Hybrid Security Analyst, Tier 1 – Monitoring & Triage

Posted last month

Apply now

About the role

  • Security Analyst, Tier 1 handling incident response and network analysis. Working with cutting-edge network security technology and supporting incident responses at ISA Cybersecurity in Toronto.

Responsibilities

  • Monitor and analyze network traffic and IDS alerts
  • Investigate intrusion attempts and perform in-depth analysis of exploits
  • Provide network intrusion detection expertise to support timely and effective decision making of when to declare an incident
  • Conduct proactive threat research
  • Review security events that are populated in a Security Information and Event Management (SIEM) system
  • Analyze a variety of network and host-based security appliance logs (Firewalls, NIDS, HIDS, Sys Logs, etc.) to determine the correct remediation actions and escalation paths for each incident
  • Independently follow procedures to contain, analyze, and eradicate the malicious activity
  • Perform Tier I/II initial incident triage
  • Document all activities during an incident and providing leadership with status updates during the life cycle of the incident
  • Create a final incident report detailing the events of the incident
  • Provide information regarding intrusion events, security incidents, and other threat indications
  • Assist with the development of processes and procedures to improve incident response times, analysis of incidents, and overall CIOC functions

Requirements

  • Knowledge of information security event monitoring and detection and NID monitoring and incident response
  • Familiarity with network security methodologies, tactics, techniques and procedures
  • Experience with IPS/IDS, SIEMs and other CND security tools
  • Experience reviewing and analyzing network packet captures
  • Experience performing security/vulnerability reviews of network environments
  • Possess a comprehensive understanding of the TCP/IP protocol, security architecture, network and remote access security techniques/products
  • Experience with enterprise anti-virus solutions, virus outbreak management, and the ability to differentiate virus activity from directed attack patterns
  • Working knowledge of network architecture
  • Strong research background, utilizing an analytical approach
  • Must be able to react quickly, decisively, and deliberately in high stress situations
  • Strong verbal/written communication and interpersonal skills are required to document and communicate findings, escalate critical incidents, and interact with customers
  • Working knowledge of Windows and Linux OS to include experience working in the command line interface
  • Highly motivated individual with the ability to self-start, prioritize, multi-task and work in a team setting.

Benefits

  • Flexible sick and personal days for all employees
  • Generous health plan with enhanced mental health resources and programs
  • Professional development opportunities and education reimbursement up to $2,000 annually for all employees
  • Maternity and parental leave top-up
  • Employee referral bonus of $2,000
  • Competitive salaries complemented with RRSP matching and bonus programs
  • Distance remote working policy
  • LinkedIn Learning access for all team members
  • Service anniversary recognition and generous five-year milestone service awards
  • President’s Club recognizing special achievement awards
  • Spot rewards providing opportunities for instant peer recognition
  • Annual kick-off meeting to communicate our strategic priorities
  • Informal staff events like pizza lunches or games day
  • Quarterly town hall meetings
  • Regular team get togethers and client events
  • Scheduled employee feedback surveys and goal setting focus groups

Job title

Security Analyst, Tier 1 – Monitoring & Triage

Job type

Experience level

Mid levelSenior

Salary

CA$48,875 - CA$66,125 per year

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job