Talent.com
Bilingual Security Analyst

Bilingual Security Analyst

HaysMontreal, QC, Canada
2 days ago
Job type
  • Full-time
Job description

Job Title : Security AnalystJob Overview : We are seeking a highly skilled and motivated Security Analyst to join our security operations team. The ideal candidate will have a strong background in threat detection, incident response, network security, and vulnerability management. As an individual contributor, the Security Analyst will play a critical role in investigating and responding to complex security incidents, analyzing logs, conducting forensic investigations, and contributing to proactive threat management efforts. This role offers the opportunity to develop expertise in cutting-edge security technologies and techniques within a collaborative and dynamic team environment.Key Responsibilities : Threat Detection & Monitoring : Monitor security alerts and logs from multiple security tools, including SIEM platforms, IDS / IPS, firewalls, and endpoint protection systems. Escalate complex threats to higher-tier analysts and provide in-depth analysis as necessary.Incident Response : Respond to security incidents, malware infections, and network intrusions. Investigate, analyze, and document incidents, providing actionable insights and recommendations for containment and remediation.Network Security : Assist in the identification of potential network vulnerabilities and contribute to the implementation of effective security measures. Conduct in-depth analysis of network traffic and protocols to detect suspicious activity and mitigate risks.Forensics & Evidence Collection : Collect and preserve evidence related to security incidents, ensuring proper chain of custody and adherence to forensic best practices. Conduct forensic investigations to uncover root causes and timelines of security events.Log Management & Analysis : Analyze and correlate logs from various sources to detect security anomalies, investigate suspicious activity, and identify trends that may indicate emerging threats.Vulnerability Management : Support vulnerability scanning efforts, assisting in the identification, triage, and prioritization of vulnerabilities. Collaborate with IT and engineering teams to ensure timely patching and remediation.Threat Intelligence : Contribute to the gathering and analysis of threat intelligence to stay informed about the latest attack vectors, tactics, techniques, and procedures (TTPs). Use threat intelligence to improve detection capabilities and overall security posture.Critical Thinking & Problem Solving : Analyze complex security issues, determine root causes, and develop solutions for mitigation. Collaborate with other security team members to resolve incidents and improve processes.Collaboration & Reporting : Work closely with internal teams (e.g., IT, DevOps, management) to communicate findings, share intelligence, and recommend security improvements. Provide clear and concise reports to leadership and stakeholders on security incidents and trends.Key Skills & Qualifications : Threat Detection & Incident Response : Strong understanding of security monitoring tools, threat detection techniques, and incident response procedures. Experience analyzing security alerts and responding to security incidents.Network Security Knowledge : In-depth knowledge of networking concepts, including protocols (TCP / IP, DNS, HTTP, etc.), firewalls, VPNs, and IDS / IPS. Ability to analyze network traffic and identify signs of compromise.Log Management & Forensics : Experience working with log management platforms and conducting forensic investigations, including evidence collection and triage.Vulnerability Management : Familiarity with vulnerability scanning tools and patch management processes.Threat Intelligence : Basic understanding of threat intelligence sources and frameworks for enhancing detection and response capabilities.Certifications : Microsoft Certifications : SC200, SC300, SC900, SC401Network Certifications : NSE1, NSE2, CCNA, Network+Security Certifications : CompTIA Security+, CompTIA CySA+, GIAC GSECCritical Thinking & Problem-Solving : Strong analytical skills and ability to approach security challenges with a methodical, logical mindset.Communication : Ability to clearly communicate complex technical issues to both technical and non-technical stakeholders. Strong documentation skills for incident reporting and knowledge sharing.Collaboration & Teamwork : Ability to work effectively as part of a team, collaborating with cross-functional teams, and sharing knowledge and best practices.Preferred Experience : Experience with SIEM platforms and other security monitoring tools.Familiarity with endpoint protection tools, network security tools (firewalls, IDS / IPS), and vulnerability management platforms.Hands-on experience with forensics tools (e.g., EnCase, FTK, Autopsy).Exposure to cloud security concepts and platforms (e.g., AWS, Azure).Attributes & Characteristics : Detail-Oriented : Ability to notice the smallest details when reviewing logs, network traffic, or security incidents to uncover potential threats.Self-Motivated : Able to take ownership of tasks and incidents, with minimal supervision, while continuously striving to improve skills and knowledge.Resilient : Can handle high-pressure situations, particularly during active incidents, and remain calm while working towards a resolution.Proactive : Eager to stay ahead of emerging security trends and threats through continuous learning, research, and professional development.Work Environment : Fast-paced, high-energy environment with a strong emphasis on teamwork, innovation, and continuous improvement.Opportunity for career growth and specialization in advanced security areas such as threat hunting, digital forensics, and incident response.Ability to actively participate in an on-call after-hours rotation