Back to job search
M
MNPVerified Job Source

SOC Tier 1 Analyst

Continuously monitor and triage security alerts using platforms like Microsoft Sentinel and Defender XDR according to established playbooks. Document investigation steps and escalate high-severity incidents to Tier 2 analysts while maintaining situational awareness of the threat landscape.

  • On-site
  • Calgary, AB
  • Posted Jun 11, 2026
  • 1 position

Job summary

What do you think of when you hear the name MNP? We are more than a prominent consulting firm in tax and accounting, we are redefining how organizations succeed in the digital age by bridging strategic vision, technical innovation, and operational execution to deliver transformative results. Make an impact with our Managed Security Services team as a SOC Tier 1 Analyst. This diverse team of tech-savvy problem solvers enables clients to take a proactive and prepared approach to cyber crime and capitalize on new technologies and innovations. As a security defender, you’ll investigate threats, develop policies and enhance infrastructure to minimize the impact of security-related events and protect clients’ business operations and reputation. At MNP, you will work alongside a collaborative team of creative thinkers and problem-solvers. You will gain hands-on experience, tackle meaningful challenges, and grow your skills in an environment where your voice is valued, and your development is a priority. If you are ready to accelerate your career and make a lasting impact, this is where your journey begins. Responsibilities * Continuously monitor security alerts within diverse security platforms like Microsoft Sentinel and Microsoft Defender XDR. * Perform initial triage and analysis of incoming security alerts according to predefined playbooks and Standard Operating Procedures (SOPs). * Utilize basic Kusto Query Language (KQL) queries within Microsoft Sentinel to investigate alerts and gather preliminary event context. * Work with both clients and vendors to troubleshoot and resolve issues * Investigate assigned tickets; responsible for the task until it has been completed/resolved * Monitor and resolve incidents and support requests; ensure response/resolution within service level agreement (SLA) targets * Escalate complex, high-severity, or confirmed security incidents to SOC Tier 2 Analysts promptly, providing clear, concise, and accurate information. * Meticulously document all investigation steps, findings, and actions taken within the designated ticketing system. * Maintain situational awareness regarding the current cyber threat landscape and the specific security posture of monitored client environments during each shift. * Participate actively in shift handover procedures to ensure seamless continuity of operations and knowledge transfer between analyst teams. * Contribute to the development of new ideas and approaches to improve work processes * Attend internal MNP courses to further develop knowledge around performance improvement * This role operates on a rotating 12-hour shift schedule (e.g., 7am-7pm / 7pm-7am, 4 days on / 4 days off), including nights, weekends, and holidays, to ensure continuous security coverage. Skills and Experience * Fundamental understanding of core cybersecurity principles, including common threats, vulnerabilities, attack vectors, and security controls. * Familiarity with Security Information and Event Management (SIEM) concepts and systems. Direct experience with AlienVault and Microsoft Sentinel, including alert triage and executing basic KQL queries, is highly preferred. * Exposure to Endpoint Detection and Response (EDR) concepts. Experience navigating and utilizing the Microsoft Defender for Endpoint, SentinelONE, or Sophos is advantageous. * Basic understanding of common networking protocols and their relevance to security event analysis. * Familiarity with Windows and/or Linux operating system fundamentals. * Strong troubleshooting skills * Demonstrated ability to accurately follow detailed technical documentation, such as playbooks and SOPs. * Basic knowledge of the MITRE ATT&CK framework and its application in understanding attacker techniques is beneficial. * Experience with the following technologies: Check Point, Palo Alto, AlienVault, Microsoft Sentinel, Microsoft Defender, SentinelOne. * Post-Secondary Degree or Diploma in Information Technology, Computer Science, or a related discipline, or equivalent hands-on experience in a cybersecurity or IT operations role. * Ideally, 1-2 years of prior experience working within a Security Operations Center (SOC) or a closely related IT security function (e.g., network security, system administration with security focus). However, motivated recent graduates with relevant cybersecurity coursework, internships, or demonstrable passion and foundational skills will be actively considered. * Foundational cybersecurity certifications such as Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900) or CompTIA Security+ are desirable. Holding or actively pursuing the Microsoft Certified: Security Operations Analyst Associate (SC-200) is a strong advantage. MY REWARDS @ MNP With a focus on high-potential earnings, MNP is proud to offer customized rewards that support our unique culture and a balanced lifestyle to thrive at work and outside of the office. You will be rewarded with generous base pay, vacation time, 4 paid personal days, a group pension plan with 4% matching, voluntary savings products, bonus programs, flexible benefits, mental health resources, exclusive access to perks and discounts, professional development assistance, MNP University, a flexible ‘Dress For Your Day’ environment, firm sponsored social events and more Diversity@MNP We embrace diversity as a core value and celebrate our differences. We believe each team member contributes unique gifts and amplifying their potential makes our business stronger. We encourage people with disabilities to apply!

What you’ll do

Continuously monitor and triage security alerts using platforms like Microsoft Sentinel and Defender XDR according to established playbooks. Document investigation steps and escalate high-severity incidents to Tier 2 analysts while maintaining situational awareness of the threat landscape.

Requirements

Requires a degree or diploma in IT, Computer Science, or equivalent experience, ideally with 1-2 years of SOC experience or relevant coursework for graduates. Proficiency in SIEM/EDR tools and foundational certifications like Security+ or SC-900 are highly desired.

Benefits

• Generous Base Pay • Vacation Time • 4 Paid Personal Days • Group Pension Plan With 4% Matching • Voluntary Savings Products • Bonus Programs • Flexible Benefits • Mental Health Resources • Perks And Discounts • Professional Development Assistance • MNP University • Flexible Dress Code • Firm Sponsored Social Events

Other relevant skills

Identified from the job description. Confirm important requirements above.

  • Security Alert Monitoring
  • Incident Triage
  • Kusto Query Language (KQL)
  • SIEM
  • EDR
  • Network Protocols
  • Windows OS
  • Linux OS
  • Troubleshooting
  • MITRE ATT&CK Framework
  • Microsoft Sentinel
  • Microsoft Defender XDR
  • SentinelOne
  • Sophos
  • Check Point
  • Palo Alto

Job areas

  • Security & Safety
  • Technology
  • Consulting
  • Software
  • Data & Analytics

Additional details

Minimum education
Professional degree
Minimum experience
0+ years
Posting language
English
Working hours
40 hours per week