Security Incident Response Analyst

7 days ago


Kitchener, Ontario, Canada Oracle Full time

Job Summary

The Senior Security Incident Response Analyst will be responsible for supervising our security tools, performing investigations of raised notable events, and performing our processes. This role will also be responsible for supplying the SOC Security Tools and detection roadmaps and collaborating with the SOC Management team and external teams on key initiatives.

Key Responsibilities

  • Performing investigation of intensified notable events
  • Initial collection of evidence related to called-out security events
  • Collection of evidence related to compliance audits
  • Validation and regular review of processes and procedures
  • Identification, issue, and follow-up on false positives
  • Process initial mitigation and containment procedures
  • Create and maintain reporting related to security events
  • Coordinate with service and operations teams to validate security events and anomalous activity
  • Resolve and report on possible causes of security events and alerts
  • Operate security tools for continual monitoring and analysis of system/network activity to identify malicious activity
  • Assist in the construction of security alerts and processes based on knowledge gained from daily monitoring and triage
  • Advise designated managers, and responders of suspected cyber incidents including the event's history, status, and potential impact
  • Supervise external data sources to maintain basic knowledge of threat conditions
  • Recognize a possible security violation and take appropriate action to raise the incident, as required

Requirements

  • Solid grasp of computer networking concepts and protocols, and network security methodologies
  • Host/network access control mechanisms
  • Intrusion detection methodologies and techniques
  • How traffic flows across the network (TCP/IP, OSI, ITIL)
  • System and application security threats and vulnerabilities
  • Types of network communications (LAN, WAN, MAN, etc)
  • File extensions (.zip,.sh,.pcap,.bat,.dll,.py, etc)
  • Interpreted and compiled computer languages
  • Common charge vectors
  • Attack classes (passive, active, insider, distributed, etc)
  • Incident response and handling methodologies
  • Authentication, authorization, and access control methods
  • Information technology (IT) security principles and methods
  • Network traffic analysis methods
  • Operating systems
  • Cyber attackers
  • Defense-in-depth principles
  • System administration, network, and operating system hardening techniques
  • Cyber attack stages
  • Network security architecture concepts
  • Windows/Unix ports and services
  • Operating system command-line tools
  • Network protocols
  • Running knowledge of cyber threats and vulnerabilities
  • Understanding security events related to operating system (Linux and Windows) logs, database logs, VPN logs
  • Knowledge of adversarial tactics, techniques, and procedures
  • Understanding the use of network tools (ping, traceroute, nmap, etc), host base tools (Tanium, basic Linux and Windows native tools), SIEM (Splunk, ELK, Lumberjack, Splunk Enterprise Security, etc)
  • Understanding of cybersecurity and privacy principles and related organizational requirement

Skills

  • Detecting host and network-based intrusions via intrusion detection technologies
  • Using protocol analyzers
  • Recognizing and categorizing types of vulnerabilities and associated attacks
  • Reading and interpreting signatures
  • Conducting trend analysis
  • Evaluating information for reliability, validity, and relevance
  • Identifying cyber threats that may jeopardize the organization and/or partner interests
  • Preparing and presenting briefings
  • Providing analysis to aid writing phased after action reports
  • Using Boolean operators to construct simple and sophisticated queries
  • Using multiple analytic tools, databases, and techniques
  • Using multiple search engines (., Google, Yahoo, LexisNexis, DataStar) and tools in conducting open-source searches
  • Applying virtual collaborative workspaces and/or tools (Zoom, JIRA, Confluence, Oradocs, Slack, etc)
  • Performing packet-level analysis
  • Using a SIEM to detect, research, and perform initial triage of security events
  • Exercising good judgment in calling out security events

Abilities

  • Think critically
  • Ability to think like threat actors
  • Apply techniques for detecting host and network-based intrusions using intrusion detection technologies
  • Interpret the information collected by network tools
  • Recommend analytic approaches or solutions to problems and situations for which information is incomplete or for which no precedent exists
  • Effectively collaborate with virtual and remote teams
  • Evaluate information for reliability, validity, and relevance
  • Exercise judgment when policies are not well-defined
  • Function reliably in a dynamic, fast-paced environment
  • Ability to function in a collaborative environment, seeking continuous consultation with other analysts and guides, both internal and external to the organization, to demonstrate analytical and technical expertise
  • Recognize and mitigate cognitive biases that may affect analysis

Other Requirements and Expectations

  • Other tasks and duties as assigned
  • Work effectively within a remote team including effective, constant, and collaborative communication with all members of the NSGBU SOC


  • Kitchener, Ontario, Canada Oracle Full time

    Job SummaryOracle is seeking a highly skilled Security Incident Response Specialist to join our team. As a key member of our Security Operations Center (SOC), you will be responsible for supervising our security tools, performing investigations of raised notable events, and implementing our incident response processes.Key ResponsibilitiesPerform in-depth...


  • Kitchener, Ontario, Canada Oracle Full time

    Job SummaryOracle is seeking a highly skilled Security Incident Response Specialist to join our team. As a key member of our Security Operations Center (SOC), you will be responsible for supervising our security tools, performing investigations of raised notable events, and implementing our incident response processes.Key ResponsibilitiesPerform in-depth...


  • Kitchener, Ontario, Canada Oracle Full time

    Position Overview: The Senior Security Operations Analyst plays a crucial role in overseeing our cybersecurity tools, conducting thorough investigations of significant incidents, and executing established protocols. This position also involves providing guidance on SOC Security Tools and detection strategies while collaborating with the SOC Management team...


  • Kitchener, Ontario, Canada Oracle Full time

    Position Overview: The Senior Security Operations Analyst is responsible for overseeing our security systems, conducting investigations into significant incidents, and executing established protocols. This role also entails providing the SOC Security Tools and detection strategies while collaborating with the SOC Management team and other departments on...


  • Kitchener, Ontario, Canada Oracle Full time

    Position Overview: The Senior Security Operations Analyst is responsible for overseeing our security infrastructure, conducting thorough investigations of significant security incidents, and executing established protocols. This role will also involve developing the SOC Security Tools and detection strategies while collaborating with the SOC Management team...


  • Kitchener, Ontario, Canada Paladin Security Full time

    Job SummaryWe are seeking a highly skilled and physically fit Security Guard to join our team at Paladin Security. As a Rapid Response Guard, you will be responsible for providing proactive and reactive security patrols and response to incidents within our hospital and surrounding areas.Key ResponsibilitiesConduct regular security patrols of the hospital and...


  • Kitchener, Ontario, Canada Paladin Security Full time

    Job Description:Job Title: Rapid Response Security OfficerJob Type: Part-TimeLocation: Kitchener, Guelph, CambridgeJob Category: Security & ProtectionJob Summary:We are seeking a highly motivated and detail-oriented Rapid Response Security Officer to join our team at Paladin Security. As a Rapid Response Security Officer, you will be responsible for...


  • Kitchener, Ontario, Canada Paladin Security Full time

    Position: Emergency Response Security OfficerStatus: Part-TimePay Rate: $17.61/hr (varies by location)Are you looking to embark on a rewarding career in a dynamic and expanding sector? As a leading provider of security solutions for clients with intricate safety requirements, Paladin Security Group presents an exceptional opportunity for you to contribute...


  • Kitchener, Ontario, Canada Allied Universal Full time

    Job SummaryWe are seeking a detail-oriented and vigilant Incident Reporting Security Operator to join our team at Allied Universal. As a key member of our security operations center, you will be responsible for maintaining security and safety by monitoring and reporting incidents, ensuring compliance with security protocols, and responding to emergencies.Key...


  • Kitchener, Ontario, Canada Allied Universal Full time

    Job SummaryWe are seeking a detail-oriented and vigilant Incident Reporting Security Operator to join our team at Allied Universal. As a key member of our security operations center, you will be responsible for maintaining security and safety by monitoring and reporting incidents, ensuring compliance with security protocols, and responding to emergencies.Key...


  • Kitchener, Ontario, Canada Allied Universal Full time

    Job SummaryWe are seeking a detail-oriented and vigilant Incident Reporting Security Operator to join our team at Allied Universal. As a key member of our security operations center, you will be responsible for maintaining security and safety by monitoring and reporting incidents, ensuring compliance with security protocols, and responding to emergencies.Key...


  • Kitchener, Ontario, Canada Paladin Security Full time

    Position: Emergency Response OfficerStatus: Part-TimePay Rate: $17.61/hr (varies by location)Are you looking to embark on a career in a dynamic and expanding sector? As a leading provider of security solutions for clients with intricate safety requirements, Paladin Security Group presents an exceptional opportunity for you to contribute positively to your...


  • Kitchener, Ontario, Canada Paladin Security Full time

    Position: Emergency Response OfficerStatus: Part-TimePay Rate: $17.61/hr (varies by location)Are you looking to embark on a career in a dynamic and expanding field? As a leading provider of security solutions for clients with intricate safety requirements, Paladin Security Group presents an exciting opportunity for you to contribute to your community while...

  • Security Guard

    1 month ago


    Kitchener, Ontario, Canada Paladin Security Full time

    Position: Security Guard Site: St Mary's General Hospital City: Kitchener, ON.Status: Full-Time Hours: Rotating Continental / hrs)Pay Rate: $19.03/hr.Are you interested in starting a career in a fast paced and growing industry? As a provider of security services to clients with complex security needs, Paladin Security Group is offering an exciting career...

  • Security Supervisor

    19 hours ago


    Kitchener, Ontario, Canada ALPHA SECURITY SERVICES Full time

    {"h2": "Job Summary", "p": "We are seeking a highly skilled Security Supervisor to join our team at ALPHA SECURITY SERVICES. As a Security Supervisor, you will be responsible for overseeing the daily operations of our security team, ensuring the safety and security of our clients and employees. If you have a strong background in security management and...

  • Security Supervisor

    22 hours ago


    Kitchener, Ontario, Canada ALPHA SECURITY SERVICES Full time

    {"h2": "Job Summary", "p": "We are seeking a highly skilled Security Supervisor to join our team at ALPHA SECURITY SERVICES. As a Security Supervisor, you will be responsible for overseeing the daily operations of our security team, ensuring the safety and security of our clients and employees. If you have a strong background in security management and...


  • Kitchener, Ontario, Canada Paladin Security Full time

    Position: Rapid Response GuardCity: Kitchener, Guelph, CambridgeStatus: Part-TimeHours: Sunday & Monday hrs)Pay Rate: $17.61/hr /hr. "varies from site to site"Are you interested in starting a career in a fast paced and growing industry? As a provider of security services to clients with complex security needs, Paladin Security Group is offering an exciting...


  • Kitchener, Ontario, Canada Allied Universal Full time

    Incident Reporting Security Operator Join Our Team as an Incident Reporting Security Operator We are North America's leading security and facility services provider, with a strong commitment to promoting from within. Our company culture values the growth and development of our employees, with many examples of individuals starting as Security...

  • Security Team Lead

    2 weeks ago


    Kitchener, Ontario, Canada Paladin Security Full time

    Job SummaryThe Security Team Lead is a critical role within Paladin Security, responsible for overseeing the activities and job performance of Security Officers assigned to various healthcare facilities. This position requires a strong leader who can represent Paladin Security and the facility they are assigned to, while ensuring the highest level of...


  • Kitchener, Ontario, Canada Accoravillage Full time

    About the RoleWe are seeking a highly skilled Senior Cybersecurity Analyst to join our team at Accoravillage. As a key member of our Cybersecurity Operations team, you will play a critical role in protecting our organization's digital assets from cyber threats.Key ResponsibilitiesAnalyze and investigate security signals in real-time, utilizing a variety of...