Skip to content

Open nowPosted 26 days ago

Senior Infrastructure Security Specialist

Kepler19 open roles

Pay
$114,000 – $164,000 a year
Where
Toronto, Ontario
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Infrastructure Security SpecialistKepler · Toronto, Ontario
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Kepler's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.7% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.4%1 day
  2. 3.5%3 days
  3. 7.7%7 days
  4. 13.4%14 days
  5. 34.4%30 days
This job: posted 26 days ago

The posting

At Kepler Communications, we're not just imagining the future of on-demand space connectivity - we're leading it!

Our mission is to provide real-time on-orbit connectivity for critical missions, enabling a new era of data-driven intelligence and innovation. With 33 satellites launched to date, Kepler operates the first commercial optical data relay constellation, enabling real-time, continuous space communications while supporting advanced on-orbit compute and hosted payload capabilities.

Industry-leading technology is only part of the story. What sets Kepler apart is our team: bold thinkers, skilled builders, and passionate problem-solvers who thrive on pushing the boundaries of what’s possible in space. We believe great ideas come from diverse perspectives, and we’re committed to creating an environment where you can grow, lead, and make a global impact.

If you’re ready to reach higher, move faster, and do work that shapes the future space economy - this is your launchpad. Come build the future with Kepler!

What We Offer:

* Competitive compensation with a robust equity plan to share in our success.

* Comprehensive coverage for health, dental, and vision insurance—including dependents.

* Unlimited vacation, supportive parental leave policy, and company-wide holiday shutdown.

* Semi-annual company-wide parties and frequent in-office team events.

* Relocation packages available for approved roles.

* $1,500 annual professional development fund to support your growth.

* Fully stocked Toronto office kitchen with snacks, drinks, games and top-notch kitchen appliances.

* Town Halls, Celebration Calls, and Company-wide events to stay connected and engaged.

* We’re a certified Great Place to Work®, seven years in a row!

As Senior Infrastructure Security Specialist, you will protect Kepler’s corporate, cloud, and operational infrastructure. Reporting to the VP, Information Security & CISO, you will own and improve infrastructure security capabilities, including vulnerability management, security monitoring, endpoint protection, system hardening, and incident response.

You will partner with IT, Engineering, Operations, and other teams to reduce security risk while supporting Kepler’s growth. The role also supports regulated and Government of Canada environments that may process Protected or Classified information.

This Toronto-based role follows a hybrid model, with approximately 40% of time spent on-site.

Key Responsibilities:

  • Provide security expertise for infrastructure, cloud environments, networks, systems, databases, and identity technologies
  • Review architectures and infrastructure changes to identify risks and recommend practical controls
  • Develop secure configuration and hardening standards based on CIS Benchmarks, NIST guidance, and industry best practices
  • Support network security controls, including firewalls, segmentation, secure remote access, and intrusion detection and prevention
  • Partner with IT and Engineering to incorporate security into infrastructure design and operations
  • Own Kepler’s infrastructure vulnerability management program
  • Manage authenticated scanning, validate coverage, assess findings, and prioritize remediation based on risk
  • Coordinate remediation with system owners and track vulnerabilities through resolution or approved risk acceptance
  • Measure vulnerability exposure, remediation performance, scanning coverage, and exceptions
  • Administer platforms such as Tenable or equivalent technologies
  • Own and improve Kepler’s SIEM, security monitoring, and EDR/XDR capabilities
  • Integrate log sources and develop detection use cases across infrastructure, cloud, applications, identity, and security tools
  • Monitor logging coverage, platform health, and detection effectiveness
  • Investigate security alerts and support containment, remediation, and recovery
  • Coordinate investigations and service improvements with Kepler’s MDR/SOC provider
  • Administer platforms such as Securonix, SentinelOne, or comparable technologies
  • Support incident investigations involving infrastructure, endpoints, networks, identity, and cloud environments
  • Analyze security telemetry, collect evidence, and coordinate containment and recovery
  • Assess and improve security controls within AWS and/or Microsoft Azure
  • Identify opportunities to automate monitoring, vulnerability management, and security operations using scripts, APIs, and security tools
  • Implement technical controls for Government of Canada and other regulated environments
  • Support audits, security assessments, inspections, certifications, and remediation activities
  • Maintain documentation and evidence demonstrating that required security controls are operating effectively

Required Skills & Qualifications:

  • Seven or more years of cybersecurity experience in infrastructure security, security engineering, or security operations
  • Strong knowledge of Windows, Linux, networking, cloud platforms, and enterprise IT security
  • Strong hands-on experience administering and operating vulnerability management, SIEM/security monitoring, and EDR/XDR technologies
  • Experience investigating and responding to cybersecurity incidents
  • Knowledge of network security, infrastructure hardening, identity and access management, privileged access, and least-privilege principles
  • Experience securing AWS and/or Microsoft Azure environments
  • Familiarity with NIST CSF, NIST SP 800-171, NIST SP 800-53, and CIS Controls and Benchmarks
  • Ability to communicate technical risks and recommendations to technical and non-technical stakeholders
  • Strong ownership, problem-solving, organization, and cross-functional collaboration skills
  • Ability to obtain and maintain an appropriate Government of Canada security clearance
  • Demonstrates a willingness to adopt and effectively utilize AI-assisted engineering tools, applying sound judgment to improve productivity, quality, and innovation while continuously adapting to evolving technologies

Bonus Points:

  • Experience with Tenable, Securonix, SentinelOne, or comparable platforms
  • Experience working with an MDR, MSSP, or SOC provider
  • Experience supporting Government of Canada contracts or environments handling Protected or Classified information
  • Familiarity with ITSG-33, ITSP.10.171, the Canadian Program for Cyber Security Certification, and the Contract Security Program
  • Experience with security audits, compliance activities, Python, PowerShell, Bash, APIs, or infrastructure as code
  • Relevant certification such as CISSP, GIAC, CCSP, Security+, CISM, or CISA
  • Relevant degree or an equivalent combination of education and professional experience

What Success Looks Like:

$114,000 - 164,000 CAD Actual total compensation will be determined at the Company’s discretion and is based on a variety of job-related factors, which may include, but are not limited to, relevant knowledge, skills, experience, performance, and education and/or training. The Company encourages all qualified applicants to apply, even if the posted salary range does not align with their expectations, as it does not reflect our total compensation package. Job Type: This is for a current vacancy

Employment Equity & Accommodation Statement

Kepler Communications is an equal opportunity employer committed to building a diverse and inclusive workplace. We welcome applications from all qualified individuals, including women, Indigenous peoples, persons with disabilities, members of visible minorities, and people of all sexual orientations and gender identities.

If you require accommodation during any stage of the recruitment process, please contact our People & Culture team at [email protected], and we will work with you to meet your needs.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Kepler's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Kepler's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Kepler's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.