Intermediate SOC Analyst monitoring and responding to security incidents for Long View, a North American IT provider. Managing SIEM tools, cloud environments, escalations, and 24x7 operations.
Responsibilities
Actively participate in 24x7 operations of the Long View Security Operations Centre
Monitor, identify, and validate security events generated from SIEM tools
Work with monitoring, event, and incident management tools including Sentinel and ServiceNow
Respond to critical business-impacting situations and coordinate remediation resources
Coordinate major security incidents and provide timely internal communications
Support SIEM tool changes, tweaks, additions, and updates within Sentinel and other Long View tools
Provide security guidance to team members on identifying, containing, and remediating security incidents
Understand complex issues across on-premise, public cloud, and private cloud solutions and articulate impacts to higher-tier team members
Establish and follow process documentation for security alerts, event acknowledgement, service desk ticketing, ownership assignment, resolution, and closure
Work with Azure, AWS, and Google Cloud Platform
Fulfill reporting requests from Long View tools
Act as the main point of security escalation between Integrated Global Services team members, branches, clients, and vendors
Requirements
3+ years of professional experience in incident detection and response, malware analysis, or cyber forensics
SC-200 Certification
Experience working with MS Defender
Extensive experience evaluating, interpreting, and integrating relevant data sources to merge network attack analyses with counterintelligence and law enforcement investigations
Experience with IT service management tools, including performance monitoring and ITSM solutions
Experience with SIEM platforms such as Sentinel, Splunk, and Sumo Logic
Experience with incident, problem, change, and service requests following ITIL framework standards
Experience provisioning new client services and completing customer onboarding tasks
Ability to troubleshoot and resolve technical and procedural issues
Strong verbal and written communication skills for explaining technical matters to customers in non-technical terms
Ability to react quickly and professionally with a sense of urgency
Ability and desire to work on an on-call rotation for 24-hour support
Intermediate network and security certifications such as Security+, Network+, SSCP, and/or CCNA Security are an asset
Analyste en sécurité des produits chez Alithya, intégrant la sécurité de l’information aux projets technologiques. Évaluation des risques, recommandations et suivi des mesures de sécurité.
Azure AD Security Analyst leading identity and access management for Intact, a Canadian insurer. Integrating Azure AD, supporting IAM architecture, automation, privileged access, and major incidents.
Analyste sécurité informatique chez Beneva, compagnie d’assurance et de services financiers. Intégration des contrôles IAM, analyse des exigences de sécurité et accompagnement des équipes applicatives.
Security Analyst leading Cyber Threat Exposure Management transformation for iA Financial Group, a Canadian insurance and wealth - management provider. Coordinating risk reduction, governance, and cross - functional CTEM initiatives.
Senior Security Risk Analyst at Twilio enhancing security risk management and collaborating with cross - functional teams. Focused on identifying and mitigating cyber risks effectively and ensuring compliance.
Experienced Workday Reporting, Security & HRIS Analyst supporting HR, Payroll, IT, Finance teams with Workday solutions. Involves configuration, reporting, and collaboration with various business units.