Information Security Analyst
Montreal, QC
A global financial services organization is seeking an Information Security Analyst to join its Cybersecurity team. This role is focused on security operations, threat detection, incident response, and continuous monitoring in a large-scale, highly technical environment.
What You'll Do
- Monitor security alerts, dashboards, tickets, reports, and real-time communication channels for potential security incidents.
- Perform initial triage and analysis of security events, identify false positives, and determine incident severity and priority.
- Escalate confirmed security incidents and assist with containment and mitigation activities.
- Partner with internal stakeholders and third-party security providers to investigate and respond to alerts and incidents.
- Monitor and analyze SIEM platforms to identify threats and security issues requiring remediation.
- Develop and tune SIEM detection rules and alerting policies.
- Investigate potential intrusion attempts, suspicious activity, malware events, and other cybersecurity threats.
- Accurately document investigations, findings, and response actions within a ticketing system.
- Contribute to the ongoing improvement of security monitoring and incident response capabilities.
Requirements
- Bachelor's degree in Computer Science, Information Security, Information Technology, or a related field.
- 3+ years of experience in a Security Operations Center (SOC), threat detection, or incident response environment.
- Experience investigating security events and performing incident triage in a mid-to-large enterprise environment.
- Hands-on experience with technologies such as:
- SIEM platforms
- IDS/IPS solutions
- Network and host-based firewalls
- Data Loss Prevention (DLP) tools
- Understanding of common attack techniques including network scanning, DDoS attacks, malware activity, and unauthorized access attempts.
- Experience with scripting or automation using Python, Bash, or PowerShell.
- Strong analytical, troubleshooting, and problem-solving skills.
- Excellent communication and stakeholder management abilities.
- Strong understanding of networking concepts including IP, DNS, HTTP, routers, and switches.
- Curiosity and passion for investigating the root cause of security incidents.
- Participation in a rotating on-call and weekend support schedule is required.
Nice to Have
- Experience with malware analysis, phishing investigations, cloud security, threat hunting, or deception technologies.
- Exposure to detection engineering and SIEM rule development.
- Experience working in a 24x7 security operations environment.
Compensation & Benefits
- Competitive base salary and bonus opportunity
- Generous paid time off
- Health and wellness reimbursement programs
- Professional development and training opportunities
- Collaborative, technology-driven work environment
- Team events and employee perk programs