Triage Security Analyst (Global Security)
Royal Bank of Canada View all jobs
- Vancouver, BC
- Permanent
- Full-time
- Global accountability to respond to critical security incidents/events providing accurate and timely reporting to GSOC and Global Security leadership.
- Provide support for high risk security incidents escalated from Managed Security Services (MSS), GSOC peers, Global Security and other lines of business.
- Perform investigation and triage activities of security related events that are deemed high risk or pose a significant threat to the organization.
- Detailed technical research and analysis of relevant security events, often complex in design and their potential impact to the organization.
- Escalation of threats against the organization to management and Incident Response team as required based on severity level of threats.
- Develop, distribute and present technical findings with regards to threats, attack vectors and mitigation techniques including the creation and tracking of security metrics.
- Proactive searching activities to look for unknown threats and suspicious behavior within the environment.
- Collaborate with partner groups for tuning of monitoring rules and automation of security tasks to keep GSOC's monitoring capabilities relevant and up to date with a minimal level of false positives.
- Experience in performing investigation and triage activities of security related events
- Experience in all aspects of Security Operations Center and how the organization supports/adds value to the rest of the organization
- Strong platform knowledge including Microsoft Windows and Unix/Linux Operating Systems and scripting languages (bash, python, regex, PowerShell, etc..)
- Thorough understanding of SIEM technology and security related controls(IDS/IPS, WAF, NDR/EDR, etc..)
- Experience with SOAR product
- Knowledge of cybersecurity frameworks (Cyber Kill Chain, NIST, MITRE ATT&CK, etc..)
- Availability for rotating pager duty support for after hours, holidays
- Experience with malware analysis
- Strong Networking knowledge with TCP/IP packet level knowledge
- Bachelor’s degree in Computer Science or related field
- Industry recognized certifications (ISC2, SANS, ISACA, etc..)
- A comprehensive Total Rewards Program including bonuses and flexible benefits, competitive compensation, commissions, and stock where applicable
- Leaders who support your development through coaching and managing opportunities
- Ability to make a difference and lasting impact
- Work in a dynamic, collaborative, progressive, and high-performing team
- A world-class training program in financial services
- Flexible work/life balance options
- Opportunities to do challenging work