JSOC - Cybersecurity Specialist - Incident Response

Community Trust Company

Canada

On-site

CAD 81,000 - 101,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Questrade Financial Group is hiring a SOC Specialist to lead cybersecurity incident response and threat hunting across our enterprise. You will triage, investigate, contain, and recover from incidents while aligning with IT and security teams.

The role emphasizes proactive threat hunting, rule tuning, and documentation to enhance SOC performance. The position offers a hybrid work arrangement in Canada, with opportunities to contribute to playbooks, IR simulations, and metrics tracking.

Qualifications

  • 3+ years in Cybersecurity Incident Response/Threat Hunting in a complex SOC.
  • Experience in creating and tuning detection rules.
  • Familiarity with integrating security tools via APIs for automation and SOAR concepts.
  • Experience with investigations using CrowdStrike and Elastic Security.

Responsibilities

  • Identify and respond to cyber threats and safeguard infrastructure and data.
  • Manage the full incident response lifecycle: investigation, containment, eradication, recovery.
  • Collaborate with IT and security teams; build and improve detection rules and playbooks.
  • Participate in on-call rotations and coordinate with 3rd party providers.

Skills

Incident Response
Threat Hunting
Security Monitoring
Team Collaboration

Tools

CrowdStrike Falcon
Elastic Security
SOAR
APIs for automation

Job description

JSOC - Cybersecurity Specialist - Incident Response

North American Centre, 5700 Yonge St, North York, ON M2N 5M9, Canada

Job Description

Posted Tuesday, March 31, 2026 at 3:00 AM

Questrade Financial Group (QFG), through its companies - Questrade, Inc., Questrade Wealth Management Inc., Community Trust Company, Zolo, and Flexiti Financial Inc., provides securities and foreign currency investment, professionally managed investment portfolios, mortgages, real estate services, financial services and more. Questrade uses cutting-edge technologies to develop innovative products that give customers better, more affordable ways to take control of their money. We are everything a traditional financial institution is not. At QFG, you will be constantly moving forward, bringing the future of fintech into existence. You will be a part of a collaborative team that cares deeply about our mission and each other. Your team members will help you conquer challenges, push boundaries and discover what you are truly capable of. At QFG, we have a culture of innovation where technology serves people—both our team and our customers. We see AI as a collaborative and transformative enabler, and we are seeking forward-thinking individuals who can effectively integrate it into their daily work. The ideal candidate will be a catalyst for change, helping us use AI to create a more efficient and rewarding employee experience while also developing cutting-edge solutions that delight and serve our customers. Join us in shaping a future where AI empowers our team to do their best work and helps us deliver unparalleled customer experiences.

This is a place where you can explore, discover and learn with continuous growth. As a diverse and inclusive place to work, with a hybrid working environment you can unleash your creativity and curiosity with no limits. If you share the same sense of infinite possibility, come shape your future at QFG.

What’s in it for you as an employee of QFG?

Health & wellbeing resources and programs

Paid vacation, personal, and sick days for work-life balance

Competitive compensation and benefits packages

Work-life balance in a hybrid environment with at least 3 days in office

Career growth and development opportunities

Opportunities to contribute to community causes

Work with diverse team members in an inclusive and collaborative environment

We’re looking for our next SOC Specialist. Could It Be You?

Your contribution delivering sustainable and measurable results in the following areas will be very important:

Identifying and responding to cyber threats - safeguarding our company's infrastructure and data. You will be primarily involved in supporting the alert development cycle, triaging and investigating alerts, managing the full incident response lifecycle (investigation, containment, eradication, and recovery) and collecting and tracking metrics for reporting. You will be working alongside internal customers and our vendor support teams to ensure we are utilizing our security tools in accordance with corporate policies and growing business needs. You will work closely with Cybersecurity and IT teams to align priorities and execute plans for new initiatives, as well as contribute to process improvements and build documentation for new tools.

You will:

Collaborate with team members on investigations and share technical knowledge.

Monitor, analyze and report possible cybersecurity attacks.

Investigate and perform analysis of threat indicators.

Gather Indicators of compromise and any relevant data to use with threat hunting activities.

Leverage security tools (Elastic, CrowdStrike and more) for analysis to identify malicious activities.

Analyze identified malicious activity to determine Tactics, Techniques and Procedures.

Conduct research, analysis and correlate gathered data from various resources to determine the impact of the incident.

Execute containment and eradication actions following established playbooks.

Participate in on-call and hands-on scheduled shift rotations, including outside of business hours.

Support coordination of Security Incident Response and investigation with other internal teams and 3rd party providers.

Document incident timelines, evidence, and actions taken for post-incident review.

Perform post-incident reviews and produce lessons-learned reports.

Contribute to maintaining and improving incident response playbooks and runbooks.

Participate in tabletop exercises and IR simulations.

Provide proactive security investigation and searches on corporate environments to detect malicious activities.

Maintain up-to-date understanding of security threats, countermeasures, security tools, cloud security and SaaS technologies.

Maintain technical proficiency through training, keeping up with industry best practices, and security frameworks.

Communicate investigation findings to technical stakeholders and contribute to reporting.

Contribute to tracking SOC operational metrics (MTTD, MTTR, alert fidelity).

So are YOU our next SOC Specialist? You are if you have…

3+ years of relevant experience in performing Cybersecurity Incident Response and Threat Hunting activities in a complex incident management or Security Operations Center environment.

Experience in the creation and fine-tuning of detection rules.

Familiarity with integrating security tools via APIs for automation, and familiarity with Security Orchestration, Automation, and Response (SOAR) concepts.

Experience with investigations and incident response using EDR tools such as CrowdStrike Falcon and SIEM tools such as Elastic Security (KQL, ESQL, Timeline analysis).

Experience with forensic triage (disk, memory, network) and multiple operating systems (Mac, Linux, Windows).

Experience with contributing to SOC processes, playbooks, SIEM correlation rules, and incident reports.

Experience in incident management and communication under pressure.

Knowledge of NIST Cybersecurity Framework, MITRE ATT&CK.

Knowledge of security products and device monitoring tools including Firewalls, IDS/IPS, Phishing and e-mail security, content filtering, DDoS, WAF, and more.

Brownie points if you have…

GSEC, Security+, CySA+, CEH, CHFI or similar relevant certifications.

Compensation Information:

Base salary range: $80 ,604 - $100,756

The final compensation package will be commensurated with the successful candidate's experience, skills, and geographic location (Canada). It includes a comprehensive benefits plan and a competitive incentive (bonus) program for Full-Time Permanent roles.

At Questrade Financial Group of Companies, with multiple office locations around the world, we are committed to fostering a diverse, inclusive and accessible work environment. This is an environment where individuals are treated with dignity and respect. Here, the unique skills and experience you bring will be valued. You will be supported and motivated, so that you can harness your unlimited potential. Our team reflects the diversity of the communities we serve and operate in. Having a collaborative and diverse team helps us push boundaries to bring the future of fintech into existence—not only for the benefit of our customers, but for those who build their career with us.

Questrade Financial Group of companies Applicant Tracking System utilizes artificial intelligence (AI) for application screening. The AI system operates on predetermined criteria, with final decisions subject to human review.

Candidates selected for an interview will be contacted directly. If you require accommodation during the recruitment/selection process, please let us know and we will work with you to meet your needs.

North American Centre, 5700 Yonge St, North York, ON M2N 5M9, Canada

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

JSOC - Cybersecurity Specialist - Incident Response
JSOC - Cybersecurity Specialist - Incident Response

Questrade Financial Group • Toronto

Hybrid
CAD 81,000 - 101,000
Health & wellbeing resources
Paid vacation/sick/personal days
Competitive compensation and benefits
+4
Senior Analyst, Operations Transformation
Senior Analyst, Operations Transformation

Community Trust Company • Canada

Hybrid
CAD 80,000 - 90,000
Health & wellbeing resources
Paid vacation and sick days
Competitive compensation and benefits
+4
Senior Software Engineer
Senior Software Engineer

Community Trust Company • Toronto

On-site
CAD 120,000 - 140,000
Benefits plan
Bonus program
Hybrid work environment
Principal Software Engineer
Principal Software Engineer

Community Trust Company • Canada

Hybrid
CAD 135,000 - 165,000
Health & wellbeing resources
Paid vacation and sick days
Hybrid work environment with 3 days in
+2
Senior Cloud Platform Engineer
Senior Cloud Platform Engineer

Community Trust Company • Canada

Hybrid
CAD 120,000 - 140,000
Hybrid work environment
Comprehensive benefits package
Paid vacation and sick days
+1
Senior Manager, Learning, Quality & Enablement
Senior Manager, Learning, Quality & Enablement

Community Trust Company • Canada

Hybrid
CAD 105,000 - 130,000
Hybrid work environment
Career growth
Benefits package
Senior AI Engineer - AI Engineering & Enablement
Senior AI Engineer - AI Engineering & Enablement

Socket.dev • Toronto

Hybrid
CAD 120,000 - 140,000
Health & wellbeing resources
Paid vacation & sick days
Competitive compensation & benefits
+4
Senior Cloud Platform Engineer
Senior Cloud Platform Engineer

United States Digital Space LLC • Toronto

Hybrid
CAD 120,000 - 140,000
Health & wellbeing resources
Paid vacation, personal, and sick days
Hybrid work environment (3 days in the
+1
Director, Customer Engagement Platforms
Director, Customer Engagement Platforms

Community Trust Company • Canada

Hybrid
CAD 140,000 - 190,000
Health benefits
Hybrid work
Paid vacation
+3
Director of Engineering, Banking (Questbank)
Director of Engineering, Banking (Questbank)

Questrade Financial Group • Toronto

Hybrid
CAD 150,000 - 230,000
Health resources
Vacation & sick days
Competitive compensation
+4