Cyber Security Analyst

1 week ago


Toronto, Ontario, Canada Resonaite Full time

Our client in the public sector is seeking a contract based Cyber Threat Hunter. The successful candidate will design and execute hunts across enterprise telemetry, operationalize threat intelligence into durable detections, and lead complex investigations.

Location: onsite Toronto

Duration: 1yr + ext

Responsibilities

  • Plan and execute hypothesis-driven and IOC/TTP-based threat hunts across endpoint, network, cloud, identity, and application telemetry
  • Correlate signals from SIEM, UEBA, EDR, and other security platforms with threat intelligence and environmental context to identify advanced or stealthy threats
  • Operationalize threat intelligence, including IOCs, adversary tradecraft, and TTPs, into hunt queries, detections, and enrichment workflows
  • Lead investigations of complex hunt findings, including scoping, containment, eradication, and recovery in collaboration with SOC and Incident Response teams
  • Develop, tune, and maintain high-fidelity detections using KQL, LEQL, Sigma, YARA, and related frameworks to enable sustained monitoring with low false positives
  • Establish and maintain hunting methodologies, runbooks, metrics, and documentation, capturing lessons learned and root-cause analysis
  • Measure and report hunt outcomes such as detections created, gaps remediated, dwell-time reduction, and control effectiveness to leadership
  • Conduct research on emerging threats, adversary campaigns, tooling, and cloud/identity attack paths relevant to OLG and socialize actionable insights
  • Participate in purple-team exercises to validate detections, emulate adversary techniques, and prioritize detection improvements
  • Support compliance and audit activities by providing evidence aligned to security monitoring, incident response, and regulatory requirements
  • Collaborate with internal teams and third-party vendors to coordinate threat hunts, share intelligence, and validate tooling effectiveness
  • Mentor SOC analysts through technical deep dives, coaching, and guidance on threat hunting and intelligence analysis
  • Advise platform owners and product teams on telemetry quality, logging standards, and coverage required for effective detection and hunting

Requirements

  • Minimum 5 years of experience in cybersecurity disciplines, with at least 2 years focused on threat hunting or advanced detection engineering
  • Minimum 6 years of overall experience in information technology disciplines
  • Demonstrated experience leading complex investigations and translating hunt outcomes into durable detections and process improvements
  • Strong understanding of attacker tactics, techniques, and procedures, including credential access, defense evasion, living-off-the-land techniques, and cloud/identity attack paths
  • Proficiency in detection engineering languages and frameworks such as KQL, LEQL, Sigma, and YARA, and familiarity with security data models
  • Hands-on experience with security operations technologies including SIEM, EDR, UEBA, NDR, and SOAR platforms
  • Strong knowledge of threat intelligence methodologies, kill-chain analysis, and MITRE ATT&CK mapping
  • Experience working with Azure cloud environments and telemetry for detecting threats in cloud-native and SaaS platforms
  • Working knowledge of system administration and hardening principles across Windows, macOS, and Linux, including logging and audit policies
  • Experience with scripting languages such as Python, PowerShell, or Bash for automation, data analysis, or custom tooling
  • Familiarity with privacy and regulatory frameworks such as NIST and ISO 27001 as they relate to monitoring and incident response
  • One or more relevant certifications such as GCTI, GCFA, GCIH, OSCP, or similar is considered an asset
  • Ability to communicate complex technical findings clearly through executive-ready reporting and cross-team collaboration


  • Toronto, Ontario, Canada RANA SOFT CONSULTING Full time

    Company DescriptionWe suggest you enter details here.Role DescriptionThis is a full-time, on-site role based in Toronto, ON, for a Cyber Security Analyst. The primary responsibilities include monitoring and responding to security incidents, analyzing threats and vulnerabilities, performing malware analysis, implementing application security measures, and...


  • Toronto, Ontario, Canada S&P Global Full time

    S&P Dow Jones IndicesTheRole:Cyber Security EngineerThe Team:Are you passionate about cyber security? Do you enjoy solving complex problems and collaborating with diverse teams? The Cyber Security Risk Analyst will support and help coordinate activities across the department to drive process improvement. The Cyber Security Risk Analyst will join a team...


  • Toronto, Ontario, Canada EQ Bank | Equitable Bank Full time

    Join a ChallengerBeing a traditional bank just isn't our thing, so we challenge ourselves to get creative in providing innovative banking solutions for Canadians.How do we get there? With a talented team of inquisitive and agile challengers that break through the status quo. So, if you're passionate about redefining the future of banking—while having...


  • Toronto, Ontario, Canada S&P Global Full time

    About the Role: Grade Level (for internal use):10 S&P Dow Jones Indices The Role: Cyber Security Engineer The Team: Are you passionate about cyber security? Do you enjoy solving complex problems and collaborating with diverse teams? The Cyber Security Risk Analyst will support and help coordinate activities across the department to drive process...


  • Toronto, Ontario, Canada Global Technical Talent, an Inc. 5000 Company Full time

    Primary Job Title:Information Security AnalystAlternate / Related Job Titles:Senior Information Security AnalystCyber Risk Assessment LeadThird-Party Cyber Risk AnalystIT Security Risk ConsultantLocation & Onsite Flexibility:Toronto, ON —Hybrid(2 days onsite, moving to 4 days onsite)Work Location: 160 Front Street West, Toronto, OntarioContract...


  • Toronto, Ontario, Canada n2psystems Full time

    About the RoleWe are seeking an experienced Cyber Security Analyst with deep expertise in Akamai Web Application Firewall (WAF). The ideal candidate will be responsible for application onboarding, traffic/security policy management, and incident troubleshooting. This is a hands-on role requiring strong skills in API security, DDoS protection, and bot...

  • Cyber Security

    1 week ago


    Toronto, Ontario, Canada Annex IT Sol Inc Full time

    We are seeking a skilled and detail-oriented Cybersecurity Analyst / Engineer with approximately 3 years of hands-on experience to join our growing security team. The successful candidate will be responsible for protecting our organization's systems, networks, and data from cyber threats while ensuring compliance with security best practices and regulatory...

  • Security Analyst

    7 days ago


    Toronto, Ontario, Canada Cypfer Full time

    CYPFER is a true first-responder Cybersecurity organization enabling clients to return to business rapidly, the right way, following a cyber-attack. We are a global market leader in ransomware post-breach remediation and cyber-attack first response. We deliver results that far surpass market statistics for cyber-extortion and ransomware events. Our team of...

  • Security Analyst

    1 week ago


    Toronto, Ontario, Canada Cypfer Full time

    About Us: CYPFER is a true first-responder Cybersecurity organization enabling clients to return to business rapidly, the right way, following a cyber-attack. We are a global market leader in ransomware post-breach remediation and cyber-attack first response. We deliver results that far surpass market statistics for cyber-extortion and ransomware events....


  • Toronto, Ontario, Canada TD Full time $45,700 - $74,400

    Role Type:Internship/Co-opWork Term:Summer/Term 3Work Location:Toronto, Ontario, CanadaHours:37.5Pay Details:$45, 700 - $74, 400 CADTD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and...