CF CloudFrame Job Scanner Open Dashboard →
Verified Active Opening

Security Operations Analyst II

Alphasense • Remote - Canada; Vancouver

Job Description

<div class="content-intro"><h2><strong>About AlphaSense: </strong></h2> <p style="text-align: justify;"><span style="font-size: 12pt;">The world’s most sophisticated companies rely on AlphaSense to remove uncertainty from decision-making. With market intelligence and search built on proven AI, AlphaSense delivers insights that matter from content you can trust. Our universe of public and private content includes equity research, company filings, event transcripts, expert calls, news, trade journals, and clients’ own research content. </span></p> <p style="text-align: justify;"><span style="font-size: 12pt;">The acquisition of Tegus by AlphaSense in 2024 advances our shared mission to empower professionals to make smarter decisions through AI-driven market intelligence. Together, AlphaSense and Tegus will accelerate growth, innovation, and content expansion, with complementary product and content capabilities that enable users to unearth even more comprehensive insights from thousands of content sets. Our platform is trusted by over 6,000 enterprise customers, including a majority of the S&P 500. Founded in 2011, AlphaSense is headquartered in New York City with more than 2,000 employees across the globe and offices in the U.S., U.K., Finland, India, Singapore, Canada, and Ireland. Come join us!</span></p></div><p><strong>Remote within Canada, able to work in the Pacific time zone</strong></p> <p><strong>ABOUT THE ROLE</strong></p> <p>We are hiring <strong>Security Operations Analyst II</strong> to join our Security Operations team in a fully remote capacity from Canada. This role sits at Tier 1–2 in our operating model — you are past the stage of learning what alerts look like and ready to own triage, perform structured investigations, and contribute to detection quality. You will handle the day-to-day alert queue, investigate escalated or ambiguous cases, handle incidents and work closely with senior analysts and the Security Operations Manager to close coverage gaps.</p> <p>We expect you to think analytically, document thoroughly, and operate with growing independence. You will be supported by experienced colleagues and a mature toolset, but you are expected to bring real investigative instinct and a curiosity to grow to the role from day one.</p> <p><strong>WHAT YOU WILL DO</strong></p> <p><strong>Alert Triage & Investigation</strong></p> <ul> <li>Monitor and triage alerts across endpoint, network, cloud, runtime and identity data sources with accuracy and appropriate urgency</li> <li>Perform structured investigations on escalated or ambiguous alerts: pivot across log sources, correlate events, and build a coherent timeline</li> <li>Classify alerts correctly — true positive, false positive, or benign — with documented rationale, not just a verdict</li> <li>Identify scope and blast radius on confirmed incidents: affected users, systems, and data before escalating or containing</li> <li>Escalate to senior analysts with a complete investigation package — context, evidence, timeline, and a hypothesis</li> </ul> <p><strong>Incident Response Support</strong></p> <ul> <li>Participate in active incident response under senior analyst or manager direction: evidence collection, log pulls, timeline reconstruction</li> <li>Execute containment actions — endpoint isolation, account suspension, token revocation — as directed with documented rationale</li> <li>Maintain accurate and timely case documentation throughout the incident lifecycle</li> <li>Contribute to post-incident timelines and assist with root cause documentation</li> </ul> <p><strong&

Job Reference ID: CF-148725 • Posted on CloudFrame Job Scanner