обновлено 5 дней назад
SOC Analyst, Tier III (Cybersecurity)
90 000 - 115 000CAD
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
SOC Analyst, Tier III (Cybersecurity): Leading complex incident response, digital forensic investigations, and proactive threat hunting across enterprise, cloud, endpoint, server, and network environments with an accent on malware analysis, evidence management, and detection engineering. Focus on coordinating critical incident containment and recovery, reconstructing sophisticated attacks, and strengthening security monitoring and cyber defence.
Location: Toronto, Canada; flexible hybrid work model. Eligibility to work for in Canada in a full-time capacity is required.
Salary: CAD 90,000–115,000 annually, plus eligibility for a short-term incentive plan.
Company
operates Canada's digital payments, identity verification, and fraud protection infrastructure.
What you will do
- Lead the investigation, containment, eradication, and recovery of complex cybersecurity incidents, including malware, insider threats, unauthorized access, and advanced attacks.
- Conduct advanced threat analysis, digital forensics, root cause assessments, and incident reconstruction across endpoints, servers, cloud environments, and networks.
- Act as the senior escalation point for critical incidents and coordinate response activities with technical teams, business stakeholders, and external partners.
- Lead threat hunting initiatives and improve security monitoring, detection use cases, threat analytics, and log-source coverage.
- Develop incident response strategies, playbooks, post-incident reports, remediation plans, and lessons learned.
- Provide cybersecurity guidance to technology, risk, legal, compliance, and business teams and support audits and regulatory assessments.
Requirements
- Extensive experience in cybersecurity incident response, digital forensics, threat hunting, and cyber threat intelligence.
- Advanced expertise in malware analysis, memory forensics, host-based forensics, network forensics, and incident reconstruction across on-premises and cloud environments.
- Experience investigating Windows, Linux, macOS, cloud, and enterprise environments.
- Strong knowledge of SIEM, EDR, IDS/IPS, vulnerability management, networking, TCP/IP, operating systems, application security, and infrastructure security controls.
- Experience with log-source onboarding, threat detection engineering, use-case development, rule tuning, and leading incidents from minor to major.
- Must be eligible to work for in Canada and participate in an after-hours on-call rotation.
Nice to have
- GIAC, GCFA, GCIH, CISSP, CISA, or equivalent certification.
- Experience in ISO-certified environments and familiarity with ITIL practices.
Culture & Benefits
- Flexible hybrid work model.
- Generous vacation and wellness days.
- Employer-paid benefits and an employer-funded RRSP program.
- Confidential 24/7 employee and family assistance program.
- Pregnancy and parental leave top-up and charitable donation matching.
- Inclusive, purpose-driven environment focused on digital finance and security in Canada.
Hiring process
- Successful candidates must complete pre-employment background checks, which may include Canadian criminal, credit, identity, employment, education, and social media checks.
- Accommodation is available throughout the application and recruitment process.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
3 дня назад
Senior Security Operations Engineer (GCP)
130 600 - 170 000CAD
4 дня назад
Security Platform Developer, Security Automation (Python, Splunk SOAR)
65 000 - 105 000CAD
7 дней назад
Senior SOC Analyst
2 дня назад
Information Security Engineer (Cloud) - Contract
85 000 - 90 000CAD
5 дней назад