Analyst, Cybersecurity
Job Summary
The Cybersécurity Analyst is responsible for implementing the company's cybersecurity vision from an operational standpoint, with the goal of improving security across stores, warehouses, the distribution center, and the head office. The Cybersecurity Analyst works closely with the IT infrastructure team, the legal team, and third-party vendors to deliver excellent customer service. Additionally, this role requires providing top-tier security expertise to ensure the operation, troubleshooting, and optimization of the technology resources used at various service points.
Key Accountabilities
- Contribute to establishing Dollarama’s cybersecurity vision and governance framework.
- Monitor the network and perform intrusion detection analysis using various cybersecurity tools such as intrusion detection/prevention systems (IDS/IPS), firewalls, and host-based security systems.
- Perform log-based and endpoint-based threat detection to identify and defend against threats from multiple sources.
- Correlate activity across assets (endpoints, networks, applications), environments (on-premises, cloud), and identities (executives, IT administrators, users, consultants, etc.) to identify abnormal activity patterns.
- Help establish baseline activity across multiple networks to ensure high-fidelity alerting.
- Review alerts and sensor data, and document formal technical incident reports.
- Collaborate with threat hunting and filtering teams.
- Work with the Security Information and Event Management (SIEM) system to manage/tune the platform, create/manage detection content, and actively monitor alerts.
- Correlate network, cloud, and endpoint activity across environments to identify attacks and unauthorized use.
- Research emerging threats and vulnerabilities to aid in incident detection.
- Provide user support during security incidents, including containment measures and facilitating forensic analysis when necessary.
- Provide Level 2 support and investigate security incidents to ensure full resolution.
- Take the lead on major cybersecurity incident investigations.
- Stay up to date on new and emerging threats and vulnerabilities and be active in security communities.
- Analyze the security impact of implementing new software or operating systems.
- Participate in documenting security-related aspects of newly implemented projects or security software.
- Develop and maintain standards, guidelines, and rules regarding the technological security of systems and infrastructure.
- Act as an administrator for the installation, configuration, and maintenance of security tools and applications.
- Advise development teams on secure application programming standards.
- Select training modules for Dollarama’s cybersecurity awareness program.
- Plan and execute phishing awareness campaigns.
- Analyze security logs from various IT systems such as servers (AD, Exchange, etc.), firewalls, anti-spam, EDR, IDS/IPS, etc.
Job Requirements
- Minimum 5 years of experience in IT in a similar role.
- Degree in Computer Science with specialized training in cybersecurity.
- Strong knowledge of Microsoft products (Windows 7, Windows 10, Office Suite 2007, 2010, and 2016).
- General knowledge of Linux RHEL.
- Solid understanding of Active Directory, AD security, and Office 365.
- Strong knowledge of security tools (EDR, SIEM, Firewall, Anti-Spam, IDS/IPS).
- Strong log analysis skills across different operating systems such as Windows, Linux, Unix, and security tools.
- General knowledge of digital forensics, threat hunting, and incident response methodologies.
- General knowledge of cloud security components (GCP and Azure) is an asset.
- Excellent problem-solving skills.
- Collaborative, autonomous, professional, and customer service-oriented.
- Demonstrates reliability, thoroughness, and flexibility.
- CISSP certification is an asset.