Security Analyts- PCSIRT
3 days ago
Requirements:
- Knowledge or 3-5 years of experience with the following technologies: SIEM, ELK, IDS/IPS, network- and host- based firewalls, data leakage protection (DLP)
- Direct experience with anti-virus software, endpoint detection response (EDR), firewalls and content filtering
- Experience or demonstrable knowledge in Incident response, log analysis and PCAP analysis
- Good level of knowledge in network fundamentals, for example, OSI Stack, TCP/IP, DNS, HTTP(S), SMTP
- Good level of understanding in the approach threat actors take to attacking a network, phishing, port scanning, web application attacks, DDoS, lateral movement
- Knowledge in Windows and/or Linux operating systems, how to investigate them for signs of compromise
- Passion to learn and to contribute to the ongoing development of the team
- Certifications like GCFA, GCIH, OSCP, or similar are recommended.
- English required
Assets :
- French speaking
Job description:
MISSION AND OBJECTIVES
The Production CSIRT Analyst position will provide security expertise to the 24x7 Security Operation Center (SOC). The primary purpose of this position is to help coordinate and report on cyber incidents impacting the company's critical assets by detecting, preventing, and responding to cyber threats against our group's infrastructure. It provides critical support to the firm-wide cybersecurity program via partnerships in the region within our diverse lines of business and also externally with client, partners and regulators.
As a Production Security Analyst, you are not only responsible for hands-on real-time monitoring, analysis, and resolution of identified security incidents, but you will also be responsible to continual development and improvement of the 24x7 Security Operation Center (SOC) capabilities as the first line of defense to identify potential information security incidents.
MAIN RESPONSIBILITIES
Responsibilities include but are not limited to:
- Provide analysis and trending of security log data from many heterogeneous security devices
- Responsible for use-case development and validation
- Provide Incident Response (IR) support or escalation when analysis confirms actionable incident. Provide threat and vulnerability analysis as well a security advisory service.
- Develop threat hunting program and capabilities
- Analyze and respond to previously undisclosed software and hardware vulnerabilities
- Investigate, document and report on information security issues and emerging trends
- Perform threat hunting to identify potential adversaries within the network
- Perform forensics analysis on compromised systems to identify the extent and nature of the compromise and provide recommendations on remediation steps.
- Provide support and /or research any security related questions or incidents.
- Perform tasks independently with some oversight
- Integrate and share information with other analysts and other teams.
- Monitor bank sources of potential security incidents, health alerts with monitored solutions and requests for information. This includes the monitoring of real-time channels or dashboards, periodic reports, email inboxes, helpdesk or other ticketing system, telephone calls, chat sessions
- Follow incident-specific procedures to perform triage of potential security incidents to validate and determine needed mitigation and maintain said procedures up to date.
- Escalate potential security incidents to Level IV engineers, implements countermeasures in response to others, and recommend operational improvements
- Keep accurate incident notes in case management system
- Maintaining awareness of the company's technology architecture, known weaknesses, the architecture of the security solutions used for monitoring, imminent and pervasive threats as identified by client threat intelligence, and recent security incidents
- Continuously improve the service by identifying and correcting issues or gaps in knowledge (analysis procedures, plays, client network models), false positive tuning, identifying, and recommending new or updated tools, content, countermeasures, scripts.
- Serve as a subject matter expert in at least one security-related area (e.g., specific malware solution, python programming, etc.)
- Actively seek self-improvement through continuous learning and pursuing advancement to a Level IV Analyst
- Perform light project work as assigned
Skills/Behaviors Preferred:
- Foundational level of scripting knowledge
- Ability to demonstrate the right approach to investigating alerts and/or indicators and document your findings in a manner that both peer and executive level colleagues can understand
- Appreciation of the wider roles of interconnecting Cyber Security teams and collaboration with each of those (i.e., Forensics / Threat Intelligence / Penetration Testing / Vulnerability Management / "Purple Teaming" etc.)
- Ability to handle fluctuating workloads, conflicting priorities, and concurrent activities
- Analytical skills
- Strategic vision
- Rigor & Accuracy
- Flexibility
- Communication skills
- Collaboration
- Self-driven
-
Senior Security Data Scientist
1 week ago
Montreal, Quebec, Canada Desjardins Full timeThe mission of the Data Security and Valorization department is to explore and develop innovative artificial intelligence and automation solutions in the security field (cybersecurity, fraud, internal and external threats, etc.), ensure active monitoring and stay on top of new developments in the field to maintain and strengthen the organization's security...
-
Analytics Engineer
2 days ago
Montreal, Quebec, Canada Syntax Full timeDate: Jan 17, 2026Location:Montreal, Quebec, CA, H3C 2M1Functional Area: RemoteSyntax is a leading Managed Cloud Provider for Mission Critical Enterprise Applications and has been providing comprehensive technology solutions to businesses of all sizes since 1972. Syntax has undisputed strength to implement and manage ERP deployments (Oracle, SAP) in a secure...
-
Analytics Developer
2 weeks ago
Montreal, Quebec, Canada Intact Full timeOur employees are at the heart of everything we do. Together, we help people, businesses, and society prosper in good times and be resilient in bad times.Our employee promise represents Intact's commitment to you in exchange for living our Values, striving to do your best work, being open to change and investing in your career. In return, we promise to...
-
Security advisor
3 days ago
Montreal, Quebec, Canada Desjardins Full timeTemporary position for 12 months.As a security advisor, you help develop and optimize security measures to align with corporate objectives by planning, implementing and overseeing best practices to strengthen Desjardins's security posture. You help develop the Desjardins Group Security Office's priorities and governance, and work on different aspects of our...
-
Analytics Developer
2 weeks ago
Montreal, Quebec, Canada Intact FC Full time $101,800 - $124,400Our employees are at the heart of everything we do. Together, we help people, businesses, and society prosper in good times and be resilient in bad times.Our employee promise represents Intact's commitment to you in exchange for living our Values, striving to do your best work, being open to change and investing in your career. In return, we promise to...
-
Security advisor
3 days ago
Montreal, Quebec, Canada Desjardins Full timeTemporary position for 12 months.As a security advisor, you help develop and optimize security measures to align with corporate objectives by planning, implementing and overseeing best practices to strengthen Desjardins's security posture. You help develop the Desjardins Group Security Office's priorities and governance, and work on different aspects of our...
-
Security advisor
2 weeks ago
Montreal, Quebec, Canada Desjardins Full timeAs a security advisor, you help develop and optimize security measures to align with corporate objectives by planning, implementing and overseeing best practices to strengthen Desjardins's security posture. You help develop the Desjardins Group Security Office's priorities and governance, and work on different aspects of our security practices. You're...
-
Security advisor
1 week ago
Montreal, Quebec, Canada Desjardins Full timeAs a security advisor, you help develop and optimize security measures to align with corporate objectives by planning, implementing and overseeing best practices to strengthen Desjardins's security posture. You help develop the Desjardins Group Security Office's priorities and governance, and work on different aspects of our security practices. You're...
-
Consultant, Cloud Security Architect
1 week ago
Montreal, Quebec, Canada Avanade Full timeConsultant, Cloud Security ArchitectAvanade is seeking a Cloud Security Architect to lead the charge in securing our clients' cloud environments. In this role, you'll assess cloud infrastructures, uncover vulnerabilities, and design tailored remediation strategies that strengthen security and ensure compliance.You'll combine deep technical expertise with a...
-
Title Analytics Engineer
2 weeks ago
Montreal, Quebec, Canada Syntax México Full timeSyntax is a leading Managed Cloud Provider for Mission Critical Enterprise Applications and has been providing comprehensive technology solutions to businesses of all sizes since 1972. Syntax has undisputed strength to implement and manage ERP deployments (Oracle, SAP) in a secure and resilient private, public or hybrid cloud. With strong technical and...