Cybersecurity Operations Analyst

2 weeks ago


Ottawa, Canada Thales Canada Inc., Defence and Security Full time

Location: Canada_Remote, Canada

Dans des marchés en rapide évolution, les clients à travers le monde font confiance à Thales. Thales est une entreprise où les personnes les plus brillantes du monde entier se regroupent pour mettre en commun leurs idées et ainsi s'inspirer mutuellement. Dans tous les secteurs où œuvre Thales, notamment l’aérospatiale, le transport, la défense, la sécurité et l'espace, nos équipes d’architectes conçoivent des solutions innovantes qui rendent demain possible dès aujourd’hui.

In fast changing markets, customers worldwide rely on Thales. Thales is a business where brilliant people from all over the world come together to share ideas and inspire each other. In aerospace, transportation, defence, security and space, our architects design innovative solutions that make our tomorrow's possible.

**Position Summary**

**This position is located in Fredericton N.B. It will first start as remote and then shift to hybrid once our new facility is up and running.**

Thales requires a **Cybersecurity Operations Analyst **to be responsible for the prevention of Cybersecurity incidents by real-time monitoring, detection, and analysis of potential intrusions. This includes using troubleshooting tools to analyze and respond to cyber threats, writing scripts to aid in quick analysis and response, and responding to security events. The position operates and tunes security tools, provides requirements for new security capabilities, and creates use cases for monitoring. In addition, the position creates and follows up on incident reports, creates daily, weekly, and monthly reporting metrics.

The Cybersecurity Operations Centre (CSOC) team will rely on your contribution to perform an in-depth analysis of evidence, identify the malicious operations, and evaluate the real impact to solve in a quick and efficient manner. This is a key role when it comes to onboarding new customers, maintaining the CSOC’s infrastructure and continuous improvement.

**Essential Functions / Key Areas of Responsibility**

The analyst must have work experience in a Security Operation Centre (SOC) environment. Expertise in using and managing SIEM, EDR, log and network analysis, Network security (Firewall, WAF, IDS/IPS), Infrastructure are vital for this role.
- Monitor, analyze and report possible Cyber-attacks or intrusions, anomalous, and misuse activities.
- Leverage variety of Cybersecurity tools (SIEM, EDR, and Sandbox) for analysis to identify malicious activity.
- Creating queries/rules for specific searches, reports, and alerts on SIEM. Contribute in updating, and tuning correlation rules and Security use cases. Contribute to improvement of alerts classification to minimize false positive.
- Follow incident response process, document, and escalate security incidents. Stay up to date with security incidents until closure.
- Analyze identified malicious activity to determine Tactics, Techniques, and Procedures (TTPs), gather indicator of compromise (IOC) and any relevant information.
- Conduct research, analysis and correlate gathered data from various sources to gain situational awareness and determine the impact of the incident.
- Coordinate with other teams (IT Security, network, system administrators, and end-user) to validate alerts or activities.
- Provide daily summary reports of Cybersecurity incidents, operation statistics of monitoring tools, and latest Cybersecurity related news.
- Perform trend analysis and develops metrics and reports on intelligence and incidents for management.
- Contribute to the creation, update of Security Operation and incident response best practices, and processes.
- Assist in secure collection of artifacts, analyze for malicious behavior, and carry out analysis to determine the root cause of events.
- Participate in threat-hunting activities, looking for anomalies. Ingest, analyze, and contextualize data and turn that into intelligence for threat assessment and risk management.
- Research latest known Cybersecurity incidents, gather IOC’s and any relevant data to use with Threat hunting activities.
- Provide advice on configuration of network security devices for service and security enhancement.
- Support customer onboarding projects to ensure a successful transition to CSOC for security monitoring services.

**Minimum Requirements: Skills, Experience, Education, Technical/Specialized Knowledge, Certifications, Language**
- Currently holding one or more Cybersecurity industry recognized certifications from: (ISACA, ISC2, GIAC SANS, CompTIA Security+ or higher, Offensive-Security).
- Knowledgeable with NIST Cybersecurity Framework (CSF), MITRE ATT&CK.
- Experience in building and updating SOC processes, Playbooks, Correlation rules, and Incident report.
- Alert triage, malware analysis, sandboxing, basic decoding and scripting.
- Must have at least or greater: Splunk (Core Certified Power User) certification, IBM Qradar, Azure Sentinel (SC-200) and oth



  • Ottawa, Canada SkyAlyne Canada Inc. Full time

    **Job Title**: Cybersecurity Analyst **Position Reports To**: Manager Enterprise IM&T Security **Job Location**: Ottawa - Hybrid **Salary**: $85,000 - $100,000 CAD **About SkyAlyne** SkyAlyne is a team of defence, training, simulation, and aviation industry experts assembled from across Canada, working to prepare the next generation of RCAF Pilots and...

  • Cybersecurity Analyst

    2 weeks ago


    Ottawa, Canada Decisive Group Full time

    An opportunity has arisen for a Cybersecurity Analyst to join the Defensive Cyber Operations (DCO) team! We are looking for someone who is hungry to be a protector, has an eye for detail, and enjoys evolving. If you want to continue building on the knowledge you have learnt within a SIEM environment, then joining the Decisive family could be exactly what you...

  • Cybersecurity Analyst

    16 hours ago


    Ottawa, Canada Barracuda Networks Inc. Full time

    **Job ID: 25-372(2)** **Envision yourself at Barracuda** The Cybersecurity Analyst will support the timely delivery of Barracuda XDR services for our customer base. This includes security alarm analysis, troubleshooting and resolution of security incidents, and customer management. The cybersecurity analyst works among a skilled global SOC team to address...


  • Ottawa, Canada canarie Full time

    This is a full-time, permanent position that reports to CANARIE’s Manager, Cybersecurity. **Key Responsibilities**: - Exercising evaluative judgement related to risk management, cybersecurity controls implementation and vulnerability mitigation - Installing, testing, and operating security software and tools such as anti-virus and threat detection and...


  • Ottawa, Canada Farm Boy Full time

    A leading fresh food retailer in Ontario seeks a Security Analyst to monitor security threats and conduct penetration tests across its IT infrastructure. The ideal candidate will have a strong background in Cyber Security Operations, proficiency with security tools, and excellent problem-solving skills. This role includes conducting vulnerability assessments...


  • Ottawa, Canada Farm Boy Full time

    A leading fresh food retailer in Ontario seeks a Security Analyst to monitor security threats and conduct penetration tests across its IT infrastructure. The ideal candidate will have a strong background in Cyber Security Operations, proficiency with security tools, and excellent problem-solving skills. This role includes conducting vulnerability assessments...


  • Ottawa, Canada Gartner Full time

    A leading research consultancy is seeking a Director Analyst in Cybersecurity, Engineering & AI. This remote position requires expertise in software security and strong analytical skills to deliver insights and support clients' decision-making. The ideal candidate will have over 10 years of enterprise experience, excellent writing ability, and a commitment...


  • Ottawa, Canada Gartner Full time

    A leading research consultancy is seeking a Director Analyst in Cybersecurity, Engineering & AI. This remote position requires expertise in software security and strong analytical skills to deliver insights and support clients' decision-making. The ideal candidate will have over 10 years of enterprise experience, excellent writing ability, and a commitment...


  • Ottawa, Canada Gartner Full time

    A leading consulting firm is looking for a VP Analyst for Cybersecurity Executive Product Management. This remote role involves leading insights on cybersecurity products, advising clients, and creating strategic content. Candidates must have over 15 years of relevant experience, a strong academic background, and exceptional communication skills. The...


  • Ottawa, Canada Canada Mortgage and Housing Corporation (CMHC) Société canadienne d'hypothèques et de logement(SCHL) Full time

    Bilingual Specialist, Cybersecurity Operations 5 days ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. Job Requisition ID: 11364 Position Status: Permanent Full Time Position Type: Hybrid Office Location: Ottawa (ON); Montreal (QC) Travel Requirement: Limited Language Designation: Bilingual Language Skill...