Incident Response Specialist

Integriti Group Inc.

Toronto

On-site

CAD 90,000 - 130,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Integriti Group Inc. is seeking an experienced security analyst in Toronto to monitor, triage, and investigate cybersecurity incidents across SIEM, EDR/XDR, and cloud platforms.

You will validate incidents, determine impact, and document findings with actionable remediation guidance, supporting threat hunting and IOC enrichment as needed.

Qualifications

  • 3–5 years in cybersecurity with 2–3 years in incident response, SOC, or investigations.
  • Strong incident response lifecycle knowledge: prep, identification, containment, eradication, recovery, lessons learned.
  • Experience with phishing, malware, endpoint compromise, suspicious authentication, privilege misuse, cloud security events.

Responsibilities

  • Monitor, assess, and triage security alerts and events from SIEM, EDR/XDR, email security, cloud security, and other monitoring platforms.
  • Validate security incidents and determine severity, scope, and business impact.
  • Conduct end-to-end investigations of cybersecurity incidents including phishing, malware, ransomware, account compromise, insider threat, unauthorized access, data exfiltration, and cloud-related incidents
  • Document investigative findings, timelines, indicators of compromise (IOCs), and remediation recommendations.
  • Contribute to use case development, threat hunting, and IOC enrichment where needed.

Skills

Incident response
SOC operations
Log analysis
Threat hunting
KQL
SOAR/playbooks
IOCs
Cloud security

Education

Bachelor's degree in CS/Cybersecurity

Tools

SIEM
EDR/XDR
Azure
GCP

Job description

Responsibilities:
  • Monitor, assess, and triage security alerts and events from SIEM, EDR/XDR, email security, cloud security, and other monitoring platforms.
  • Validate security incidents and determine severity, scope, and business impact.
  • Conduct end-to-end investigations of cybersecurity incidents including phishing, malware, ransomware, account compromise, insider threat, unauthorized access, data exfiltration, and cloud-related incidents
  • Document investigative findings, timelines, indicators of compromise (IOCs), and remediation recommendations.
  • Contribute to use case development, threat hunting, and IOC enrichment where needed.
Required Skills:
  • 3–5 years of cybersecurity experience, with at least 2–3 years in incident response, SOC, or cyber investigations.
  • Strong understanding of the incident response lifecycle: preparation, identification, containment, eradication, recovery, and lessons learned.
  • Hands-on experience with common incident categories such as phishing, malware, endpoint compromise, suspicious authentication activity, privilege misuse, and cloud security events
  • Hands-on experience with:
    • SIEM, EDR/XDR, Identity & cloud logs (Azure, GCP)
  • Strong skills in log analysis, IOC identification, and root cause determination
  • Experience documenting incidents and producing actionable remediation guidance
  • Experience performing Threat hunting using KQL or other query languages, SOAR/playbook automation
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Incident Response Specialist
Incident Response Specialist

Integriti • Toronto

On-site
CAD 90,000 - 130,000
Manager, Security Incident Response
Manager, Security Incident Response

TechAlliance of Southwestern Ontario, London Economic Development Corporation • Toronto

On-site
CAD 80,000 - 120,000
Incident Response Senior Consultant
Incident Response Senior Consultant

Forensic Focus Limited • Canada

On-site
CAD 120,000 - 180,000
Cyber Security Analyst
Cyber Security Analyst

koundinyasa Technology Services • Montreal (administrative region)

On-site
CAD 70,000 - 100,000
Cyber Security Analyst
Cyber Security Analyst

Arsenault • Ottawa

On-site
CAD 85,000 - 110,000
Senior Digital Forensics & Incident Response Consultant (ID#5314)
Senior Digital Forensics & Incident Response Consultant (ID#5314)

New Value Solutions • Canada

Remote
CAD 80,000 - 120,000
Security Operations Analyst
Security Operations Analyst

NextGenEnergyJobs • Canada

Hybrid
CAD 80,000 - 110,000
Health benefits
Paid vacation
Competitive retirement plan
L3 SOC Analyst - Calgary
L3 SOC Analyst - Calgary

Integrity360 • Calgary

Hybrid
CAD 80,000 - 110,000
Incident Response Security Consultant, Mandiant (English)
Incident Response Security Consultant, Mandiant (English)

Forensic Focus Limited • Quebec

Hybrid
CAD 70,000 - 110,000
L3 SOC Analyst / Incident Responder
L3 SOC Analyst / Incident Responder

act digital • Montreal (administrative region)

On-site
CAD 90,000 - 120,000
Remote working available
Flex Office work environment
Annual training and certification