Intermediate SOC Analyst monitoring and responding to security incidents for Long View, a North American IT provider. Managing SIEM tools, cloud environments, escalations, and 24x7 operations.
Responsibilities
Actively participate in 24x7 operations of the Long View Security Operations Centre
Monitor, identify, and validate security events generated from SIEM tools
Work with monitoring, event, and incident management tools including Sentinel and ServiceNow
Respond to critical business-impacting situations and coordinate remediation resources
Coordinate major security incidents and provide timely internal communications
Support SIEM tool changes, tweaks, additions, and updates within Sentinel and other Long View tools
Provide security guidance to team members on identifying, containing, and remediating security incidents
Understand complex issues across on-premise, public cloud, and private cloud solutions and articulate impacts to higher-tier team members
Establish and follow process documentation for security alerts, event acknowledgement, service desk ticketing, ownership assignment, resolution, and closure
Work with Azure, AWS, and Google Cloud Platform
Fulfill reporting requests from Long View tools
Act as the main point of security escalation between Integrated Global Services team members, branches, clients, and vendors
Requirements
3+ years of professional experience in incident detection and response, malware analysis, or cyber forensics
SC-200 Certification
Experience working with MS Defender
Extensive experience evaluating, interpreting, and integrating relevant data sources to merge network attack analyses with counterintelligence and law enforcement investigations
Experience with IT service management tools, including performance monitoring and ITSM solutions
Experience with SIEM platforms such as Sentinel, Splunk, and Sumo Logic
Experience with incident, problem, change, and service requests following ITIL framework standards
Experience provisioning new client services and completing customer onboarding tasks
Ability to troubleshoot and resolve technical and procedural issues
Strong verbal and written communication skills for explaining technical matters to customers in non-technical terms
Ability to react quickly and professionally with a sense of urgency
Ability and desire to work on an on-call rotation for 24-hour support
Intermediate network and security certifications such as Security+, Network+, SSCP, and/or CCNA Security are an asset
Threat Intelligence Analyst investigating telecom security threats and customer deployment data for Enea, a global telecom and cybersecurity software company. Supporting client security reviews and threat intelligence operations.
Information Security Analyst governing End - User Computing risks, controls, and remediation for TD, a major North American bank. Advising stakeholders and supporting governance reporting, audits, and regulatory requirements.
IT Security Analyst II coordinating cybersecurity monitoring, MSP oversight, audits, and incident follow - up. Supporting Veristat’s global life - sciences services and regulated technology environments.
Security Analyst protecting GitLab’s DevSecOps platform through vulnerability triage and CVE operations. Coordinating researchers, customers, and internal teams on secure software response.
SIEM/SOAR cybersecurity analyst monitoring threats, building alerts, and measuring controls. Supporting Wepoint’s digital transformation work for businesses and public sector organizations.
SIEM/SOAR information security analyst supporting Wepoint’s digital transformation services. Developing cybersecurity monitoring cases, alerts, dashboards, and security - control documentation.
Security Analyst II protecting Intact’s insurance operations through incident response and SIEM monitoring. Supporting security platforms, incident resolution, dashboards, and IT security initiatives.