SOC Analyst Ii
1 week ago
eSentire® is the global leader in Managed Detection and Response (MDR), keeping organizations safe from cyber attacks that technology alone cannot prevent. Our 24x7 Security Operations Center (SOC), staffed by elite security analysts, hunts, investigates, and responds in real-time to known and unknown threats before they become business disrupting events.
We want to cut through the hype and overblown claims surrounding AI and ML to help our customers successfully tackle their biggest challenges utilizing human expertise at machine scale. We value each person’s unique contribution, so if you love to solve difficult problems--together--eSentire is the place for you.
Role Overview
Tier II Responsibilities
In addition to the Tier 1 responsibilities listed below, Tier II SOC Analysts are also responsible for the following;
- Completing more complex high priority/escalated client support tickets
- Participating in Incident/Breach response investigations and deliver incident response reports and after-action reviews
- Work on various internal projects/initiatives such as UAT of new SOC tools, working cross functionally with other teams/departments as a stakeholder for the Service Delivery Organisation
- Writing or providing input to our Learning and Development team on KB Articles or training content
- Delivering training modules and conducting assessments with new hires
- Ongoing mentoring and coaching of Tier I Analysts
- Participating in Quarterly Service Reviews (QSRs) with our Customer Success Team providing technical input from the SOC where necessary
- Secondary review and approval of permanent signal filters, Global Blacklist IP Nominations and high priority client alerts
- Critical Event Reviews - performing secondary audits of selected signals and following up with analysts and clients as necessary
Tier I Responsibilities
- Analyse incoming security signals in real time with a balance of accuracy and speed using a variety of forensic tools
- Perform whitelisting/filtering of false positive signals
- For confirmed true positive signals, you will alert clients using defined templates and escalate high priority alerts to clients by phone
- Block malicious network traffic and isolate infected hosts on customers networks
- Add malicious IOC’s to eSentire’s Global Blacklist for all customers where appropriate.
- Handle some service administration and troubleshooting tasks
**Requirements**:
- Relevant degree in Computer Science, IT Security, IT Management, IT Support or related discipline. Completed course must include a strong focus on networking and security.
- 3+ years’ full-time experience in a Security Operations Centre or similar Cyber Security Analysis role excluding time spent on an intern or work experience program
- Hands on experience in at least one of the following Security domains;
- Network Security including Intrusion Detection Systems (IDS)
- Windows Endpoint Security, using EDR products such as VMware Carbon Black Response/Threat Hunter, Crowdstrike Falcon or Microsoft Defender ATP.
- SIEM/Log Management, using products such as SumoLogic, Splunk or similar
- Knowledge and experience of network and endpoint security technologies including;
- Snort/Suricata, Packet Capture (PCAP) Analysis using Wireshark
- Windows system internals, knowledge of PowerShell
- Linux Kernel and basic scripting (Bash/Python) knowledge
- Analytical mind with strong attention to detail and a commitment to quality of service
- Strong customer facing written and verbal communication skills with the ability to effectively communicate complex security concepts with end customers
- Demonstrated experience to confidently handle escalated client issues, diffuse challenging situations and deliver an optimal customer experience
- Natural ability to thrive in a fast-paced and time sensitive environment
- Ability to work in an operational/shift-based environment with flexible working hours to include evenings and weekends
- Industry Certificates such as CompTIA Network/Security+, CEH, CCNA CyberOps or others are desirable
We thank all applicants in advance for applying. Only individuals selected for interviews will be contacted.
-
SOC Team Lead
6 days ago
Waterloo, Canada eSentire Full timeAbout eSentire eSentire is on a mission to hunt, investigate and stop cyber threats before they become business disrupting events. We were founded from the premise that if you can't find a solution, you build it. Entrepreneurship and innovation are in our DNA. Our culture is based on transparency, candor, and resiliency. At eSentire, continuous improvement...
-
Incident Handler, Soc
2 days ago
Waterloo, Canada eSentire Full timeAbout eSentire eSentire is on a mission to hunt, investigate and stop cyber threats before they become business disrupting events. We were founded on the premise that if you can’t find a solution, you build it. Entrepreneurship and innovation are in our DNA. Our culture is based on transparency, teamwork, and continuous innovation. Role Overview The...
-
SOC Analyst I
2 days ago
Waterloo, Canada eSentire Full timeAbout eSentire eSentire is on a mission to hunt, investigate and stop cyber threats before they become business disrupting events. We were founded on the premise that if you can’t find a solution, you build it. Entrepreneurship and innovation are in our DNA. Our culture is based on transparency, teamwork, and continuous innovation. The Opportunity The...
-
SOC Analyst I
2 weeks ago
Waterloo, Canada eSentire Full timeAbout eSentire Founded in 2001, the company’s mission is to hunt, investigate and stop cyber threats before they become business-disrupting events. Combining cutting-edge machine learning XDR technology, 24/7 Threat Hunting, and proven security operations leadership, eSentire mitigates business risk and enables security at scale. The Team eSentire...
-
Lead Security Analyst
2 weeks ago
Waterloo, Canada Open Text Corporation Full time**Lead Security Analyst**: - Req id: 40986- Waterloo, ON, CA Richmond Hill, ON, CA**OPENTEXT** OpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the...
-
Principal Security Analyst
6 days ago
Waterloo, Canada opentext Full time**OPENTEXT - THE INFORMATION COMPANY** As the Information Company, our mission at OpenText is to create software solutions and deliver services that redefine the future of digital. Be part of a winning team that leads the way in Enterprise Information Management. **THE OPPORTUNITY**: The Principal Security Analyst will understand a wide array of security...
-
Threat Intelligence Analyst
6 days ago
Waterloo, Canada eSentire Full timeAbout eSentire Founded in 2001, the company’s mission is to hunt, investigate and stop cyber threats before they become business-disrupting events. Combining cutting-edge machine learning XDR technology, 24/7 Threat Hunting, and proven security operations leadership, eSentire mitigates business risk and enables security at scale. The Team eSentire...
-
Threat Intelligence Analyst
2 weeks ago
Waterloo, Canada eSentire Full timeAbout eSentire eSentire is on a mission to hunt, investigate and stop cyber threats before they become business disrupting events. We were founded on the premise that if you can’t find a solution, you build it. Entrepreneurship and innovation are in our DNA. Our culture is based on transparency, teamwork, and continuous innovation. The...
-
Analyst - Performance Services
2 weeks ago
Waterloo, Canada NAVBLUE Full timeFunction Customer Fulfillment Location Waterloo, Ontario Reference Contract type Permanent Working time Full-Time **Job Summary**: The **Analyst - Performance Services** is responsible for activities and tasks associated with Navblue Aircraft Performance products and services. The analyst is expected to be fully competent in the use of NAVBLUE...
-
Senior Credit Risk Analyst(B2B)
2 weeks ago
Waterloo, Canada OpenText Full timeJoin to apply for the Senior Credit Risk Analyst(B2B) role at OpenText6 days ago Be among the first 25 applicantsJoin to apply for the Senior Credit Risk Analyst(B2B) role at OpenTextOpentext - The Information CompanyOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate...