26 Sep
|
NextGenEnergyJobs
|
Ottawa
26 Sep
NextGenEnergyJobs
Ottawa
The Enterprise Security Analyst II is a hands-on Security Operations Center (SOC) role responsible for monitoring alerts, investigating security events, supporting incident response, and improving security operations.Key ResponsibilitiesSecurity Operations and Incident ResponseMonitor and manage the SOC alert queue across endpoint, identity, network, email, cloud, and log monitoring platformsIndependently triage and investigate security alerts and events, distinguishing confirmed threats from benign activity using available evidence and telemetrySupport the full incident lifecycle, including investigation, escalation, containment support, remediation follow-up, documentation, and closureEscalate incidents with clear evidence, impact assessment, and recommended next stepsApply playbooks and runbooks while identifying opportunities to improve alert quality, response consistency, automation, and analyst enablementThreat Intelligence and Threat HuntingAnalyze relevant threat intelligence to identify threats, campaigns, vulnerabilities, and adversary behaviors that may affect the organizationEnrich alerts and investigations with context about threat actors, malware, indicators, vulnerabilities, and attack techniquesAssist with threat hunts across endpoint, identity, network, cloud, and application telemetryUse MITRE ATT&CK to support investigations, communicate adversary behavior, and identify detection gapsPartner with security engineers and analysts to turn relevant intelligence into detections, hunts, watchlists, playbooks, blocking recommendations, or response improvementsRequirements2+ years of cybersecurity experience with hands-on involvement in security monitoring, alert triage, and incident investigationExperience analyzing endpoint, identity, network, cloud, email, and log data to identify suspicious or malicious activityWorking knowledge of SIEM and EDR platforms, common triage workflows, and security telemetry analysisStrong understanding of networking,
operating systems, identity and access concepts, cloud security fundamentals, and core security protocolsWorking knowledge of cyber threat intelligence concepts, including indicators, threat actors, campaigns, vulnerabilities, and adversary tactics, techniques, and proceduresAbility to write clear investigation notes, incident records, intelligence summaries, and recommendations for technical and non-technical audiencesU.S. citizenship is mandatoryAbility and willingness to obtain security clearanceBachelors in Cybersecurity, Information Technology, Computer Science, or a related STEM degreeExperience performing threat intelligence analysis, threat hunting, incident response, or security engineering in an enterprise environmentExperience converting threat intelligence into detections, hunts, watchlists, playbooks, response actions, or mitigation recommendationsExperience researching threat actors, malware, ransomware activity, vulnerability exploitation, or emerging attack techniquesFamiliarity with SOAR platforms, detection engineering practices, automation, scripting, or query languages such as PowerShell, Python, KQL, or SPLRelevant certifications such as CompTIA Security+, GCIH, GCED, GCIA, GCFA, GCTI, CTIA, or Microsoft security certifications#LI-TM1#LI-onsiteEsri's competitive total rewards strategy includes industry-leading health and welfare perks: medical, dental, vision, basic and supplemental life insurance for employees (and their families), 401(k) and profit-sharing programs, minimum accrual of 80 hours of vacation leave, twelve paid holidays throughout the calendar year, and opportunities for personal and professional growth. Base salary is one component of our total rewards strategy. Compensation decisions and the base range for this role take into account many factors including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs.A reasonable estimate of the base salary range is
📌 Security Operations Analyst (Ottawa)
🏢 NextGenEnergyJobs
📍 Ottawa