SOC Analyst

Acestack

Toronto

Hybrid

CAD 70,000 - 110,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Acestack is looking for an experienced SOC Analyst to join its cybersecurity operations team in Toronto, offering a hybrid work model. You will monitor security events, investigate alerts, and support incident response across enterprise environments.

The ideal candidate has hands-on experience with SIEM and EDR/XDR platforms, strong network security knowledge, and the ability to analyze Windows and Linux logs. A proactive, collaborative mindset is essential.

Qualifications

  • 3–7 years of experience in SOC, cybersecurity, security operations, incident response, or monitoring.
  • Hands-on experience with SOC operations and security monitoring.
  • Experience with SIEM platforms such as Microsoft Sentinel, Splunk, QRadar.
  • Experience with EDR/XDR platforms such as Microsoft Defender, CrowdStrike, SentinelOne.
  • Strong knowledge of network security concepts (TCP/IP, DNS, VPN, firewalls, IDS/IPS).
  • Experience analyzing Windows and Linux security logs.
  • Knowledge of vulnerability management and remediation.
  • Understanding of MITRE ATT&CK, IOC analysis, threat intelligence, and incident investigation.

Responsibilities

  • Monitor and analyze security alerts and events using SIEM, EDR/XDR, and other monitoring tools.
  • Investigate security incidents, suspicious activities, malware alerts, phishing attempts, and unauthorized access.
  • Perform incident triage, containment, eradication, and recovery activities.
  • Analyze security logs from firewalls, servers, endpoints, applications, cloud environments, and network devices.
  • Conduct threat hunting and identify indicators of compromise and attack patterns.
  • Document incidents, findings, and remediation activities; maintain accurate records.

Skills

SOC operations
Incident response
Threat analysis
Documentation

Tools

Microsoft Sentinel
Splunk
QRadar
PowerShell

Job description

Job Title: SOC Analyst
Job Type: Full Time
Location: Toronto, ON (Hybrid)

Job Description

We are seeking an experienced SOC Analyst to join our cybersecurity operations team. The ideal candidate will have hands-on experience in security monitoring, incident detection and response, SIEM, EDR/XDR, threat analysis, and vulnerability management.

The candidate will be responsible for monitoring security events, investigating alerts, identifying potential threats, performing incident triage, and supporting incident response activities across enterprise environments.

Key Responsibilities
  • Monitor and analyze security alerts and events using SIEM, EDR/XDR, and other security monitoring tools.
  • Investigate security incidents, suspicious activities, malware alerts, phishing attempts, unauthorized access, and potential threats.
  • Perform incident triage, investigation, containment, eradication, and recovery activities.
  • Analyze security logs from firewalls, servers, endpoints, applications, cloud environments, and network devices.
  • Conduct threat hunting and identify indicators of compromise (IOCs), attack patterns, and emerging threats.
  • Perform root cause analysis and document security incidents, findings, and remediation activities.
  • Support vulnerability assessments, remediation activities, and security risk tracking.
  • Develop and maintain security monitoring rules, alerts, dashboards, and reports.
  • Correlate events across multiple security platforms to identify potential security incidents.
  • Collaborate with infrastructure, network, cloud, application, and IT teams to investigate and remediate security issues.
  • Participate in security investigations, incident response exercises, and continuous improvement of SOC processes.
  • Maintain accurate documentation of incidents, investigations, procedures, and security controls.
Required Technical Skills
  • 3 7+ years of experience in SOC, cybersecurity, security operations, incident response, or security monitoring.
  • Strong hands-on experience with SOC operations and security monitoring.
  • Experience with SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, or equivalent.
  • Experience with EDR/XDR platforms such as Microsoft Defender, CrowdStrike, SentinelOne, or equivalent.
  • Strong knowledge of network security concepts including TCP/IP, DNS, HTTP/HTTPS, VPN, firewalls, IDS/IPS, and proxies.
  • Experience analyzing Windows and Linux security logs.
  • Knowledge of vulnerability management and remediation.
  • Understanding of common cyber threats, malware, phishing, credential attacks, and network-based attacks.
  • Familiarity with MITRE ATT&CK, IOC analysis, threat intelligence, and security incident investigation.
  • Knowledge of Azure and/or AWS security concepts is preferred.
  • Scripting or automation experience using Python, PowerShell, or Bash is an asset.
  • Strong analytical, troubleshooting, communication, and documentation skills.
Security Frameworks & Standards
  • Knowledge of NIST, ISO 27001, SOC 2, PCI DSS, or other cybersecurity frameworks is preferred.
Preferred Certifications
  • CompTIA Security+
  • CompTIA CySA+
  • CEH
  • GCIH
  • GCIA
  • CISSP or equivalent cybersecurity certification
Job Details
  • Job Type: Full Time
  • Location: Toronto, ON
  • Work Model: Hybrid
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Soc Analyst
Soc Analyst

Altis Technology • Toronto

On-site
CAD 90,000 - 130,000
Cybersecurity Analyst – Tier 2
Cybersecurity Analyst – Tier 2

Vanderlande Industries GmbH • Vancouver

On-site
CAD 90,000 - 115,000
L3 SOC Analyst / Incident Responder
L3 SOC Analyst / Incident Responder

act digital • Montreal (administrative region)

On-site
CAD 90,000 - 120,000
Remote working available
Flex Office work environment
Annual training and certification
Cybersecurity Analyst – Tier 2
Cybersecurity Analyst – Tier 2

Vanderlande • Vancouver

On-site
CAD 90,000 - 115,000
Security Analyst
Security Analyst

EIZIE • West Hawk Lake

On-site
CAD 80,000 - 110,000
Competitive salary
Health and dental benefits
Professional development
+5
Cybersecurity Analyst - Tier 2
Cybersecurity Analyst - Tier 2

Vanderlande • Vancouver

On-site
CAD 90,000 - 130,000
Remote Security Operations Center (SOC) Analyst
Remote Security Operations Center (SOC) Analyst

Placements24 • Kimberley

Hybrid
CAD 65,000 - 95,000
Fully remote work arrangement
Competitive salary and benefits
Global collaboration
L3 SOC Analyst - Calgary
L3 SOC Analyst - Calgary

Integrity360 • Calgary

On-site
CAD 80,000 - 110,000
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

10 Percent Recruiting Ltd. • Canada

Hybrid
CAD 110,000 - 140,000
Information Security Analyst
Information Security Analyst

Glocomms • Montreal (administrative region)

On-site
CAD 70,000 - 110,000
Bonus opportunity
Generous paid time off
Wellness reimbursement programs
+3