Search jobs > Vancouver, BC > Security analyst

Triage Security Analyst (GCS)

Royal Bank of Canada>
VANCOUVER, Canada
Full-time

Job Summary

Job Description

WHAT IS THE OPPORTUNITY?

The role of the Security Analyst, Triage is to provide technical security expertise and support for the threat monitoring & triage team within the Cyber Security Operations Center (CSOC).

This is an important role supporting mission critical enterprise networks and IT services protection for City National Bank (CNB), a subsidiary of RBC.

This role will provide technical expertise and analysis to the proactive and reactive responses to information security threats against CNB’s global environment.

The successful candidate will be performing first line investigation and response actions, including the triaging of security detections and escalation of security incidents.

The Security Analyst, Triage will also maintain awareness of emerging / advanced threats and assist in driving efficient security solutions to address the evolving threat landscape.

This role partners with CNB CSOC & RBC leadership to further the organization's Intelligence-led Security and Resilient Services objectives.

WHAT WILL YOU DO?

Global accountability to respond to critical security incidents / events providing accurate and timely reporting to CSOC and Global Cyber Security (GCS) leadership

Provide support for high risk security incidents escalated from Managed Security Services (MSS), CSOC peers, GCS and other lines of business

Perform investigation and triage activities of security related events that are deemed high risk or pose a significant threat to the organization

Detailed technical research and analysis of relevant security events, often complex in design and their potential impact to the organization

Escalation of threats against the organization to management and Incident Response team as required based on severity level of threats

Develop, distribute and present technical findings with regards to threats, attack vectors and mitigation techniques including the creation and tracking of security metrics

Proactive searching activities to look for unknown threats and suspicious behavior within the environment

Collaborate with partner groups for tuning of monitoring rules and automation of security tasks to keep CSOC's monitoring capabilities relevant and up to date with a minimal level of false positives

WHAT DO YOU NEED TO SUCCEED?

Must have :

  • Experience in performing investigation and triage activities of security related events
  • Experience in all aspects of Security Operations Center and how the organization supports / adds value to the rest of the organization
  • Strong platform knowledge including Microsoft Windows and Unix / Linux Operating Systems and scripting languages (bash, python, regex, PowerShell, etc..)
  • Thorough understanding of SIEM technology and security related controls(IDS / IPS, WAF, NDR / EDR, etc..)
  • Experience with SOAR product
  • Knowledge of cybersecurity frameworks (Cyber Kill Chain, NIST, MITRE ATT&CK, etc..)
  • Availability for rotating pager duty support for after hours, holidays

Nice-to-have :

  • Experience with malware analysis
  • Strong Networking knowledge with TCP / IP packet level knowledge
  • Bachelor’s degree in Computer Science or related field
  • Industry recognized certifications (ISC2, SANS, ISACA, etc..)

What’s in it for you?

We thrive on the challenge to be our best, progressive thinking to keep growing, and working together to deliver trusted advice to help our clients thrive and communities prosper.

We care about each other, reaching our potential, making a difference to our communities, and achieving success that is mutual.

A comprehensive Total Rewards Program including bonuses and flexible benefits, competitive compensation, commissions, and stock where applicable

Leaders who support your development through coaching and managing opportunities

Ability to make a difference and lasting impact

Work in a dynamic, collaborative, progressive, and high-performing team

A world-class training program in financial services

Flexible work / life balance options

Opportunities to do challenging work

LI-HYBRID

LI-POST

Job Skills

Confidentiality, Cyber Security Management, Decision Making, Detail-Oriented, Encryption Software, Group Problem Solving, High Impact Communication, Information Security Management, Information Technology Security

Additional Job Details

Address :

VANCOUVER MAIN BRANCH (B), 1055 GEORGIA ST W : VANCOUVER

City : VANCOUVER

VANCOUVER

Country : Canada

Canada

Work hours / week : 37.5

37.5

Employment Type : Full time

Full time

Platform :

TECHNOLOGY AND OPERATIONS

Job Type : Regular

Regular

Pay Type : Salaried

Salaried

Posted Date : 2024-11-14

2024-11-14

Application Deadline :

2024-11-29

Note : Applications will be accepted until 11 : 59 PM on the day prior to the application deadline date above

I nclusion and Equal Opportunity Employment

At RBC, we embrace diversity and inclusion for innovation and growth. We are committed to building inclusive teams and an equitable workplace for our employees to bring their true selves to work.

We are taking actions to tackle issues of inequity and systemic bias to support our diverse talent, clients and communities.

We also strive to provide an accessible candidate experience for our prospective employees with different abilities. Please let us know if you need any accommodations during the recruitment process.

Join our Talent Community

Stay in-the-know about great career opportunities at RBC. Sign up and get customized info on our latest jobs, career tips and Recruitment events that matter to you.

Expand your limits and create a new future together at RBC. Find out how we use our passion and drive to enhance the well-being of our clients and communities at jobs.rbc.com .

1 day ago
Related jobs
Royal Bank of Canada>
Vancouver, British Columbia

The role of the Security Analyst, Triage is to provide technical security expertise and support for the threat monitoring & triage team within the Cyber Security Operations Center (CSOC). The Security Analyst, Triage will also maintain awareness of emerging/advanced threats and assist in driving eff...

RBC - Royal Bank
Vancouver, British Columbia

Codes of Conduct, Communication, Critical Thinking, Cyber Security Management, Decision Making, Firewall Management, Firewalls, Group Problem Solving, Information Security, Information Technology Security, Long Term Planning, Network Defense, Network Operations, Network Security, Palo Alto Firewalls...

0000050007 Royal Bank of Canada
Vancouver, British Columbia

Senior Cyber Security Analyst (GG08), IAM Onboarding (GCS). Confidentiality, Cyber Security Management, Decision Making, Detail-Oriented, Encryption Software, Group Problem Solving, High Impact Communication, Information Security Management, Information Technology Security. As a Senior Cyber Securit...

RBC - Royal Bank
Vancouver, British Columbia

Decision Making, Group Problem Solving, Identity Access Management (IAM), Information Security, Information Technology Security, IT Systems Integration, Negotiation, Security Controls, Security Information, Security Information and Event Management (SIEM), SIEM Tools, Software Development, Software ...

0000050007 Royal Bank of Canada
Vancouver, British Columbia

Decision Making, Group Problem Solving, Identity Access Management (IAM), Information Security, Information Technology Security, IT Systems Integration, Negotiation, Security Controls, Security Information, Security Information and Event Management (SIEM), SIEM Tools, Software Development, Software ...

RBC - Royal Bank
Vancouver, British Columbia

The Network Security Integration team is looking for a Governance, Risk and Compliance professional who is experienced with IT security audits, security compliance checks, and responding to queries. Communication, Critical Thinking, Cyber Security Management, Decision Making, Group Problem Solving, ...

Royal Bank of Canada>
Vancouver, British Columbia

Decision Making, Group Problem Solving, Identity Access Management (IAM), Information Security, Information Technology Security, IT Systems Integration, Negotiation, Security Controls, Security Information, Security Information and Event Management (SIEM), SIEM Tools, Software Development, Software ...

Softchoice
Vancouver, British Columbia
Remote

Support Engineer - Network and Security. CCNP Route/Switch or CCNP Security certification with equivalent security experience. Managed Services Operations team in Oakville to help support services based around Network and Security products. The Engineer’s primary roles will be to support our clients...

Palo Alto Networks
Vancouver, British Columbia
Remote

As a domain consultant for network security transformation, you provide technical expertise and guidance in customers' network security and zero trust journey. You evangelize our industry leadership in on-prem, cloud, and security services that establish Palo Alto Networks as a customer’s cybersecur...

City of Vancouver
Vancouver, British Columbia

The Senior Technical Specialist – Network Security will be responsible for providing guidance and working on complex technical and analytic work relating to the investigation, design, configuration, implementation, monitoring and support of the data network and associated infrastructure. The Senior ...