Soc Analyst

Altis Technology

Toronto

Hybrid

CAD 90,000 - 130,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Altis Technology is seeking a SOC Analyst, Tier III in Toronto, staffed in a hybrid fashion (3 days on site). You will own complex cybersecurity incidents, coordinate responses, and drive forensics across endpoints, networks, and cloud environments.

You’ll work with technology, risk, legal, compliance and business teams, acting as a senior escalation point for sophisticated threats and leading efforts to improve detection, response and resilience.

Qualifications

  • Extensive cybersecurity experience spanning incident response, digital forensics, threat hunting, and cyber threat intelligence.
  • Advanced knowledge of malware analysis, memory, host and network forensics, incident reconstruction across Windows, Linux, macOS, cloud and on‑prem environments.
  • Strong hands‑on experience with threat detection and incident response tooling and playbooks.

Responsibilities

  • Lead complex cybersecurity incident investigations, including containment, eradication, recovery, root cause analysis, and post‑incident reporting.
  • Conduct digital forensic investigations across endpoints, servers, networks, cloud environments, and enterprise infrastructure.
  • Lead proactive threat hunting and leverage threat intelligence to identify emerging risks and strengthen defensive strategies.
  • Enhance monitoring and detection capabilities through log source onboarding, detection use case development, analytics, and rule tuning.
  • Develop incident response playbooks, remediation plans, and lessons learned to improve organizational resilience.
  • Provide expert cybersecurity guidance and coordinate response efforts across technical teams, business stakeholders, and external partners.

Skills

Incident response
Digital forensics
Threat hunting
Cyber threat intelligence
Leadership
Communication to technical and non-IT

Education

GIAC
GCFA
GCIH
CISSP
CISA

Tools

SIEM: Sentinel
SIEM: Splunk
SIEM: LogRhythm
SIEM: QRadar
EDR: Defender for Endpoint
EDR: Cortex
EDR: CrowdStrike

Job description

Location: Toronto, ON, Hybrid (3x week)
Language: Strong written and spoken English communication skills
Background Check Requirement: Canadian criminal credit check, Canadian ID cross-check, public safety verification, 5-year employment verification, education verification, credit check, and social media check

About the Opportunity

Join a leading organization in the financial technology sector as a SOC Analyst, Tier III, where youll play a critical role in protecting the systems and digital infrastructure that support millions of transactions. Reporting to the Leader, Security Incident Management, youll take ownership of complex cybersecurity incidents and help strengthen enterprise-wide resilience.

Youll work closely with technology, risk, legal, compliance, and business teams, serving as a senior escalation point when sophisticated threats emerge. This is an opportunity to combine deep technical expertise with leadership, collaboration, and continuous improvement in a highly connected environment.

Whats In It for You

Youll join an innovative, inclusive workplace that values collaboration, professional growth, and employee well-being.

Your Responsibilities
  • Youll lead complex cybersecurity incident investigations, including containment, eradication, recovery, root cause analysis, and post-incident reporting.
  • Youll conduct digital forensic investigations across endpoints, servers, networks, cloud environments, and enterprise infrastructure.
  • Youll lead proactive threat hunting and leverage threat intelligence to identify emerging risks and strengthen defensive strategies.
  • Youll enhance monitoring and detection capabilities through log source onboarding, detection use case development, analytics, and rule tuning.
  • Youll develop incident response playbooks, remediation plans, and lessons learned to improve organizational resilience.
  • Youll provide expert cybersecurity guidance and coordinate response efforts across technical teams, business stakeholders, and external partners.
Skills and Qualifications
  • Extensive cybersecurity experience spanning incident response, digital forensics, threat hunting, and cyber threat intelligence.
  • Advanced expertise in malware analysis, memory, host and network forensics, incident reconstruction, and Windows, Linux, macOS, cloud, and on-premises environments.
  • Strong experience with SIEM platforms including Sentinel, Splunk, LogRhythm, or QRadar, and EDR technologies including Defender for Endpoint, Cortex, or CrowdStrike.
  • Strong knowledge of IDS/IPS, vulnerability management, TCP/IP, networking, operating systems, application security, and infrastructure security controls.
  • Proven ability to lead incidents of varying severity, manage competing priorities, and communicate complex findings to technical and non-technical audiences.
  • GIAC, GCFA, GCIH, CISSP, CISA, or equivalent certifications are assets, as is experience with ISO-certified environments and ITIL practices.
  • Willingness to participate in an after-hours on-call rotation.
Note from the Hiring Manager

Were looking for someone who can bring deep technical expertise to complex investigations while staying calm and collaborative when the stakes are high. Youll have the opportunity to influence how we detect, respond to, and learn from emerging threats.

We appreciate the time and effort all applicants invest in their submissions. Please note that only candidates shortlisted for this role will be contacted directly. However, your profile will remain under consideration for future opportunities that align with your experience and career goals.All qualified applicants will receive fair consideration for employment. We welcome individuals of all backgrounds, experiences, and identities including those who identify as women, members of racialized groups, Indigenous Peoples, persons with disabilities, and 2SLGBTQIA+ communities. If you require an accommodation, please review our accessibility policy and reach out to our accessibility officer with any questions. Our human recruiters review all applications and always make the final hiring decision. On occasion, we also use AI-assisted tools to help review applications.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Operations Analyst, Detection & Response
Senior Security Operations Analyst, Detection & Response

Financeit • Toronto

On-site
CAD 110,000 - 125,000
Hybrid workplace options
Competitive pay and bonus
RRSP matching
+3
Senior Incident Response Analyst (Global Security)
Senior Incident Response Analyst (Global Security)

Socket.dev • Toronto

On-site
CAD 90,000 - 140,000
L3 SOC Analyst / Incident Responder
L3 SOC Analyst / Incident Responder

act digital • Montreal (administrative region)

On-site
CAD 90,000 - 120,000
Remote working available
Flex Office work environment
Annual training and certification
Cybersecurity Analyst – Cyber Kill Chain, TTP, C2
Cybersecurity Analyst – Cyber Kill Chain, TTP, C2

Finance Professionals Inc. • Toronto

Hybrid
CAD 103,000 - 125,000
SOC Cybersecurity Analyst – Permanent Position
SOC Cybersecurity Analyst – Permanent Position

Jobtailor • Montreal (administrative region)

On-site
CAD 70,000 - 90,000
JSOC - Cybersecurity Specialist - Incident Response
JSOC - Cybersecurity Specialist - Incident Response

Community Trust Company • Canada

Hybrid
CAD 81,000 - 101,000
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

10 Percent Recruiting Ltd. • Canada

Hybrid
CAD 110,000 - 140,000
Information Security Operations Analyst (Toronto, Canada)
Information Security Operations Analyst (Toronto, Canada)

Starling • Toronto

Hybrid
CAD 85,000 - 120,000
Discretionary benefits stipend
20 days annual leave
Security Analyst
Security Analyst

EIZIE • West Hawk Lake

On-site
CAD 80,000 - 110,000
Competitive salary
Health and dental benefits
Professional development
+5
MONTREAL [Hybrid] - Senior Security Analyst L3
MONTREAL [Hybrid] - Senior Security Analyst L3

QUANTEAM (RAINBOW PARTNERS Group) • Montreal

Hybrid
CAD 80,000 - 100,000