Threat Detection

4 weeks ago


Canada United Software Group Inc Full time

Role: Technical Security Analyst

Location: Toronto, CA (Remote)

Technical Skills

  • Security Tools & Software: Familiarity with tools like SIEM (Security Information and Event Management), IDS/IPS (Intrusion Detection/Prevention Systems), firewalls, endpoint detection and response tools, and antivirus/anti-malware software.
  • Incident Detection: Ability to identify anomalies and suspicious activities using logs, alerts, and network monitoring tools.
  • Malware Analysis: Understanding of how malware works and experience with tools to analyze and reverse-engineer malicious software.
  • Forensic Tools: Proficiency in using forensic analysis tools like EnCase, FTK, or open-source options to investigate compromised systems.
  • Networking Knowledge: In-depth understanding of networking protocols (TCP/IP, DNS, HTTP/S, etc.), VPNs, firewalls, and network traffic analysis.
  • Operating Systems: Knowledge of various operating systems (Windows, Linux, macOS), especially in relation to security configurations and vulnerabilities.

Experience

  • Incident Response: Hands-on experience responding to and managing cyber security incidents, including containment, eradication, and recovery.
  • Threat Intelligence: Knowledge of the latest threat actors, tactics, techniques, and procedures (TTPs) used in attacks.
  • Vulnerability Management: Familiarity with vulnerability scanning tools (e.g., Nessus, Qualys) and patch management processes.
  • Security Operations Center (SOC) Experience: Experience in SOC roles and monitoring environments for unusual activity.

Certifications-just looking for a solid background

  • CEH (Certified Ethical Hacker)
  • CompTIA Security+
  • GIAC Certifications like GCIH (GIAC Certified Incident Handler) or GCFA (GIAC Certified Forensic Analyst)
  • Cisco CCNA Security or CompTIA Cybersecurity Analyst (CySA+)

Knowledge of Incident Response Lifecycle

  • Preparation: Familiarity with creating and maintaining incident response policies, playbooks, and procedures.
  • Identification: Ability to quickly identify security events through monitoring and analysis.
  • Containment, Eradication, and Recovery: Expertise in effectively isolating affected systems, removing threats, and recovering services.
  • Lessons Learned: Conducting post-incident analysis to improve security posture and prevent similar incidents in the future.

Other Desired Skills

  • Knowledge of Cloud Security: Familiarity with cloud environments (AWS, Azure, Google Cloud) and their specific security challenges.

  • Threat Detection

    4 weeks ago


    Canada United Software Group Inc Full time

    Role: Technical Security Analyst Location: Toronto, CA (Remote) Technical Skills Security Tools & Software: Familiarity with tools like SIEM (Security Information and Event Management), IDS/IPS (Intrusion Detection/Prevention Systems), firewalls, endpoint detection and response tools, and antivirus/anti-malware software. Incident Detection: Ability to...


  • Canada Insight Global Full time

    Threat Analyst12 Month Contract 100% Remote60-65/hrJOB DESCRIPTIONInsight Global is looking for an Insider Threat Analyst for one of our top customers. This is a 12 month contract and is a remote opportunity. A successful candidate will have experience with threat detection and insider risk management, experience working in a SOC or with an incident response...


  • Canada Insight Global Full time

    Threat Analyst 12 Month Contract 100% Remote 60-65/hr JOB DESCRIPTION Insight Global is looking for an Insider Threat Analyst for one of our top customers. This is a 12 month contract and is a remote opportunity. A successful candidate will have experience with threat detection and insider risk management, experience working in a SOC or with an...


  • Canada Metrolinx Full time

    **Salary Range: $87, 009 - $118, 257** **Hybrid work model - (277 Front St West, Toronto)** **_Metrolinx _**is connecting communities across the Greater Golden Horseshoe. Metrolinx operates GO Transit and UP Express, as well as the PRESTO fare payment system. We are also building new and improved rapid transit, including GO Expansion, Light Rail Transit...


  • Canada Prime Import Export Full time

    Décrivez les responsabilités du poste, ainsi que d'autres critères de sélection tels que l'expérience professionnelle, les compétences ou le niveau d'études. **Tasks**: - Perform forensic-driven threat hunting activities to discover advanced attacks - including identifying threat actor groups and TTPs using static and dynamic analysis. - Analyzing,...


  • Canada S&P Global Full time

    The S&P Global Security team is dedicated to safeguarding systems and data from modern security threats. We leverage innovative solutions to address the biggest security challenges.We are seeking a lead cybersecurity engineer with expertise in penetration testing, incident response, and forensics. The role focuses on conducting comprehensive threat...


  • Canada Sophos Full time

    Role Summary Malware Researcher? Red/Blue/Purple team member? We have a fantastic opportunity here at Sophos Labs for a Threat Researcher role to join our global team of Behavioral Protection engineers, to hunt, to research, and to add real-time protection for suspicious activity across our customer environments. Our team of skilled security experts...


  • Canada Dropbox Full time

    Role Description Dropbox Threat Intelligence leverages data-driven insights to understand and counteract potential threats to Dropbox and its users. By analyzing attack patterns and threat actors, we provide actionable intelligence that supports the business in fortifying defences and enhancing security resilience.  In this role you will investigate...


  • Canada S&P Global Full time

    S&P Global is a leading provider of data and analytics solutions to the financial markets. Our security team plays a critical role in safeguarding our systems and data from various threats.Job Description:We are seeking a Lead Security Engineer with expertise in penetration testing, incident response, and forensics. The role focuses on penetration testing,...


  • Canada Insight Global Full time

    About the Role:We are seeking a skilled Internal Threat Detection Expert to join our team at Insight Global. This role is perfect for someone with extensive hands-on experience in threat hunting and a strong understanding of security protocols.Key Responsibilities:Evaluate security policies and configurations to identify potential risksConduct thorough...


  • Canada Splunk Inc Full time

    Splunk is here to build a safer and more resilient digital world. The world's leading enterprises use our unified security and observability platform to keep their digital systems secure and reliable. While customers love our technology, it's our people that make Splunk stand out as an amazing career destination and why we've won so many awards as a best...


  • Canada Cyderes Full time

    About the Company Cyderes is a global cybersecurity powerhouse offering comprehensive solutions around managed security, identity and access management, and professional services. Cyderes provides the people, process, and technology modern enterprises rely on to manage risk, maintain compliance, and respond to security threats with greater speed, scale, and...


  • Canada Applicantz Full time

    This is a fully remote role. We are seeking a highly skilled and experienced Web Application Firewall (WAF) Engineer to join our Trust Information Security team. This role will involve developing and implementing security standards and requirements to protect our web applications from various threats. Design, implement, and maintain Web Application Firewall...

  • Incident Manager

    2 weeks ago


    Canada Randstad Digital Full time

    Cybersecurity, Incident Response Manager - Hybrid (Permanent Position)Number of Positions: 1 Location: Toronto, ON, CAMust be eligible to work in CanadaHybrid position, must be 3d/w onsite in Toronto, London ON, or Winnipeg MB, possible changes in the futureMust be eligible for Reliability Status security clearance meaning that at least recent 5yrs...


  • Canada S&P Global Full time

    The Team: S&P Ratings Security team focuses on protecting our clients and users from all aspects of modern-day security threats. The mission of our team is to safeguard systems and data by developing innovative solutions for the biggest security challenges. We are passionate problem solvers with deep security expertise. Responsibilities and Impact: We are...

  • Technical Lead

    2 weeks ago


    Canada HCLTech Full time

    We are seeking a SOC Technical Lead/ Manager to oversee the detection, investigation, response, and remediation of security incidents.Role Type: Full Time, OnsiteLocation: Mississauga, Ontario, CanadaThis role will be responsible for:· Security Monitoring, Response & Automation· Advanced Threat Hunting & Intelligence· Improving security monitoring...


  • Canada Applicantz Full time

    This is a fully remote role. Works need to be done in PST. We are seeking a highly skilled and experienced Web Application Firewall (WAF) Engineer to join our Trust Information Security team. The ideal candidate will have a strong background in CDN-based firewalls and expertise in Fastly Signal Sciences, AWS WAF, Imperva, and other similar technologies. This...


  • Canada Applicantz Full time

    This is a fully remote role. Works need to be done in PST.We are seeking a highly skilled and experienced Web Application Firewall (WAF) Engineer to join our Trust Information Security team. The ideal candidate will have a strong background in CDN-based firewalls and expertise in Fastly Signal Sciences, AWS WAF, Imperva, and other similar technologies. This...


  • Canada Intelliswift - An LTTS Company Full time

    Job Title: Threat Intelligence SpecialistLocation: Toronto, ON (one day per week onsite, remote to other candidates as well)Duration: 12 monthsContract Type: T4 onlyPay Rate: CA$46.90/HourRole Mandate: This role, as part of the Client's Financial Crimes Unit Crisis Management and Fusion Intelligence team, is responsible for proactive identification of...


  • Canada Intelliswift - An LTTS Company Full time

    Job Title: Threat Intelligence SpecialistLocation: Toronto, ON (one day per week onsite, remote to other candidates as well)Duration: 12 monthsContract Type: T4 onlyPay Rate: CA$46.90/HourRole Mandate: This role, as part of the Client's Financial Crimes Unit Crisis Management and Fusion Intelligence team, is responsible for proactive identification of...