BrightIT

BrightIT

L2 SOC Analyst

Toronto, ON · Full-time

Sponsorship not specified$100k-$125kDetected 9 days ago
AWSCloud PlatformsCybersecuritySIEMSOC OperationsDetection EngineeringIncident ResponseComplianceJiraFirewallResearchCommunication

About the role

  • Vacancy Status: This posting is for an existing vacancy at our Toronto office.
  • BrightIT is a high-velocity tech hub focused on delivering world-class digital solutions for the iGaming sector.
  • We bridge the gap between creative startup culture and industrial-scale execution.

Responsibilities

  • Monitor, validate, and analyze security events across AWS Cloud infrastructure, SaaS platforms, and on-premise systems.
  • Perform deep-dive investigations using diverse log sources to identify sophisticated security incidents and anomalous activity.
  • Develop and refine SIEM rules and detection logic based on the MITRE ATT&CK framework and emerging threat intelligence.
  • Support the threat intelligence function by filtering actionable insights to guide operational decision-making.
  • Actively contribute to developing, validating, and optimizing detection use cases to minimize false positives and improve overall response efficiency.
  • Communication: Clear verbal and written communication for documenting incidents and collaborating with the SOC Lead.
  • At the heart of our platform is a sophisticated responsible gambling framework designed to protect our community.

Requirements

  • 2+ years of experience in security operations, incident response, or threat monitoring.
  • Technical Proficiency: Hands-on experience with SIEM platforms (e.g., Elastic Security, Splunk, Sentinel, QRadar, ELK) and log correlation.
  • Familiarity with network and endpoint security technologies, with specific experience managing/monitoring Palo Alto Next-Generation Firewalls and Cortex XDR (EDR).
  • Protocol Expertise: Strong understanding of web protocols and common application-layer attacks.
  • Analytical Mindset: Ability to research and investigate security events independently with high attention to detail.
  • Bachelor's degree in Computer Science, Cybersecurity, or a related field.
  • Familiarity with regulatory frameworks: ISO 27001, PCI DSS, or GDPR.

Skills

  • Identify vulnerabilities and security gaps in the environment; contribute to remediation through enhanced alerting or control improvements.
  • Experience securing cloud platforms (specifically AWS ) and their native security services.

Compensation

  • $100,000 - $125,000 CAD per year

Benefits

  • Robust extended health, dental, and vision coverage from day one.
  • Time Off: 20 days of paid vacation plus additional paid sick days to ensure you stay rested and healthy.
  • On-Call Function: Be available for critical incident escalations and "fire drill" scenarios as part of the extended SOC response capability to ensure 24/7 coverage for high-priority threats.

Company info

  • A collaborative team environment where we care deeply for our employees and our social impact.

This listing is sourced directly from BrightIT's careers page and normalized into a canonical job model.