Talent.com
Randstad Canada
Intermediate Security AnalystRandstad Canada • Toronto, Ontario, CA
Intermediate Security Analyst

Intermediate Security Analyst

Randstad Canada • Toronto, Ontario, CA
Il y a 2 jours
Type de contrat
  • Temporaire
  • Quick Apply
Description de poste

We are seeking a highly accomplished Security Analyst - Intermediate for an enterprise-level contract opportunity based in Toronto. In this role, you will take on a premier cybersecurity, governance, and risk management capacity, specializing in performing vendor risk assessments, monitoring operational security events, and enhancing Third-Party Risk Management (TPRM) programs.

As an intermediate security analyst, you will bridge the gap between technical threat monitoring, regulatory compliance frameworks, and external vendor governance. Operating within a hybrid work model, you will monitor real-time security alerts, evaluate cyber threats, report on key security performance metrics, and align internal IT security policies with industry standards such as ISO 27001, NIST, PCI-DSS, and FIPPA. This position is tailored for an analytical security authority who can conduct vendor risk reviews, assist with internal and external audits, and drive continuous improvements across cybersecurity governance programs.

Location: Toronto, ON

Assignment Type: Hybrid (3 days per week onsite, 2 days remote)

Contract Duration: 6-month contract

Advantages
Broad Cybersecurity Scope: Combines hands-on incident monitoring and analysis with high-level cybersecurity governance, risk management, and compliance (GRC).

Robust TPRM Program Engagement: Lead third-party risk assessments, review vendor security attestations, and define contractual security controls.

Industry Standards Alignment: Gain direct experience managing compliance against ISO 27001, NIST, PCI-DSS, and FIPPA standards.

Balanced Hybrid Model: Enjoy a flexible work arrangement combining collaborative onsite teamwork in Toronto with remote work.

Responsibilities
Perform real-time monitoring and analysis of security events, investigating alerts, network traffic, logs, and indicators of compromise to respond to potential incidents.

Support the design, implementation, and execution of Third-Party Risk Management (TPRM) frameworks and conduct vendor risk assessments prior to contract execution.

Gather, prepare, and report cybersecurity performance metrics and KPIs to measure security service effectiveness and report status to senior management and audit teams.

Ensure organizational adherence to IT security policies, governance requirements, and regulatory standards including ISO 27001, NIST, PCI-DSS, and FIPPA.

Support internal and external security audits (such as PCI and CSAE 3416 audits), assisting with evidence collection and remediation tracking.

Collaborate with Risk & Compliance, Privacy, Finance, and Procurement teams to evaluate risk appetite, coordinate risk treatments, and integrate security controls into vendor contracts.

Review vendor security control attestation reports, assess gaps, and provide security input into third-party penetration testing activities.

Assist with digital asset inventory management, ensuring proper identification, classification, ownership, and risk mapping for key business applications.

Deliver security guidance, promote compliance awareness across business units, and assist in developing cybersecurity training materials.

Qualifications
Core Technical & Risk Management Requirements
IT Security & Risk Experience: 4 to 6 years of experience in progressively advancing IT security/cybersecurity roles, with 3 to 5 years of focused competency in IT risk management and cybersecurity governance.

Third-Party Risk Management (TPRM): Proven experience performing vendor risk assessments, evaluating third-party security attestations, and gathering security performance metrics.

Standards & Compliance Knowledge: Working knowledge of enterprise cybersecurity and privacy frameworks, including ISO 27001, NIST, PCI-DSS, and FIPPA.

Operational Monitoring & Analysis: Familiarity with operational security monitoring, log analysis, network traffic analysis, and incident response fundamentals.

Education: Degree in Business, Engineering, Information Systems, Computer Science, or a related discipline (or equivalent combination of education, training, and experience).

Preferred Certifications & Assets
Professional Certifications: Professional security certifications such as CISSP, CISM, CISA, CRISC, CGEIT, or similar credentials are considered strong assets.

Methodology & Operations: Agile certifications (e.g., ACP, CSPO) and experience in IT project delivery or operations are assets.

Public Sector Context: Prior experience within a public sector or broader public sector environment is nice to have.

Soft Skills & Professional Attributes
Communication & Collaboration: Excellent written and verbal communication skills to articulate complex cybersecurity risks and compliance requirements to technical teams and executive management.

Stakeholder Management: Strong interpersonal and consultative capabilities to build cross-departmental relationships across Procurement, Legal, Finance, and Operations.

Summary
If you're interested in the "Security Analyst - Intermediate" role based in Toronto, we encourage you to apply online at www.randstad.ca.
Only qualified candidates will be contacted for the next steps. We look forward to hearing from you!

Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.

Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.

Créer une alerte emploi pour cette recherche

Intermediate Security Analyst • Toronto, Ontario, CA

Offres similaires

Security Analyst

Obsidiantoronto, on, Canada
Temps plein

Mercor is partnering with leading AI labs to engage experienced cybersecurity professionals — security analysts, penetration testers, incident responders, threat intelligence specialists, and secur... Voir plus

 • Offre sponsorisée

Experienced Info Security Analyst Position

Haventree Banktoronto, on, Canada
Temps plein

Elevate your career as a Senior Information Security Analyst at Haventree Bank, where your skills will directly enhance our security practices.This role combines technical execution with strategic ... Voir plus

 • Offre sponsorisée

Security Analyst - Security & Governance Compliance

Staples CanadaRichmond Hill, York Region, CA
Temps plein

Some of what you will do: The Security Analyst, Security Risk & Compliance will support the management and continuous improvement of Staples Canada’s PCI compliance program and broader cybersecurit... Voir plus

 • Offre sponsorisée

Security Program Manager Stouffville ON

Cprvisionwhitchurch stouffville, on, Canada
Temps plein

Drive security excellence as a Security Program Manager at Portfolio+ Inc.Stouffville, ON, focusing on enterprise risk and compliance frameworks.This specialized role involves leading the enterpris... Voir plus

 • Offre sponsorisée

Security Analyst, Lawful Acces

Rogers CommunicationsToronto, ON, CA
Temps plein

We are committed to connecting Canadians through unique partnerships, our world-class network and content Canadians love—and our innovative team is growing.We are looking for dedicated team members... Voir plus

 • Offre sponsorisée

Senior Security Analyst

MindlanceToronto, ON, CA
Temps plein

Global Cyber Security team, providing deep technical expertise and advisory support across endpoint and threat surface security platforms.This role focuses on maintaining and strengthening enterpri... Voir plus

 • Offre sponsorisée

Principal Security Analyst - Remote

CyderesToronto, ON, CA
Télétravail
Temps plein

Be among the first 25 applicants.Cyderes (Cyber Defense and Response) is a pure-play, full life-cycle cybersecurity services provider with award-winning managed security services, identity and acce... Voir plus

 • Offre sponsorisée

Information Security Analyst in Downtown Toronto

DelpathToronto, Ontario, Canada
Temps plein

Become a key player in cybersecurity as an Information Security Analyst, working hybrid in downtown Toronto.Focus on data loss prevention and optimize security measures across the organization.This... Voir plus

 • Offre sponsorisée

Security Analyst

York UniversityToronto, ON, CA
Permanent

The Security Analyst contributes to the mission of the University by supporting the delivery of information security program.This includes security investigations, assessments, monitoring and incid... Voir plus

 • Offre sponsorisée

Cyber Security Analyst

Lorex TechnologyMarkham, ON, CA
Temps plein

For 34 years, Lorex has been creating security systems designed to protect your home and business.Founded and headquartered in Canada, we’ve grown to become leaders in DIY (Do It Yourself) security... Voir plus

 • Offre sponsorisée

Akamai API Security or NoName API Security Analyst

Net2Source Inc.Toronto, ON, CA
Temps plein

Akamai API Security or NoName API Security Analyst.This position is offered by Net2Source Inc.Your actual pay will depend on your skills and experience — please consult with your recruiter for more... Voir plus

 • Offre sponsorisée

Penetration Testing & Application Security Consultant

Rsm Us Llp.Toronto
Temps plein

A leading professional services firm in Toronto is seeking a Security Analyst with expertise in web security.The role involves performing security assessments, conducting penetration testing, and c... Voir plus

 • Offre sponsorisée

Senior Information Security Analyst

ScotiabankToronto, ON, CA
Temps plein

Senior Information Security Analyst.Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.Contributes to the successful delivery and operational supp... Voir plus

 • Offre sponsorisée

Security Analyst - Part Time

Equifax, Inc.Toronto, ON, CA
Temps partiel

As our IT Security Analyst, this role requires a motivated self-starter.Someone who has strong analytical and problem-solving skills, a deep understanding of risk and compliance management principl... Voir plus

 • Offre sponsorisée

Senior Security Engineer

EQ Bank | Equitable BankToronto, Ontario, Canada
Temps plein

Senior Security Engineer with a strong Cloud Security background.The candidate will have an in-depth Zero Trust and SASE security model understanding.Responsibilities include Cloud Logs Acquisition... Voir plus

 • Offre sponsorisée

Senior Analyst, Security Compliance

P2PToronto, ON, CA
Temps plein

Our Krakenites are a world-class team with crypto conviction, united by our desire to discover and unlock the potential of crypto and blockchain technology.Kraken is a mission-focused company roote... Voir plus

 • Offre sponsorisée

Security Analyst - Security & Governance Compliance

TVET CollegeRichmond Hill, York Region, CA
Temps plein

Security Analyst - Security & Governance Compliance.The Security Analyst, Security Risk & Compliance will support the management and continuous improvement of Staples Canada’s PCI compliance progra... Voir plus

 • Offre sponsorisée

Workday Security Analyst

neteffectsToronto, ON, CA
Temps plein

Remote from the UK - to work for an International US-based company.Workday security area – focusing on Workday HR user, domain, business process, and integrations security, privacy, audit, controls... Voir plus

 • Offre sponsorisée

Hybrid Security Operations Analyst: Cloud & Threat Detection

IFSToronto, ON, CA
Temps plein

A leading tech company in Toronto is seeking a Security Operations Analyst to enhance security in a hybrid environment combining on-premise and cloud systems.The candidate will manage incident resp... Voir plus

 • Offre sponsorisée

Senior Application Security Specialist

AIR MILES Reward ProgramToronto, ON, CA
Temps plein

The AIR MILES Reward Program is one of Canada’s most recognized loyalty programs, with over 10 million active collector accounts, representing more than half of all Canadian households.AIR MILES co... Voir plus