• PO Box 34132, Fort Richmond PO, Winnipeg, Manitoba, R3T 5T5

Security Analyst, Managed Security Services

One of our customer is seeking a Security Analyst to join their team. You will provide dedicated intrusion monitoring and analysis for the operations team. You will perform analysis of security events generated by the security information event management (SIEM) system and tools, and validate, escalate, and report events of interest and incidents. You will also monitor the health of client-deployed services and work with customers to ensure optimum performance.

Critical Competencies for Success: Communication skills, collaboration skills, strong work ethic, initiative, problem-solving, team player.

What You’ll Do

  • Continuously monitor alerts generated by security information event management (SIEM) systems and tools.
  • Alert triage, validation, and escalation of events of interest following incident response protocols.
  • Track vulnerabilities found in customer environment and assist with identifying and recommending solutions related to the scheduling of the scans.
  • Answer and respond to client calls for support.
  • Develop customized client reports when necessary.

What We’d Like

  • 1+ years’ network administration experience, including load balancers, proxy servers, firewalls, and VPNs.
  • Experience with operating systems (Windows, Linux, Mac OS, etc.) and complex cloud applications, services (AWS, Azure, private cloud), and environments.
  • Experience with commercial and open source SIEM and log management systems, such as Sumo Logic, AlienVault, Splunk, QRadar, and SIEMonster.
  • Experience with open source tools, particularly tools such as auditd, rsyslog, Elastic Stack SNORT, OSSEC, Security Onion, OSSIM, etc.
  • Must be willing to work a determined shift in a 24/7 support environment.
  • Excellent oral and written communication skills.
  • Must be eligible to work in the United States.
  • Educated to degree level, or an equivalent in an IT related discipline.
  • Security-related certifications (e.g., SANS GIAC certifications, AWS, CISSP, CCNA, CEH) are considered an asset.
  • Someone who shares our core values:
    • Caring & Empathy: We look out for each other.
    • Passion: We are energized by what we do.
    • Integrity: We do what's right.
    • Forward Thinking: We are always evolving.
    • Commitment and Perseverance: We finish what we start.

OR

How did you hear about this job?