Role: Senior Analyst – Security Operations, Information & Cybersecurity
Location: Toronto, ON
Work Model: Onsite
Experience: 5+ Years
Job Summary
We are seeking a Senior Analyst – Security Operations, Information & Cybersecurity to join a dynamic cybersecurity team responsible for security operations, incident response, threat intelligence, vulnerability management, security controls, and risk management.
The ideal candidate will have strong hands-on experience with SIEM, EDR, DLP, firewalls, threat intelligence, security orchestration/automation, vulnerability management, and cloud security. This role requires someone who can investigate complex security events, coordinate incident response, identify control gaps, and provide practical security recommendations across the organization.
Core Qualifications
•
Undergraduate degree or college diploma in Cybersecurity, Information Technology, Computer Science, or a related field.
•
5+ years of relevant experience in cybersecurity, security operations, information security, or IT infrastructure security.
•
Hands-on experience managing or deploying IT infrastructure and cybersecurity technologies.
•
Relevant cybersecurity certifications such as CISSP, CISM, Security+, GIAC, CEH, or equivalent are preferred.
•
Strong technical knowledge of:
◦
SIEM and security monitoring
◦
EDR/endpoint security
◦
Firewalls and network security
◦
DLP and content filtering
◦
Threat intelligence
◦
Security orchestration and automation
◦
Vulnerability management
◦
Cloud security
•
Strong analytical, investigation, troubleshooting, and problem-solving skills.
•
Excellent written and verbal communication skills.
Key Responsibilities
•
Monitor, investigate, analyze, and document security alerts and events from SIEM, EDR, network, cloud, and other security tools.
•
Manage and coordinate the response to cybersecurity incidents in accordance with established incident response procedures and frameworks.
•
Perform security investigations using logs, alerts, threat intelligence, endpoint telemetry, and other relevant data sources.
•
Deploy, configure, administer, and maintain assigned information security controls and technologies.
•
Identify security threats, vulnerabilities, attack patterns, and emerging risks and recommend appropriate mitigation strategies.
•
Monitor third-party threat intelligence feeds, security forums, mailing lists, vulnerability disclosures, exploits, and threat actor activity.
•
Assess the relevance and potential impact of emerging vulnerabilities and threats to the organization.
•
Produce threat intelligence reports, security assessments, and operational security briefings to support security planning and decision-making.
•
Analyze security incident and trend data to identify systemic operational risks and recurring security issues.
•
Support the development and implementation of solutions to reduce identified security risks.
•
Conduct information security risk assessments, document findings in the risk register, and track mitigating actions through completion.
•
Support the remediation and closure of audit findings, control deficiencies, and self-identified security gaps.
•
Collect and analyze security metrics and operational data for information security dashboards, KPIs, and management reporting.
•
Participate in the administration and continuous improvement of information security governance, policies, standards, and procedures.
•
Collaborate with infrastructure, cloud, application, and business teams to resolve complex security issues.
•
Act as a security advisor to various departments, providing guidance on cybersecurity risks, controls, vulnerabilities, and remediation strategies.
•
Contribute to continuous improvement of security operations, monitoring, incident response, and security controls.
Core Technical Skills
SIEM | EDR | Incident Response | Threat Intelligence | Vulnerability Management | Firewalls | DLP | Security Automation/SOAR | Cloud Security | Security Monitoring | Risk Management | Security Governance
Key Competencies
•
Security Operations & Incident Response
•
Threat Detection & Investigation
•
Threat Intelligence & Vulnerability Analysis
•
Cybersecurity Risk & Control Management
•
Security Monitoring & Reporting
•
Governance, Audit & Compliance
•
Stakeholder Management & Security Advisory