Analyst, Cyber Defense

88017
Toronto, ON
Contract
Yesterday

Analyst, Cyber Defense
3 days on site – Toronto
6 months

1.Description

 Our client is bringing a cyber defense analyst to support the execution of the cyber vision and strategy, providing technical and business advice, support and services to all  client divisions.

To own the development and execution of the cyber awareness and training program and all associated campaigns and programs that may spin off from them.

To define, develop and support cyber awareness and training programs and initiatives, engaging with teams across the organization to build alignment on key projects and develop execution roadmaps.

The  client reserves the right to disqualify any resource proposed by a Supplier if that resource has previously been engaged as a contractor with the  client.

2. Assignment Duties

Incident Response & Monitoring (SOC)

  • Monitor and analyze security alerts from various sources, including SIEM (e.g., Splunk, Sentinel), EDR (e.g., CrowdStrike, Defender), and IDS/IPS to identify potential threats.
  • Perform initial triage and investigation of security incidents, determining scope, urgency, and potential impact on organizational assets.
  • Draft and refine Incident Response Playbooks to ensure standardized and efficient handling of common attack vectors (e.g., Phishing, Ransomware, Brute Force).
  • Collaborate with Infrastructure and DevOps teams to implement containment strategies and remediation actions during active security breaches.
  • Translate complex technical findings into executive summaries and post-incident reports (PIR) for stakeholders and leadership.
  • Threat Hunting & Cyber Defense
  • Proactively hunt for indicators of compromise (IOCs) and suspicious patterns within the network that may bypass traditional security controls.
  • Utilize the MITRE ATT&CK framework to map adversary tactics and techniques, identifying gaps in current detection capabilities.
  • Conduct vulnerability research and analysis of emerging threats to develop custom detection rules (YARA, Sigma, or KQL).

 

  • Assess IT and OT environments (including SCADA and Industrial Control Systems) for security weaknesses, ensuring alignment with standards like ISA-62443.
  • Perform log analysis across diverse data sources (Firewalls, VPNs, Active Directory) to reconstruct attack timelines and improve defense-in-depth strategies.

Experience and Qualifications
 

  • A bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related technical field.
  • 5+ years of demonstrated experience in Cybersecurity Operations, Incident Response, or a technical Cyber Defense role.
  • 5+ years of experience using SIEM and EDR tools to detect and mitigate sophisticated cyber-attacks.
  • 5+ years of experience in technical documentation, including Incident Reports, Threat Intel Summaries, and Standard Operating Procedures (SOPs).
  • Proven experience in Digital Forensics or deep-dive packet analysis (e.g., Wireshark) to identify malicious network traffic.
  • Advanced competency in security tools and scripting languages (e.g., Python, PowerShell, or Bash) for automating defensive tasks.
  • Extensive experience in creating data-flow diagrams and attack-tree workflows to visualize potential breach points.
  • Strong analytical and investigative thinking skills, with the ability to “think like an attacker.”
  • Ability to influence security posture by working effectively with IT teams to patch vulnerabilities and harden systems.
  • Excellent incident management skills, with the ability to remain calm and organized under the pressure of an active breach.
  • Excellent communication skills, capable of explaining “the how and why” of a threat to both technical engineers and non-technical business leaders.

Preferred Certifications

• GIAC Certified Incident Handler (GCIH) or GIAC Certified Detection Analyst (GCDA).
• Certified Information Systems Security Professional (CISSP).
• CompTIA CySA+ or EC-Council Certified Threat Intelligence Analyst (CTIA).
 

The pay range that the employer reasonably expects to pay for this position is between CA$40.00 and CA$64.00

Our voluntary benefits offering includes medical, dental, vision and retirement benefits.

This posting is for an existing vacancy.

If you believe this post to be fraudulent, please report by clicking here

Not interested in this position, but know somebody who might be? Check out our Referral Reward Program, referrals are a big secret behind our success. As always, we’re on the lookout for great people. And we know that you know great people!

Tundra Technical Solutions is among North America’s leading providers of Staffing and Consulting Services. Our success and our clients’ success are built on a foundation of service excellence. We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other  legally protected characteristics. We welcome and encourage diversity in the workplace.