Cyber as a Service, Monitoring, L1, Associate Full-time Job
Feb 16th, 2024 at 15:49 IT & Telecoms Montréal 211 views Reference: 4764Job Details
A career within Cybersecurity and Privacy services, will provide you with the opportunity to help our clients implement an effective cybersecurity programme that protects against threats, propels transformation, and drives growth. As companies pivot toward a digital business model, exponentially more data is generated and shared among organisations, partners and customers. We play an integral role in helping our clients ensure they are protected by developing transformation strategies focused on security, efficiently integrate and manage new or existing technology systems to deliver continuous operational improvements and increase their cybersecurity investment, and detect, respond, and remediate threats.
Meaningful work you’ll be part of
As a Cyber as a Service, Monitoring, L1, Associate, you’ll work as part of a team of problem solvers, helping to solve complex business issues from strategy to execution. Responsibilities include but are not limited to:
-
A shift based schedule to continuously monitors the alert queue
-
Triages security and device alerts
-
Receives phone calls from clients and create necessary ticket for the incident or request and channel it to the required team for action
-
Collects data and context necessary to initiate investigation over to Cyber Threat Investigator
-
Follows alerts and incidents playbooks/runbooks
-
Primarily responsible for security monitoring, detection, response
-
Ensure incident identification, assessment, reporting, communication, mitigation and monitoring
-
Ensure compliance to SLA, process adherence and process improvements to achieve operational objectives
-
Framework, Review policies and highlight the difficulties in managing SLAs
-
Management, administration & maintenance of security devices
-
Perform threat management, threat modeling, identify threat vectors and develop use cases for security monitoring
-
Responsible for integration of standard and non-standard logs in SIEM
-
Coordination with stakeholders, build and maintain positive working relationships with them
Experiences and skills you’ll use to solve
-
Relevant experience in Information Technology and Information Security
-
Experience in security device management and multiple SIEM platforms
-
Experience in performing vendor management
-
In-depth knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management, etc.
-
Experience in MSSP environment
-
Knowledge of various operating system flavors including but not limited to Windows, Linux, Unix
-
Proficient in Incident Management and Response
-
Knowledge of applications, databases, middleware to address security threats
-
Proficient in preparation of reports, dashboards and documentation
-
Excellent communication and initiative skills
-
Ability to handle high pressure situations with key stakeholders
-
Good Analytical skills, Problem solving and Interpersonal skills
-
CISSP and GIAC certifications preferred
-
A demonstrated commitment to valuing differences and working alongside and/or coaching diverse people and perspectives