Security Analyst improving cybersecurity at Aviso's IT and Cloud infrastructure. Responsible for identifying, mitigating, and resolving security threats while enhancing security posture.
Responsibilities
Conduct daily cybersecurity investigations, monitor network activities, and analyze logs to detect potential threats or breaches
Investigate daily cybersecurity tickets and collaborate with the Managed Security Solutions Provider (MSSP)
Identify and respond to cybersecurity threats across the IT and Cloud environments
Implement and enhance cybersecurity controls to protect Aviso's environment against the evolving threat landscape
Deploy, maintain, and enhance new security solutions and technologies, including SIEM, SOAR, and XDR solutions
Participate in security projects and collaborate with stakeholders to ensure the solutions align with security standards and business objectives.
Propose changes and improvements to existing security policies and procedures to ensure operating efficiency and regulatory compliance
Requirements
Bachelor's degree in Cybersecurity or a related field is required; a master’s degree would be considered an asset
6+ years of experience in Security Operations Centre (SOC) environments or equivalent cybersecurity roles
Proven experience in Incident Response, Security Investigations, Threat Management, Cloud Security, and Attack Surface Management
Experience in managing endpoint protection (EDR) solutions, developing new policies, and ensuring optimal agent coverage
Demonstrated intermediate or advanced experience with SIEM technologies, such as Sumo Logic, Splunk, Microsoft Sentinel, or equivalent platforms
Practical experience implementing security controls and enhancing capabilities based on leading security frameworks, such as MITRE ATT&CK, NIST CSF, OWASP, or ISO:27001
Experience developing tactical playbooks covering various attack vectors
Experience conducting security investigations within Microsoft 365, Microsoft Defender, or equivalent security platforms, including analyzing alerts, logs, and events to identify and mitigate threats
Practical experience in building automation solutions to support Security Operations (SOC) functions
Certifications in Cloud Security on platforms such as Microsoft Azure, Amazon AWS, or Google GCP
Proven experience with cloud and cloud security technologies, including Microsoft Azure, Amazon AWS, and Google Cloud Platform
Experience with behaviour analytics and AI tools for the purpose of conducting cybersecurity investigations
Experience leading attack simulation (purple teaming) engagements to improve threat detection capabilities
Ability to work in a fast-paced environment and stay updated on emerging threats and vulnerabilities
Natural curiosity, a willingness to learn, adaptability in an evolving environment, and a strong problem-solving mindset
Fluent communication skills in English are required, and bilingual skills in French are an asset
Benefits
Competitive compensation package that rewards and recognizes individual contributions
Excellent health, dental and insurance benefits to meet the diverse needs of our employees
Generous vacation time, fitness benefit, parental leave top-up options
Matching contributions to our retirement program
Commitment to the continuous improvement of our staff through learning & development and an education assistance program
Join TTC as a Cybersecurity Risk Specialist! Conduct risk assessments, maintain risk registers, and support mitigation strategies for a major public transit system.
Lead network security analyst overseeing assessments, architecture, and risk mitigation for CBC/Radio - Canada’s public - service media infrastructure. Hybrid role advising technical and non - technical stakeholders.
Security Analyst protecting Benevity’s social - impact technology through alert investigations, vulnerability remediation, and AI risk analysis. Supporting engineering and fraud teams with security enablement.
Security Analyst protecting Benevity’s social - impact technology platform. Investigating alerts, managing vulnerabilities, and addressing application and AI - related security risks.
Information Security Analyst strengthening GRC, risk management, and cybersecurity controls for EllisDon’s construction services. Supporting audits, vendor compliance, security awareness, and control remediation.
Cyber Security Co - op analyzing threats, data, and intelligence for RBC, Canada’s largest bank. Supporting detection, threat hunting, reporting, and security knowledge management.
Own AI governance and security strategy at the Alberta Energy Regulator, defining decision rights and the AI Register. Partner with security and data governance teams to ensure safe, secure AI use across a multi - vendor estate.