×
Register Here to Apply for Jobs or Post Jobs. X

Senior CorpSec Analyst

Job in Vancouver, BC, Canada
Listing for: Jobtailor
Full Time position
Listed on 2026-07-19
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security
Salary/Wage Range or Industry Benchmark: 110000 - 150000 CAD Yearly CAD 110000.00 150000.00 YEAR
Job Description & How to Apply Below

Responsibilities

  • Lead investigations and incident response for medium- and high-severity security events — phishing campaigns, insider risk, compromised accounts, data-loss concerns — owning the response from triage through resolution and post-incident review.
  • Own detection engineering across the corporate security stack — tune DLP, EDR, phishing templates, remediations, and SSO/IdP signals; build correlation rules; reduce false-positive rates without sacrificing coverage.
  • Drive root-cause analysis after incidents and near-misses, then translate findings into durable runbooks, controls, and tooling changes.
  • Build and maintain automations and integrations that move work left — auto-remediation playbooks, signal enrichment, evidence collection pipelines.
  • Define, document, and evolve internal incident response playbooks for insider threat, compromised device, and data-loss scenarios.
  • Partner with the Manager, Corp Sec on tooling decisions — evaluate, configure, and operate platforms across EDR, DLP, phishing, SIEM, and SOAR.
  • Tune and evolve security tooling for AI detection — address risks of unauthorized data movement, agentic workflows, and the lethal trifecta.
  • Drive correlation and visibility capability across Clio s security stack so detection and investigation stay timely as the company grows.
  • Act as incident commander on high-severity events — coordinate response across respective teams, as needed; communicate clearly to stakeholders during and after.
  • Raise the operational bar of the team — coach junior analysts, review their investigations, share patterns and gotchas, and write documentation, scripts, and/or automations for others to learn from.
  • Identify operational health problems before they become incidents — propose, prioritize, and execute the work to close gaps.
  • Drive cross-team initiatives that no single team owns — DLP policy refinement, MDM coverage, audit log centralization, AI tooling guardrails.
  • Support security compliance requirements for SOC 2, ISO 27001, GovRAMP, and PCI-DSS — own and design technical evidence pipelines, not just one-off collection.
  • Maintain Clio trust by communicating transparently and proportionately — we design to protect, not to surveil.
Requirements
  • 5–8 years of hands-on experience in security operations, detection engineering, or incident response.
  • Deep hands-on experience with at least three of: EDR, DLP, Phishing platforms, SIEM, or Google Workspace security controls — you ve configured, tuned, and operated them in production.
  • Demonstrated experience leading security incidents end-to-end — you ve been the incident commander, not just a contributor.
  • Track record of root-cause investigation — you fix the problem, not the symptom, and translate the fix into a durable control or automation.
  • Strong written communication — your runbooks, post-incident reviews, and decisions are easy to follow for engineers outside Corp Sec.
  • Demonstrated ability to coach or mentor more junior analysts — you raise the bar of those around you, not just your own.
  • Comfort with ambiguity — you can take an open-ended problem ("our DLP signal-to-noise is bad") and produce a concrete, prioritized plan.
  • A healthy curiosity to look for the why and fix the problem rather than the symptom.
  • Experience using, observing, and securing AI systems, platforms, and agents.
  • Growth mindset when it comes to process improvement and new technologies, especially AI.
  • Preferred Experience designing or operating SIEM or detection-as-code pipelines.
  • Experience contributing to security compliance programs including SOC 2, ISO 27001, GovRAMP, or FedRAMP.
  • Scripting fluency (Python, Bash, Power Shell) for automating investigation, evidence collection, and remediation.
  • Industry certifications such as CISSP, CISM, GCIH, GCIA, or CompTIA Security+.
  • Comfortable jumping onto due-diligence calls if Compliance requires assistance with customer Risk Interviews.
ATS Optimization Keywords

Below are skills and terms extracted directly from this job posting to improve Applicant Tracking System (ATS) visibility. This unique feature helps candidates tailor their applications more effectively — a feature exclusive to Job Tailor job listings.

Hard Skills
  • Incident Response
  • Detection Engineering
  • Root-Cause Investigation
  • Automation
  • Security Tooling Tuning
  • DLP Configuration
  • EDR Operation
  • SIEM Management
  • Phishing Platform Management
  • Scripting (Python, Bash, Power Shell)
Soft Skills
  • Strong Written Communication
  • Coaching and Mentoring
  • Comfort with Ambiguity
  • Curiosity
  • Growth Mindset
Certifications & Qualifications
  • CISSP
  • CISM
  • GCIH
  • GCIA
  • CompTIA Security+
#J-18808-Ljbffr
Position Requirements
10+ Years work experience
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary