BrightIT
L2 SOC Analyst
Toronto, ON · Full-time
Sponsorship not specified$100k-$125kDetected 9 days ago
AWSCloud PlatformsCybersecuritySIEMSOC OperationsDetection EngineeringIncident ResponseComplianceJiraFirewallResearchCommunication
About the role
- Vacancy Status: This posting is for an existing vacancy at our Toronto office.
- BrightIT is a high-velocity tech hub focused on delivering world-class digital solutions for the iGaming sector.
- We bridge the gap between creative startup culture and industrial-scale execution.
Responsibilities
- Monitor, validate, and analyze security events across AWS Cloud infrastructure, SaaS platforms, and on-premise systems.
- Perform deep-dive investigations using diverse log sources to identify sophisticated security incidents and anomalous activity.
- Develop and refine SIEM rules and detection logic based on the MITRE ATT&CK framework and emerging threat intelligence.
- Support the threat intelligence function by filtering actionable insights to guide operational decision-making.
- Actively contribute to developing, validating, and optimizing detection use cases to minimize false positives and improve overall response efficiency.
- Communication: Clear verbal and written communication for documenting incidents and collaborating with the SOC Lead.
- At the heart of our platform is a sophisticated responsible gambling framework designed to protect our community.
Requirements
- 2+ years of experience in security operations, incident response, or threat monitoring.
- Technical Proficiency: Hands-on experience with SIEM platforms (e.g., Elastic Security, Splunk, Sentinel, QRadar, ELK) and log correlation.
- Familiarity with network and endpoint security technologies, with specific experience managing/monitoring Palo Alto Next-Generation Firewalls and Cortex XDR (EDR).
- Protocol Expertise: Strong understanding of web protocols and common application-layer attacks.
- Analytical Mindset: Ability to research and investigate security events independently with high attention to detail.
- Bachelor's degree in Computer Science, Cybersecurity, or a related field.
- Familiarity with regulatory frameworks: ISO 27001, PCI DSS, or GDPR.
Skills
- Identify vulnerabilities and security gaps in the environment; contribute to remediation through enhanced alerting or control improvements.
- Experience securing cloud platforms (specifically AWS ) and their native security services.
Compensation
- $100,000 - $125,000 CAD per year
Benefits
- Robust extended health, dental, and vision coverage from day one.
- Time Off: 20 days of paid vacation plus additional paid sick days to ensure you stay rested and healthy.
- On-Call Function: Be available for critical incident escalations and "fire drill" scenarios as part of the extended SOC response capability to ensure 24/7 coverage for high-priority threats.
Company info
- A collaborative team environment where we care deeply for our employees and our social impact.
Apply directly at BrightIT →Create a free account for alerts like thisView BrightIT immigration profile
This listing is sourced directly from BrightIT's careers page and normalized into a canonical job model.