Security Specialist - Cybersecurity Incident Management Lead (Forensic Analysis)

Ubisoft Montreal — Canada

Salary: Not disclosed · Schedule: 4-Day Week (80%) · Work model: On-site

Skills: Communication, Digital Forensics, Incident Response, Risk Analysis, Threat Hunting, Autopsy

Job Description

Company Description

Ubisoft is a world leader in video games, with teams spread across the globe creating original and memorable gaming experiences, from Assassin’s Creed to Rainbow Six, Just Dance, and many more. We believe that diverse perspectives help both players and teams grow. If you are passionate about innovation and want to push the boundaries of entertainment, join our adventure and help us create the unknown!

Job Description

As a Security Specialist - Cybersecurity Incident Management Lead at Ubisoft Montreal, you will lead the response to complex cybersecurity incidents affecting our global infrastructure, game production environments, and player-facing services. You will join the Security and Risk Management team and contribute to strengthening our detection, investigation, and response capabilities.

What you will do

  • Lead the response to critical cybersecurity incidents involving multiple teams, including security operations, information technology, legal, and production teams
  • Coordinate incident management activities and act as the primary point of contact during active investigations
  • Analyze security risks related to game production environments, online services, development pipelines, and player data
  • Improve response processes, investigation procedures, and internal security tools
  • Conduct proactive threat hunting activities within corporate environments
  • Perform digital forensic investigations on memory, disks, and networks using tools such as Velociraptor, Autopsy, and other comparable solutions
  • Collaborate with technical and non-technical stakeholders to communicate investigation findings and response plans
  • Mentor team members and foster knowledge sharing within the Security Operations Center
  • Facilitate simulation exercises and contribute to continuous improvement initiatives
  • Write post-incident reports for technical teams, management, legal teams, and privacy officers

Qualifications

What you bring to the team

  • Experience in managing and coordinating complex cybersecurity incidents, from detection to resolution
  • Demonstrated ability to work independently, identify areas for improvement, and implement solutions
  • Strong knowledge of Security Information and Event Management (SIEM) platforms as well as Endpoint Detection and Response (EDR) tools such as Splunk, CrowdStrike, Defender, or equivalent technologies
  • Experience with Security Orchestration, Automation, and Response (SOAR) platforms
  • Hands-on experience in digital forensic investigations using tools such as Velociraptor, Autopsy, Axiom, or similar solutions
  • Knowledge of threat hunting methodologies and investigation techniques in complex environments
  • Excellent communication skills and the ability to adapt technical information for different audiences
  • Experience in video game environments, anti-cheat systems, or large-scale cloud infrastructures is an asset

Additional Information

  • Your CV highlighting your skills
  • Relevant technical projects, publications, or presentations related to cybersecurity or incident management

This listing was sourced from 4dayweek.io.

Apply for this role