16 Aug
|
Spait Infotech
|
Drummondville
16 Aug
Spait Infotech
Drummondville
Key Responsibilities
Monitor security alerts and events using SIEM platforms such as Microsoft Sentinel, Splunk, or QRadar.
Investigate security incidents, suspicious activities, phishing attempts, malware alerts, and unauthorized access.
Perform incident triage, analysis, containment, and escalation according to established procedures.
Analyze logs from firewalls, endpoints, servers, applications, and cloud environments.
Conduct vulnerability assessments and assist with remediation of identified security weaknesses.
Support endpoint security and EDR/XDR solutions such as Microsoft Defender, CrowdStrike, or SentinelOne.
Perform threat hunting and identify indicators of compromise (IOCs).
Assist with security investigations using network traffic, system logs, and threat intelligence.
Participate in security incident response and post-incident root-cause analysis.
Maintain and improve security monitoring rules,
alerts, dashboards, and documentation.
Required Skills
Robust understanding of networking fundamentals: TCP/IP, DNS, HTTP/HTTPS, VPN, firewalls, and common network protocols.
Knowledge of Windows and Linux security.
Hands-on experience with SIEM tools.
Understanding of EDR/XDR, endpoint security, and vulnerability management.
Knowledge of incident response and common attack techniques.
Familiarity with MITRE ATT&CK;, IOC analysis, and threat intelligence.
Basic scripting skills in Python, PowerShell, or Bash.
Understanding of authentication concepts such as Active Directory, Azure AD/Entra ID, MFA, and IAM.
Solid analytical, troubleshooting, documentation, and communication skills.
📌 Cybersecurity Analyst Drummondville
🏢 Spait Infotech
📍 Drummondville