SOC Analyst

2 weeks ago


Toronto, Canada KPMG Full time

Overview:
At KPMG, you’ll join a team of diverse and dedicated problem solvers, connected by a common cause: turning insight into opportunity for clients and communities around the world.

Are you a talented individual with a proven track record on executing project deliverables.

Our Cyber Managed Services team in Toronto is looking for a professional like you with the skills and drive to make a real difference.

What you will do:

- Receive escalation from L1 SOC analyst to determine increased risk to the business
- Review log data against security technology rules and filters to propose further improvements to threat detection
- Coordinate with SIEM Engineers to tune events, improve event correlation, performance, and alerts
- Develop, create and maintain incident response playbooks. This includes identifying areas of potential improvement by reviewing redundant tasks, security incidents and providing task automation suggestions
- Perform log analysis from multiple data sources to analyze technical data, extracting Tactics, Techniques, Procedures (TTP) and malware attributes
- Provide support in the analysis of critical events and security tickets to evaluate the effectiveness and efficiency of the incident management process and develop any necessary improvement plans.
- Maintain up-to-date understanding of security threats, countermeasures, security tools and Cloud Security and SaaS technologies.
- Experience tracking incidents against a framework such as SANS and MITRE ATT&CK.
- Provide technical and thought leadership within SOC by teaching other SOC Analysts about both traditional and unconventional ways to detect, analyze, and mitigate security incidents.
- Act as Subject Matter Expert (SME) trainer for analyst functions, providing support on more involved cases and guiding the activity of other T1/T2 analysts through collaboration.
- Act as the lead coordinator for the Incident Response function and as designated lead on customer on-boarding projects to ensure a successful transition to SOC for security monitoring services.

What you bring to this role:

- Highly technical with at least 3 to 5 years of relevant experience as an analyst in Cyber, IT Security or a SOC
- Any industry relevant(s) certifications such as CISSP, CISM, SANS, CISA, CompTIA Security+ or CompTIA CySA+, GIAC is required.
- Hands-on experience with Microsoft Sentinel or other SIEM and SOAR technologies, creating and running queries, and performing analytics examination of logs and console events.
- Hands-on experience with Microsoft Defender Endpoint, CSPM/CWP or any similar vendor technologies, ability to understand vulnerabilities with insights from industry-leading security research and provide recommendation to external clients
- Experience with Malware Analysis and reverse engineering through static or dynamic analysis.
- Experience and demonstrated success in business development activities, including research and analysis, processes development/improvement, proposal writing etc.
- Experience evaluating the design and operating effectiveness of various control frameworks and standards, including understanding process level risks, technology risks, assessing the adequacy of mitigating controls and providing opportunities for enhancement
- Experience in enterprise asset lifecycle management, with a strong understanding of relating security operations such as patch management, vulnerability management, security architecture, and endpoint management
- Experience and/or strong understanding of cloud transformation, cloud architecture, and cloud security operations.
- Experience leading and/or managing complex projects
- Effectively communicate and present strategies, solutions, insights, and reports to a mix of stakeholders at various levels
- Experience in a leadership role, providing engaged mentorship and knowledge sharing to the team and junior/intermediate level analysts

**Providing you with the support you need to be at your best**

For more information about KPMG in Canada’s Benefits and well-being, click here.

Our Values, The KPMG Way:
**Integrity**, we do what is right | **Excellence**, we never stop learning and improving | **Courage**, we think and act boldly | **Together**, we respect each other and draw strength from our differences | **For Better**, we do what matters

**Adjustments and accommodations throughout the recruitment process**

For information about accessible employment at KPMG, please visit our accessibility page.


  • Junior SOC Analyst

    3 weeks ago


    Toronto, Canada Mjolnir Security Full time

    Mjolnir provides clients with a suite of highly advanced and AI/ML driven tools and services - Security Ops Center as a Service, Threat Detection and Dark web Threat Intelligence, Digital Forensics, Threat Analysis and Incident Response services, as well as Cyber Security training. Mjolnir supports both corporate and public agencies - and specializes in...

  • L1 SOC Analyst

    4 weeks ago


    Toronto, Canada Hamilton Barnes Associates Limited Full time

    Our client is a well-established Managed Security Service Provider (MSSP) and a leading Fortinet and Microsoft partner, delivering high-impact cybersecurity solutions to clients in the defence, government, and financial services industries. Committed to nurturing talent, our client offers a comprehensive training and development program to help you advance...

  • SOC Analyst L1

    3 weeks ago


    Toronto, Canada GlassHouse Systems Full time

    GlassHouse Systems (GHS) is an enterprise systems, and managed services solutions provider that develops, designs and deploys solutions for leading enterprises in Canada and the US. For almost 30 years, GHS has delivered an enterprise level of service and support to clients. Recognized with industry-leading awards each year, GHS translates this...

  • Level 2 SOC Analyst

    3 weeks ago


    Toronto, Canada CGI Full time

    **Level 2 SOC Analyst**: **Category**: Cyber Security **Main location**: Canada, P. E. I., Toronto **Alternate Location(s)**: - Canada, British Columbia, Vancouver - Canada, Alberta, Calgary - Canada, Nova Scotia, Halifax - Canada, Ontario, Ottawa - Canada, New Brunswick, Moncton**Position ID**: J0123-0928 **Employment Type**: Full Time **Position...

  • SOC Analyst Co-op

    4 weeks ago


    Toronto, Canada GlassHouse Systems Full time

    **About GHS** GlassHouse Systems (GHS) is an enterprise systems, and managed services solutions provider that develops, designs and deploys solutions for leading enterprises in Canada and the US. For almost 30 years, GHS has delivered an enterprise-level of service and support to clients. Recognized with industry-leading awards each year, GHS translates...

  • L1 SOC Analyst

    4 weeks ago


    Toronto, Canada Hamilton Barnes Associates Limited Full time

    Our client is a well-established Managed Security Service Provider (MSSP) and a leading Fortinet and Microsoft partner, delivering high-impact cybersecurity solutions to clients in the defence, government, and financial services industries. Committed to nurturing talent, our client offers a comprehensive training and development program to help you advance...

  • L1 SOC Analyst

    4 weeks ago


    Toronto, Canada Hamilton Barnes Associates Limited Full time

    Our client is a well-established Managed Security Service Provider (MSSP) and a leading Fortinet and Microsoft partner, delivering high-impact cybersecurity solutions to clients in the defence, government, and financial services industries. Committed to nurturing talent, our client offers a comprehensive training and development program to help you advance...

  • SOC Analyst

    3 weeks ago


    Toronto, Canada Crescendo Technology Full time

    **About the role**: As a SOC analyst, you are responsible for the day-to-day monitoring, analysis and issue resolution activities related to security incidents and possible gaps. You take initiative to implement preventive measures and in urgent and complex incidents, you ensure that appropriate countermeasures are taken. - A degree in Information Technology...

  • SOC Analyst

    5 hours ago


    Toronto, Canada Questrade Financial Group Full time

    Wednesday, February 19, 2025 Questrade Financial Group (QFG), through its companies - Questrade, Inc., Questrade Wealth Management Inc., Community Trust Company, ThinkInsure, Zolo, and Flexiti, provides securities and foreign currency investment, professionally managed investment portfolios, mortgages, insurance, real estate services, financial services and...

  • SOC Analyst

    1 day ago


    Toronto, Canada Questrade Financial Group Full time

    Wednesday, February 19, 2025Questrade Financial Group (QFG), through its companies - Questrade, Inc., Questrade Wealth Management Inc., Community Trust Company, ThinkInsure, Zolo, and Flexiti, provides securities and foreign currency investment, professionally managed investment portfolios, mortgages, insurance, real estate services, financial services and...

  • Level 2 SOC Analyst

    3 weeks ago


    Toronto, Canada CGI Full time

    The Level 2 (L2) SOC Analyst is a core resource on the security monitoring and response team (Blue Team) within the Global Security Operations Center (GSOC). As a member of the Blue Team, the L2 Analyst is responsible for the monitoring, triage and response of all security alerts coming from SIEM and the security controls directly. The L2 Analyst will have...

  • Tier Ii SOC Analyst

    3 weeks ago


    Toronto, Canada Cyberclan Full time

    The Security Operations team exists to protect the client by proactively detecting and responding to cyber security threats. Working as a member of a growing team, you will provide defence against cyber-attacks and play a vital role in the monitoring, analysis and management of security events / incidents emanating from client networks and systems. This is a...


  • Toronto, Ontario, Canada NEX Labs Full time

    Cybersecurity at NIXGUARD by NEX LabsWe are seeking a skilled Cybersecurity Analyst to join our team at NIXGUARD by NEX Labs. As a member of our cybersecurity team, you will play a vital role in ensuring the security of our innovative SIEM/SOC system.Key Responsibilities:Threat Analysis: Identify and analyze potential threats in real-time using advanced...


  • Toronto, Ontario, Canada Sopra Steria Full time

    Sopra Steria, a major technology company in Europe, offers a unique opportunity to work with a team of experts in cybersecurity. As a SOC Detection & Response Specialist, you will play a crucial role in enhancing our Security Operations Center (SOC) capabilities.Job DescriptionYou will be responsible for developing detection rules, investigation and response...


  • Toronto, Ontario, Canada Sopra Steria Full time

    Job OverviewAt Sopra Steria, we're seeking an experienced Cybersecurity Specialist to join our team. As a key member of our Security Operations Center (SOC), you'll be responsible for developing and refining detection rules for SIEM and security monitoring platforms. This is an exciting opportunity to leverage your expertise in threat detection and incident...


  • Toronto, Canada NEX Labs Full time

    Limited Opportunity for Cybersecurity Analysts to Explore Cutting-Edge SIEM/SOC SystemJoin us at NixGuard (by NEX Labs) as a Cybersecurity Analyst and be part of a team that’s revolutionizing the cybersecurity landscape. This role is a unique blend of fun, challenge, and immense learning. Success in this position means actively contributing to the security...


  • Toronto, Canada NEX Labs Full time

    Limited Opportunity for Cybersecurity Analysts to Explore Cutting-Edge SIEM/SOC SystemJoin us at NixGuard (by NEX Labs) as a Cybersecurity Analyst and be part of a team that’s revolutionizing the cybersecurity landscape. This role is a unique blend of fun, challenge, and immense learning. Success in this position means actively contributing to the security...


  • Old Toronto, Canada Sopra Steria Full time

    Sopra SteriaSopra Steria, a European Tech leader recognised for its consulting, digital services and software development, helps its clients drive their digital transformation to obtain tangible and sustainable benefits.Job DescriptionWe are looking for an experienced SOC Detection & Response Specialist to help build and enhance our Security Operations...


  • Toronto, Canada Fullscript Full time

    At Fullscript, we’re not just changing healthcare—we’re making it whole.We help 100,000+ healthcare practitioners support 10 million patients with a platform that delivers evidence-based health solutions, diagnostic support, and practitioner tools—all in one place.Healthcare today is disconnected. We’re fixing that. Fullscript makes it easier for...


  • Old Toronto, Canada Arm Limited Full time

    Arm is building the future of computing. From fueling the smartphone revolution to powering the world's fastest supercomputer, our technology is everywhere - including the biggest tech companies in the world and the next generation of innovators.Arm is at the epicenter of the world's largest computing ecosystem, positioned to power every technology...