About the Role
We are looking for a driven and self-motivated Intermediate Security Operations Centre Analyst to join our team. You will act as the main point of security escalation between team members, branches, clients, and vendors, actively participating in 24x7 operations of the Long View Security Operations Centre.
Responsibilities
- Monitor, identify and validate security events generated from Security Information Event Management (SIEM) tools.
- Actively work in monitoring, event and incident management tools like Sentinel and ServiceNow.
- Respond to critical business impacting situations and coordinate the efforts required to engage the proper resources to remediate the issue.
- Coordinate major security incident situations and provide internal communications via email in a timely manor.
- Provide general support for Security Information Event Management (SIEM) tool changes, tweaks, additions and updates within Sentinel and any additional tools leveraged by Long View.
- Provide security guidance to team members across the organization how to best identify, contain and remediate security related incidents.
- Understand complex issues across on-premise, public and private cloud solutions and articulate the impact to higher tier team members.
- Follow and establish process documentation for receipt of security alerts for monitored devices, acknowledge the receipt of the event, opening and/or updating service desk tickets to track the handling of events to resolution and closure, assignment of the ticket to the appropriate owner.
- Work with cloud technologies like Azure, AWS and Google Cloud Platform.
- Fulfill reporting requests that can be pulled from Long View tools.
Requirements
- 3+ years of professional experience in incident detection and response, malware analysis, or cyber forensics.
- SC-200 Certification.
- Experience working with MS Defender.
- Extensive experience evaluating, interpreting, and integrating relevant data sources for the purpose of merging network attack analyses with counterintelligence and law enforcement investigations.
- Experience with various IT service management tools including performance monitoring and ITSM solutions.
- Experience with Security Information Event Management platforms like Sentinel, Splunk and Sumo Logic.
- Experience working with incident, problem, change and service requests that follow ITIL framework standards.
- Experience provisioning new client services and working through customer onboarding tasks.
- Proven ability to troubleshoot and resolve technical and procedural issues.
- Strong verbal and written communication which will allow you to communicate effectively to customers in non-technical terms.
- Ability to react quickly and professionally with a sense of urgency.
- Ability and desire to work on an on-call rotation for 24-hour support.
Skills
- Security Information Event Management (SIEM)
- Sentinel
- ServiceNow
- Azure
- AWS
- Google Cloud Platform
- MS Defender
- Splunk
- Sumo Logic
- ITIL framework
Location
- Calgary
- Edmonton
- Toronto
- Vancouver
Work Type
- Overnight role
- 24x7 operations
- On-call rotation
Experience Level
- Intermediate
Education Level
- SC-200 Certification
- Security+ Certification
- Network+ Certification
- SSCP Certification
- CCNA Security Certification
Salary/Compensations
- $60,835 - $79,847 per annum
Benefits
- Permanent staff positions
- Paid training
- Career life planning
- Relocation opportunities
- Travel opportunities
- RSP plan
About the Company
- Long View is one of North America’s most dynamic IT providers.
- We create an environment of collaboration and support, of innovation and enthusiasm, of inclusion and belonging.
- Our company’s core pillars are Integrity, Competence, Value, and Fun.
- 90% of Long View team members rated Long View as a good or great place to work!
Equal Opportunity
- Long View is an equal opportunity employer.
- We are fostering an inclusive environment.
- We are committed to taking consistent, positive and lifelong action to be a diverse and equitable workplace because we know that the most effective companies are made up of people with varied identities, experiences and backgrounds.
- If you have any accommodation requests for your interview or the role, please let your friendly Recruiter know.
