IT Security Analyst responsible for advanced analysis of security incidents and supporting SOC operations in Canada. Collaborating with teams to improve detection capabilities and utilizing AI.
Responsibilities
Take ownership of cybersecurity alerts and incidents escalated by SOC Level 1
Conduct advanced analyses and recommend appropriate actions
Contribute to initial incident response in collaboration with relevant teams
Serve as the technical escalation point and support Level 1 SOC analysts
Participate in continuous improvement of processes, detection rules and SOC metrics
Thoroughly document investigations, findings, decisions and actions taken
Use approved artificial intelligence and automation tools to support triage
Help identify relevant AI use cases to improve SOC efficiency
Requirements
Bachelor’s degree in Computer Science, Cybersecurity or a related field
Minimum 3–5 years of experience in cybersecurity, including relevant SOC experience
Experience with SIEM, XDR or EDR platforms, notably Microsoft Sentinel, Microsoft Defender XDR or Splunk Enterprise Security
Ability to read and write investigative queries in KQL or SPL
Knowledge of the MITRE ATT&CK framework and ability to apply it in investigations
Familiarity with AI and automation tools applied to cybersecurity
Knowledge of a cloud environment (AWS or Azure)
Functional proficiency in English, both written and spoken
Relevant certifications preferred: SC-200, CySA+, GCIH or equivalent
Own AI governance and security strategy at the Alberta Energy Regulator, defining decision rights and the AI Register. Partner with security and data governance teams to ensure safe, secure AI use across a multi - vendor estate.
Analyste en sécurité des produits chez Alithya, intégrant la sécurité de l’information aux projets technologiques. Évaluation des risques, recommandations et suivi des mesures de sécurité.
Intermediate SOC Analyst monitoring and responding to security incidents for Long View, a North American IT provider. Managing SIEM tools, cloud environments, escalations, and 24x7 operations.
Azure AD Security Analyst leading identity and access management for Intact, a Canadian insurer. Integrating Azure AD, supporting IAM architecture, automation, privileged access, and major incidents.
Analyste sécurité informatique chez Beneva, compagnie d’assurance et de services financiers. Intégration des contrôles IAM, analyse des exigences de sécurité et accompagnement des équipes applicatives.
Security Analyst leading Cyber Threat Exposure Management transformation for iA Financial Group, a Canadian insurance and wealth - management provider. Coordinating risk reduction, governance, and cross - functional CTEM initiatives.