SOC Analyst II

Toronto, Ontario, Canada; Oakville, Ontario, Canada; Calgary, Alberta, Canada; Edmonton, Alberta, Canada; Halifax, Nova Scotia, Canada; Moncton, New Brunswick, Canada; St. John's, Newfoundland and Labrador, Canada

BrokerLink

Save on insurance in Alberta, Ontario, and Atlantic Canada with BrokerLink. Get a quote for personal insurance and business insurance.

View all jobs at BrokerLink

Apply now Apply later

Being a part of BrokerLink, means you live our values: to act with integrity, be respectful of others, have a customer-driven mindset, strive for excellence and always treat others with generosity. These values drive our diversity and inclusion efforts to ensure a respectful and inclusive work environment is present.

We want like-minded individuals who want to provide the highest level of customer service, who carry themselves with utmost professionalism.

We want to invest in you! Your success is our success and our purpose of “we’re here to help people” is what motivates us to keep the amazing talent we attract, for a long time. We want to bring out the best of all our team members! Offering countless opportunities to grow and an environment which values our most important assets, you, our team members. We have over 200 offices across Canada, ask us about our flexible work arrangements!

The Position:

We are looking for an SOC Analyst II to join BrokerLink in one of our offices in Alberta, Ontario, or Atlantic region on a Permanent FT Basis.

The SOC Analyst II is a key member of the Security Operations Center (SOC), tasked with advanced security event analysis, incident response, and escalation management. Acting as the escalation point for SOC Analyst I, they collaborate to investigate, contain, and remediate security threats. The SOC Analyst II also plays a significant role in security automation, SIEM rule development, and the continuous improvement of incident response processes, thereby enhancing the organization’s overall security posture. Additionally, they assist security advisors, manage vulnerabilities, ensure regulatory compliance, and strengthen security controls.

As part of our employee promise, here are some of the many perks of working with us:

  • Flexible health and dental insurance benefits package
  • Personal Spending amount to invest in your healthy lifestyle
  • RRSP - Registered Retirement Savings Plan with Company matching
  • ESPP - Employee Share Purchase Plan (TSX:IFC) program with matching aspect
  • ‘Dress for your day’, dress according to your daily schedule
  • Competitive compensation package with bonus aspect
  • Employee discount program, including Apple, Bell, Rogers and more!
  • Paid Time Off in the form of: Personal days, Volunteer days, Exam/Study Time, Jury Duty and starting at 3 weeks of vacation per year!
  • Working for an employer who is regularly recognized as one of Canada’s best employers such as Kincentric 2024

What the Role Entails:

  • Act as an escalation point for SOC Analyst I, providing guidance and expertise in analyzing security alerts. Take on a leadership role as the primary owner of incidents, coordinating response efforts, making critical decisions, and ensuring effective communication among all stakeholders throughout the incident lifecycle.
  • Investigate and resolve security tickets from end users, ensuring timely and effective remediation of security-related issues.
  • Monitor and respond to SIEM alerts, performing advanced triage, analysis, and investigation of security incidents to identify patterns and potential threats.
  • Develop, refine, and implement SIEM detection rules, alerts, and reports to enhance threat identification.
  • Utilize security automation and orchestration (SOAR) tools to streamline incident response and remediation processes.
  • Support forensic investigations by analyzing logs, endpoint telemetry, and network traffic to determine root causes and recommend corrective actions.
  • Develop and conduct security awareness training for end users, developers, and IT teams to strengthen the organization's security culture.
  • Conduct threat hunting exercises to proactively detect unknown threats within the environment.
  • Track emerging threats, vulnerabilities, and attack techniques to improve defensive capabilities.
  • Generate and present security reports and incident summaries to technical and leadership teams.
  • Collaborate closely with security advisors on projects and initiatives, providing insights and a security operations perspective to ensure effective implementation and alignment with operational security needs.
  • Ensure security operations align with industry frameworks and regulatory requirements.
  • Develop and maintain security playbooks to standardize threat detection and response activities, ensuring consistent incident handling.

The Successful candidate will have:

  • Post-secondary education in Computer Science, Information Technology, Cybersecurity, or a related field.
  • 3-5 years of experience in security operations, incident response, and threat analysis.
  • Strong background in security incident management, with the ability to lead investigations and coordinate response efforts to mitigate risks and ensure timely resolution of incidents.
  • Critical and analytical thinking skills to identify and resolve complex security incidents and issues.
  • Extensive experience with security tools such as SIEM platforms, endpoint detection and response (EDR) tools, vulnerability management tools, network monitoring tools, threat intelligence platforms, and incident response platforms.
  • Excellent verbal and written communication skills to report security findings, collaborate with other teams, and provide actionable recommendations.
  • Proficient in creating and reviewing documentation for policies, standards, guidelines, and procedures.
  • Experience in security automation (SOAR) is a strong asset.
  • Experience with cloud security monitoring for major cloud platforms is an asset.
  • Industry certifications such as GCIH, GSEC, CySA+, or equivalent are an asset.

We thank all applicants for their interest, but only those selected for an interview will be contacted.

BrokerLink is committed to providing an accessible environment. Accommodations are available on request for candidates taking part in the selection process.

BrokerLink is committed to creating and maintaining an inclusive environment which embraces our diversities and sees them as our strength! We want to foster a workplace that makes all our team members and customers feel welcome and appreciated.

Discover more about BrokerLink! Visit our new dedicated Webpage - https://www.brokerlink.ca/campaign/discover-brokerlink

At BrokerLink, we value diversity and are committed to creating an inclusive workplace that inspires each of us to be the best we can be. Join our team and make a difference!

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Automation Cloud Compliance Computer Science EDR GCIH GSEC Incident response Monitoring SIEM SOAR SOC Threat detection Threat intelligence Vulnerabilities Vulnerability management

Perks/benefits: Career development Competitive pay Flex hours Flex vacation Health care Salary bonus

Region: North America
Country: Canada

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.