We are seeking a high-caliber, technically-driven Information Security Analyst (SOC) to join a specialized internal security team. This is not a "process-only" role; we are looking for a "hands-on-keyboard" expert who moves beyond triaging alerts to performing deep-dive technical investigations.You will act as the final line of defense, taking high‑severity escalations from our Managed Detection & Response partner and leading them through full containment and remediation. If you are naturally curious, thrive in a hybrid on‑prem/cloud environment, and enjoy the hunt in security logs, this role is designed for you.Key Note & Application InstructionsTo apply, send your current CV directly to
[email protected] note: Due to high application volumes, only candidates who meet the outlined requirements will be contacted for further discussion.How You’ll Make an ImpactDeep‑Dive Investigation:Perform advanced host‑based and network forensics. You won’t just see an alert; you will dig intothe logs to identify the exact infection vector and lateral movement.Incident Response Leadership:Lead the technical response for high‑severity incidents, making critical decisions on system isolation and server shutdowns.Tooling & Automation:Optimize and build upon our security stack, includingPalo Alto Cortex (XDR)andMicrosoft Sentinel (SIEM).
You will leverageSOARtechnologies to automate manual workflows and streamline operations.Hybrid Environment Mastery:Secure a complex environment that spans a traditional on‑prem data center and a rapidly expandingAzurecloud footprint.Threat Hunting:Proactively hunt for unknown cyber threats and anomalous activity that bypasses traditional vendor signatures.Subject Matter Expertise:Advise on security best practices and risk analysis during project engagements and regulatory audits (ISO 27001, SOC 1/2, NIST).What You’ll BringExpertise:5–7+ years in Security Operations and Incident Response, with a focus on responding to high‑stakes security incidents.Technical Breadth:3–5+ years of experience in host‑based/network forensics and the investigation of security appliance and network logs.The Tech Stack:Deep proficiency with SIEM (Sentinel), EDR/XDR (Cortex), Firewall management, UEBA, and Azure Security Center.Problem Solving:Robust deductive reasoning and the ability to assimilate information quickly in high‑demand situations.Education:Bachelor’s degree in Computer Science, IT, or a related field.Compensation and Work ArrangementCompensation:$81,450 – $99,550 Base + 8% AIPHybrid Schedule:To foster collaboration and team synergy, this role requires being in the Oakville office 3 days per week.#J-18808-Ljbffr
📌 Information Security Analyst - $81,450 - $99,550 A Year (Winnipeg)
🏢 Randstad Digital
📍 Winnipeg