networking, cloud, and enterprise IT environments
  • Experience operating or supporting enterprise vulnerability management platforms, including scanning, analysis, prioritization, and remediation
  • Experience with SIEM and security monitoring technologies, log analysis, investigations, detection use cases, and monitoring
  • Experience with endpoint security and EDR/XDR technologies, including alert investigation, containment, and policy management
  • Strong understanding of firewalls, network segmentation, intrusion detection and prevention, secure protocols, and network monitoring
  • Experience supporting cybersecurity incident investigations and remediation
  • Experience securing AWS and/or Microsoft Azure cloud environments
  • Knowledge of infrastructure and operating-system hardening and secure configuration practices
  • Knowledge of NIST CSF, NIST SP 800-171, NIST SP 800-53, and CIS Controls/Benchmarks
  • Understanding of identity and access management, privileged access, authentication, authorization, and least-privilege principles
  • Ability to analyze technical security risks and communicate findings and recommendations to technical and non-technical stakeholders
  • Strong problem-solving, ownership, accountability, and organizational skills
  • Ability to manage multiple priorities in a fast-paced environment and work independently while collaborating across teams
  • Ability to obtain and maintain an appropriate Government of Canada security clearance
  • Hands-on experience with Tenable, Securonix, SentinelOne, or comparable platforms
  • Experience with an external MDR, MSSP, or SOC provider
  • Experience supporting Government of Canada contracts or environments handling Protected or Classified information
  • Familiarity with Government of Canada security requirements, ITSG-33, ITSP.10.171, CPCSC, and CSP
  • Experience supporting security audits, assessments, compliance activities, or customer security reviews
  • Security automation or scripting experience using Python, PowerShell, Bash, or APIs
  • Experience with infrastructure-as-code, cloud security tooling, or automated configuration management
  • Relevant certifications such as CISSP, GIAC, CCSP, Security+, CISM, or CISA
  • Bachelor’s degree in computer science, information security, engineering, information technology, or related discipline, or equivalent education and experience
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Toronto, Ontario
122 Employees
Year Founded: 2015

What We Do

Kepler designs, builds, launches, and operates an advanced network of low earth orbit satellites with the ultimate goal of bringing internet to outer space. Today, Kepler serves the needs of earth by connecting machines all around the world using its satellites on orbit and other complementary networks. Through a host of compatible partner equipment we make it easy to use satellite communications in your solution and route data over the best networks.

Similar Jobs

Magna International Logo Magna International

Health & Safety Coordinator

Automotive • Hardware • Robotics • Software • Transportation • Manufacturing
Hybrid
Concord, ON, CAN
171000 Employees
65K-75K Annually

Tapestry - Coach and Kate Spade Logo Tapestry - Coach and Kate Spade

Sales Associate III

eCommerce • Fashion • Retail • Sales • Wearables • Design
Hybrid
Burlington, ON, CAN
16000 Employees
18-22 Hourly

Ericsson Logo Ericsson

Co op Agentic AI Development

Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
Hybrid
Ottawa, ON, CAN
88000 Employees
26-37 Hourly

Ericsson Logo Ericsson

Early Career RF Specialist (RAN Optimization)

Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
Hybrid
Toronto, ON, CAN
88000 Employees
64K-83K Annually

Similar Companies Hiring

Red 6 Thumbnail
Aerospace • Hardware • Software • Virtual Reality • Defense
Orlando, Florida
186 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account