Level 2 SOC Analyst

2 weeks ago


Toronto, Ontario, Canada CGI Full time

The Level 2 (L2) SOC Analyst is a core resource on the security monitoring and response team (Blue Team) within the Global Security Operations Center (GSOC).

As a member of the Blue Team, the L2 Analyst is responsible for the monitoring, triage and response of all security alerts coming from SIEM and the security controls directly.


The L2 Analyst will have a broad range of cybersecurity experience and skillsets including knowledge of Windows and Linux operating systems, knowledge of common threats and attack methodologies, an awareness of industry standards, and foundational endpoint and network-based analysis techniques.

Insights you can act on


While technology is at the heart of our clients' digital transformation, we understand that people are at the heart of business success.


When you join CGI, you become a trusted advisor, collaborating with colleagues and clients to bring forward actionable insights that deliver meaningful and sustainable outcomes.

We call our employees "members" because they are CGI shareholders and owners and owners who enjoy working and growing together to build a company we are proud of.

This has been our Dream since 1976, and it has brought us to where we are today — one of the world's largest independent providers of IT and business consulting services.

At CGI, we recognize the richness that diversity brings. We strive to create a work culture where all belong and collaborate with clients in building more inclusive communities. As an equal-opportunity employer, we want to empower all our members to succeed and grow. If you require an accommodation at any point during the recruitment process, please let us know. We will be happy to assist.

Ready to become part of our success story? Join CGI — where your ideas and actions make a difference.
Your future duties and responsibilities
Perform real-time monitoring of security alerts coming into the queue, detected by various security controls.

  • Continue the investigation of alerts that have been escalated by L1 Analysts within agreed upon SLA's.
  • Perform triage of indicators, as needed, and document all findings in the appropriate threat knowledgebase.
  • Perform Indepth analysis of the alert, outside of Standard Operating Procedures, utilizing foundational endpoint
and network-based analysis techniques.

  • Create security incidents from presumed truepositive alerts; and close presumed falsepositives.
  • Escalate alerts to L3 Analyst that are found to be undetermined, or that have additional requirements.
  • Support the Incident Handling (IH) and Incident Management (IM) teams
  • Maintain awareness of industry trends, new threats, technologies and common security standards and
frameworks.

  • Engage and collaborate with other members of the GSOC, as well as internal CGI teams, during the investigation
of alerts.

  • Make technical and procedural enhancement recommendations in coordination with other members of the team
to improve the overall capabilities and maturity of the SOC.

  • Report security vulnerabilities identified during BAU activities, and provide recommendations to mitigate the
overall security risk to the organization.

  • Review and enhance Standard Operating Procedure (SOP) documentation.
  • Utilize and contribute to internal threat intelligence.
  • Perform handover of priority items at the end of shift.
  • Review alert queues to identify patterns that may indicate broader security issues by taking a"shortterm" view of event analysis (days and weeks)
Required qualifications to be successful in this role
Ability to communicate clearly and effectively in both verbal and written form.

  • Ability to think critically when investigating alerts in order to determine appropriate relevance of the alert details.
  • Knowledge of various networking concepts and the ability to utilize that knowledge during an investigation.
Common concepts include IP Address subnets, Network Address Translation (NAT), and the knowledge of
different protocols and ports.

  • Knowledge of Windows Event ID's, including knowing the event ID of common events such as logins, login
failures, and process creations.

  • Knowledge of the Linux operating system including common log storage paths, and foundational Linux
commands.

  • Knowledge of vulnerability management concepts, as well as Common Vulnerabilities and Exposures (CVE).
  • Ability to analyze log files utilizing clearly defined techniques.
  • Knowledge of network security monitoring techniques.
  • Knowledge of common threats and vulnerabilities, attack methodologies, threat actors, and attack tools.
  • Awareness of various industry standards and frameworks.
  • Knowledge of IT Service Management (ITSM) with a focus on Incident Management.
  • Knowledge of foundational open source intelligence techniques.
  • Foundational knowledge of any scripting or programming language, is an asset.
  • Knowledge of foundational malware analysis techniques, is an asset.
  • Knowledge of foundational reverse engineering tec

  • Junior SOC Analyst

    2 weeks ago


    Toronto, Ontario, Canada Mjolnir Security Full time

    Mjolnir provides clients with a suite of highly advanced and AI/ML driven tools and services - Security Ops Center as a Service, Threat Detection and Dark web Threat Intelligence, Digital Forensics, Threat Analysis and Incident Response services, as well as Cyber Security training.Mjolnir supports both corporate and public agencies - and specializes in...

  • SOC Analyst

    6 days ago


    Toronto, Ontario, Canada Cypfer Full time

    Salary: CYPFER is a leading first-responder cybersecurity organization enabling clients to swiftly and effectively return to business following a cyber-attack. As a global market leader in ransomware post-breach remediation and cyber-attack first response, we consistently deliver results that exceed market standards for handling cyber-extortion and...


  • Toronto, Ontario, Canada 2i Solutions, Inc Full time

    We are thrilled to present an outstanding 1 year contract opportunity for an accomplished Information Security Analyst (SOC Analyst) based in London, Ontario. This is a Fully remote role Must haves: 5+ years of IT operations experience with progressive responsibilities. 3+ years information security or other IT infrastructure security experience. If you...


  • Toronto, Ontario, Canada Thentia Full time

    About Thentia**Thentia is a fast-growing, venture capital-backed software as a service (SaaS) company that is emerging as a world leader in government technology with a platform that is transforming and modernizing how regulatory organizations are conducting business. A company of builders, thinkers, and owners, Thentia gives employees the opportunity to...

  • Level 2

    2 weeks ago


    Toronto, Ontario, Canada Modern Niagara Full time

    Modern Niagara helps building owners, managers, and general contractors meet the mechanical, electrical, integrated building technology, and building services needs of their buildings across Vancouver, Calgary, Edmonton, Toronto, Southwestern Ontario, and Ottawa. We also develop custom, turnkey solutions to help reach the desired outcomes. We are committed...

  • Financial Analyst

    4 weeks ago


    Toronto, Ontario, Ontario, Canada Insight Global Full time

    Must-haves - Need to have CPA - 3-5 years of experience - Experience working with full accounting lifecycle and understanding of the financial reporting process - Excel experience (pivot tables, Vlookup, continuous improvement documents, automating processes) -Strong communication skills and initiative Plusses -SAP experience Day-to-Day Insight Global is...

  • Operator Level 2

    2 weeks ago


    Toronto, Ontario, Canada Jaguar Media Inc Full time $29 - $36

    $28.51 to $36.49 hourly (Rates to commensurate with Operator level 1/2/3 based on experience and qualifications) The Municipal Information Network is Canada's only daily dedicated to the municipal field. Our paid subscribers are informed via our daily enewsletter. We deliver the latest news and developments related to the municipal scene. In addition to...

  • Security Analyst

    2 weeks ago


    Toronto, Ontario, Canada KPMG Full time

    Overview:At KPMG, you'll join a team of diverse and dedicated problem solvers, connected by a common cause: turning insight into opportunity for clients and communities around the world.The OpportunityThe Security Analyst is primarily responsible for responding to SOC tickets, ITSM tickets and administrating/maintaining information security systems,...


  • Toronto, Ontario, Canada Largo Capital Limited Full time

    Job Title:Entry-Level Commercial Loan Analyst / Support PersonThe Largo Group of Companies is a full-service mortgage banking firm that arranges, closes and services commercial real estate mortgage financing for property owners throughout the United States and Canada. Largo has access to the nation's most prestigious financial institutions through its...


  • Toronto, Ontario, Canada Tucows Inc. Full time

    Tucows (NASDAQ:TCX, TSX:TC) is possibly the biggest Internet company you've never heard of. We started as a simple shareware site in 1993 and have since grown into a stable of businesses: Tucows Domains, Ting Internet and Wavelo.What's next at TucowsWe embrace a people-first philosophy that is rooted in respect, trust, and flexibility. We believe that...


  • Toronto, Ontario, Canada Tucows Inc. Full time

    Tucows (NASDAQ:TCX, TSX:TC) is possibly the biggest Internet company you've never heard of. We started as a simple shareware site in 1993 and have since grown into a stable of businesses: Tucows Domains, Ting Internet and Wavelo.What's next at TucowsWe embrace a people-first philosophy that is rooted in respect, trust, and flexibility. We believe that...

  • Sr. Financial Analyst

    4 weeks ago


    Toronto, Ontario, Ontario, Canada Insight Global Full time

    Day-to-DayInsight Global is looking for a Senior Financial Analyst to join a large quick-service food company for a 6 month contract to hire role. Your responsibilities would include:- Accounting reconciliation work-Working with and presenting to stakeholders-Month end full accounting lifecycle and SOC controls associated with this-Working with and...

  • Sr. Financial Analyst

    4 weeks ago


    Toronto, Ontario, Ontario, Canada Insight Global Full time

    Day-to-DayInsight Global is looking for a Senior Financial Analyst to join a large quick-service food company for a 6 month contract to hire role. Your responsibilities would include:- Accounting reconciliation work-Working with and presenting to stakeholders-Month end full accounting lifecycle and SOC controls associated with this-Working with and...


  • Toronto, Ontario, Canada Insight Global Full time

    Day-to-DayInsight Global is looking for a Senior Financial Analyst to join a large quick-service food company for a 6 month contract to hire roleYour responsibilities would include: Accounting reconciliation workWorking with and presenting to stakeholdersMonth end full accounting lifecycle and SOC controls associated with thisWorking with and communicating...


  • Toronto, Ontario, Canada BentallGreenOak Full time

    BGO promotes a corporate culture that attracts and retains the highest caliber people. We encourage opportunities for growth, development, and promotion by providing our employees with the resources to work effectively and continually strive to perform better. We are committed to a safe and sustainable work environment.The Opportunity:The Building Operator,...


  • Toronto, Ontario, Canada Tucows] Full time

    Job Description:Job Description Tucows (NASDAQ:TCX,TSX:TC) is possibly the biggest Internet company you've never heard of.We started as a simple shareware site in 1993 and have since grown into a stable of businesses: Tucows Domains, Ting Internet and Wavelo. What's next at Tucows We embrace a people-first philosophy that is rooted in respect, trust, and...


  • Toronto, Ontario, Canada CDW Full time

    At CDW, we're always on, forever vigilant and information security is infused in our DNA. A Fortune 200 leader and Canada's number one provider of IT solutions, we have a proud 20-year track record of safeguarding companies' critical data and resources through the very latest cybersecurity technologies and practices.As a Cybersecurity Operations Supervisor,...

  • Data Analyst Level 3

    2 weeks ago


    Toronto, Ontario, Canada AppleOne Full time

    This Data Analyst Level 3 Position Features: Hybrid 3 days in office Great Pay to $150K They are working on a migration project. Nature of the data is finance based and need the experience and confidence in executing SQL scripts and data modelling. Basic understanding of modelling data and data controls.MUST haves are:Financial experience Shell scripting...


  • Toronto, Ontario, Canada Ontario Health Full time

    At Ontario Health, we are committed to developing a strong organizational culture that connects and inspires all team members across the province. Our vision is that together, we will be a leader in health and wellness for all. Our mission is to connect the health system to drive improved and equitable health outcomes, experiences and value.How we work...


  • Toronto, Ontario, Canada Ontario Health Full time

    At Ontario Health, we are committed to developing a strong organizational culture that connects and inspires all team members across the province. Our vision is that together, we will be a leader in health and wellness for all. Our mission is to connect the health system to drive improved and equitable health outcomes, experiences and value.How we work...