1

Security Operations Center Analyst Jobs in Alberta

Security Consultant

Edmonton, AB · On-site

CA$92K - CA$121K/yr

This individual will utilize strong business and technical consulting skills to provide security solutions to our clients from our Security Operations Center ! You are a subject matter expert who ...

Security Consultant

Calgary, AB · On-site

CA$92K - CA$121K/yr

This individual will utilize strong business and technical consulting skills to provide security solutions to our clients from our Security Operations Center ! You are a subject matter expert who ...

Complete a Full Support audit to be submitted to the Remote Operations Centre for approval and ... and Security software * o TCP/IP, DHCP, DNS * o Microsoft SQL experience will be considered an ...

... security operations managers. Attainment of organizational performance goals and objectives ... Vendor management of co-location data center services providers to meet or exceed contracted ...

... operational procedures, and response readiness activities, including incident simulations and tabletop exercises. * Analyze vulnerability intelligence and security findings, guiding prioritization ...

... operational procedures, and response readiness activities, including incident simulations and tabletop exercises. * Analyze vulnerability intelligence and security findings, guiding prioritization ...

next page

Showing results 1-20

Security Operations Center Analyst information

See Alberta salary details

$32.5K

$79K

$131.5K

How much do security operations center analyst jobs pay per year?

As of Aug 9, 2026, the average yearly pay for security operations center analyst in Alberta is $78,966.00, according to ZipRecruiter salary data. Most workers in this role earn between $51,000.00 and $104,000.00 per year, depending on experience, location, and employer.

What skills make an effective security operations center analyst?

To thrive as a Security Operations Center Analyst, you need a strong understanding of cybersecurity principles, network protocols, and incident response, often backed by a relevant degree or certifications like CompTIA Security+ or CISSP. Familiarity with SIEM tools (e.g., Splunk, QRadar), intrusion detection systems, and ticketing platforms is essential for effective monitoring and analysis. Attention to detail, analytical thinking, and clear communication help SOC Analysts excel in identifying threats and collaborating with IT teams. These skills are crucial to quickly detecting, investigating, and mitigating security incidents, protecting organizational assets from cyber threats.

What are the most common challenges security operations center analysts face during daily operations?

Security Operations Center (SOC) Analysts often deal with a high volume of alerts, many of which may be false positives, requiring keen analytical skills to prioritize genuine threats. Staying updated on evolving cyber threats and attack patterns is another challenge, as adversaries continuously adapt their tactics. Additionally, SOC Analysts frequently work in high-pressure environments where quick, accurate decision-making is crucial, and collaboration with IT, incident response teams, and management is essential to ensure coordinated defense efforts.

What is a security operations center analyst?

Security Operations Center (SOC) Analysts are cybersecurity professionals who monitor, detect, and respond to security threats within an organization’s IT environment. They analyze security alerts, investigate incidents, and coordinate responses to mitigate risks and protect sensitive data. SOC Analysts use specialized tools to track suspicious activities, implement security measures, and ensure compliance with security policies. Their work is crucial in defending organizations against cyberattacks and maintaining overall information security.

What is the difference between Security Operations Center Analyst vs Security Analyst?

AspectSecurity Operations Center AnalystSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CISSP, CISA (preferred)
Work EnvironmentMonitoring security alerts in a SOC, 24/7 shiftsAnalyzing security data, conducting risk assessments
Employer & Industry UsagePrimarily in security operations centers, cybersecurity firmsVarious industries including finance, healthcare, government

The Security Operations Center Analyst focuses on real-time monitoring and incident response within a SOC environment, often working in shifts. In contrast, a Security Analyst typically conducts broader security assessments, policy development, and risk analysis across organizations. Both roles require similar certifications and are integral to cybersecurity teams, but their daily tasks and work settings differ.

What does a security operations center analyst do?

A security operations center analyst works on the cybersecurity team at an organization to proactively defend the organization's database, website, servers, and network. In this role you control the security alerts and ensure that each alert is taken care of before the threat of hackers gaining access to your company's information is realized. You may run an investigation if you see similar threats repeatedly to see who is attempting to attack your systems and why. Your other duties may include keeping and analyzing a security log, coordinating with other analysts or security team members, and assessing company vulnerability.

What are popular job titles related to Security Operations Center Analyst jobs in Alberta? For Security Operations Center Analyst jobs in Alberta, the most frequently searched job titles are:
What job categories do people searching Security Operations Center Analyst jobs in Alberta look for? The top searched job categories for Security Operations Center Analyst jobs in Alberta are:
Infographic showing various Security Operations Center Analyst job openings in Alberta as of August 2026, with employment types broken down into 85% Full Time, 12% Part Time, 1% Temporary, and 2% Contract. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $78,966 per year, or $38 per hour.

Security Operations Centre (SOC) Analyst

Cybera

Calgary, AB

Full-time

Medical, Vision

Re-posted 11 days ago


Job description

About the Role

Are you passionate about cybersecurity? Are you tired of hearing about constant cyber attacks on Canadian education institutions, and are eager to make a difference? If so, we have an exciting opportunity for you!


Cybera is a not-for-profit agency whose mission is to improve the lives of Albertans through the use and advancement of digital technologies. We serve the province's education, enterprise, research and government sectors. We have established a regional Security Operations Centre (rSOC) to monitor, detect, and respond to cybersecurity threats targeting Alberta's post-secondary institutions.


As a SOC Analyst, you will have a hands-on opportunity to apply your security knowledge and experience across various cybersecurity domains and stages of incident response . A key factor for success in this role will be your ability to effectively identify and investigate incidents, manage escalations and work with our members throughout the incident lifecycle until resolution.


In this role, you will be encouraged to challenge the status quo, think creatively, and adopt a growth mindset to develop new and innovative solutions to complex challenges. Continuous learning and exposure to leading security technologies will support you as we work towards building advanced defences for cyber threats, with the support of our rSOC team.



What You'll Do:

  • Conduct proactive monitoring, investigation, and escalation of security incidents.
  • Recognize any potential, successful, and unsuccessful intrusion attempts and compromises through correlation analysis of relevant event details and summary information.
  • Investigate malicious URLs, domains and IPs using open source and sector intelligence.
  • Provide mitigation guidance and support in response to identified threats, drawing upon common industry practices and vendor recommendations.
  • Continuously build and evolve high confidence and high fidelity detection rules for anomalous or suspicious events, in collaboration with other rSOC team members.
  • Actively contribute to the continuing development of the rSOC practices, processes, procedures, standards and methodologies, and actively contribute to the knowledge base.
  • Utilize playbooks, guidelines and various techniques for investigating incidents using rSOC technologies.
  • Report log coverage gaps, parsing issues and high-volume detection of false positives, with other rSOC team members.
  • Participate in ongoing monthly meetings with members to present service performance metrics, discuss notable events, and other operational matters.
  • Act as the first point of contact for security incidents and service requests into the rSOC, in line with set SLAs.
  • Apply cybersecurity and privacy principles to organizational requirements.



What You Bring:


Education and Experience

  • Minimum one year in a SOC environment.
  • Experience documenting cybersecurity processes and procedures, and utilizing playbooks to investigate and respond to incidents.
  • (ISC)2, CompTIA, GIAC, or other relevant cybersecurity certifications are desirable.


Skills

  • Understanding of cybersecurity threats and risks to the academic sector.
  • Ability to identify, analyze, document, and report relevant threats and incidents.
  • Experience in identifying and investigating security incidents.
  • Practical understanding of cybersecurity concepts, such as incident response practices,vulnerability management, and IT Service Management concepts.
  • Demonstrated ability to gain trust and credibility from internal and external stakeholders.


Technical Proficiencies

  • Experience with SIEM and UEBA technologies.
  • Experience with SOAR technologies and utilizing playbooks Experience with EDR technologies such as Microsoft Defender ATP, CrowdStrike, or SentinelOne.
  • A thorough understanding of the MITRE ATT&CK framework and Cyber kill-chain.
  • Experience with investigating brute-force attacks, phishing email, malware, and network log analysis.
  • Ability to document and explain technical details clearly and concisely to both technical and non-technical audiences.
  • Practical networking experience with an understanding of TCP/IP and other network protocols.
  • Experience with using threat intelligence feeds; excellent troubleshooting and analytical thinking skills.
  • Strong documentation and communication skills.


These requirements represent an ideal candidate. The potential of the individual's background and experience to meet the responsibilities and expectations of the role is considered in all instances.

This is your opportunity to be a part of a newly formed rSOC that will change the security landscape for post-secondary institutions!


Schedule and Conditions of Employment:

Our team currently ensures coverage between the hours of 6:00am-4:00pm, Sunday through Saturday, with workdays that shift throughout the week on a rotating schedule throughout the year. As the rSOC continues to evolve, rSOC schedules will vary as to best serve our members, ensure coverage, and support organizational needs.


Selected candidates will be required to provide a satisfactory employment and criminal record check as a condition of employment.


Compensation and Location:

This position is based in our Calgary office. Salary will be commensurate with experience. No relocation costs will be awarded.



Benefits of working at Cybera:

This is your opportunity to work for a flexible, tech-forward not-for-profit that is helping Canada become a more equitable place to work, learn, and play! We offer:

  • A hybrid working environment.
  • Highly supportive and inclusive work culture.
  • 35 hour work weeks.


Benefits:

  • Health & Vision benefits from day 1.
  • Long & Short term disability benefits from day 1.
  • Flexible Health Spending Account (after successful probation).
  • Annual professional development funds.
  • Regular Lunch & Learns covering department updates to EDI topics.
  • RRSP program (after successful probation).
  • Healthy snacks in the office - and sometimes unhealthy snacks.
  • 10 days per year to use for sick time or mental health breaks.
  • The opportunity to invest in yourself and your career.



How to Apply:

This posting will remain open until a suitable candidate is found. Your application should include a resume and a short response (in your own words) to two application questions listed below. Your answers should demonstrate how your skillset matches the position requirements (of course we don't expect you to have them all!) While we appreciate all applications, only candidates selected for an interview will be contacted. No phone calls or recruiter assistance at this time, please.


All qualified applicants will receive consideration for employment without regard to race, religious beliefs, colour, gender, disability, age, ancestry, place of origin, marital status, source of income or family status of that person or of any other person.


Number of hires for this role: 1