- Company Name
- VIA Rail Canada
- Job Title
- Analyste, Cybersécurité
- Job Description
-
**Job Title**
Cybersecurity Analyst
**Role Summary**
The Cybersecurity Analyst monitors, analyzes, and responds to security incidents, maintains and evolves the organization’s security platform, and supports vulnerability management and compliance activities. The role collaborates closely with internal security operations and external managed security services to protect critical information assets.
**Expectations**
- Proactively detect and investigate security threats using XDR, threat detection tools, and network traffic analysis.
- Respond to incidents, document actions, and update automated playbooks.
- Prioritize and remediate vulnerabilities in coordination with IT teams.
- Maintain, configure, and upgrade security tools such as email/web gateways, privileged access management, and cloud security solutions.
- Continuously assess threat landscape, audit findings, and emerging technologies to enhance security posture.
- Ensure compliance with security policies, standards, and regulatory requirements, supporting internal and external audit processes.
**Key Responsibilities**
1. **Threat Monitoring & Analysis**
- Review alerts from XDR, managed security services, identity protection, and network traffic logs.
- Investigate incidents, triage alerts, eliminate false positives, and escalated confirmed threats.
2. **Incident Response**
- Handle incident tickets via the incident ticketing system.
- Document investigations, author incident playbooks, and refine automated response procedures.
3. **Vulnerability Management**
- Identify, assess, and prioritize vulnerabilities; coordinate remediation with IT teams.
- Track threat intelligence feeds to update risk assessments.
4. **Security Tool Management**
- Deploy, configure, and maintain email/web gateways, threat detection platforms, vulnerability management, privileged access management, and cloud security.
- Monitor system performance, apply patches, and upgrade solutions.
5. **Continuous Improvement**
- Stay current on threat trends, emerging security technologies, and best practices.
- Update internal incident response guides and security procedures.
6. **Compliance & Auditing**
- Enforce adherence to security policies and industry standards.
- Assist with audit evidence preparation, respond to auditors, and track remediation of audit findings.
**Required Skills**
- Threat detection, incident investigation, and response, including use of XDR.
- Vulnerability assessment, risk prioritization, and remediation coordination.
- Proficiency with security platforms: email/web gateway, threat detection, vulnerability management, privileged access, cloud security.
- Network traffic analysis, log review, and security event correlation.
- Incident ticketing systems and playbook creation.
- Stakeholder communication, audit support, and documentation.
- Awareness of compliance frameworks (e.g., ISO, NIST, PCI).
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or related field.
- 2–4 years of experience in an IT support or cybersecurity role.
- Preferred certifications: CompTIA Security+, CEH, CISSP, or equivalent.