Cyber Security Analyst
Toronto, ON
Technology – Information Security /
Full Time - Permanent /
Hybrid
Caseware is one of Canada's original Fintech companies, having led the global audit and accounting software industry for over 30 years, with more than 500,000 users across 130 countries and available in 16 different languages. While you might not have heard of us (yet) over 36,000 accounting and audit professionals list Caseware as a skill on their LinkedIn profiles!
We are looking for a proactive and detail-oriented Cybersecurity Analyst to join our Cyber Security Team. This role will perform in an internal SOC function with a focus on proactive security configuration, alert response, incident triage, threat hunting and cross-functional collaboration with IT, DevOps and Engineering groups. You will serve as a key first responder to security alerts, working to detect, analyze, and mitigate threats across our corporate and cloud environments.
❗This is a full-time, permanent position.
📍 Location:
This is a hybrid role, requiring the successful candidate to work 3 days a week in our Toronto office located at 351 King Street East, Toronto, Ontario
What you will be doing:
- SOC Support & Continuous Monitoring:
- Operate as a core member of the internal SOC, ensuring timely identification and resolution of security events.
- Enhance SOC workflows by developing playbooks and automating repetitive triage tasks.
- Improve detection capabilities through tuning of alert rules and use case development.
- Cloud Security & Infrastructure Support:
- Monitor and assess AWS, Azure, and GCP environments for misconfigurations, anomalous behavior, and security drift.
- Validate and enforce IAM and SSO policies, supporting identity governance.
- Collaborate with Cloud and Security Engineering teams on architectural reviews and compliance validation.
- Assist in implementing data protection strategies across multi-cloud environments.
- Alert Response & Triage:
- Monitor security information and event management (SIEM) platforms for alerts and indicators of compromise.
- Triage incoming alerts to determine severity, scope, and potential impact.
- Collaborate with the incident response team to contain and mitigate incidents.
- Perform initial forensic investigation and log analysis as part of alert follow-up.
- Threat Intelligence & Compliance:
- Track evolving threat trends, leveraging frameworks such as MITRE ATT&CK.
- Contribute to compliance initiatives and audits through evidence collection and risk assessments.
- Maintain documentation on cloud security posture and SOC operations.
What you will bring:
- 3–5 years of experience in a cybersecurity analyst role, preferably in a SOC or SaaS cloud operations context.
- Hands-on experience with SIEM, EDR, DLP, and vulnerability management platforms.
- Solid understanding of network security protocols, firewalls, and cloud-native logging tools.
- Experience with multi-cloud environments (AWS, Azure, GCP).
- Strong analytical and communication skills with the ability to translate technical findings for non-technical stakeholders.
- Knowledge of cloud security standards and compliance frameworks (CIS, NIST, ISO 27001).
What's in it for you:
▪️Innovation is at our core. We work with cutting-edge technology in accounting and financial reporting, constantly pushing the boundaries to create impactful software solutions.
▪️We are committed to a collaborative culture, where your ideas are valued, and knowledge sharing is encouraged within a supportive, inclusive team.
▪️Work-life balance is important to us. We offer flexible work options, remote opportunities, and generous time-off policies to ensure a healthy work-life balance.
▪️We offer competitive compensation, including a competitive salary and comprehensive benefits such as health insurance and retirement plans.
▪️We are driven by impactful work. Your contributions directly affect how our clients manage financial processes and drive their success.
▪️Recognition and rewards matter to us. We celebrate hard work through recognition programs, performance bonuses, and opportunities for career growth.
▪️We embrace global opportunities. Work on international projects and collaborate with a diverse, global team.
About Caseware:
Caseware's cutting-edge software products are meticulously designed for accounting firms, corporations, and governments. Our teams are continually collaborating, innovating, and building upon our existing suite of products. With a customer-focused mindset, we are building technology that is shaping what the future of audits, financial reporting, and financial data analytics will look like.
With a recent strategic investment from Hg Capital in 2020, Caseware is now in its next major growth phase as we double down on the people and products that have made Caseware so successful to date.
One of Caseware's core values is Many Voices, One Team and with that in mind, we're dedicated to building teams as diverse as our customers in an equitable and inclusive way. We welcome and encourage candidates of all backgrounds to apply. Should you require accommodations or have any questions at any point during the application or interview process, please e-mail our People Operations team at talent@caseware.com.
Background Check:
Any candidates successful in obtaining an offer for a position will need to successfully complete a background check through Certn.co which typically includes an Identity Verification and Criminal Record Check. Executives and Senior Managers will undergo a Soft Credit Check as well. Candidates residing in the Netherlands and Germany are excluded from undergoing background checks via Certn.co
Security and Fraud:
Caseware takes the security of candidates seriously. All legitimate communication from us will come from email addresses ending in @caseware.com and our open positions are always listed on reputable job boards and on our website https://jobs.lever.co/caseware. We will NEVER ask for payment or financial information from you. If you receive an unsolicited job offer, proceed with extreme caution.