Jobs
>
Kitchener

    Security Incident Response Analyst - Kitchener, Canada - Oracle

    Oracle
    Default job background
    Regular Employee
    Description

    The Senior Security Incident Response Analyst is tasked with supervising our security tools, performing investigations of raised notable events, and performing our processes. This role will also be responsible for supplying the SOC Security Tools and detection roadmaps and collaborating with the SOC Management team and external teams on key initiatives.

    This opportunity requires a few days a week in the Kitchener, Ontario office with Sec Ops peers

    Career Level - IC3

    Responsibilities:

    • Performing investigation of intensified notable events

    • Initial collection of evidence related to called-out security events

    • Collection of evidence related to compliance audits

    • Validation and regular review of processes and procedures

    • Identification, issue, and follow-up on false positives

    • Process initial mitigation and containment procedures

    • Create and maintain reporting related to security events

    • Coordinate with service and operations teams to validate security events and anomalous activity

    • Resolve and report on possible causes of security events and alerts

    • Operate security tools for continual monitoring and analysis of system/network activity to identify malicious activity

    • Assist in the construction of security alerts and processes based on knowledge gained from daily monitoring and triage

    • Advise designated managers, and responders of suspected cyber incidents including the event's history, status, and potential impact

    • Supervise external data sources to maintain basic knowledge of threat conditions

    • Recognize a possible security violation and take appropriate action to raise the incident, as required

    Knowledge

    • Solid grasp of:

    • Computer networking concepts and protocols, and network security methodologies

    • Host/network access control mechanisms

    • Intrusion detection methodologies and techniques

    • How traffic flows across the network (TCP/IP, OSI, ITIL)

    • System and application security threats and vulnerabilities

    • Types of network communications (LAN, WAN, MAN, etc)

    • File extensions (.zip, .sh, .pcap, .bat, .dll, .py, etc)

    • Interpreted and compiled computer languages

    • Common charge vectors

    • Attack classes (passive, active, insider, distributed, etc)

    • Incident response and handling methodologies

    • Authentication, authorization, and access control methods

    • Information technology (IT) security principles and methods

    • Network traffic analysis methods

    • Operating systems

    • Cyber attackers

    • Defense-in-depth principles

    • System administration, network, and operating system hardening techniques

    • Cyber attack stages

    • Network security architecture concepts

    • Windows/Unix ports and services

    • Operating system command-line tools

    • Network protocols

    • Running knowledge of cyber threats and vulnerabilities

    • Understanding security events related to:

    • Operating system (Linux and Windows) logs

    • Database logs

    • VPN logs

    • Knowledge of adversarial tactics, techniques, and procedures

    • Understanding the use of the following:

    • Network tools (ping, traceroute, nmap, etc)

    • Host base tools (Tanium, basic Linux and Windows native tools)

    • SIEM (Splunk, ELK, Lumberjack, Splunk Enterprise Security, etc)

    • Understanding of cybersecurity and privacy principles and related organizational requirement

    Skills

    • Detecting host and network-based intrusions via intrusion detection technologies

    • Using protocol analyzers

    • Recognizing and categorizing types of vulnerabilities and associated attacks

    • Reading and interpreting signatures

    • Conducting trend analysis

    • Evaluating information for reliability, validity, and relevance

    • Identifying cyber threats that may jeopardize the organization and/or partner interests

    • Preparing and presenting briefings

    • Providing analysis to aid writing phased after action reports

    • Using Boolean operators to construct simple and sophisticated queries

    • Using multiple analytic tools, databases, and techniques

    • Using multiple search engines (., Google, Yahoo, LexisNexis, DataStar) and tools in conducting open-source searches

    • Applying virtual collaborative workspaces and/or tools (Zoom, JIRA, Confluence, Oradocs, Slack, etc)

    • Performing packet-level analysis

    • Using a SIEM to detect, research, and perform initial triage of security events

    • Exercising good judgment in calling out security events

    Abilities

    • Think critically

    • Ability to think like threat actors

    • Apply techniques for detecting host and network-based intrusions using intrusion detection technologies

    • Interpret the information collected by network tools

    • Recommend analytic approaches or solutions to problems and situations for which information is incomplete or for which no precedent exists

    • Effectively collaborate with virtual and remote teams

    • Evaluate information for reliability, validity, and relevance

    • Exercise judgment when policies are not well-defined

    • Function reliably in a dynamic, fast-paced environment

    • Ability to function in a collaborative environment, seeking continuous consultation with other analysts and guides, both internal and external to the organization, to demonstrate analytical and technical expertise

    • Recognize and mitigate cognitive biases that may affect analysis.

    Other Requirements and Expectations

    • Other tasks and duties as assigned

    • Work effectively within a remote team including effective, constant, and collaborative communication with all members of the NSGBU SOC

    Range and benefit information provided in this posting are specific to the stated locations only

    null

    Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
    Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.


  • BlackBerry Waterloo, Canada

    Worker Sub-Type: · Regular · **Job Description**: · Security Response Analyst II · BlackBerry AI-Driven Cybersecurity protects organizations with a modern unified endpoint security solution. Our end-to-end approach to cybersecurity is deeply rooted in Cylance AI and machine learn ...


  • BlackBerry Waterloo, Canada

    Worker Sub-Type: · Regular · **Job Description**: · Security Response Analyst II · BlackBerry AI-Driven Cybersecurity protects organizations with a modern unified endpoint security solution. Our end-to-end approach to cybersecurity is deeply rooted in Cylance AI and machine learn ...


  • Intellinet Waterloo, Canada

    IT Asset Management Analyst · Job Summary · Coreio is looking for an IT Asset Management Analyst to maintain asset information in ServiceNow. Asset entry will include Hardware Asset Management information and is critical to the ongoing success of our client. · **Responsibilities* ...

  • A&R Solutions

    Field Support Analyst

    2 weeks ago


    A&R Solutions Waterloo, Canada

    **Field Support Analyst, A&R Solutions** · **Position overview**: · Reporting to the Regional Field Manager, the field support analyst is responsible for supporting IT operations across regional customer sites. Field support analysts must troubleshoot, diagnose, repair, and maint ...


  • A&R Solutions Waterloo, Canada

    **Field Support Analyst, A&R Solutions** · **Position overview**: · Reporting to the Regional Field Manager, the field support analyst is responsible for supporting IT operations across regional customer sites. Field support analysts must troubleshoot, diagnose, repair, and maint ...


  • MarshallZehr Waterloo, Canada

    412 ALBERT STREET, WATERLOO, ONTARIO, CANADA, N2L 3V3 · FULL-TIME. JANUARY 27, 2023 · Description · **Analyst, Real Estate Debt** · *** · **Who is MarshallZehr?** · **MarshallZehr Group Inc ("MZ") **provides mortgage lending and customized financial solutions for high-performing ...

  • The MEARIE Group

    Regulatory Analyst

    3 weeks ago


    The MEARIE Group Kitchener, Canada

    **REGULATORY ANALYST** · Enova Power Corp. is the trusted energy provider, dedicated to delivering safe and reliable energy solutions that power our communities forward. · Serving more than 157,000 residential and business customers in the City of Kitchener, City of Waterloo, Tow ...


  • MarshallZehr Waterloo, Canada

    **Who is MarshallZehr?** · **MarshallZehr Group Inc. ("MZ")** provides customized construction and development financial solutions for high-performing real estate developers. Since 2008, MarshallZehr has grown to become one of Canada's most trusted real estate capital partners. W ...


  • Equitable CA Waterloo, Canada

    At Equitable, we realize that your work life is not just about performing a job; it's about being part of a workplace that helps you grow and reach your full potential. Within our friendly and collaborative work environment, we recognize that the key to our growth and success is ...

  • Labstat International Inc.

    Analyst

    3 weeks ago


    Labstat International Inc. Kitchener, Canada

    At Labstat our strength is our people. For over 45 years we are the premier CRO's in the Kitchener-Waterloo region. Today Labstat International is a member of the Certified group of companies and we are recognized as an international "Center of Excellence". We are the world's lar ...


  • MarshallZehr Waterloo, Canada

    412 ALBERT STREET, WATERLOO, ONTARIO, CANADA, N2L 3V3 · FULL-TIME. AUGUST 4, 2023 · Description · **Who is MarshallZehr?** · *** · **MarshallZehr Group Inc. ("MZ")** provides customized construction and development financial solutions for high-performing real estate developers. S ...


  • The MEARIE Group Kitchener, Canada

    **BUSINESS ANALYST, CUSTOMER OPERATIONS** · Enova Power Corp. is the trusted energy provider, dedicated to delivering safe and reliable energy solutions that power our communities forward. · Serving more than 157,000 residential and business customers in the City of Kitchener, Ci ...

  • MarshallZehr

    Accounting Analyst

    3 weeks ago


    MarshallZehr Waterloo, Canada

    412 ALBERT STREET UNIT 100, WATERLOO, ONTARIO, CANADA, N2L 3V3 · FULL-TIME. NOVEMBER 20, 2023 · Description · **Accounting Analyst** · *** · **Who is MarshallZehr?** · **MarshallZehr Group Inc ("MZ") **provides customized construction and development financial solutions for high- ...


  • MarshallZehr Waterloo, Canada

    412 ALBERT STREET, WATERLOO, ONTARIO, CANADA, N2L 3V3 · FULL-TIME. JULY 14, 2023 · Description · **Who is MarshallZehr?** · *** · **MarshallZehr Group Inc. ("MZ")** provides customized construction and development financial solutions for high-performing real estate developers. Si ...


  • MarshallZehr Waterloo, Canada

    412 ALBERT STREET, WATERLOO, ONTARIO, CANADA, N2L 3V3 · FULL-TIME. JUNE 5, 2023 · Description · **Who is MarshallZehr?** · *** · **MarshallZehr Group Inc. ("MZ")** provides customized construction and development financial solutions for high-performing real estate developers. Sin ...


  • Equitable Life of Canada Waterloo, Canada

    At Equitable Life of Canada, we realize that your work life is not just about performing a job; it's about being part of a workplace that helps you grow and reach your full potential. Within our friendly and collaborative work environment, we recognize that the key to our growth ...

  • eSentire

    SOC Analyst Ii

    2 weeks ago


    eSentire Waterloo, Canada

    eSentire is the global leader in Managed Detection and Response (MDR), keeping organizations safe from cyber attacks that technology alone cannot prevent. Our 24x7 Security Operations Center (SOC), staffed by elite security analysts, hunts, investigates, and responds in real-time ...


  • Wesco Kitchener, Canada

    As a Analyst - Pricing Global Accounts you will be responsible to set optimal price levels for new and existing customers and work with a cross functional team to secure profitable global accounts business, maintain pricing integrity and improve margin opportunities. You will use ...


  • University of Waterloo Waterloo, Canada

    Overview: · The Manager, Enterprise system is responsible for strategic planning, execution and maintenance of the department's Enterprise system to support Campus Housing's business operations. Reporting to the Assistant Director, Shared Services, this position leads and develop ...

  • Certified Laboratories Inc

    Analyst Assistant

    2 weeks ago


    Certified Laboratories Inc Kitchener, Canada

    At Labstat our strength is our people. For over 45 years we are the premier CRO's in the Kitchener-Waterloo region. Today Labstat International is a member of the Certified group of companies and we are recognized as an international "Center of Excellence". We are the world's lar ...