Security Analyst responsible for investigating security incidents and enhancing awareness programs for ISA Cybersecurity. Collaborating on threat protection initiatives and reporting to stakeholders.
Responsibilities
Conduct in-depth investigations of endpoint protection alerts and events using tools such as SentinelOne, CrowdStrike, and Microsoft Defender.
Participate in an on-call rotation to support incident response outside of standard business hours, as required.
Fully investigate and document security breaches, providing clear and comprehensive incident reports to stakeholders.
Provide ongoing status updates to leadership throughout the incident life cycle to ensure appropriate resources are engaged.
Create, tune, and optimize rules and playbooks to reduce false positives and alert fatigue.
Provide clearly documented procedures that support timely ticket resolution and adherence to SLAs.
Assist in developing and refining SOC processes and procedures to improve investigation quality, response time, and operational efficiency.
Maintain a full understanding of Tier 1 responsibilities to support effective knowledge sharing and playbook development.
Develop and maintain monthly and quarterly security reports in accordance with client requirements.
Provide analysis, insights, and recommendations in areas of concern identified through investigations and reporting.
Enhance client security awareness through platforms such as KnowBe4 and Proofpoint.
Plan and execute simulated phishing, vishing, and smishing campaigns to help clients identify high-risk users and improve training effectiveness.
Provide clients with monthly security awareness reports and post-campaign summaries detailing user performance, phish-prone percentages, and risk scores.
Assist clients with security product implementation, onboarding, and support, ensuring tools are configured to enhance visibility and detection.
Ensure leadership and stakeholders are kept informed of potential risks and impacts introduced by new incidents.
Requirements
2+ Years of information security related experience, in areas such as: security operations, incident analysis, incident handling, and security awareness.
Experience with malware analysis, and the main point of contact for responding to security incidents relevant to major breaches.
Threat Intelligence Analyst investigating telecom security threats and customer deployment data for Enea, a global telecom and cybersecurity software company. Supporting client security reviews and threat intelligence operations.
Information Security Analyst governing End - User Computing risks, controls, and remediation for TD, a major North American bank. Advising stakeholders and supporting governance reporting, audits, and regulatory requirements.
IT Security Analyst II coordinating cybersecurity monitoring, MSP oversight, audits, and incident follow - up. Supporting Veristat’s global life - sciences services and regulated technology environments.
Security Analyst protecting GitLab’s DevSecOps platform through vulnerability triage and CVE operations. Coordinating researchers, customers, and internal teams on secure software response.
SIEM/SOAR cybersecurity analyst monitoring threats, building alerts, and measuring controls. Supporting Wepoint’s digital transformation work for businesses and public sector organizations.
SIEM/SOAR information security analyst supporting Wepoint’s digital transformation services. Developing cybersecurity monitoring cases, alerts, dashboards, and security - control documentation.
Security Analyst II protecting Intact’s insurance operations through incident response and SIEM monitoring. Supporting security platforms, incident resolution, dashboards, and IT security initiatives.