Security Analyst at ISA Cybersecurity focusing on incident response and network security. Engaging in monitoring, triage, and threat research within a hybrid work environment.
Responsibilities
Monitor, analyze, and classify security alerts to identify and respond to potential incidents
Investigate intrusion attempts and perform in-depth analysis of exploits
Provide network intrusion detection expertise to support informed and timely incident declaration
Conduct proactive threat research and remain up to date on latest security trends
Review and assess security events across SIEM and EDR platforms
Analyze a variety of network and host-based security appliance logs (Firewall, Authentication, System, Endpoint, etc.) to determine appropriate remediations and escalation actions
Perform Tier I and Tier II incident triage, containment, and eradication in accordance with established procedures
Document all triage activities and deliver clear, timely updates to clients and leadership
Prepare and escalate reports detailing findings when malicious behavior is identified
Contribute to the development and improvement of incident response processes and overall CIOC operations
Requirements
Knowledge of information security event monitoring and detection and NID monitoring and incident response
Familiarity with information security methodologies, tactics, techniques and procedures
Experience with a variety of SIEM, EDR and other security tools
Experience detecting and responding to different cyber incidents
Experience reviewing and analyzing network, authentication, system and other event logs
Possess a comprehensive understanding of the TCP/IP protocol, security architecture, network and remote access security techniques/products
Working knowledge of network architecture and security controls
Strong research background and problem-solving skills
Must be able to react quickly, decisively, and deliberately in high stress situations
Strong verbal/written communication and interpersonal skills are required to document and communicate findings, escalate critical incidents, and interact with customers
Working knowledge of Windows and Linux OS
Highly motivated individual with the ability to self-start, prioritize, multi-task and work in a team setting
Certifications such as Security+ or CySA+ and development skills are considered an asset
Benefits
Flexible sick and personal days for all employees
Generous health plan with enhanced mental health resources and programs
Professional development opportunities and education reimbursement up to $2,000 annually for all employees
Maternity and parental leave top-up
Employee referral bonus of $2,000
Competitive salaries complemented with RRSP matching and bonus programs
Analyste en sécurité des produits chez Alithya, intégrant la sécurité de l’information aux projets technologiques. Évaluation des risques, recommandations et suivi des mesures de sécurité.
Intermediate SOC Analyst monitoring and responding to security incidents for Long View, a North American IT provider. Managing SIEM tools, cloud environments, escalations, and 24x7 operations.
Azure AD Security Analyst leading identity and access management for Intact, a Canadian insurer. Integrating Azure AD, supporting IAM architecture, automation, privileged access, and major incidents.
Analyste sécurité informatique chez Beneva, compagnie d’assurance et de services financiers. Intégration des contrôles IAM, analyse des exigences de sécurité et accompagnement des équipes applicatives.
Security Analyst leading Cyber Threat Exposure Management transformation for iA Financial Group, a Canadian insurance and wealth - management provider. Coordinating risk reduction, governance, and cross - functional CTEM initiatives.
Senior Security Risk Analyst at Twilio enhancing security risk management and collaborating with cross - functional teams. Focused on identifying and mitigating cyber risks effectively and ensuring compliance.