Security Analyst responsible for investigating security incidents and enhancing awareness programs for ISA Cybersecurity. Collaborating on threat protection initiatives and reporting to stakeholders.
Responsibilities
Conduct in-depth investigations of endpoint protection alerts and events using tools such as SentinelOne, CrowdStrike, and Microsoft Defender.
Participate in an on-call rotation to support incident response outside of standard business hours, as required.
Fully investigate and document security breaches, providing clear and comprehensive incident reports to stakeholders.
Provide ongoing status updates to leadership throughout the incident life cycle to ensure appropriate resources are engaged.
Create, tune, and optimize rules and playbooks to reduce false positives and alert fatigue.
Provide clearly documented procedures that support timely ticket resolution and adherence to SLAs.
Assist in developing and refining SOC processes and procedures to improve investigation quality, response time, and operational efficiency.
Maintain a full understanding of Tier 1 responsibilities to support effective knowledge sharing and playbook development.
Develop and maintain monthly and quarterly security reports in accordance with client requirements.
Provide analysis, insights, and recommendations in areas of concern identified through investigations and reporting.
Enhance client security awareness through platforms such as KnowBe4 and Proofpoint.
Plan and execute simulated phishing, vishing, and smishing campaigns to help clients identify high-risk users and improve training effectiveness.
Provide clients with monthly security awareness reports and post-campaign summaries detailing user performance, phish-prone percentages, and risk scores.
Assist clients with security product implementation, onboarding, and support, ensuring tools are configured to enhance visibility and detection.
Ensure leadership and stakeholders are kept informed of potential risks and impacts introduced by new incidents.
Requirements
2+ Years of information security related experience, in areas such as: security operations, incident analysis, incident handling, and security awareness.
Experience with malware analysis, and the main point of contact for responding to security incidents relevant to major breaches.
Security Analyst at EXFO monitoring threats and responding to incidents for IT systems. Collaborating with IT teams to enhance cybersecurity measures with diverse client environments.
Provide IT support and security analysis for MaRS users. Diagnosing and resolving technical issues while ensuring secure access to IT services and applications.
SAP Security Analyst and Junior Security Analyst roles ensuring ERP system security for the Government of Alberta. Lead security controls, collaborate with teams and resolve access issues.
Join TD as an Information Security Analyst focusing on audit response and controls implementation. Contribute to enhancing compliance and security solutions in an agile environment.
IT Security Analyst monitoring Stantec’s systems for signs of intrusion and security incidents. Collaborating with IT Security team for compliance and remediation effort.