Senior Threat Hunter - Digital Crime Operations(Global Security)

rbc

Toronto

On-site

CAD 110,000 - 140,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

RBC is seeking a Senior Threat Hunter to join the Global Cyber Security team in Toronto. You will lead threat investigations, develop advanced hunting capabilities, and coordinate incident response across RBC's digital assets and applications.

Your role combines threat research, SOC/SIEM, and security automation to counter phishing, malware, and social engineering. You will partner with security experts to disrupt digital crime and protect client assets.

Qualifications

  • 5+ years in SOC, SIEM, or threat investigation.
  • Experience investigating phishing and web threats.
  • Proficiency with SIEM tools, firewall logs, and data analytics.
  • Hands-on Python/SQL for data analysis and automation.
  • Ability to communicate insights to technical and executive stakeholders.

Responsibilities

  • Conduct in-depth threat investigations using SIEM tools and data analytics.
  • Perform forensic analysis on suspicious activity and access attempts.
  • Develop and implement advanced detection capabilities and hunting scenarios.
  • Investigate phishing, smishing, malware, and live traffic for vulnerabilities.
  • Collaborate with global teams to refine threat hunting methodologies.
  • Document threat actor patterns and coordinate incident response.

Skills

Threat hunting
SOC operations
SIEM tools
Phishing investigations
Python
SQL
Data analytics
Communication with stakeholders

Tools

ELK
Splunk
Hadoop

Job description

Job Description
What is the Opportunity?

RBC's Digital Crime Operations is seeking a Senior Threat Hunter to join our global efforts in identifying and mitigating sophisticated threats targeting our clients and digital assets.

In this role you will protect RBC's brand integrity, investigate malicious threats, and coordinate incident response across applications and digital infrastructure. This role combines threat research, SOC/SIEM and security automation to combat evolving cyber threats and social engineering attacks.

As part of our Global Cyber Security group, you'll partner with a team of security experts, researchers, and innovators to disrupt digital crime using next-generation detection capabilities and solutions.

What will you do?
  • Conduct in-depth threat investigations using SIEM tools, SQL queries, and data analytics
  • Perform forensic analysis on suspicious activities, malware indicators, and unauthorized access attempts
  • Develop Threat Hunting Capabilities: Design and implement advanced detection capabilities and hunt scenarios to identify threats targeting RBC's clients and our digital properties.
  • Utilization of cutting-edge frontier models to investigate and mitigate the latest threats (e.g., phishing, smishing, malware) and operationalize hunting scenarios for real-time detection and prevention.
  • Web Application Security Hunting: Leverage web application security expertise to analyze live traffic for vulnerabilities and attack vectors.
  • Methodology Enhancement: Collaborate with global teams to refine Digital Crime threat hunting methodologies and strategies, ensuring alignment with evolving threat landscapes.
  • Data-Driven Insights: Assess security data across multiple platforms, conduct gap analyses, and optimize tool configurations to capture indicators of attacks.
  • Identify creative ways to detect novel and existing threats by analyzing Tactics, Techniques, and Procedures (TTPs) of threat actors.
  • Manage phishing inbox and coordinate takedowns of malicious websites
  • Document threat actor communication patterns and architectural impacts
What do you need to succeed?
Must-have:
  • 5+ years experience in SOC, SIEM, or threat investigation, or transferable security field
  • Experience monitoring and investigate phishing attempts, malicious impersonation, and web application threats
  • Experience conducting ad hoc threat investigations using SIEM tools, firewall logs, and data analytics
  • Deep expertise in adversary TTPs and demonstrated success in mitigating threats.
  • Technical proficiency: Hands-on experience with Python/SQL for data analysis, automation, and tool development.
  • Proven ability to dissect complex problems, drive innovative solutions, and communicate insights to technical and executive stakeholders.
  • Collaborative mindset: Exceptional teamwork skills for cross-functional projects in a fast-paced, global environment.
Nice-to-Have:
  • Experience with big data platforms (ELK, Splunk, Hadoop) for security analytics.
  • Knowledge of low-level systems (OS internals, CPU architectures) and exploit development.
  • Industry certifications (e.g., CISSP, CEH, OSCP)
What's in it for you?
  • We thrive on the challenge to be our best, progressive thinking to keep growing, and working together to deliver trusted advice to help our clients thrive and communities prosper. We care about each other, reaching our potential, making a difference to our communities, and achieving success that is mutual.
  • A comprehensive Total Rewards Program including bonuses and flexible benefits, competitive compensation
  • Ability to make a difference and lasting impact
  • Work in a dynamic, collaborative, progressive, and high-performing team
  • Opportunities to do challenging work
  • Opportunities to take on progressively greater accountabilities
Job Skills
  • Analytical Thinking
  • Anomaly Detection
  • Consulting
  • Cybersecurity
  • Cyber Threat Hunting
  • Data Analysis
  • Incident Response
  • Information Security
  • Security Research
  • Threat and Vulnerability Management
  • Threat Detection
  • Threat Mitigation
  • Threat Modeling
  • Web Applications
Additional Job Details
  • Address: 16 YORK ST:TORONTO City:Toronto Country:Canada
  • Work hours/week: 37.5
  • Employment Type: Full time
  • Platform: TECHNOLOGY AND OPERATIONS
  • Job Type: Regular Pay Type: Salaried
  • Posted Date: 2026-09-16
  • Application Deadline: 2026-09-30 Note : Applications will be accepted until 11:59 PM on the day prior to the application deadline date above
Our Employment Opportunities

At RBC, we are guided by living shared values of Client First, Integrity, Collaboration, Respect and Excellence and winning together as One RBC. We believe an inclusive workplace that has diverse perspectives is core to our continued growth as one of the largest and most successful banks in the world. Maintaining a workplace where our employees feel supported to perform at their best, effectively collaborate, drive innovation, and grow professionally helps to bring our Purpose to life and create value f

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Specialist - Attack Path Management (Global Security)
Senior Security Specialist - Attack Path Management (Global Security)

RBC • Toronto

Hybrid
CAD 120,000 - 180,000
Total rewards program
Annual training & conference budget
Hybrid-remote work
+3
Senior Incident Response Analyst (Global Security)
Senior Incident Response Analyst (Global Security)

RBC • Toronto

On-site
CAD 90,000 - 120,000
Principal Engineer, Cyber Technology Operations SRE (Global Security)
Principal Engineer, Cyber Technology Operations SRE (Global Security)

RBC • Toronto

On-site
CAD 140,000 - 210,000
Total rewards program
Bonuses and stock where applicable
Flexible benefits
Senior Manager, Attack Resilience Management (Global Security)
Senior Manager, Attack Resilience Management (Global Security)

Socket.dev • Toronto

On-site
CAD 140,000 - 180,000
Bonuses
Flexible benefits
Stock options
+2
Cyber Controls Assurance Analyst (Global Security)
Cyber Controls Assurance Analyst (Global Security)

Socket.dev • Toronto

On-site
CAD 90,000 - 120,000
Total rewards program
Stock options
Flexible benefits
+2
Senior Security Principal Digital Platforms (Global Security)
Senior Security Principal Digital Platforms (Global Security)

RBC • Toronto

On-site
CAD 140,000 - 190,000
Total rewards program
Flexible benefits
Stock options where applicable
+1
Senior Software Developer - Offensive AI (Global Security)
Senior Software Developer - Offensive AI (Global Security)

RBC • Toronto

Hybrid
CAD 90,000 - 150,000
Total rewards program
Training and development budget
Hybrid-remote work options
+3
Senior Manager, Attack Resilience Management (Global Security)
Senior Manager, Attack Resilience Management (Global Security)

RBC • Toronto

On-site
CAD 140,000 - 210,000
Total rewards program
Professional development
World-class training program
+1
Lead Product Engineer (Global Security)
Lead Product Engineer (Global Security)

Socket.dev • Toronto

On-site
CAD 120,000 - 180,000
Total rewards program
Bonuses and stock where applicable
Flexible benefits
+1
Lead Audit and Regulatory IT Risk Specialist
Lead Audit and Regulatory IT Risk Specialist

rbc • Toronto

On-site
CAD 90,000 - 130,000