It Security Analyst (Tier 2 Soc) - C$65,000 - C$75,000 A Year (Toronto)

It Security Analyst (Tier 2 Soc) - C$65,000 - C$75,000 A Year (Toronto)

23 Aug
|
Descartes
|
Toronto

23 Aug

Descartes

Toronto

MissionThe Tier 2 SOC Security Analyst exists to strengthen Descartes’ ability to detect, investigate, and respond to sophisticated security threats across a complex enterprise environment. This role ensures that escalated alerts are deeply analyzed, detection capabilities continuously improve, and the organization becomes faster, smarter, and more resilient in defending against evolving cyber risks.Outcomes: What Success Looks Like1. High-Fidelity Incident Response: Investigate and resolve escalated security events with clear determination of scope, root cause, and remediation actions, improving mean time to detect (MTTD) and respond (MTTR) by measurable targets.2. Improved Detection Quality: Reduce false positives and increase true positive detection rates through continuous tuning across Sentinel, CSE, and other SOC platforms.3. Operational Excellence in SOC: Maintain high-quality case management, queue hygiene, and reporting standards, contributing to consistent weekly SOC reporting and metrics accuracy.4. Automation Impact: Deliver automation solutions that reduce manual SOC workload and improve response speed (e.G., reporting, enrichment, workflow automation).5. Enhanced Visibility: Successfully onboard and normalize new log sources and detection use cases, improving coverage across cloud, identity, endpoint, and network domains.6. Proactive Threat Identification: Conduct regular threat hunting activities that uncover previously undetected risks and translate findings into actionable detection improvements.7. Stronger Security Posture: Collaborate cross-functionally to validate suspicious activity, improve controls, and support incident response readiness across the organization.Skills & Competencies — How the Work Gets DoneTechnical & Role-Specific- Strong experience with SIEM and security platforms (e.G., Microsoft Sentinel, Sumo Logic / CSE, CrowdStrike, Defender, Zscaler,



GuardDuty)- Ability to perform deep technical investigations across cloud, endpoint, identity, email, and network domains- Detection tuning, rule development, and alert optimization experience- Scripting and automation skills (Python, PowerShell, or workflow automation tools)- Understanding of log ingestion, parsing, normalization, and enrichment processes- Familiarity with MITRE ATT&CK and threat hunting methodologiesCulture AddTEAM Values We value team members who communicate with transparency, sharing information openly and building trust across functions. You bring excellence and expertise to your craft, holding a high bar for quality while continuously improving your skills. You demonstrate accountability by owning outcomes, following through on commitments, and taking responsibility for results. You are driven by metrics, using data and experimentation to inform decisions and deliver measurable impact.Aptitudes- Smart: Able to quickly understand complex systems, connect ideas, and make sound judgments.- Curious: Actively seeks to understand customer problems, emerging technologies, and better ways of working.- Coachable: Open to feedback, willing to adapt, and continuously improving through learning.What’s in It for you- Meaningful Impact: Play a direct role in defending a global enterprise and shaping the maturity of SOC capabilities beyond basic alert handling- Growth & Development: Expand into advanced areas such as detection engineering, automation, threat hunting, and purple teaming- Technology Exposure: Work hands-on with modern cloud, identity,



endpoint, and SIEM technologies in a dynamic environment- Collaboration & Visibility: Partner with infrastructure, DevOps, and security leadership, gaining exposure across the business- Autonomy & Ownership: Opportunity to take initiative in improving processes, detections, and tooling while contributing to a high-performing SOC team- Balanced Environment: Participate in a structured SOC operation with defined processes, metrics, and continuous improvement focusSalary Range$65,000 – $75,000 CAD annually - Compensation information provided is a good faith estimate for this position only. Factors that may be used to determine your actual salary may include your specific skills as well as the years of experience you have. Similar positions located in different geographic regions will not necessarily receive the same compensation.We are an Equal Employment employer. We do not discriminate in hiring on the basis of sex, gender identity, sexual orientation, race, color, religious creed, national origin, physical or mental disability, protected status, or any other characteristic protected by federal, provincial, or local law. For more information about our commitment to equal employment prospect, please review our Code of Business Conduct and Ethics at Descartes.Com. Descartes is committed to working with and providing reasonable accommodations to job applicants with disabilities. Applicants in North America with a disability who require a reasonable accommodation for any part of the application or hiring process can email us at [email protected]. Provide your name and contact information along with the accommodation needed to assist you with the application process. Your request will be responded to as soon as possible. Reasonable accommodations will be determined on a case-by-case basis.#J-18808-Ljbffr

📌 It Security Analyst (Tier 2 Soc) - C$65,000 - C$75,000 A Year (Toronto)
🏢 Descartes
📍 Toronto

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: it security analyst (tier 2 soc) - c$65,000 - c$75,000 a year (toronto) / toronto

Subscribe to this job alert:

Get the latest job offers by email for: it security analyst (tier 2 soc) - c$65,000 - c$75,000 a year (toronto) / toronto