Security Operations Analyst

2 weeks ago


Remote, Canada Avast Full time

Job Posting Title:
Security Operations Analyst

**Job Description**:

- Basic understanding of the OSI model
- Ability to read and interpret network diagrams.
- Ability to read and understand packet captures / protocol analyzers (wireshark, tcpdump, etc.)
- Knowledge of network intrustion prevention/detection techniques
- Knowledge of SIEM solutions and alert optimization
- Working Knowledge of Operatin System Software (Microsoft Windows Client and Server, Mac and Linux)
- Understanding of Windows/Linux attack vectors and latest attack methods including MITRE attack framework
- Good understanding of Azure & 0365 cloud setups and related security alerts
- Good understanding of AWS architectures and related security alerts
- Thorough understanding of Antivirus/Antimalware any sort of EDR alerts and triaging experience with related events
- Advanced analytical and technical experience
- Good communication (verbal and written) skills
- Ability to assess and articulate risks to a system as a result of a suspected vulnerability, a proposed change or a compromise
- Actively detect, respond to, and remediate security events across infrastructure
- Understanding of cyber threat vectors and coutermeasures
- Understanding of webservers apache, tomcat and their architectures
- Thorough understanding of securty threat landscape
- Good understanding of YARA rules
- Network/Host-based Intrusion Detection or Prevention Systems
- Strong working knowledge of TCP/IP networking/ VPN, VLAN,NAT,and security conceptsPerform the detailed and repeatable execution of all operational tasks as documented in SOC processes and subordinate procedures, also updating those procedures
- Close or escalate security events as necessary
- Document and maintain a knowledge base of alarms (false positives and false negatives, blacklists, whitelists) that IDS and IPS encounter.
- Ensure security events and incidents are detected and escalated in a timely manner.
- Provide analysis and investigation to determine if alerts or security events warrant incident classification.
- Track incidents through to final resolution.
- Perform incident triage to include determining scope, urgency, and potential impact.
- Basic understanding of the OSI model
- Ability to read and interpret network diagrams.
- Ability to read and understand packet captures.
- Experience performing offensive assessments, penetration testing or vulnerability analysis
- Have exposure to tools (Nessus, Burp, Nikto, Metasploit) to scan system devices for vulnerabilities according to compliance policies
- Basic scripting knowledge (bash, powershell, python)
- Basic understanding of Docker / Ansible
- Familiarity with ITIL or other recognized change management procedures

Ideal qualiifications:

- University degree (BS/MS) in Engineering, Computer Science or equivalent
- Experience reviewing SOC alerts / triaging in a production environment
- Security +, SSCP, CSA (Certified SOC Anaylyst) and other technical security certifications

Sounds exciting? We look forward to hearing from you.

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.



  • Remote, Canada Lyrical Security Full time

    Lyrical Security is looking for an Information Security Analyst to join our Advisory Services team. This role is well suited to someone who thrives on variety and is a lifelong learner who stays up-to-date on cybersecurity models and trends. As a generalist, you understand common information security frameworks (NIST SP 800-53, PCI-DSS, TSC for SOC2,...


  • Remote, Canada Avast Full time

    Job Posting Title: Security Operations Analyst **Job Description**: SecureKey is the identity and authentication provider for organizations that deliver online consumer services. SecureKey delivers high-performance, easy-to-use, authentication platforms that reduce the burden, cost, and risks associated with authenticating millions of consumers while also...


  • Remote, Canada KF Aerospace Full time

    **IT Cyber Security Analyst** **We’re all about the craft.** KF Aerospace is proud to deliver innovative aircraft services for corporate, commercial, and military customers worldwide. Launched in 1970 out of British Columbia’s beautiful city of Kelowna, KF Aerospace has grown to specialize in a wide range of aviation services including maintenance and...


  • Remote, Canada Devengine Full time

    Intermediate Security AnalystRemote - Canada | Permanent / Full TimeOur client in Toronto, a financial services organization, is seeking a Security Analyst to help protect the organization's information systems and data by operating security controls, monitoring threats, leading incident response, and supporting compliance in a regulated environment....


  • Remote, Canada Open Text Corporation Full time

    **Principal Security Compliance Analyst**: - Req id: 37918- Virtual, CA Virtual, US**OPENTEXT - THE INFORMATION COMPANY** As the Information Company, our mission at OpenText is to create software solutions and deliver services that redefine the future of digital. Be part of a winning team that leads the way in Enterprise Information Management. **The...


  • Remote, Canada Edynamic Learning Full time

    Junior Security AnalystLocation: Remote (Anywhere in Canada) Company OvervieweDynamic Learning is celebrating 16 years of serving educators. Founded by a classroom teacher, we're on a mission to empower educators with accessible and equitable resources, guiding students on their journey to life after graduation. We are dedicated to supporting both teachers...


  • Remote, Canada Maplesoft Group Full time

    TitleSenior IT Security Threat and Risk Assessment AnalystLocationRemote, within CanadaStart Date LanguageEnglishSalaryNegotiableSecurity ClearanceEnhanced Reliability ClearanceDuration4 MonthsDate Posted Job ID14032Recruiter EmailMaplesoft Group is currently seeking a Remote Senior IT Security Threat and Risk Assessment Analyst for our Federal Government...


  • Remote, Canada FLEETCOR Full time

    Global Unified Communications Operation Support Analyst What We Need FLEETCOR is currently looking to hire a Unified Communications Support Analyst II within our Corporate division. This position falls under our Corporate Overhead line of business and is located in Atlanta, Georgia. In this role, the UC Operation Support Analyst is responsible for...

  • Product Analyst

    5 days ago


    Remote, Canada Atreides Caseri Inc. Full time

    Title: Product Analyst (Atreides)Job Type: Full-timeAbout AtreidesAt Atreides, we are dedicated to delivering cutting-edge solutions to our defense and intelligence clients, enabling them to make informed decisions in complex environments. Our team of experts leverages a unique combination of intelligence analysis and data-driven insights to tackle critical...


  • Remote, Canada Dentons Full time

    Dentons Group (a Swiss Verein) is the largest law firm in the world by headcount. Our clients benefit from more than 12,000 lawyers and professionals in 205 locations spanning 81 countries. At Dentons, we bring together top tier talent found at the intersection of geography, industry knowledge and substantive legal expertise. We are currently recruiting for...