Talent.com
Intact Financial Corporation
Senior Security Advisor, Threat ModellerIntact Financial Corporation • Scarborough, Ontario, CAN
Senior Security Advisor, Threat Modeller

Senior Security Advisor, Threat Modeller

Intact Financial Corporation • Scarborough, Ontario, CAN
Il y a 6 jours
Salaire
101 800,00 $CA par an
Type de contrat
  • Temps plein
Description de poste

Pay at Intact is about much more than just salary.

  • Flexible work arrangements and a hybrid work model

  • Possibility to purchase up to 5 extra days off per year

  • Multiple benefits offered to support physical and mental wellbeing, including telemedicine, Wellness account and much more

  • Share plan & other savings: up to 12% of salary or even more (ask how you could earn guaranteed income for life)

Salary range (but not limited to):

101,800 - 124,400

Annual bonus target, based on the base salary, with a potential payout of up to double the target (subject to personal and company performance):

12%

As part of our commitment to Win As A Team, we share our success with employees through our annual bonus plan and Employee Share Purchase Plan (ESPP) – with Intact matching 50% of your net shares.

Our pension offerings provide flexibility and long-term security for our employees beyond their careers. We are one of the few companies offering the opportunity to receive guaranteed income for life via our defined benefit pension plan.

Salary for the candidate will be determined taking into consideration a number of factors including: experience, skills, qualifications, anticipated contribution to role, internal equity, etc. The salary range presented above is based on a 35-hour workweek and would represent a majority of different candidate profiles. However, we encourage candidates who may fall outside of this range to apply as well.


About the role

We’re looking for a Senior Security Advisor (Threat Modeller) to join our growing team!

What you'll do here:

  • Perform structured threat modelling (e.g., STRIDE, MITRE ATT&CK, kill chain, attack trees, misuse/abuse cases) for applications, systems, and architecture patterns.

  • Work with data flow diagrams (DFDs), and architecture diagrams for new and existing systems.

  • Identify assets, trust boundaries, entry points, and potential attack paths.

  • Assess the likelihood and impact of identified threats, and assign inherent and residual risk ratings.

  • Translate threat modelling outcomes into clear security requirements and recommended controls. Document control gaps and track remediation activities through to closure.

  • Collaborate with product, architect, developers, and engineers to support solution design by reviewing proposed architectures, patterns, and design decisions for security implications and providing recommendations.

  • Work with stakeholders to integrate threat modelling into product development workflows (e.g., SDLC, Agile, project delivery) across the organization.

  • Participate in secure code reviews to support security requirements and threat mitigations.

  • Plan and facilitate threat modelling workshops.

  • Communicate complex technical risks in clear, business-relevant language to both technical and non-technical stakeholders.

  • Contribute to the development and continuous improvement of threat modelling methodologies, templates, and tooling.

  • Support incident response and post-incident reviews by mapping exploited paths back to threat models and identifying improvements.

  • Maintain an up-to-date understanding of the threat landscape, including tactics, techniques, and procedures (TTPs), including those relevant to AI-related technologies. This includes staying current with relevant threat intelligence.

  • Apply the Maestro framework (or similar) to structure and standardize threat modelling activities for use cases involving AI agents.

What you bring to the table:

  • Bachelor’s degree in computer science, or any combination of equivalent education and experience.

  • Minimum ten (10) years of experience in information technology, including at least five (5) years in information security, with demonstrated experience in one or more of the following areas: application/cloud security, security architecture, threat modelling or risk assessment, threat intel, incident response, SOC, SIEM, vulnerability management, and red teaming or penetration testing.

  • Strong knowledge of information security management principles and practices.

  • Strong ethical principles and understanding of business and information security ethics.

  • Good knowledge of common security vulnerabilities of web and cloud applications and operating techniques from sources such as SANS, OWASP Top 10 and Cloud Security Alliance (CSA).

  • Relevant certifications include (but are not limited to): CISSP, CISA, CISM, CGEIT, CRISC, GSEC, GISP, CCSP, SSCP, CSSLP, OSCP, SABSA, CEH, GCIH, GCTI, GCFE.

  • Excellent oral and written communication skills –

  • Positive attitude, team spirit and eagerness to learn.

  • Critical mind.

  • Experience working in a Security Operations Centre.

  • Master the digital investigation concepts such as the chain of custody and the digital evidence.

  • Demonstrated commitment to training, self-learning and maintaining proficiency in the technical cybersecurity domain.

  • Experience with threat modelling tools is an asset (e.g., Microsoft Threat Modeling Tool, IriusRisk, Threat Dragon, in-house tools).

  • Experience working with diagramming tools is an asset (e.g., draw.io, Lucidchart, Visio) or code-based diagrams (e.g., PlantUML).

  • Proficiency in English is required; fluency in French is a plus.

  • No Canadian work experience required however must be eligible to work in Canada.

#LI-Hybrid

Ce poste jouera un rôle essentiel au sein de notre équipe. | This position will fill an essential role in our team.
Créer une alerte emploi pour cette recherche

Senior Security Advisor, Threat Modeller • Scarborough, Ontario, CAN

Offres similaires

Senior Security Architect Advisor

Laurentian BankToronto, ON, CA
Temps plein

Shape security policies as a Senior Security Architect.Your expertise will guide the organization’s security architecture strategies while ensuring compliance and risk management in a hybrid enviro... Voir plus

 • Offre sponsorisée

Endpoint Security Lead - Millenilink

Millenilinkrichmond hill, on, ca
Temps plein

Contract (6 Months) | Potential Extension.Millenilink is partnering with a large enterprise organization seeking an experienced Endpoint Security Lead to support a major endpoint hardening, applica... Voir plus

 • Offre sponsorisée

Platform Security Engineer – AWS & FedRAMP - Applicantz

Applicantznewmarket, on, ca
Temps plein

Work needs to be done in EST hours.For Toronto area based candidates, it will be work from office once in a month.We are seeking a Sr Cloud Security & Compliance developer to help advance FedRAMP r... Voir plus

 • Offre sponsorisée • Nouvelle offre

Cyber Security Analyst - markham

Auxo | Growth Partnermarkham, on, ca
Temps plein

Series A B2B SaaS company scaling fast in the industrial tech space.The platform is deeply embedded in how large manufacturers run their operations.And until now, no dedicated security function.Thi... Voir plus

 • Offre sponsorisée • Nouvelle offre

Guidewire RADAR Rating Expert - Lorven Technologies Inc.

Lorven Technologies Inc.newmarket, on, ca
Temps plein

Job Title: RADAR Rating Expert.Location: Remote (US & Canada).Job Type: Contract to Hire / Long-term contract.This role is 100% focused on Guidewire RADAR rating.The RADAR Rating Expert is responsi... Voir plus

 • Offre sponsorisée • Nouvelle offre

Public Safety & Fire Prevention Technician

Kativik Regional Governmentmarkham, on, ca
Permanent

The Kativik Regional Government (KRG) is a supra-municipal organization with jurisdiction over the Quebec territory located north of the 55th parallel.The role of the KRG Civil Security Department ... Voir plus

 • Offre sponsorisée

Detection Rules Engineering Lead

Hack The BoxToronto, ON, CA
Temps plein

Shape the future of security monitoring as a Detection Rules Engineering Lead.Manage the development, testing, and implementation of detection rules to enhance security practices organization-wide.... Voir plus

 • Offre sponsorisée

Senior Risk Specialist, Model Risk

Fidelity InternationalToronto, Ontario, Canada
Temps plein

Job Description**This is a hybrid role with a mix of remote and in-office working*Current work authorization for Canada is required for all openings.Who We Are**At Fidelity, we’ve been helping Cana... Voir plus

 • Offre sponsorisée

Endpoint Security Lead - richmond hill

Millenilinkrichmond hill, on, ca
Temps plein

Contract (6 Months) | Potential Extension.Millenilink is partnering with a large enterprise organization seeking an experienced Endpoint Security Lead to support a major endpoint hardening, applica... Voir plus

 • Offre sponsorisée

RevOps Practice Lead

MergeYourDatamarkham, on, ca
Temps plein

MergeYourData is a RevOps consultancy and Top 0.HubSpot Partner globally, currently growing 150% YoY.We work with mid-market B2B companies and multi-company organizations who need their CRM to func... Voir plus

 • Offre sponsorisée

Senior Security Advisor, Threat Modeller

Intact Financial CorporationToronto, ON, CA
Temps plein

Pay at Intact is about much more than just salary.Multiple benefits offered to support.Wellness account and much more.Share plan & other savings: up to.Employee Share Purchase Plan (ESPP) – with In... Voir plus

 • Offre sponsorisée

Mid-Senior Threat Modeler - DevSecOps

Pacer GroupToronto, ON, CA
Temps plein

Join a growing team as a Threat Modeler with Development Experience, leveraging your skills in security architecture, application security design, and DevSecOps for impactful outcomes.This contract... Voir plus

 • Offre sponsorisée

Findings & Remediation Senior Security Advisor, Cyber Governance & Compliance

IntactToronto, ON, CA
Temps plein

We’re looking for a Findings and Remediation specialist to join our Cyber Governance & Compliance team and help scale our governance program across the IT structure.This role will own the end‑to‑en... Voir plus

 • Offre sponsorisée

Senior Lead Security Advisor

ScotiabankToronto
Temps plein

Select how often (in days) to receive an alert:.Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.The Senior Lead is responsible for providing gu... Voir plus

 • Offre sponsorisée

Enhanced Due Diligence Associate

BET99richmond hill, on, ca
Temps plein

BET99 is Canada's Premiere Online Sportsbook and Casino.Launched in 2020, we have consistently innovated the online gaming landscape every step of the way, exponentially growing our customer base a... Voir plus

 • Offre sponsorisée

Senior Security Engineer - Threat Modeling

SamsaraToronto, ON, CA
Temps plein

Senior Security Engineer - Threat Modeling.We’re seeking a talented Senior Security Engineer with hands‑on experience deploying, managing, leading and performing Threat Models.In this role, you’ll ... Voir plus

 • Offre sponsorisée

Cyber Security Analyst - Auxo | Growth Partner

Auxo | Growth Partnermarkham, on, ca
Temps plein

Series A B2B SaaS company scaling fast in the industrial tech space.The platform is deeply embedded in how large manufacturers run their operations.And until now, no dedicated security function.Thi... Voir plus

 • Offre sponsorisée • Nouvelle offre

Senior Security Engineer — Threat Modeling & IR (Remote/Hybrid)

OpenTableToronto, ON, CA
Télétravail
Temps plein

A leading restaurant technology company is seeking an experienced Information Security professional based in Toronto, Canada.This role will initially be remote with plans to transition to hybrid.Re... Voir plus

 • Offre sponsorisée

Nuclear Technology Advisory Consultant - markham

ITnet, a wholly owned subsidiary of KPMG LLPmarkham, on, ca
Temps plein

We are seeking a highly qualified Nuclear Information Technology Advisory Consultant to provide independent, vendor-neutral advisory services in support of a nuclear program’s Digital Strategy and ... Voir plus

 • Offre sponsorisée • Nouvelle offre

Platform Security Lead: Architect & Threat Modeling

AquanowToronto, Ontario, Canada
Temps plein

A leading technology firm in Canada is seeking a seasoned Platform Security Engineer to lead all aspects of platform security.The ideal candidate will enhance security practices, guide engineering ... Voir plus