bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesMjolnirsecuritySecurity Analyst

Security Analyst

Mjolnirsecurity · Toronto, Ontario, M5H3T9, Canada · Hybrid · Active · BambooHR

Job facts

FieldValue
CompanyMjolnirsecurity
TitleSecurity Analyst
Normalized title-
Department / teamSOC
LocationToronto, Canada
Work modelHybrid / Hybrid
Employment typeFull Time
Salary-
Statusactive
ATS providerBambooHR
Posted / first seen2026-05-01 / 2026-05-30
Changed / last seen2026-05-30 / 2026-06-22

Related slices

PageWhat it containsOpen
Company jobsActive postings from Mjolnirsecurity.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through BambooHR.Open
Provider filtered searchThe same provider as a filtered job collection.Open
City jobsActive postings in Toronto.Open
Department jobsActive postings in SOC.Open
Work model jobsActive Hybrid postings.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanyMjolnirsecurity
Source9fc626a9-c5b5-457b-98cd-c704c3c1adcc
ATS providerBambooHR

Description

About Mjolnir Security Mjolnir Security is a Canadian MSSP and DFIR firm with deep expertise in Microsoft 365 security, endpoint detection and response, threat intelligence, and digital forensics. We operate a proprietary AI-augmented security operations platform and serve enterprise clients in banking, automotive, education, and regulated sectors. All operations are Canadian-data-resident by design. The Role We're hiring a Security Analyst to join our security operations and DFIR practice. You'll support threat monitoring, incident triage, log analysis, M365 security investigations, and endpoint forensics across a portfolio of enterprise clients. You'll work alongside senior DFIR and M365 specialists and be expected to grow fast — this is a hands-on role from day one. What You'll Do Monitor client environments for security events, anomalies, and indicators of compromise using SIEM, EDR, and proprietary tooling Triage and investigate alerts, escalating confirmed incidents per established playbooks Conduct M365 log analysis including Unified Audit Log, Entra ID sign-in logs, and Exchange/Teams telemetry Support DFIR engagements: evidence acquisition, chain-of-custody documentation, timeline reconstruction, and report contribution Write and refine detection rules, Suricata signatures, and threat hunting queries Contribute to threat intelligence briefs (BLUF format): IOC enrichment, OSINT research, and context development Assist with client vulnerability assessments and security posture reviews Document findings clearly for both technical audiences and executive summaries Support the deployment and tuning of security controls including DLP policies, conditional access, and endpoint agents What You Bring 1–3 years of experience in a SOC, MSSP, IT security, or DFIR-adjacent role Working knowledge of Microsoft 365 security: Defender for Endpoint/Identity/O365, Entra ID, Purview Familiarity with SIEM concepts and log analysis (Sumo Logic, Sentinel, or similar) Understanding of common attack techniques (MITRE ATT&CK), phishing chains, and ransomware tradecraft Exposure to network-level security: Suricata, Zeek, firewall log analysis, or packet capture Strong written communication — you can write a coherent incident summary under pressure Security certifications (SC-200, Security+, CySA+, BTL1, or equivalent) are an asset Hands-on experience with forensic tools (Magnet AXIOM, Velociraptor, or similar) is a strong advantage Python or PowerShell scripting for automation or log parsing is a plus Why Join Us Work real DFIR cases and live SOC operations — not a training lab Exposure to a proprietary AI-augmented SOC platform and 90+ internal security tools Mentorship from senior DFIR and M365 specialists with 17+ years of enterprise experience Clear path to Senior Analyst or DFIR Specialist with hands-on case ownership Competitive compensation, hybrid flexibility, and the pace of a firm that builds and ships Location requirement: Candidates must reside in the Greater Toronto Area. This hybrid role requires in-person availability at our office or client sites up to three days per week. Relocation assistance and travel reimbursement are not available for this position.

Full job record

Job ID6b73cf88868c6271515baa0ae0c37c426fedb224
Org IDbf4a8345-9d3e-4c7e-9362-ca359a173e72
Source ID9fc626a9-c5b5-457b-98cd-c704c3c1adcc
Board ID9fc626a9-c5b5-457b-98cd-c704c3c1adcc
Providerbamboohr
Provider Job Key53
TitleSecurity Analyst
Normalized Title
Statusactive
Activeyes
Location TextToronto, Ontario, M5H3T9, Canada
DepartmentSOC
Team
Employment Typefull_time
Workplace Typehybrid
Remote Policyhybrid
CountryCanada
Region
CityToronto
Salary Raw
Salary Min
Salary Max
Salary Currency
Salary Period
Source URLhttps://mjolnirsecurity.bamboohr.com/careers/53
Apply URLhttps://mjolnirsecurity.bamboohr.com/careers/53
First Seen At2026-05-30 06:00:18Z
Last Seen At2026-06-22 11:08:04Z
Last Checked At2026-06-22 11:08:04Z
Last Changed At2026-05-30 06:00:18Z
Inactive At
Source Posted At2026-05-01 00:00:00Z
Source Updated At
Raw Payload Uris3://job-postings-prod-raw-590183727216/raw/provider=bamboohr/board=mjolnirsecurity/date=2026-06-22/2026-06-22T11-08-03-781Z-0df6f53825cd35ef228a2e31045a0c4a08803fc8b37f52e52cb0d38cefb14fdb.json
Event Fields
{
  "content_hash": "6fbb8694ee138f6387f3cd8a3c29c065775ff0859ec784d5343f354b51b669a4",
  "source_hash": "8e746c39cb2c8d81173f47304f42c9109008be42b72ebd86b89820eeaacfd898",
  "last_changed_at": "2026-05-30T06:00:18.321Z",
  "active_status": "active"
}
Parsed Structured
{
  "dedupe": null,
  "language": "en",
  "location": {
    "raw": "Toronto, Ontario, M5H3T9, Canada",
    "city": "Toronto",
    "region": null,
    "country": "Canada",
    "is_remote": false,
    "confidence": 0.95
  },
  "salary_max": null,
  "salary_min": null,
  "inferred_at": "2026-06-22T11:08:04.321Z",
  "launch_scope": {
    "reason": "bamboohr_production_catalog",
    "included": true,
    "location": {
      "raw": "Toronto, Ontario, M5H3T9, Canada",
      "city": "Toronto",
      "region": null,
      "country": "Canada",
      "is_remote": false,
      "confidence": 0.95
    },
    "countries": [
      "Canada"
    ]
  },
  "remote_policy": "hybrid",
  "salary_period": null,
  "workplace_type": "hybrid",
  "salary_currency": null
}
Extensions
{}
Native Structured
{
  "list_job": {
    "id": "53",
    "isRemote": null,
    "location": {
      "city": "Toronto",
      "state": "Ontario"
    },
    "atsLocation": {
      "city": null,
      "state": null,
      "country": null,
      "province": null
    },
    "departmentId": "18622",
    "locationType": "2",
    "jobOpeningName": "Security Analyst",
    "departmentLabel": "SOC",
    "employmentStatusLabel": "Full-Time"
  },
  "detail_errors": [],
  "detail_job_opening": {
    "location": {
      "city": "Toronto",
      "state": "Ontario",
      "postalCode": "M5H3T9",
      "addressCountry": "Canada"
    },
    "datePosted": "2026-05-01",
    "atsLocation": {
      "city": null,
      "state": null,
      "country": null,
      "countryId": null
    },
    "description": "<p><span style=\"font-size: 14pt\">About Mjolnir Security</span></p>\n<p>Mjolnir Security is a Canadian MSSP and DFIR firm with deep expertise in Microsoft 365 security, endpoint detection and response, threat intelligence, and digital forensics. We operate a proprietary AI-augmented security operations platform and serve enterprise clients in banking, automotive, education, and regulated sectors. All operations are Canadian-data-resident by design.</p>\n<p><br></p>\n<p><span style=\"font-size: 14pt\">The Role</span></p>\n<p>We're hiring a Security Analyst to join our security operations and DFIR practice. You'll support threat monitoring, incident triage, log analysis, M365 security investigations, and endpoint forensics across a portfolio of enterprise clients. You'll work alongside senior DFIR and M365 specialists and be expected to grow fast — this is a hands-on role from day one.</p>\n<p><br></p>\n<p><span style=\"font-size: 14pt\">What You'll Do</span></p>\n<ul>\n<li>Monitor client environments for security events, anomalies, and indicators of compromise using SIEM, EDR, and proprietary tooling</li>\n<li>Triage and investigate alerts, escalating confirmed incidents per established playbooks</li>\n<li>Conduct M365 log analysis including Unified Audit Log, Entra ID sign-in logs, and Exchange/Teams telemetry</li>\n<li>Support DFIR engagements: evidence acquisition, chain-of-custody documentation, timeline reconstruction, and report contribution</li>\n<li>Write and refine detection rules, Suricata signatures, and threat hunting queries</li>\n<li>Contribute to threat intelligence briefs (BLUF format): IOC enrichment, OSINT research, and context development</li>\n<li>Assist with client vulnerability assessments and security posture reviews</li>\n<li>Document findings clearly for both technical audiences and executive summaries</li>\n<li>Support the deployment and tuning of security controls including DLP policies, conditional access, and endpoint agents</li>\n</ul>\n<p><br></p>\n<p><span style=\"font-size: 14pt\">What You Bring</span></p>\n<ul>\n<li>1–3 years of experience in a SOC, MSSP, IT security, or DFIR-adjacent role</li>\n<li>Working knowledge of Microsoft 365 security: Defender for Endpoint/Identity/O365, Entra ID, Purview</li>\n<li>Familiarity with SIEM concepts and log analysis (Sumo Logic, Sentinel, or similar)</li>\n<li>Understanding of common attack techniques (MITRE ATT&amp;CK), phishing chains, and ransomware tradecraft</li>\n<li>Exposure to network-level security: Suricata, Zeek, firewall log analysis, or packet capture</li>\n<li>Strong written communication — you can write a coherent incident summary under pressure</li>\n<li>Security certifications (SC-200, Security+, CySA+, BTL1, or equivalent) are an asset</li>\n<li>Hands-on experience with forensic tools (Magnet AXIOM, Velociraptor, or similar) is a strong advantage</li>\n<li>Python or PowerShell scripting for automation or log parsing is a plus</li>\n</ul>\n<p><br></p>\n<p><span style=\"font-size: 14pt\">Why Join Us</span></p>\n<ul>\n<li>Work real DFIR cases and live SOC operations — not a training lab</li>\n<li>Exposure to a proprietary AI-augmented SOC platform and 90+ internal security tools</li>\n<li>Mentorship from senior DFIR and M365 specialists with 17+ years of enterprise experience</li>\n<li>Clear path to Senior Analyst or DFIR Specialist with hands-on case ownership</li>\n<li>Competitive compensation, hybrid flexibility, and the pace of a firm that builds and ships</li>\n</ul>\n<p><br></p>\n<p><span style=\"font-weight: bold\">Location requirement:</span> Candidates must reside in the Greater Toronto Area. This hybrid role requires in-person availability at our office or client sites up to three days per week. Relocation assistance and travel reimbursement are not available for this position.</p>",
    "compensation": "55000-70000",
    "departmentId": "18622",
    "locationType": "2",
    "seekPromoted": false,
    "jobCategoryId": null,
    "jobOpeningName": "Security Analyst",
    "departmentLabel": "SOC",
    "jobOpeningStatus": "Open",
    "minimumExperience": "Experienced",
    "jobOpeningShareUrl": "https://mjolnirsecurity.bamboohr.com/careers/53",
    "employmentStatusLabel": "Full-Time"
  }
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/6b73cf88868c6271515baa0ae0c37c426fedb224?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/bf4a8345-9d3e-4c7e-9362-ca359a173e72JSON
GET https://api.bluedoor.sh/job-postings/v1/sources/9fc626a9-c5b5-457b-98cd-c704c3c1adccJSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/6b73cf88868c6271515baa0ae0c37c426fedb224/eventsJSON