Cybersecurity Analyst
Corus Entertainment View all jobs
- Toronto, ON
- Permanent
- Full-time
Corus Entertainment is looking for an enthusiastic Cybersecurity Analyst to join our team.As a vital member of the Cybersecurity function, you will maintain and strengthen the organization’s security posture while working closely with business units and external vendors to safeguard our users, infrastructure, applications, and workflows.This role is best suited for a problem-solver who loves analysis, someone who enjoys digging through logs, piecing together clues, and uncovering answers during an incident.The ideal candidate finds satisfaction in tracing a problem to its root cause, spotting subtle anomalies, and turning raw data into meaningful insight.You are an expert problem-solver who thrives on challenge and is comfortable multitasking in a fast-paced environment.You will contribute by:
- Maintain and administer cybersecurity technologies such as vulnerability assessment, endpoint detection/response, SIEM, and privileged access management tools.
- Contribute to developing, implementing, and fine-tuning SIEM use cases/associated rules and other security control configurations to enhance threat detection capabilities.
- Perform in-depth investigation of events of interest (EOI) or indicators of compromise (IOC) identified during threat hunt activities or security alerts received from various security technologies.
- Liaise with appropriate internal stakeholders during the investigation process to determine whether a security incident has occurred, identify the root cause and provide appropriate recommendations for remediation.
- Apply fixes, patches, updates, and suggest configuration remediations where identified as deficient.
- Deploy logging, alerting, and auditing configurations for integration with 24/7 monitoring (SOC).
- Participate in 24/7 on-call rotation.
- Assist with Risk & Compliance efforts by surfacing evidence from cybersecurity tools to satisfy audit queries.
- Leverage cybersecurity technologies to inform and enhance Governance program.
- Research emerging threats, attack vectors, and techniques.
- Help define, document, and test incident response playbooks.
- Post-Secondary education in cybersecurity-related field.
- At least 3-5 years of equivalent work experience.
- Proven record of maintaining enterprise-level cybersecurity solutions.
- Practical understanding of cybersecurity event and incident response
- Ability to effectively prioritize and execute tasks in a high-pressure environment.
- Ability to effectively communicate with technical and non-technical stakeholders in written and oral formats.
- Fundamental knowledge of vulnerability and threat, including CVE, MITRE/ATT&CK, and OWASP.
- Understanding of SIEM technologies including event correlation, corroboration, tuning, and testing.
- Advanced understanding of endpoint technologies such as AV, EDR, and privilege management.
- Familiarity with Cloud Security concepts as they apply to AWS, GCP, and Azure.
- Understanding of Identity and Access Management/Modern Authentication solutions such as OAuth2 and SAML 2.0.
- Comfortable with Active Directory-based networks, including M365/Azure AD.
- Familiarity with Windows, Mac, and Linux operating systems in both physical and virtualized environments.
- Industry certifications (CompTIA Security+, CISSP, CEH, etc.) are an asset.