SOC Cybersecurity Analyst

1 week ago


Montreal, Quebec, Canada Onepoint Full time
de l'entreprise

Wepoint est l'architecte des grandes transformations des entreprises et des acteurs publics.

Nous accompagnons nos clients de la stratégie à la mise en œuvre technologique, en nous attachant toujours à penser au-delà des évidences et à s'inscrire dans des logiques de Responsabilité Économique, Sociale, Environnementale et Technologique (RESET), pour créer de nouvelles façons de travailler, de nouveaux modèles économiques et de nouveaux lieux intelligents.

En près de 20 ans, nous sommes devenus l'un des acteurs majeurs de la transformation numérique et employons 3 500 collaborateurs en Europe, en Tunisie et en Amérique du Nord ainsi qu'en Asie Pacifique.

Ce que nous recherchons

COURAGE - AUTHENTICITÉ - OUVERTURE - ENGAGEMENT - ÉLÉGANCE

Autant de valeurs qui rejoignent les collaborateurs de Wepoint.

Nous travaillons avec des talents engagés, prêts à partager leurs expertises dans des collectifs ouverts, qui ont le courage de prendre des initiatives et capables de se remettre en question.

Au cœur des relations humaines et du respect de notre environnement, chez Wepoint, se trouvent l'authenticité et la volonté de toujours tendre vers l'excellence pour nos clients.

Job description

The L3 Production Cybersecurity Analyst position will provide security expertise to the 24/7 Security Operations Center (SOC). The main objective of this position is to contribute to the coordination and reporting of cyber incidents affecting the bank's critical assets by detecting, preventing, and responding to cyber threats targeting our group's infrastructure. This role provides essential support to the company-wide cybersecurity program through regional partnerships with our various business lines and, externally, with our customers, partners, and regulators.

As a Cybersecurity Analyst, you are not only responsible for real-time monitoring, analysis, and resolution of identified security incidents, but also for the development and continuous improvement of the capabilities of the 24/7 SOC, the first line of defense for identifying potential information security incidents.

Responsibilities

  • Provide analysis and monitoring of security log trends from numerous heterogeneous security devices;
  • Be responsible for the development and validation of use cases;
  • Provide incident response (IR) support or escalate when analysis confirms an actionable incident. Provide threat and vulnerability analysis and security consulting services;
  • Develop a threat hunting program and capabilities;
  • Analyze and respond to previously undisclosed software and hardware vulnerabilities;
  • Investigate, document, and report on information security issues and emerging trends;
  • Conduct threat hunting activities to identify potential adversaries present in the network;
  • Perform analysis on compromised systems to identify the extent and nature of the compromise and provide remediation recommendations;
  • Provide support and/or conduct research for any security-related questions or incidents;
  • Perform tasks independently with a certain level of supervision;
  • Integrate and share information with other analysts and teams;
  • Monitor internal bank sources that may indicate security incidents, health alerts from monitored solutions, and requests for information (real-time channels or dashboards, periodic reports, email inboxes, helpdesk or other ticketing systems, phone calls, chat sessions);
  • Follow incident-specific procedures to triage potential incidents, validate and determine necessary mitigation measures, and keep these procedures up to date;
  • Escalate potential security incidents to Level IV engineers, implement countermeasures where appropriate, and recommend operational improvements;
  • Maintain accurate incident notes in the case management system;
  • Maintain in-depth knowledge of the bank's technology architecture, known weaknesses, the architecture of security solutions used for monitoring, imminent and general threats identified by customer threat intelligence, and recent incidents;
  • Continuously improve the service by identifying and correcting gaps (analysis procedures, playbooks, client network models), adjusting false positives, and identifying and recommending new tools, content, countermeasures, or scripts;
  • Serve as a recognized expert in at least one security-related field (e.g., a specific anti-malware solution, Python programming, etc.);
  • Actively seek professional development through continuous learning and aim to progress to the Analyst IV level.
  • Comply with internal operational security rules and other policies.
  • Carry out small ad hoc tasks/projects that may be assigned to you.

Qualifications

  • Knowledge or 3-5 years of experience with the following technologies: SIEM, ELK, IDS/IPS, network and host firewalls, data leak prevention (DLP);
  • Direct experience with antivirus software, endpoint detection and response (EDR) solutions, firewalls, and content filtering;
  • Demonstrable experience or knowledge in incident response, log analysis, and PCAP file analysis;
  • Good knowledge of network fundamentals, e.g., OSI model, TCP/IP, DNS, HTTP(S), SMTP;
  • Good understanding of threat actors' methods of attack against a network: phishing, port scans, web application attacks, DDoS, lateral movement;
  • Knowledge of Windows and/or Linux operating systems and investigation methods to detect signs of compromise;
  • Motivation to learn and contribute to the team's ongoing development;
  • Recommended certifications: GCFA, GCIH, OSCP, or equivalent;
  • Excellent communication skills in English are required as the position involves communicating with stakeholders outside Quebec.

Only candidates legally authorized to work for any employer in Canada will be considered.

Avantages Wepoint:

  • Minimum de 3 semaines de vacances dès la première année;
  • Assurances collectives complètes avec contribution généreuse de l'employeur;
  • Contribution employeurs au REER collectif
  • Flexibilité de télétravail complète : Hybride, Distanciel, Présentiel.
  • Un bureau chaleureux, lumineux et accueillant qui vous offre : des fruits frais, du café, des breuvages, des repas occasionnels, etc.
  • Budget de matériel informatique annuel
  • Environnement de travail équilibré et flexibilité d'horaires;
  • Évolution de carrière : Formation et certifications, Apprentissage en-ligne ou en présentiel, Academy Wepoint, etc.
  • Une communauté internationale d'experts prêts à partager leurs connaissances;
  • Une culture d'entreprise axée sur les besoins des individus et leurs appartenances à une communauté forte


  • Montreal, Quebec, Canada Wepoint Full time

    Description De L'entrepriseWepoint est l'architecte des grandes transformations des entreprises et des acteurs publics.Nous accompagnons nos clients de la stratégie à la mise en œuvre technologique, en nous attachant toujours à penser au-delà des évidences et à s'inscrire dans des logiques de Responsabilité Économique, Sociale, Environnementale et...


  • Montreal, Quebec, Canada OnePoint Full time

    Description de l'entreprise Wepoint est l'architecte des grandes transformations des entreprises et des acteurs publics. Nous accompagnons nos clients de la stratégie à la mise en œuvre technologique, en nous attachant toujours à penser au-delà des évidences et à s'inscrire dans des logiques de Responsabilité Économique, Sociale, Environnementale...


  • Montreal, Quebec, Canada BETA Technologies Full time US$80,000 - US$100,000

    At BETA Technologies, we apply our intellectual curiosity, passion for aviation, and commitment to sustainability toward a shared mission of revolutionizing electric aviation. Regardless of the position one holds, each team member brings their talent and desire to positively impact the environment and lives of others in a refreshing, vibrant, and inclusive...


  • Montreal, Quebec, Canada Beta Technologies Full time

    At BETA Technologies, we apply our intellectual curiosity, passion for aviation, and commitment to sustainability toward a shared mission of revolutionizing electric aviation. Regardless of the position one holds, each team member brings their talent and desire to positively impact the environment and lives of others in a refreshing, vibrant, and inclusive...


  • Montreal, Quebec, Canada American Iron & Metal Full time

    Company DescriptionAmerican Iron & Metal (AIM) is a family-owned company and recognized global leader in the metal recycling industry with more than 125 sites and 4000 employees worldwide. We have continued to prosper for the last eight decades thanks to the dedication of our employees and the ongoing trust and support of our customers. Become part of team...


  • Montreal, Quebec, Canada ESI Technologies Full time

    Analyste cybersécurité du centre d'opérations de sécurité de niveau 1ESI est à la recherche d'analyste en sécurité de l'information Niveau 1 pour son centre de sécurité opérationnel (SOC). La responsabilité principale de ce poste est d'analyser des alertes générées par nos systèmes de détections d'intrusion installés sur les réseaux de...


  • Montreal, Quebec, Canada VIA Rail Canada Full time

    Hybrid Position: Starting in January 4 days at the officeDid you know that VIA Rail is carrying out ambitious projects to modernize its services and infrastructure? From our new ultramodern train fleet to ongoing improvement of our infrastructure, we're building the future of transportation in Canada. Working for VIA Rail is being a part of a collective...

  • Cybersecurity Analyst

    2 weeks ago


    Montreal, Quebec, Canada CMC Electronics Full time

    Title: Cybersecurity analyst (Temporary - 12 months)Location: 600 Bd Dr.-Frederik-Philips, MontrealWorkplace: HybridShift: DayCMC Electronics (CMC) has earned an international reputation for innovation and excellence in the design, manufacturing and support of electronic products for the aviation markets. CMC is focused on delivering innovative cockpit and...

  • SOC Tier 1 Analyst

    4 days ago


    Montreal, Quebec, Canada MNP Full time

    What do you think of when you hear the name MNP? We are more than a prominent consulting firm in tax and accounting, we are redefining how organizations succeed in the digital age by bridging strategic vision, technical innovation, and operational execution to deliver transformative results.Make an impact with our Managed Security Services team as a SOC Tier...


  • Montreal, Quebec, Canada American Iron & Metal Full time

    Company DescriptionAmerican Iron & Metal (AIM) is a family-owned company and recognized global leader in the metal recycling industry with more than 125 sites and 4000 employees worldwide. We have continued to prosper for the last eight decades thanks to the dedication of our employees and the ongoing trust and support of our customers. Become part of team...