11 Feb Security Operations Analyst
*** Perm role with a leading client
We are looking for a SecOps Analyst to join our client team to help us execute specialist cybersecurity capabilities including incident response and detection and monitoring.
Location: You will be based in our Toronto office and will work in a hybrid model.
Reporting Relationship: You will report to the Manager, Security Operations.
What You’ll Do
• Continuously monitor security alerts and events from various sources such as SIEM (Security Information and Event Management) systems, IDS/IPS (Intrusion Detection/Prevention Systems), firewalls, Endpoint Protection and other security tools
• Implement preventative, detective and monitoring controls.
• Monitor threat intelligence feeds to determine applicability to the Moneris environment.
• Perform 24/7 on call duties.
• Develop and fine-tune detection rules and signatures to improve the accuracy and effectiveness of security monitoring tools.
• Provide feedback on log coverage, rules and detections to minimize false positives and enhance detection capabilities.
• Document and report on security incidents, generate reporting and collect data for monthly metrics and reporting.
• Lead incident response activities ensuring the required teams are engaged.
• Develop and maintain incident response document.
• Provide support and guidance to junior members of the team.
What You Bring
• Bachelor’s degree in Cybersecurity, or equivalent work experience.
• Minimum 5 years of experience in a Security Operations Center (SOC) or similar.
• Knowledge of security controls/mechanisms and threat/risk assessment techniques.
• Experience as a security analyst working threat intelligence, security operations and incident response, including forensic investigation.
• Requires the ability to fulfil on call duties and ensure impacting and priority incidents are resolved in a timely manner including weekends, holidays and nights.
• Ability to develop and maintain documentation including but not limited to Security Standard Operating Procedures (SOPs) and incident response playbooks
• Knowledge of common attack techniques, tools, and tactics (e.g., MITRE ATT&CK framework, malware analysis).
To apply for this job please visit the following URL: https://pforceinc.com/eq-it/ →