Sr Cybersecurity Analyst
Affinity
On behalf of our client, Affinity is in search of a highly experienced Senior Cyber Security Analyst – Cyber Security Operations to join an enterprise utilities company. This role is responsible for protecting enterprise and operational technology environments through advanced threat monitoring, incident response, security engineering, automation, and emerging AI security controls. The successful candidate will serve as a senior technical resource, driving continuous improvement across cyber operations while helping the organization adopt modern detection, response, orchestration, and AI-enabled security capabilities.
This is an opportunity to work in a complex, highly regulated environment where cyber security is a strategic priority. The role combines hands-on security operations, security engineering, incident response leadership, and next-generation technology initiatives focused on automation, orchestration, and artificial intelligence.
Responsibilities
- Monitor, investigate, and analyze security alerts, events, and anomalies across enterprise and operational technology environments.
- Lead cyber security incident response activities, including triage, investigation, containment, eradication, recovery, and post-incident reporting.
- Serve as a senior escalation point for complex cyber incidents, malware investigations, and advanced threat activity.
- Perform root cause analysis and recommend corrective actions to improve organizational cyber resilience.
- Develop, maintain, and enhance incident response playbooks, standard operating procedures, and investigation methodologies.
- Operate, administer, and optimize cyber security technologies including SIEM, EDR/XDR, firewalls, email security platforms, identity controls, and cloud-native security tools.
- Design and implement security automation and orchestration workflows to improve operational efficiency and reduce manual effort.
- Develop and maintain integrations between security platforms, monitoring systems, and IT service management solutions.
- Identify opportunities for process improvement through automation, scripting, orchestration, and AI-assisted security capabilities.
- Enhance detection engineering practices by tuning security analytics, integrating threat intelligence, and developing advanced detection use cases.
- Support onboarding of new log sources and ensure sufficient visibility, retention, and monitoring coverage across critical environments.
- Assess risks associated with AI-enabled technologies, including data leakage, prompt injection, model misuse, unauthorized access, and emerging threats.
- Design and implement security controls for AI platforms, applications, and data environments.
- Collaborate with enterprise architects, governance teams, infrastructure groups, and business stakeholders to ensure security is embedded into new initiatives.
- Develop and implement cyber security controls across endpoint, network, cloud, identity, email, and operational technology domains.
- Conduct security assessments and recommend remediation strategies aligned with business objectives and regulatory requirements.
- Support compliance initiatives, security audits, regulatory assessments, and continuous improvement programs.
- Develop operational reporting and security metrics, including incident trends, detection coverage, MTTD, MTTR, and program effectiveness.
- Mentor junior analysts and contribute to the ongoing development of cyber security team capabilities.
- Stay current with evolving cyber threats, emerging technologies, AI security trends, and industry best practices.
Qualifications
- 5–10+ years of progressive experience in Cyber Security Operations, Security Engineering, Incident Response, or Security Operations Center (SOC) environments.
- Proven experience managing cyber security incidents within large enterprise environments and critical infrastructure organizations.
- Strong hands-on experience administering and optimizing SIEM platforms, EDR/XDR technologies, firewalls, email security solutions, and vulnerability management tools.
- Demonstrated expertise in threat detection, threat hunting, incident investigation, and forensic analysis.
- Experience designing, building, and maintaining security automation, orchestration, and workflow solutions.
- Strong understanding of modern attack techniques, threat actor tactics, and cyber defense methodologies.
- Experience supporting cloud security initiatives within Microsoft Azure, AWS, or Google Cloud Platform environments.
- Knowledge of identity and access management, privileged access controls, authentication technologies, and security monitoring practices.
- Experience integrating threat intelligence into detection and response workflows.
- Familiarity with SOAR platforms and modern security operations practices.
- Experience developing scripts and automations using technologies such as Python, PowerShell, or similar languages.
- Understanding of AI/ML concepts and practical application of AI-driven security monitoring, detection, and response capabilities.
- Experience implementing security controls for AI-enabled solutions and assessing associated risks.
- Working knowledge of regulatory, compliance, and audit requirements within highly regulated environments.
- Experience with ITSM and workflow platforms such as ServiceNow or equivalent solutions.
- Strong analytical, troubleshooting, and problem-solving capabilities with the ability to manage complex technical challenges.
- Excellent verbal and written communication skills with the ability to communicate effectively across technical and non-technical audiences.
- Bachelor's degree in Computer Science, Information Technology, Engineering, Cyber Security, or a related discipline; equivalent experience will be considered.
- Industry certifications such as CISSP, GCIH, GCIA, GCFA, Security+, Azure Security Engineer, or similar credentials are highly desirable.
- Experience supporting Operational Technology (OT), Industrial Control Systems (ICS), or SCADA environments is considered a strong asset.
- Demonstrated leadership capabilities with experience mentoring team members and influencing security outcomes across the organization.
Affinity Earn
Know someone who’s great for this, or any of our open roles? Earn up to $4,000/year for each successful referral through Affinity Earn. You can also earn up to $50,000 for helping us find new clients. Learn about our referral program at https://affinity-group.ca/earn/ or browse our jobs & follow us at https://www.linkedin.com/company/affinity-staffing/jobs/
About Affinity
Affinity Group is a technology and business consulting and services company. We believe in creating long term relationships between clients and consultants that foster a mutually beneficial partnership. Affinity is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. All employment is decided on the basis of qualifications, merit and business need.
For more information on Affinity, please visit www.affinity-group.ca
Job Number: 13731