Talent.com
Threat Hunting & Detection Content Analyst
Threat Hunting & Detection Content AnalystCGI • Vancouver, Canada
Les candidatures ne sont plus acceptées
Threat Hunting & Detection Content Analyst

Threat Hunting & Detection Content Analyst

CGI • Vancouver, Canada
Il y a plus de 30 jours
Type de contrat
  • Temps plein
Description de poste

Position Description:

The Global Security Operations Center (GSOC) Threat Hunting & Detection Content Engineering Analyst contribute to strengthening our security posture on multiple facets by developing and maintaining advanced threat detection content and conducting proactive threat hunting activities. This person plays a critical role in proactively identifying and neutralizing threats, thereby reducing risk, enhancing incident response capabilities and ensuring security threats can be identified and translated into high fidelity & actionable alerts for security investigation.

Your future duties and responsibilities:

The Threat Hunting & Detection Content Analyst is responsible for the following activities:

Threat Hunting
• Research tactics, techniques and procedures (TTPs) to plan threat hunting execution
• Participate in the planning and execution of our threat hunting program
• Perform research and development augmenting our capabilities
• Perform proactive threat identification & hunting activities and follow up based on the result
• Ad-hoc Incident support

Security Detection Content Engineering
• Participate in the planning and execution of our security detection content engineering program
• Translate intelligence and incident response report into actionable detection capabilities
• Develop new and novel detection mechanisms, behavioral detection use cases, IOCs, etc.
• Perform research and development augmenting our capabilities.
• Identify new and emerging trends in threat actors' TTPs
• Ad-hoc Incident support

Threat Hunting & Detection Content Service Management
• Assist in producing operational report for effectiveness of the detection content & threat hunting service
• Plan and deliver initiatives to streamline the services operations
• Assist to manage the service operations
• Establish and improve workflow, procedure, guideline for the services and automate the processes to optimize the teams’ operations

Automation and Integration
• Initiate automation idea and deliver with Automation team to improve the operation efficiency and the quality of the detection content and threat hunting services.
• Plan and deliver integration between different technologies platforms to improve our detection content and threat hunting services.

Other Responsibilities
• Participate in innovation projects including the building, deployment and evaluation of new technologies
• Participate in technology evaluation in collaboration with other stakeholders.
• Provide advanced threat awareness and education to members of the team

Required qualifications to be successful in this role:

The candidate should be able to demonstrate a thorough understanding of cyber security especially in threat hunting, security detection content engineering, digital forensic, incident response and threat intelligence areas. The candidate must possess an in-depth knowledge of modern threats, threat actors’ TTPs, threat hunting and detection content tools/platforms and methodologies.

Education and Experience:
• 5+ years of cyber security operations experience and at least 2+ years hands-on experience in threat hunting and security detection content engineering.
• Bachelor’s degree in computer engineering, Computer Science, Information Technology, Cyber Security, or related field; advanced degree preferred.

Qualifications:
• Proficient in using threat hunting tools such as Endpoint Detection and Response (EDR) & Log Analysis Platforms (SIEM)
• General Knowledge of security tools such as TIP, NGFW, Sandbox, SASE, SIEM, EDR, WAF etc
• Experience with scripting and programming languages (e.g., Python, Bash, etc.) for automation and analysis
• Knowledge of various standard detection content format (Sigma, YARA, Snort Rule etc)
• Knowledge of cyber security principles, practices, technologies, and standards
• Strong knowledge of current threat, vulnerabilities and threat actors TTPs
• Strong understanding of cybersecurity frameworks (e.g., MITRE ATT&CK, Cyber Kill Chain)
• Knowledge of Windows, Linux and Mac Operating system
• Strong knowledge of threat hunting, detection content and preferably also Incident Response, digital forensics and Threat Intelligence
• Proficient in spoken and written English

Certifications:
• eCTHP, GCFA, GREM, OSCP, CISSP or other reputable, technical and defensive/offensive focused certification are preferred

CGI is providing a reasonable estimate of the pay range for this role. The determination of this range includes factors such as skill set level, geographic market, experience and training, and licenses and certifications. Compensation decisions depend on the facts and circumstances of each case. A reasonable estimate of the current range is $60,–$,. This role is an existing vacancy.

#LI-KM1

Skills:

  • Cyber Security Consulting
Créer une alerte emploi pour cette recherche

Threat Hunting Detection Content Analyst • Vancouver, Canada

Offres similaires
Tokenomics Research Analyst (Remote) - GreenDev Inc.

Tokenomics Research Analyst (Remote) - GreenDev Inc.

GreenDev Inc. • richmond, bc, ca
Télétravail
Temps plein
Canadian based Impact-focused investment management firm dedicated to investing in enterprises and sustainable infrastructure assets within the circular economy.Our investment strategy aims to gene...Voir plus
Dernière mise à jour : il y a 5 jours • Offre sponsorisée
Statistical Analyst - new westminster

Statistical Analyst - new westminster

Tigermed • new westminster, bc, ca
Temps plein
Collaborate with statisticians and data managers to ensure data accuracy and consistency.Support ad-hoc data requests, clinical data reviews, and data validation activities.Continuously improve pro...Voir plus
Dernière mise à jour : il y a 17 jours • Offre sponsorisée
Cyber Threat Analyst - Canada

Cyber Threat Analyst - Canada

Hornetsecurity • Vancouver
Temporaire
Analyste en cybersécurité – Canada.Nous sommes une entreprise SaaS de cybersécurité en forte croissance, dédiée à la protection de millions d’utilisateurs dans le monde entier.Dans le cadre de notr...Voir plus
Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
Threat & Vulnerability Analyst — Hybrid (12‑Month Contract)

Threat & Vulnerability Analyst — Hybrid (12‑Month Contract)

Ignite Technical Resources • Vancouver
Temps plein +1
A leading recruitment agency is seeking an IT Security Analyst in Vancouver for a 12-month hybrid contract.This role involves protecting enterprise IT assets, conducting risk analyses, and collabor...Voir plus
Dernière mise à jour : il y a 10 jours • Offre sponsorisée
Network & Security Analyst - NEW!

Network & Security Analyst - NEW!

Go REcruitment • Vancouver, Metro Vancouver Regional District, Canada
Temps plein
Netskrt’s eCDN managed service is comprised of three major components: intelligent content collection, staging and distribution; adaptive networking, leveraging connectivity as and when available; ...Voir plus
Dernière mise à jour : il y a 23 jours • Offre sponsorisée
Guidewire PolicyCenter Developer/Business Analyst - delta

Guidewire PolicyCenter Developer/Business Analyst - delta

Pacer Group • delta, bc, ca
Temps plein
Guidewire Business Analyst (PolicyCenter).Business Analyst with strong P&C insurance expertise and prior Guidewire PolicyCenter implementation experience.Skilled in requirements gathering, analysis...Voir plus
Dernière mise à jour : il y a 23 heures • Offre sponsorisée
Senior Analyst, Cyber Security

Senior Analyst, Cyber Security

Canfor • Vancouver, Metro Vancouver Regional District, Canada
Temps plein
Vancouver H/O - Canfor/CWPM_1000.You’re an analytical problem-solver who excels at effective and confident communications.You make informed decisions by evaluating several information sources and c...Voir plus
Dernière mise à jour : il y a 12 jours • Offre sponsorisée
Threat Intelligence & Exposure Management Lead

Threat Intelligence & Exposure Management Lead

lululemon • Vancouver, Metro Vancouver Regional District, Canada
Temps plein
A leading performance apparel company in Vancouver is seeking a Manager, Threat Intelligence & Exposure Management.This role involves overseeing team operations, managing cyber threats, and ensurin...Voir plus
Dernière mise à jour : il y a 19 jours • Offre sponsorisée
Workday Integrations Analyst - delta

Workday Integrations Analyst - delta

Focus on WD • delta, bc, ca
Temps plein
We are looking for a Workday Technical Analyst to join a growing team and play a key role in taking Workday to the next level across the organisation.This is a hands-on technical role where you wil...Voir plus
Dernière mise à jour : il y a 6 jours • Offre sponsorisée
Information Security Analyst

Information Security Analyst

Fraser Health • Surrey, Metro Vancouver Regional District, Canada
Temps plein
The salary range for this position is CAD $38.Full Time Information Security Analyst.In this role, you will play a critical role in protecting the systems and data that support patient care within ...Voir plus
Dernière mise à jour : il y a 6 jours • Offre sponsorisée
Asset Protection Analyst: Investigations & Intelligence

Asset Protection Analyst: Investigations & Intelligence

Lululemon Athletica • Vancouver
Temps plein
A leading performance apparel company in Vancouver is looking for an Asset Protection Coordinator who will play a critical role in the Global Investigations & Intelligence team.This position involv...Voir plus
Dernière mise à jour : il y a 27 jours • Offre sponsorisée
Content Operations Specialist (Contentful)

Content Operations Specialist (Contentful)

Quietly • Vancouver, Metro Vancouver Regional District, Canada
Temps partiel +1
Content Operations Specialist (Contentful).We’re looking for a strategic Content Operations Specialist who thrives at the intersection of creativity and technology.The successful candidate will be ...Voir plus
Dernière mise à jour : il y a 23 jours • Offre sponsorisée
Workday Integrations Analyst

Workday Integrations Analyst

Focus on WD • delta, bc, ca
Temps plein
We are looking for a Workday Technical Analyst to join a growing team and play a key role in taking Workday to the next level across the organisation.This is a hands-on technical role where you wil...Voir plus
Dernière mise à jour : il y a 6 jours • Offre sponsorisée
Information Security Risk Analyst

Information Security Risk Analyst

StackAdapt • Vancouver, Metro Vancouver Regional District, Canada
Temps plein
StackAdapt is the leading technology company that empowers marketers to reach, engage, and convert audiences with precision.With 465 billion automated optimizations per second, the AI-powered Stack...Voir plus
Dernière mise à jour : il y a 6 jours • Offre sponsorisée
Senior Threat Hunter: ML-Driven Detections & Simulations

Senior Threat Hunter: ML-Driven Detections & Simulations

Fortinet, Inc. • Burnaby
Temps plein
A cybersecurity firm is seeking a Senior Threat Hunting Specialist in Burnaby, Canada.The ideal candidate will have over 5 years of experience in threat hunting and SOC roles, along with strong scr...Voir plus
Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
Information Security Analyst

Information Security Analyst

MEC • Vancouver
Temps plein +1
At MEC, we believe the transformative power of the outdoors makes us better humans and drives us to do good for the planet.We are here to inspire and support everyone in getting active outside, mat...Voir plus
Dernière mise à jour : il y a 6 jours • Offre sponsorisée
Video Security Systems Analyst & Commissioning Specialist

Video Security Systems Analyst & Commissioning Specialist

Paladin Security Group Ltd • Burnaby
Temps plein
A leading security firm in Burnaby is seeking a Security Systems Analyst & Commissioning Specialist to oversee the commissioning of video surveillance systems.Responsibilities include conducting si...Voir plus
Dernière mise à jour : il y a 6 jours • Offre sponsorisée
Senior Incident Response Analyst - Cyber Defense Leader

Senior Incident Response Analyst - Cyber Defense Leader

Raymond James Ltd. • Vancouver, Metro Vancouver Regional District, Canada
Temps plein
A leading Canadian investment firm is seeking a Senior Analyst for Incident Response in Vancouver.The role involves managing security incidents and threats, analyzing malware, and collaborating wit...Voir plus
Dernière mise à jour : il y a 6 jours • Offre sponsorisée