SOC analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Investigating escalated alerts and improving 24×7 security operations.
Responsibilities
Monitor security events within the 24×7 Security Operations Center (SOC).
Provide rapid analysis and response to detected threats.
Monitor, analyze, and resolve identified security incidents in real time.
Continuously develop and improve the SOC’s 24×7 capabilities.
Handle cybersecurity alerts and incidents escalated by Tier 1 SOC analysts.
Analyze and qualify alerts, including phishing, account compromise, malware, and lateral movement cases.
Perform advanced analysis and recommend appropriate actions.
Contribute to the initial incident response in collaboration with the relevant teams.
Improve SOC processes, detection rules, and metrics.
Provide guidance to management within the scope of the role.
Correlate events from SIEM, XDR, EDR, identity, email, network, and cloud platforms.
Enrich alerts using logs, indicators of compromise, and threat intelligence.
Determine the verdict, severity, potential impact, and required actions.
Recommend or initiate initial mitigation, containment, or escalation measures.
Rigorously document investigations, findings, decisions, and actions taken.
Perform first-level technical analysis of endpoint and network logs and artifacts.
Support Tier 1 SOC analysts in handling complex cases.
Improve detection rules, investigation queries, SOC runbooks, and playbooks.
Use approved artificial intelligence and automation tools to support triage, enrichment, and documentation.
Requirements
Good understanding of TCP/IP concepts and networking.
Understanding of malware, emerging threats, attacks, and vulnerability management.
Strong analytical reasoning, critical thinking, problem-solving, and prioritization skills.
Customer service skills, including resolving customer escalations and managing incidents.
Ability to follow processes and procedures.
Ability to present complex solutions and methodologies.
Strong team spirit and ability to collaborate effectively with others to solve problems.
Strong interpersonal, problem-solving, and communication skills.
Only candidates legally authorized to work for any employer in Canada will be considered.
Benefits
Minimum of 3 weeks of vacation starting from the first year
Comprehensive group insurance with a generous employer contribution
Employer contribution to a group RRSP
Full remote work flexibility: Hybrid, Remote, or On-site
A warm, bright, and welcoming office offering fresh fruit, coffee, beverages, occasional meals, etc.
Annual IT equipment budget
A balanced work environment with flexible working hours
Career development: training and certifications, online or in-person learning, Wepoint Academy, etc.
An international community of experts ready to share their knowledge
A company culture focused on individuals’ needs and their belonging to a strong community.
SOC cybersecurity analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Improving 24×7 detection, investigation, and incident response capabilities.
Senior Security Operations Engineer monitoring incidents and leading forensics for Samsara’s IoT - connected operations platform. Building security automation and supporting insider - threat investigations.
Senior SOC analyst leading threat detection, investigations, and incident response for Financeit, a Canadian point - of - sale financing provider. Building its new SOC’s automation, AI - threat coverage, and operational standards.
Security Operations Engineer securing Tailscale’s networking platform through device, identity, access, and vulnerability management. Supporting distributed teams and automating security operations across core business systems.
Security Operations Engineer securing Tailscale’s software for safe device and network connections. Managing endpoints, identity access, platforms, automation, and data loss prevention.