Intermediate Security Operations Center Analyst
Summary
Monitor and respond to security alerts using SIEM tools like Sentinel, coordinate incident response, and provide guidance on cybersecurity threats across cloud and on-premise environments.
A Day in the Life:
- Actively participate in 24x7 operations of the Long View Security Operations Centre
- Monitor, identify and validate security events generated from Security Information Event Management (SIEM) tools
- Actively work in monitoring, event and incident management tools like Sentinel and ServiceNow
- Respond to critical business impacting situations and coordinate the efforts required to engage the proper resources to remediate the issue
- Coordinate major security incident situations and provide internal communications via email in a timely manor
- Provide general support for Security Information Event Management (SIEM) tool changes, tweaks, additions and updates within Sentinel and any additional tools leveraged by Long View
- Provide security guidance to team members across the organization how to best identify, contain and remediate security related incidents
- Understand complex issues across on-premise, public and private cloud solutions and articulate the impact to higher tier team members
- Follow and establish process documentation for receipt of security alerts for monitored devices, acknowledge the receipt of the event, opening and/or updating service desk tickets to track the handling of events to resolution and closure, assignment of the ticket to the appropriate owner
- Work with cloud technologies like Azure, AWS and Google Cloud Platform
- Fulfill reporting requests that can be pulled from Long View tools
What You Bring:
- 3+ years of professional experience in incident detection and response, malware analysis, or cyber forensics
- SC-200 Certification
- Experience working with MS Defender
- Extensive experience evaluating, interpreting, and integrating relevant data sources for the purpose of merging network attack analyses with counterintelligence and law enforcement investigations
- Experience with various IT service management tools including performance monitoring and ITSM solutions
- Experience with Security Information Event Management platforms like Sentinel, Splunk and Sumo Logic
- Experience working with incident, problem, change and service requests that follow ITIL framework standards
- Experience provisioning new client services and working through customer onboarding tasks
- Proven ability to troubleshoot and resolve technical and procedural issues
- Strong verbal and written communication which will allow you to communicate effectively to customers in non-technical terms
- Ability to react quickly and professionally with a sense of urgency
- Ability and desire to work on an on-call rotation for 24-hour support
What Makes You Extra Awesome:
- Intermediate level network and security certifications like the Security+, Network+, SSCP and/or CCNA Security
Why Work At Long View?
- Interesting work – Be part of exciting projects while accessing all the latest technologies
- Career growth – Permanent staff positions, paid training, career life planning, and relocation and travel opportunities
- RSP plan
Skills
As published by lever · 13 questions · 5 written answers
Basics
Which location are you applying for?, Resume/CV, Full name, Email, Phone, Current location, Current company, LinkedIn URL, Other website, What is your age range?, I identify my ethnicity asSelect all that apply, What gender do you identify as?, Do you identify as a person with a disability?
Pick from a list (8)
- Have you completed or are in the process of completing your SC-200?
- Are you comfortable working in office or client site as needed?
- Do you reside within 50km of a Long View office?
- If so which Long View office? optional
- Are you legally authorized to work for any employer in Canada and able to provide proof of such?
- What types of opportunities are you looking for? optional
- We are required to complete a criminal background check and employment verification as conditions of employment. Is this okay with you?
- When would you be available to start a new role?
Written answers (5)
- Other
- How would you like to be addressed? Feel free to share preferred names and pronouns. optional
- How many years of experience do you have relevant to this position? Please also detail any transferable experience that may benefit this role.
- Based on the job posting, what are your strengths relative to this role?
- Please share any relevant education and certifications that you hold for this role? optional