30 Jul
|
Alberta Health Services
|
Calgary
30 Jul
Alberta Health Services
Calgary
Your Prospect: The Information Security Management Security Operations Centre (SOC) provides cybersecurity services and assurance for the Alberta Provincial Healthcare System through monitoring, consulting, advisory support, and the delivery of direct cybersecurity services to programs across the enterprise.
The Information Security Analyst SOC Tier 2 provides advanced technical cybersecurity services focused on security incident investigation, response, and the continuous improvement of cybersecurity operations across the Alberta Provincial Healthcare System.
In addition to performing deep technical analysis, this role serves as a key leadership resource within the SOC, advancing operational maturity through mentorship, training, process development, and the promotion of best practices.
This posting will be used to fill 3 vacancies.
Description: The Tier 2 Analyst serves as the primary escalation point and technical coach for Tier 1 analysts, ensuring consistent investigation quality, analytical rigor, and adherence to SOC standards.
This includes actively developing analyst capability through structured coaching, real-time guidance during incidents, Quality Assurance monitoring and ongoing knowledge transfer. A key component of the role is designing, refining, and operationalizing SOC processes, including investigation procedures, incident response playbooks, escalation criteria, and quality standards.
The analyst identifies inefficiencies, gaps, and inconsistencies in SOC operations and leads improvements that enhance detection, response speed, and overall effectiveness.
The Tier 2 Analyst works closely with Senior Security Analysts and team leads across Information Security and IT to strengthen operational alignment, share expertise, and drive consistent cybersecurity practices.
This includes contributing to cross-functional initiatives, aligning on investigation and response approaches, and supporting the continuous improvement of cybersecurity operations to enhance overall organizational maturity and reduce risk.
Required Qualifications: Additional Required Qualifications: Experience working in three or more of the following: Proven experience performing Tier 2 SOC investigations, handling escalations, validating incidents, and analyzing SIEM alerts beyond triage (correlation, tuning, contextual analysis) Experience conducting structured incident response activities including root cause analysis, impact assessment, and supporting containment and remediation coordination Hands-on experience with security tooling such as SIEM, EDR/XDR, email security, identity platforms, or network monitoring, including tuning detections and improving alert quality Working knowledge of enterprise IT environments, including endpoints, identity systems, servers, and network infrastructure Experience using scripting and automation tools (, Power
Shell, Python) to support investigations, enrichment, and operational efficiency Demonstrated ability to develop and improve playbooks, procedures, and investigation guides, and to work with IT security policies, standards, and operational processes Preferred Qualifications: 47+ years of directly related experience, depending on scope and complexity Experience acting as a Tier 2 escalation point or informal team lead Healthcare experience
📌 SOC Analyst - Tier 2 (Calgary)
🏢 Alberta Health Services
📍 Calgary