Threat Detection and Response Analyst
2 days ago
Wavelo is a SaaS business on a mission to make telecoms a breeze.
We provide flexible software that modernizes how communication service providers (CSPs) do business, helping them drive more value, focus on customer experience, and scale their operations faster.
As part of Tucows (NASDAQ:TCX, TSX:TC)—one of the world's largest Internet services companies—Wavelo is backed by outstanding resources and talent. We embrace a people-first philosophy that is rooted in respect, trust, and flexibility. We believe that whatever works for our employees is what works best for us. It's also why the majority of our roles are remote-first, meaning you can work from anywhere you can connect to the Internet
The work we do genuinely changes lives. If this sounds exciting, we'd love to hear from you
About the OpportunityAs a Threat Detection and Response Analyst, your primary focus will be to proactively identify, investigate, and mitigate advanced threats within Tucows' environment. You will be part of the larger Information Security team, playing a key role in detecting and responding to sophisticated adversaries that evade traditional security controls across our complex environments.
You will collaborate with cross-functional teams to strengthen our defenses, enhance detection capabilities, and ensure compliance with established security frameworks and policies. This role requires participation in our 24/7 on-call rotation for incident response.
You'll thrive in this role if you enjoy deep technical investigation, pattern recognition, and staying ahead of evolving cyber threats.
This is a remote position for applicants based in Canada or USA.
Job DutiesPerform cybersecurity threat detection, analysis, and mitigation as part of a global, around-the-clock security team.
Perform proactive threat hunting across Tucows' systems, networks, and cloud environments to detect hidden or emerging adversarial activity.
Investigate potential security incidents using a wide range of tools, logs, and techniques across cloud and on-premise environments.
Collaborate with other Security Analysts and Security Engineering personnel to triage, contain, and remediate identified threats.
Develop and tune custom detection rules, scripts, and playbooks to improve threat visibility and response effectiveness.
Design, build, and maintain scalable detection logic across SIEM and EDR platforms.
Conduct proactive threat hunting to detect potential adversary activity within the environment.
Design, test, and improve security detections, playbooks, and automation workflows to enhance response capabilities and reduce detection gaps.
Review and triage alerts and logs, escalating significant incidents.
Monitor external service providers for suspicious activity or potential security events.
Perform continuous analysis of threat intelligence, tactics, techniques, and procedures (TTPs) to anticipate attacker behavior.
Utilize Cyber Threat Intelligence sources and workflows to augment detection and response.
Document and communicate findings with clear technical and business context, recommending long-term preventive actions.
Contribute to purple team exercises, attack simulations, and post-incident reviews to enhance defense-in-depth capabilities.
Mentor junior analysts and foster a culture of curiosity, learning, and shared security ownership.
Deep understanding of adversary tradecraft, the MITRE ATT&CK framework, and modern threat landscapes.
Experience with SIEM, EDR, and cloud-native detection tools (e.g., CrowdStrike, Alienvault, AWS GuardDuty, Azure Defender, Elastic, etc.).
Strong analytical and investigative mindset with the ability to connect technical indicators to strategic insights.
Familiarity with scripting languages (Python, PowerShell, etc.) for automating hunts and data analysis.
Knowledge of network protocols, operating system internals, and log analysis.
Excellent written and verbal communication skills with the ability to translate complex findings into clear risk narratives.
Demonstrated ability to work both independently and collaboratively in a fast-moving environment.
Bachelor's degree in Cybersecurity, Computer Science, or a related field (or equivalent experience).
5–8 years of experience in cybersecurity, including 3+ years focused on threat hunting, detection engineering, or incident response.
Relevant certifications are a plus (e.g., GCFA, GCTI, GNFA, OSCP, or equivalent).
The base salary range for this position is $114,300 - $127,000 USD for US residents OR $118,260 - $131,2400 CAD for Canadian residents. Other countries will differ. Range may vary on a number of factors including, but not limited to: location, experience and qualifications. Tucows believes in a total rewards offering that includes fair compensation and generous benefits. Learn more about Tucows Benefits.
Want to know more about what we stand for? At Wavelo and Tucows we care about protecting the open Internet, narrowing the digital divide, and supporting fairness and equality.
We also know that diversity drives innovation. We are committed to inclusion across race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status or disability status. We celebrate multiple approaches and diverse points of view.
We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request an accommodation.
Tucows and its subsidiaries participate in the E-verify program for all US employees.
Learn more about Tucows, our businesses, culture and employee benefits on our site here.
-
Security Analyst MDR tier 1- NIGHT SHIFT
2 weeks ago
Québec, Quebec, Canada GoSecure Full timeGoSecure is recognized as a leader and innovator in cybersecurity solutions. The company is the first and only to integrate an Endpoint and Network threat detection platform, Managed Detection and Response services, and Cloud/SaaS delivery. Together, these capabilities provide the most effective response to the increased sophistication of continuously...
-
Cyber Security Specialist
6 days ago
Québec, Quebec, Canada Previan (Eddyfi NDTG) Full timeAbout NDT Global NDT Global is the leading provider of inline diagnostic solutions, advanced data insights, and integrity management services that safeguard energy-sector infrastructure. The company is recognized for its expertise in both ultrasonic inspection technologies — such as Pulse Echo, Pitch-and-Catch, Phased Array, and Acoustic Resonance (ART...
-
SOAR Engineer
1 week ago
Québec, Quebec, Canada CyberGate Defense Full timeKey Responsibilities : SOAE EngineerDesign and Implement SOAR Solutions: Deploy SOAR solutions to automate and enhance security operations workflows, focusing on increasing efficiency and operational effectiveness.Develop and Maintain Scripts: Create, refine, and maintain custom scripts to automate routine tasks and enhance incident response capabilities,...
-
Senior Security Engineer
2 weeks ago
Québec, Quebec, Canada Vectra AI Full timeVectra is the leader in AI-driven threat detection and response for hybrid and multi-cloud enterprises.The Vectra AI Platform delivers integrated signal across public cloud, SaaS, identity, and data center networks in a single platform. Powered by patented Attack Signal Intelligence, it empowers security teams to rapidly prioritize, investigate and respond...
-
Senior Security Engineer
2 weeks ago
Québec, Quebec, Canada Vectra Full timeVectra is the leader in AI-driven threat detection and response for hybrid and multi-cloud enterprises.The Vectra AI Platform delivers integrated signal across public cloud, SaaS, identity, and data center networks in a single platform. Powered by patented Attack Signal Intelligence, it empowers security teams to rapidly prioritize, investigate and respond...
-
Senior AI/ML Engineer
14 hours ago
Québec, Quebec, Canada Rosie's People Full timeOur client is a cutting-edge technology company that provides scalable, secure, and efficient solutions for cloud computing and data management. They are at the forefront of cybersecurity and compliance innovation, empowering businesses to leverage the latest technological advancements to mitigate risk, optimise operations, and drive growth. They have played...
-
Business Analyst
5 hours ago
Québec, Quebec, Canada LCG Solution Full timeCompany DescriptionWe suggest you enter details here.Role DescriptionThis is a full-time, on-site role for a Business Analyst located in Québec, QC. The Business Analyst will work closely with stakeholders to identify business needs, gather and document requirements, and develop strategies to improve business processes. Responsibilities include analyzing...
-
Project Manager – Incident Response
2 weeks ago
Québec, Quebec, Canada GoSecure Full timeSummaryWe are looking for a Service Manager to join our Project Management Office team. Service managers work alongside IT security professionals to help manage customers, quality, budget and efforts associated with projects related to all our professional services. The candidate will mostly assist in delivering GoSecure's services within the agreed upon...
-
Claims Analyst
6 days ago
Québec, Quebec, Canada iA Financial Group (Industrial Alliance) Full timeDescriptionBuild the future with usAre you driven by analysis and problem-solving and eager to contribute to the purpose of a company that aims to help its clients feel confident and secure about their future?As aClaims Analyst (Disability and Critical Illness), you will play a key role in handling claims that require in-depth analysis. You will be...
-
Platform and Benefits Analyst
4 days ago
Québec, Quebec, Canada iA Financial Group (Industrial Alliance) Full timeDescriptionJob DescriptionJob TitlePlatform and Benefits AnalystBuild the Future with UsAre you passionate about process optimization and digital tool management? Do you want to contribute to a company whose mission is to ensure clients feel confident and secure about their future? As aPlatform and Benefits Analyst, you will play a key role in continuously...