15 Aug
|
Spait Infotech
|
Canada
15 Aug
Spait Infotech
Canada
Key Responsibilities
Monitor security alerts and events using
SIEM platforms such as Microsoft Sentinel, Splunk, or QRadar.
Investigate security incidents, suspicious activities, phishing attempts, malware alerts, and unauthorized access.
Perform incident triage, analysis, containment, and escalation according to established procedures.
Analyze logs from firewalls, endpoints, servers, applications, and cloud environments.
Conduct vulnerability assessments and assist with remediation of identified security weaknesses.
Support endpoint security and
EDR/XDR solutions such as Microsoft Defender, CrowdStrike, or SentinelOne.
Perform threat hunting and identify indicators of compromise (IOCs).
Assist with security investigations using network traffic, system logs, and threat intelligence.
Participate in security incident response and post-incident root-cause analysis.
Maintain and improve security monitoring rules, alerts,
dashboards, and documentation.
Required Skills
Solid understanding of networking fundamentals
: TCP/IP, DNS, HTTP/HTTPS, VPN, firewalls, and common network protocols.
Knowledge of
Windows and Linux security.
Hands-on experience with
SIEM tools.
Understanding of
EDR/XDR
, endpoint security, and vulnerability management.
Knowledge of incident response and common attack techniques.
Familiarity with
MITRE ATT&CK;
, IOC analysis, and threat intelligence.
Basic scripting skills in
Python, PowerShell, or Bash
.
Understanding of authentication concepts such as
Active Directory, Azure AD/Entra ID, MFA, and IAM
.
Solid analytical, troubleshooting, documentation, and communication skills.
📌 Cybersecurity Analyst Toronto (Canada)
🏢 Spait Infotech
📍 Canada