SOC Analyst
Lacework
Fortinet is looking for a Security Operations Centre (SOC) Analyst to be part of the FortiCloud SOC-as-a-Service team. This is a highly technical role, monitoring security events, identifying threats, assessing risks, and working with customers globally to improve their security posture.
FortiCloud SOC-as-a-Service team operates based on a follow the sun approach. Working hours for this position includes 5 days/40 hours per week, consisting of 1 weekend and 4 weekdays (e.g. Sunday – Thursday or Tuesday – Saturday), 8am – 4pm.
Responsibilities:
- Monitor SOC alerts to detect potential threats
- Use threat intelligence feeds, triage alerts and filter out false-positives
- Create custom reports, dashboards, and execute log searches to support investigations and customer’s requirements
- Work with customers and Forensic analysis team to contain and eradicate incidents if need be
- Follow Incident Response playbooks, processes and procedures and help to improve them
- Create/Update use case detections to detect new threats from raw logs
- Create/Update playbooks to automate repetitive triage steps
Requirements:
- Understanding of SOC operations and Incident Response Life cycle.
- Understanding of Cyber Kill chain, threat vectors and threat intelligence
- Understanding of layered security at data, OS and network levels
- Understanding Cybersecurity Frameworks
- Hands-on experience with security log analysis such as AV, IPS, Anti-Spam logs
- Hands-on experience with visualization, reporting technologies
- Hands-on experience with PostgreSQL, regular expressions
- Hands-on experience with Network Security technologies such as Firewalls, SIEM, Sandbox
- Hands-on experience with Linux and Windows system administration.
- Previous working experience with Fortinet products is a bonus.
- Team player, solution-focused, conflict management skills
- Self-directed, takes initiatives
- Open to new challenges and learning opportunities
- Understands the importance of discipline, consistency and communication
- Good verbal and written communication skills
- Cybersecurity certifications such as GCIA, GCIH, GMON, GSOC, CEH, Security+ is a bonus
- Graduates from IT degrees, or mid-career IT professionals with certifications in cybersecurity may apply
About Our Team:
Join our team, known for its collaborative ethos, working seamlessly with global customers, internal engineering teams and product development groups. Our team culture emphasizes continuous learning, innovation, and a strong commitment to customer satisfaction. We embrace Fortinet’s core values of openness, teamwork and innovation, fostering an environment where team members support each other, share knowledge, and leverage AI to solve complex technical challenges. Our inclusive and dynamic team thrives on collaboration and is driven by the shared goal of maintaining Fortinet’s high standards of excellence in cybersecurity solutions.
Why Join Us:
We encourage candidates from all backgrounds and identities to apply. We offer a supportive work environment and a competitive Total Rewards package to support you with your overall health and financial well-being. Embark on a challenging, enjoyable, and rewarding career journey with Fortinet. Join us in bringing solutions that make a meaningful and lasting impact to our 660,000+ customers around the globe.
The Canada base salary range for this full-time position is expected to be between $83,600 - $102,200 annually. Wage ranges are based on various factors including the labour market, job type, and job level. Exact salary offers will be determined by factors such as the candidate’s subject knowledge, skill level, qualifications, and experience.
Fortinet strives to provide you and your family with a comprehensive benefits package. Benefits eligibility starts on your first day of hire and comprises of 100% company paid medical, dental, and vision coverage, including a Health Spending Account and a Personal Spending Account that gives you flexibility to spend where you need it the most. Our Employee & Family Assistance Plan (EFAP) offers you and your family access to various services like counseling, legal advice, mental health resources etc. We also provide critical illness, disability, and life insurance, as well as a Group Registered Retirement Savings Plan (RRSP) with a company match to help you save faster for retirement. We offer competitive Paid Time Off and flexible leave policies, including paid health days, to help you take care of yourself and your family members.
All roles are eligible to participate in the Fortinet equity program. Bonus eligibility is reviewed at time of hire and annually at the Company’s discretion.
Fortinet is looking for a Security Operations Centre (SOC) Analyst to be part of the FortiCloud SOC-as-a-Service team. This is a highly technical role, monitoring security events, identifying threats, assessing risks, and working with customers globally to improve their security posture.