5 дней назад
Threat Analyst 3 (Cybersecurity)
74 000 - 123 000CAD
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Threat Analyst 3 (Cybersecurity): Monitoring, investigating, and responding to threats across customer environments through Sophos MDR, with an accent on endpoint and network telemetry, incident response, and threat hunting. Focus on analyzing complex alerts, identifying attacker techniques, tuning detections, and coordinating detailed case handovers across 24/7 global operations.
Location: Remote in Canada. Legal authorization to work in Canada is required without employer sponsorship. The role includes night, weekend, and holiday shift rotations in a 24/7/365 MDR service.
Base salary: CAD 74,000–123,000 per year, plus bonus eligibility and benefits.
Company
provides AI-driven cybersecurity technologies and expert-led managed detection and response services for organizations worldwide.
What you will do
- Monitor, investigate, and respond to alerts from EDR/XDR and other security tools.
- Analyze suspicious activity, phishing emails, binaries, behavioral anomalies, and endpoint or network telemetry.
- Conduct threat hunting and support active incident response, including containment, mitigation, and recovery.
- Document investigations, manage cases, communicate with clients, and follow incidents through resolution.
- Mentor junior analysts and contribute to detection tuning, playbooks, workflows, knowledge bases, and operational improvements.
- Participate in shift rotations and provide accurate handovers across global teams.
Requirements
- 3+ years of hands-on experience in a SOC, MDR environment, or cybersecurity-focused IT role.
- Experience with endpoint and network security tools, complex alert triage, Windows event logs, and telemetry analysis.
- Working knowledge of Windows and experience with Linux or macOS environments.
- Understanding of TCP/IP, network protocols, routing, traffic analysis, incident response, and attacker techniques such as persistence, privilege escalation, lateral movement, and defense evasion.
- Strong analytical, troubleshooting, documentation, communication, and customer-service skills.
- Bachelor’s degree in IT, Computer Science, Cybersecurity, or a related field, or equivalent practical experience; willingness to work rotating nights, weekends, and holidays.
Nice to have
- Experience with MITRE ATT&CK, SIEM platforms, enterprise security telemetry, SQL, OSQuery, or PowerShell.
- Relevant practical cybersecurity certifications such as GSEC, GCIA, GCIH, PEN-200, Security Blue Team L1, or TCM Academy SOC L1.
Culture & Benefits
- Remote-first working model.
- Comprehensive benefits package and bonus eligibility.
- Diversity and inclusion networks, wellbeing programs, webinars, and global fitness initiatives.
- Volunteer days, charity initiatives, and employee sustainability programs.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →