Security Analyst II
Canada
Cyderes
Cyderes offers tech-enabled managed security services for real-time risk and compliance management in modern enterprises.
Cyderes (Cyber Defense and Response) is a pure-play, full life-cycle cybersecurity services provider with award-winning managed security services, identity and access management, and professional services designed to manage the cybersecurity risks of enterprise clients. We specialize in multi-technology, complex environments with the in speed and agility needed to tackle the most advanced cyber threats. We leverage our global scale and decades of experience to accelerate our clients’ cyber outcomes through a full lifecycle of cybersecurity services. We are a global company with operating centers in the United States, Canada, the United Kingdom, and India.
About the RoleThe Managed Services Security Analyst II is responsible for security solutions for clients. The Security Analyst II will demonstrate the capacity to consistently meet and exceed client expectations representing and reinforcing the Cyderes brand through positive interaction with other teams within the company. Perform deep dive investigations into security threats, understand and implement MITRE mapping to identify customers current security posture.
Note: This job posting is intended for direct applicants only. We request that outside recruiters do not contact us regarding this position.
About the RoleThe Managed Services Security Analyst II is responsible for security solutions for clients. The Security Analyst II will demonstrate the capacity to consistently meet and exceed client expectations representing and reinforcing the Cyderes brand through positive interaction with other teams within the company. Perform deep dive investigations into security threats, understand and implement MITRE mapping to identify customers current security posture.
Responsibilities:
- Perform triage and advanced analysis tasks across endpoint, server, and network infrastructure.
- Perform Threat Hunting on customer networks to detect, isolate threats and provide recommendations.
- Provide proactive security investigation and searches on client environment to detect malicious activities.
- Coordinate Incident investigations and deep dive analysis on detected threats.
- Understand and identify indicators of attack and compromise in alerts, by hunting through data, and from review of investigation notes.
- Have full understanding of the MITRE ATT&CK framework. Mapping clients use cases to tactics and techniques.
- Update documentation and runbooks to ensure repeatable analysis.
- Actively participate in an after-hours on-call rotation as Incident Controller
- Scope customer security incidents
Requirements:
- 3 or more years of progressing/in-depth IT security experience.
- System Administration experience (Windows, Unix/Linux, Mac)
- Advanced understanding of networking concepts and ability to analyze network artifacts.
- Demonstrate experience in using Endpoint Detection and Response software (Sentinel1, Crowdstrike, Defender ETC.)
- Advanced knowledge of at least one leading SIEM platform (Sentinel, Splunk, Elastic, IBM Qradar, Chronicle etc.)
- Possess at least one industry certification Sec+, CEH, SANS Certification (e.g. GCIH, GCIA, GSEC, GMON), OSCP etc. or working towards a related certification.
- Basic scripting or development experience in one of the following languages: Python, JavaScript, PowerShell, bash, etc.
Note: This job posting is intended for direct applicants only. We request that outside recruiters do not contact us regarding this position.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
3
0
0
Category:
Analyst Jobs
Tags: Bash CEH CrowdStrike Cyber defense EDR GCIA GCIH GSEC IAM JavaScript Linux MITRE ATT&CK OSCP PowerShell Python QRadar SANS Scripting Sentinel SIEM Splunk UNIX Windows
Region:
North America
Country:
Canada
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information Systems Security Officer jobsInformation System Security Officer jobsInformation Security Officer jobsInformation Security Manager jobsSenior Cloud Security Engineer jobsSenior Cybersecurity Engineer jobsCyber Security Specialist jobsIT Security Engineer jobsSystems Engineer jobsSenior Network Security Engineer jobsSystems Administrator jobsSenior Information Security Analyst jobsSecurity Consultant jobsSecurity Specialist jobsSenior Cyber Security Engineer jobsIT Security Analyst jobsChief Information Security Officer jobsInformation System Security Officer (ISSO) jobsThreat Intelligence Analyst jobsInformation Systems Security Engineer jobsSenior Penetration Tester jobsCyber Threat Intelligence Analyst jobsSenior Information Security Engineer jobsCyber Security Architect jobsSecurity Operations Analyst jobs
Encryption jobsSaaS jobsTop Secret jobsGDPR jobsSplunk jobsMalware jobsEDR jobsSDLC jobsRMF jobsBash jobsSQL jobsForensics jobsIDS jobsThreat detection jobsFinance jobsIPS jobsDoDD 8570 jobsIntrusion detection jobsActive Directory jobsITIL jobsCRISC jobsCompTIA jobsTerraform jobsDocker jobsGIAC jobs
OWASP jobsSOC 2 jobsHIPAA jobsCCSP jobsSAP jobsClearance Required jobsSANS jobsUNIX jobsIndustrial jobsVPN jobsAnsible jobsTCP/IP jobsOSCP jobsJavaScript jobsSOX jobsBanking jobsDNS jobsData Analytics jobsPolygraph jobsMachine Learning jobsIT infrastructure jobsJira jobsCISO jobsNIST 800-53 jobsVMware jobs