Cybersecurity Analyst- Tier 2

3 weeks ago


Toronto, Canada ISA Cybersecurity Full time

About the Role:
The Cybersecurity Analyst
- Tier 2 is responsible for gathering details needed to assess the scope of a cyber-attack and respond to severe attacks or those with high business impact. The Tier 2 role will clearly understand the customer’s environment (i.e. current security controls) and provide consultation on security controls required to perform a risk assessment. The Cybersecurity Analyst
- Tier 2 will understand industry trends and be aware of the latest news to understand needs in the customers sector.

The Cybersecurity Analyst Tier 2 will collaborate and work closely with our customers to customize SIEM use cases to ensure that they are appropriate for customers environment. The Tier
- 2 will be able to create and maintain a trusting relationship with clients. This is a hybrid position with the occasional requirement to perform duties at our Toronto office location.

About Us:
ISA is a cybersecurity-focused technology firm, with over 30 years of experience helping organizations of all sizes solve complex challenges relating to IT security. We act as trusted advisors in providing services to help our clients define, implement and manage their strategies to minimize IT security related risk, and to provide a secure business environment for their employees and customers. We also deliver state-of-the-art cybersecurity solutions thanks to strong partnerships with the industry’s leading Technology Vendors.

**Responsibilities**:

- Monitor and analyze network traffic and IDS events from network and host-based security appliance logs (Firewalls, NIDS, HIDS, Sys Logs) to determine correct remediation actions and escalation paths for each incident.
- Investigate intrusion attempts and perform indepth analysis of exploits.
- Provide network intrusion detection expertise to support timely and effective decision making of when to declare an incident.
- Conduct proactive threat research.
- Review security events that are populated in a Security Information and Event Management (SIEM) system for the creation and tuning of correlation rules and playbooks.
- Creation and tuning of correlation rules and playbooks.
- Independently follow procedures to contain, analyze, and eradicate malicious activity.
- Perform Tier 2 incident investigation. Document all activities during an incident and provide leadership with status updates during the life cycle of the incident.
- Develop and maintain monthly and quarterly report documents according to the requirements of clients.
- Assist with the development of processes and procedures.
- Communicate with clients and internal team members at all levels and across functional and organizational boundaries regarding security events and incidents.
- Full understanding of Tier 1 responsibilities/duties and how the duties feed into Tier 2.
- Assist clients with security product implementation, onboarding and support.
- Host routine meetings with clients to create, tune, and optimize use cases based on the environment of different clients. Discover any log source gaps to build out better use cases

Qualifications:

- University degree or college diploma in computer science or information technology or equivalent
- Two (2) years of job-related SOC experience
- Ability to obtain a Government of Canada security clearance of at least Level 1
- Experience with IPS/IDS/WAF and SIEMs (specifically Splunk and Microsoft Sentinel)
- Experience reviewing and analyzing network packet captures
- Experience performing security/vulnerability reviews of network environments
- Experience in threat intelligence and advanced persistent threat analysis
- Experience with enterprise anti-virus solutions, virus outbreak management, and the ability to differentiate virus activity from directed attack patterns
- Knowledge and understanding of data loss prevention (DLP)
- Knowledge and understanding of network architecture
- Strong knowledge of Windows and Linux OS
- Strong research background, utilizing an analytical approach
- Comfortable working against deadlines in a fast-paced environment
- Strong verbal/written communication and interpersonal skills are required to document and communicate findings, escalate critical incidents, and interact with customers
- Highly motivated individual with the ability to self-start, prioritize, multi-task and work in a team setting

Accessibility


  • Cybersecurity Analyst

    1 month ago


    Toronto, Canada CB Canada Full time

    Cybersecurity Analyst On behalf of our client in the Banking Sector, PROCOM is looking for a Cybersecurity Analyst. Cybersecurity Analyst – Job Description Assist with incident handling, reporting focal for Cybersecurity Operations Reporting to Global Head of threat monitoring and response, working with stakeholders around the globe Bridging communication...


  • Toronto, Canada Quickpass Cybersecurity Full time

    **Revenue Operations Analyst** **Who we are** Quickpass Cybersecurity (“CyberQP”) is a leading cybersecurity solution provider for Managed Service Providers (MSPs), dedicated to delivering cutting-edge security solutions to our clients. As we continue our rapid growth trajectory, we are seeking a versatile and proactive Revenue Operations Analyst to...


  • Toronto, Canada Avanade Full time

    **Title**: Cyber Security Analyst - Tier 3 **Introduction**: As a Tier 3 security analyst at Avanade, you will play a key role in safeguarding our systems and data from cyber threats and incidents. You will work independently and as part of a team to detect, analyze, and respond to security events in real time, using various tools and techniques. You will...

  • Cybersecurity Analyst

    4 weeks ago


    Toronto, Canada Systematix Full time

    We are Systematix and we are looking for a **Cybersecurity Analyst **to fill a six-month contract position with one of our key clientele in the equipment manufacturing industry in the Greater Toronto Area. **About the Project**: Our client, one of the world’s leading commercial, industrial and construction equipment manufactures, is seeking a IT...


  • Toronto, Ontario, Canada OTT Financial Full time

    OTT Pay Inc. "(OTT Pay)" is a fully funded established FINTECH focused on delivering simplified financial payment products. With a strategic emphasis on both Acquiring and Issuing businesses, we are developing a mobile-first platform that offers straightforward banking services, loyalty solutions, and innovative products including credit cards, accounts,...


  • Toronto, Ontario, Canada OTT Financial Full time

    OTT Pay Group Inc. "(OTT Pay)" is a fully funded established FINTECH focused on delivering simplified financial payment products. With a strategic emphasis on both Acquiring and Issuing businesses, we are developing a mobile-first platform that offers straightforward banking services, loyalty solutions, and innovative products including credit cards,...


  • Toronto, Canada AGCO Full time

    **Term**: Permanent Full-Time **Division/Branch**: Information and Information Technology Division/Cybersecurity and Digital Platforms Branch **Application Deadline**: April 20, 2023 **Level**: Level 10 **Salary Range**: Min: $91,982 Max: $114,973 The Information and Information Technology Division of the AGCO is looking for a Cybersecurity Analyst,...


  • Toronto, Ontario, Canada Gannett Fleming Full time

    What You Will Do:Gannett Fleming's Security and Safety services group provide technical, executive advise, and program support to help our clients to mitigate risks to the public, their personnel, and their property. Through security and safety analysis, planning, design, certification, and oversight solutions, we help our client's protect the people and...


  • Toronto, Canada Alcohol and Gaming Commission of Ontario Full time

    The Information and Information Technology Division of the AGCO is looking for a Cybersecurity Analyst - Operations. Reporting to the Manager, Cybersecurity, the Cybersecurity Analyst - Operations is responsible for ensuring information security controls maintain the confidentiality, integrity and availability of AGCO's information and infrastructure. In...

  • Level 2 SOC Analyst

    4 weeks ago


    Toronto, Canada CGI Full time

    **Level 2 SOC Analyst**: **Category**: Cyber Security **Main location**: Canada, P. E. I., Toronto **Alternate Location(s)**: - Canada, British Columbia, Vancouver - Canada, Alberta, Calgary - Canada, Nova Scotia, Halifax - Canada, Ontario, Ottawa - Canada, New Brunswick, Moncton**Position ID**: J0123-0928 **Employment Type**: Full Time **Position...


  • Toronto, Canada CI Financial Full time

    At CI, we see a great place to work as one that is a safe place for everyone to have a voice, where people are empowered to take ownership over meaningful work, where there is an opportunity to grow through stretching themselves, where they can work on innovative products and projects, and where employees are supported and engaged in doing so.  We are...


  • Toronto, ON, Canada Cyber Crime Full time

    CyberSecurity Applications Developer/Analyst Bank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered. We’re building a relationship-oriented bank for the modern world. Design & Develop: Act as a technical lead and SME (subject matter expert) on the analysis and documentation of business requirements,...


  • Toronto, Canada Toronto Transit Commission (TTC) Full time

    JOB INFORMATION **Requisition ID**: 9327 **Number of Vacancies**: 1 **Department**: Information Technology Services (20000014) - Information Security Office (30000033) **Salary Information**: $88,306.40 - $110,401.20 **Pay Scale Group**: 09SA **Employment Type**: Regular **Weekly Hours: 35 Off Days: Saturday and Sunday Shift**: **Posted On**: May 17,...


  • Toronto, Canada ORION Full time

    About ORION: ORION is a not-for-profit organization dedicated to empowering Ontario researchers, educators and innovators. We foster a community of 1.7 million users at more than a hundred universities, colleges, hospitals and research institutions, school boards and regional innovation centres across the province. We enable ground-breaking discoveries...


  • Toronto, Canada CDW Full time

    At CDW, we're always on, forever vigilant and information security is infused in our DNA. A Fortune 200 leader and Canada's number one provider of IT solutions, we have a proud 20-year track record of safeguarding companies' critical data and resources through the very latest cybersecurity technologies and practices. As a Cybersecurity Operations...


  • Toronto, Canada Yotpo Full time

    We have teams across the world, including the US, Canada, UK, Israel, Bulgaria, and Australia — and we're still growing. Our primary goal is to deliver the best technology in the industry. You can hear all about it in our latest brand video. Sounds exciting? Then read on, because we're in pursuit of the best and the brightest minds to help us achieve our...


  • Toronto, Canada Agio, Inc. Full time

    Agio is a hybrid managed IT and cybersecurity provider servicing the financial services, health care and payments industries. The company has extensive experience supporting the alternative investment space, specializing in hedge funds, private equity firms and asset managers. Agio offers technology hosting, monitoring, management, helpdesk, disaster...


  • Toronto, Canada Fidelity Investments Full time

    Description Job Posting - Team Manager, Cybersecurity This is a hybrid role with a mix of remote and in-office working At Fidelity, we’ve been helping Canadian investors build better financial futures for over 35 years. We offer individuals and institutions a range of trusted investment portfolios and services - and we’re constantly seeking...


  • Toronto, Canada ISA Cybersecurity Full time

    **Job Purpose**: As a Business Development Sales Representative (BDSR) at ISA Cybersecurity, you will be part of a dynamic business development & sales team and will be responsible for driving sales and engagement with new and existing clients. This role will be a driver of connections with a goal of expanding our footprint with existing customers as well...


  • Old Toronto, Canada Canadian Imperial Bank of Commerce Full time

    CyberSecurity Applications Developer/Analyst page is loaded CyberSecurity Applications Developer/Analyst Apply locations Toronto, ON time type Full time posted on Posted 2 Days Ago job requisition id 2409031 We’re building a relationship-oriented bank for the modern world. We...