Triage Security Analyst
1 month ago
Dojo Join the team empowering the experience economy by building tools that turn transactions into meaningful relationships
View company page
The role of the Security Analyst, Triage is to provide technical security expertise and support for the threat monitoring & triage team within the Cyber Security Operations Center (CSOC). This is an important role supporting mission critical enterprise networks and IT services protection for City National Bank (CNB), a subsidiary of RBC. This role will provide technical expertise and analysis to the proactive and reactive responses to information security threats against CNB’s global environment. This role will perform first line investigation and response actions, including the triaging of security detections and escalation of security incidents. This role will also maintain awareness of emerging/advanced threats and assist in driving efficient security solutions to address the evolving threat landscape. This role partners with CNB CSOC & RBC leadership to further the organization's Intelligence-led Security and Resilient Services objectives.
WHAT WILL YOU DO?
Global accountability to respond to critical security incidents/events providing accurate and timely reporting to CSOC and Global Cyber Security (GCS) leadership
Provide support for high risk security incidents escalated from Managed Security Services (MSS), CSOC peers, GCS and other lines of business
Perform investigation and triage activities of security related events that are deemed high risk or pose a significant threat to the organization
Detailed technical research and analysis of relevant security events, often complex in design and their potential impact to the organization
Escalation of threats against the organization to management and Incident Response team as required based on severity level of threats
Develop, distribute and present technical findings with regards to threats, attack vectors and mitigation techniques including the creation and tracking of security metrics
Proactive searching activities to look for unknown threats and suspicious behaviour within the environment
Collaborate with partner groups for tuning of monitoring rules and automation of security tasks to keep CSOC's monitoring capabilities relevant and up to date with a minimal level of false positives
WHAT DO YOU NEED TO SUCCEED?
Must have:
- Experience in performing investigation and triage activities of security related events
- Experience in all aspects of Security Operations Center and how the organization supports/adds value to the rest of the organization
- Strong platform knowledge including Microsoft Windows and Unix/Linux Operating Systems
- Thorough understanding of SIEM technology and security related controls(IDS/IPS, WAF, NDR/EDR, etc..)
- Experience with SOAR product
- Knowledge of cybersecurity frameworks (Cyber Kill Chain, NIST, MITRE ATT&CK, etc..)
- Strong written and verbal communication skills
- Strong analytical and complex problem-solving skills
- Availability for rotating pager duty support for after hours, holidays
Nice-to-have:
- Experience with malware analysis
- Familiarity with Windows/Unix scripting languages (bash, python, regex, PowerShell, etc..)
- Strong Networking knowledge with TCP/IP packet level knowledge
- Bachelor’s degree in Computer Science or related field
- Industry recognized certifications (ISC2, SANS, ISACA, etc..)
What’s in it for you?
We thrive on the challenge to be our best, progressive thinking to keep growing, and working together to deliver trusted advice to help our clients thrive and communities prosper. We care about each other, reaching our potential, making a difference to our communities, and achieving success that is mutual.
A comprehensive Total Rewards Program including bonuses and flexible benefits, competitive compensation, commissions, and stock where applicable
Leaders who support your development through coaching and managing opportunities
Ability to make a difference and lasting impact
Work in a dynamic, collaborative, progressive, and high-performing team
A world-class training program in financial services
Flexible work/life balance options
Opportunities to do challenging work
#li-hybrid
Job Skills
Confidentiality, Cyber Security Management, Decision Making, Detail-Oriented, Encryption Software, High Impact Communication, Information Security Management, Information Technology Security, Problem Solving
Job Summary
Job Description
WHAT IS THE OPPORTUNITY?
The role of the Security Analyst, Triage is to provide technical security expertise and support for the threat monitoring & triage team within the Cyber Security Operations Center (CSOC). This is an important role supporting mission critical enterprise networks and IT services protection for City National Bank (CNB), a subsidiary of RBC. This role will provide technical expertise and analysis to the proactive and reactive responses to information security threats against CNB’s global environment. This role will perform first line investigation and response actions, including the triaging of security detections and escalation of security incidents. This role will also maintain awareness of emerging/advanced threats and assist in driving efficient security solutions to address the evolving threat landscape. This role partners with CNB CSOC & RBC leadership to further the organization's Intelligence-led Security and Resilient Services objectives.
WHAT WILL YOU DO?
Global accountability to respond to critical security incidents/events providing accurate and timely reporting to CSOC and Global Cyber Security (GCS) leadership
Provide support for high risk security incidents escalated from Managed Security Services (MSS), CSOC peers, GCS and other lines of business
Perform investigation and triage activities of security related events that are deemed high risk or pose a significant threat to the organization
Detailed technical research and analysis of relevant security events, often complex in design and their potential impact to the organization
Escalation of threats against the organization to management and Incident Response team as required based on severity level of threats
Develop, distribute and present technical findings with regards to threats, attack vectors and mitigation techniques including the creation and tracking of security metrics
Proactive searching activities to look for unknown threats and suspicious behaviour within the environment
Collaborate with partner groups for tuning of monitoring rules and automation of security tasks to keep CSOC's monitoring capabilities relevant and up to date with a minimal level of false positives
WHAT DO YOU NEED TO SUCCEED?
Must have:
- Experience in performing investigation and triage activities of security related events
- Experience in all aspects of Security Operations Center and how the organization supports/adds value to the rest of the organization
- Strong platform knowledge including Microsoft Windows and Unix/Linux Operating Systems
- Thorough understanding of SIEM technology and security related controls(IDS/IPS, WAF, NDR/EDR, etc..)
- Experience with SOAR product
- Knowledge of cybersecurity frameworks (Cyber Kill Chain, NIST, MITRE ATT&CK, etc..)
- Strong written and verbal communication skills
- Strong analytical and complex problem-solving skills
- Availability for rotating pager duty support for after hours, holidays
Nice-to-have:
- Experience with malware analysis
- Familiarity with Windows/Unix scripting languages (bash, python, regex, PowerShell, etc..)
- Strong Networking knowledge with TCP/IP packet level knowledge
- Bachelor’s degree in Computer Science or related field
- Industry recognized certifications (ISC2, SANS, ISACA, etc..)
What’s in it for you?
We thrive on the challenge to be our best, progressive thinking to keep growing, and working together to deliver trusted advice to help our clients thrive and communities prosper. We care about each other, reaching our potential, making a difference to our communities, and achieving success that is mutual.
A comprehensive Total Rewards Program including bonuses and flexible benefits, competitive compensation, commissions, and stock where applicable
Leaders who support your development through coaching and managing opportunities
Ability to make a difference and lasting impact
Work in a dynamic, collaborative, progressive, and high-performing team
A world-class training program in financial services
Flexible work/life balance options
Opportunities to do challenging work
#techpj
#li-hybrid
Job Skills
Confidentiality, Cyber Security Management, Decision Making, Detail-Oriented, Encryption Software, High Impact Communication, Information Security Management, Information Technology Security, Problem SolvingAdditional Job Details
Address:
VANCOUVER MAIN BRANCH (B), 1055 GEORGIA ST W:VANCOUVERCity:
VANCOUVERCountry:
CanadaWork hours/week:
37.5Employment Type:
Full timePlatform:
Technology and OperationsJob Type:
RegularPay Type:
SalariedPosted Date:
2024-02-27Application Deadline:
2024-03-29Inclusion and Equal Opportunity Employment
At RBC, we embrace diversity and inclusion for innovation and growth. We are committed to building inclusive teams and an equitable workplace for our employees to bring their true selves to work. We are taking actions to tackle issues of inequity and systemic bias to support our diverse talent, clients and communities.
We also strive to provide an accessible candidate experience for our prospective employees with different abilities. Please let us know if you need any accommodations during the recruitment process.
Join our Talent Community
Stay in-the-know about great career opportunities at RBC. Sign up and get customized info on our latest jobs, career tips and Recruitment events that matter to you.
Expand your limits and create a new future together at RBC. Find out how we use our passion and drive to enhance the well-being of our clients and communities at jobs.rbc.com .
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
#J-18808-Ljbffr-
Remote Information Security Analyst
1 week ago
Brossard, Quebec, Canada Scotiabank Full timeJob Description: Reporting to the Senior Manager, Triage & Monitoring, the Cybersecurity Analyst is responsible for monitoring the bank's security use-cases and triaging threats for severity and relevance. Collaborating with various business and technology teams to understand and assess potential threats for monitoring or response. Passionate about customer...
-
Security Operations Center
1 month ago
Brossard, Canada SupportNinja Full timeSecurity Operations Center (SOC) Analyst SupportNinja Growth can be a great problem to have - as long as you have the right team. We're the right-size partner who'll prove that our culture isn't an empty promise. View company page We’re obsessed with growth. From enabling companies to flourish, to helping careers bloom.SupportNinja was founded in 2015...
-
Security Operations Center
1 month ago
Brossard, Canada SupportNinja Full timeSecurity Operations Center (SOC) Analyst SupportNinja Growth can be a great problem to have - as long as you have the right team. We're the right-size partner who'll prove that our culture isn't an empty promise. View company page We’re obsessed with growth. From enabling companies to flourish, to helping careers bloom.SupportNinja was founded in 2015...
-
Security Operations Center
1 month ago
Brossard, Canada SupportNinja Full timeSecurity Operations Center (SOC) Analyst SupportNinja Growth can be a great problem to have - as long as you have the right team. We're the right-size partner who'll prove that our culture isn't an empty promise. View company page We’re obsessed with growth. From enabling companies to flourish, to helping careers bloom.SupportNinja was founded in 2015...
-
Security Operations Center
4 weeks ago
Brossard, Canada SupportNinja Full timeSecurity Operations Center (SOC) Analyst SupportNinja Growth can be a great problem to have - as long as you have the right team. We're the right-size partner who'll prove that our culture isn't an empty promise. View company page We’re obsessed with growth. From enabling companies to flourish, to helping careers bloom.SupportNinja was founded in 2015...
-
Security Operations Center
4 weeks ago
Brossard, Canada SupportNinja Full timeSecurity Operations Center (SOC) Analyst SupportNinja Growth can be a great problem to have - as long as you have the right team. We're the right-size partner who'll prove that our culture isn't an empty promise. View company page We’re obsessed with growth. From enabling companies to flourish, to helping careers bloom.SupportNinja was founded in 2015...
-
Senior Information Security Analyst
1 month ago
Brossard, Canada Scotiabank Full timeRequisition ID: 195017Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.Reporting to the Senior Manager, Triage & Monitoring the Cybersecurity Analyst is responsible for monitoring the for the bank’s security use-cases and triaging threats for severity and relevance. The Cybersecurity Analyst works with...
-
Senior Information Security Analyst
1 month ago
Brossard, Canada Scotiabank Full timeRequisition ID: 195017Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.Reporting to the Senior Manager, Triage & Monitoring the Cybersecurity Analyst is responsible for monitoring the for the bank’s security use-cases and triaging threats for severity and relevance. The Cybersecurity Analyst works with...
-
Senior Information Security Analyst
4 weeks ago
Brossard, Canada Scotiabank Full timeRequisition ID: 195017Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.Reporting to the Senior Manager, Triage & Monitoring the Cybersecurity Analyst is responsible for monitoring the for the bank’s security use-cases and triaging threats for severity and relevance. The Cybersecurity Analyst works with...
-
Senior Information Security Analyst
1 week ago
Brossard, Quebec, Canada Scotiabank Full timeRequisition ID: 195017Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.Reporting to the Senior Manager, Triage & Monitoring the Cybersecurity Analyst is responsible for monitoring the for the bank's security use-cases and triaging threats for severity and relevance. The Cybersecurity Analyst works with...
-
Senior Information Security Analyst
1 month ago
Brossard, Canada Scotiabank Full timeRequisition ID: 195017Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.Reporting to the Senior Manager, Triage & Monitoring the Cybersecurity Analyst is responsible for monitoring the for the bank’s security use-cases and triaging threats for severity and relevance. The Cybersecurity Analyst works with...
-
Senior Information Security Analyst
4 weeks ago
Brossard, Canada Scotiabank Full timeRequisition ID: 195017Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.Reporting to the Senior Manager, Triage & Monitoring the Cybersecurity Analyst is responsible for monitoring the for the bank’s security use-cases and triaging threats for severity and relevance. The Cybersecurity Analyst works with...
-
Security Analyst
1 week ago
Brossard, Quebec, Canada GoSecure Full timeThe Security Analyst specialist is a member of GoSecure's MSD Services team. He provide technical consulting service in network security, such as Firewall technology, Antispam or EDR. Also provides expertise in security operations and technical support to various customers. As part of managed security contracts, the Security Analyst configure managed...
-
Security Analyst
1 week ago
Brossard, Canada SpryPoint Full timeThe CompanySimply put, SpryPoint provides Smart Solutions for Smart Utilities.Founded in 2011, SpryPoint is a leading provider of cloud -based solutions for the utility sector. Our team of experts has extensive experience serving utilities across North America, and we are dedicated to helping our clients improve their operations and better serve their...
-
Security Analyst
1 week ago
Brossard, Canada SpryPoint Full timeThe CompanySimply put, SpryPoint provides Smart Solutions for Smart Utilities.Founded in 2011, SpryPoint is a leading provider of cloud -based solutions for the utility sector. Our team of experts has extensive experience serving utilities across North America, and we are dedicated to helping our clients improve their operations and better serve their...
-
Principal Security Analyst
2 months ago
Brossard, Canada OpenText Full timeOpenText OpenText offers cloud-native solutions in an integrated and flexible Information Management platform to enable intelligent, connected and secure organizations. View company page OPENTEXTOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a...
-
Principal Security Analyst
2 months ago
Brossard, Canada OpenText Full timeOpenText OpenText offers cloud-native solutions in an integrated and flexible Information Management platform to enable intelligent, connected and secure organizations. View company page OPENTEXTOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a...
-
Principal Security Analyst
2 months ago
Brossard, Canada OpenText Full timeOpenText OpenText offers cloud-native solutions in an integrated and flexible Information Management platform to enable intelligent, connected and secure organizations. View company page OPENTEXTOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a...
-
Principal Security Analyst
2 days ago
Brossard, Canada OpenText Full timeOpenText OpenText offers cloud-native solutions in an integrated and flexible Information Management platform to enable intelligent, connected and secure organizations. View company page OPENTEXTOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a...
-
IT Specialist, Security Analyst
4 weeks ago
Brossard, Canada Bitfarms Full timeBitfarms is a global vertically integrated Bitcoin mining company that operates one of the largest cryptocurrency mining operations in North America. As the only publicly traded pure-play Bitcoin mining company audited by a Big Four audit firm, we are a global operation powered by entrepreneurial leaders and the most novel technology available. Spanning two...