Talent.com
Randstad Canada
Intermediate Security AnalystRandstad Canada • Toronto, Ontario, CA
Intermediate Security Analyst

Intermediate Security Analyst

Randstad Canada • Toronto, Ontario, CA
Il y a 13 jours
Type de contrat
  • Temporaire
  • Quick Apply
Description de poste

We are seeking a highly accomplished Security Analyst - Intermediate for an enterprise-level contract opportunity based in Toronto. In this role, you will take on a premier cybersecurity, governance, and risk management capacity, specializing in performing vendor risk assessments, monitoring operational security events, and enhancing Third-Party Risk Management (TPRM) programs.

As an intermediate security analyst, you will bridge the gap between technical threat monitoring, regulatory compliance frameworks, and external vendor governance. Operating within a hybrid work model, you will monitor real-time security alerts, evaluate cyber threats, report on key security performance metrics, and align internal IT security policies with industry standards such as ISO 27001, NIST, PCI-DSS, and FIPPA. This position is tailored for an analytical security authority who can conduct vendor risk reviews, assist with internal and external audits, and drive continuous improvements across cybersecurity governance programs.

Location: Toronto, ON

Assignment Type: Hybrid (3 days per week onsite, 2 days remote)

Contract Duration: 6-month contract

Advantages
Broad Cybersecurity Scope: Combines hands-on incident monitoring and analysis with high-level cybersecurity governance, risk management, and compliance (GRC).

Robust TPRM Program Engagement: Lead third-party risk assessments, review vendor security attestations, and define contractual security controls.

Industry Standards Alignment: Gain direct experience managing compliance against ISO 27001, NIST, PCI-DSS, and FIPPA standards.

Balanced Hybrid Model: Enjoy a flexible work arrangement combining collaborative onsite teamwork in Toronto with remote work.

Responsibilities
Perform real-time monitoring and analysis of security events, investigating alerts, network traffic, logs, and indicators of compromise to respond to potential incidents.

Support the design, implementation, and execution of Third-Party Risk Management (TPRM) frameworks and conduct vendor risk assessments prior to contract execution.

Gather, prepare, and report cybersecurity performance metrics and KPIs to measure security service effectiveness and report status to senior management and audit teams.

Ensure organizational adherence to IT security policies, governance requirements, and regulatory standards including ISO 27001, NIST, PCI-DSS, and FIPPA.

Support internal and external security audits (such as PCI and CSAE 3416 audits), assisting with evidence collection and remediation tracking.

Collaborate with Risk & Compliance, Privacy, Finance, and Procurement teams to evaluate risk appetite, coordinate risk treatments, and integrate security controls into vendor contracts.

Review vendor security control attestation reports, assess gaps, and provide security input into third-party penetration testing activities.

Assist with digital asset inventory management, ensuring proper identification, classification, ownership, and risk mapping for key business applications.

Deliver security guidance, promote compliance awareness across business units, and assist in developing cybersecurity training materials.

Qualifications
Core Technical & Risk Management Requirements
IT Security & Risk Experience: 4 to 6 years of experience in progressively advancing IT security/cybersecurity roles, with 3 to 5 years of focused competency in IT risk management and cybersecurity governance.

Third-Party Risk Management (TPRM): Proven experience performing vendor risk assessments, evaluating third-party security attestations, and gathering security performance metrics.

Standards & Compliance Knowledge: Working knowledge of enterprise cybersecurity and privacy frameworks, including ISO 27001, NIST, PCI-DSS, and FIPPA.

Operational Monitoring & Analysis: Familiarity with operational security monitoring, log analysis, network traffic analysis, and incident response fundamentals.

Education: Degree in Business, Engineering, Information Systems, Computer Science, or a related discipline (or equivalent combination of education, training, and experience).

Preferred Certifications & Assets
Professional Certifications: Professional security certifications such as CISSP, CISM, CISA, CRISC, CGEIT, or similar credentials are considered strong assets.

Methodology & Operations: Agile certifications (e.g., ACP, CSPO) and experience in IT project delivery or operations are assets.

Public Sector Context: Prior experience within a public sector or broader public sector environment is nice to have.

Soft Skills & Professional Attributes
Communication & Collaboration: Excellent written and verbal communication skills to articulate complex cybersecurity risks and compliance requirements to technical teams and executive management.

Stakeholder Management: Strong interpersonal and consultative capabilities to build cross-departmental relationships across Procurement, Legal, Finance, and Operations.

Summary
If you're interested in the "Security Analyst - Intermediate" role based in Toronto, we encourage you to apply online at www.randstad.ca.
Only qualified candidates will be contacted for the next steps. We look forward to hearing from you!

Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.

Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.

Créer une alerte emploi pour cette recherche

Intermediate Security Analyst • Toronto, Ontario, CA

Offres similaires

Security Analyst - Security & Governance Compliance

Staples CanadaRichmond Hill, York Region, CA
Temps plein

Some of what you will do: The Security Analyst, Security Risk & Compliance will support the management and continuous improvement of Staples Canada’s PCI compliance program and broader cybersecurit... Voir plus

 • Offre sponsorisée

Senior Security Analyst - C$115,000 - C$125,000 A Year

OpTalent | RecruitmentEast York, Canada
Temps plein

Lead daily security operations, investigate threats, manage vulnerability and protection tools, and coordinate training.Requires 5+ years of experience and familiarity with security platforms. Voir plus

 • Offre sponsorisée

Security Analyst, Lawful Acces

Rogers CommunicationsToronto, ON, CA
Temps plein

We are committed to connecting Canadians through unique partnerships, our world-class network and content Canadians love—and our innovative team is growing.We are looking for dedicated team members... Voir plus

 • Offre sponsorisée

Security Analyst - Part Time

Equifax, Inc.Toronto, Ontario, Canada
Temps partiel

As our IT Security Analyst, this role requires a motivated self-starter.Someone who has strong analytical and problem-solving skills, a deep understanding of risk and compliance management principl... Voir plus

 • Offre sponsorisée

Senior Security Analyst - C$70 - C$80 An Hour

Russell TobinNorth York, Canada
Temps plein

Security Analyst role focused on IT sector cybersecurity and networking.Responsibilities include handling security queues, analyzing threats, reporting, incident response, risk assessment, and stak... Voir plus

 • Offre sponsorisée

Workplace Security Operations & Systems Analyst - Canada - C$55,000 - C$75,000 A Year

ArcadisNorth York, Canada
Temps plein

Analyze and manage workplace security operations and systems across Canada, ensuring compliance, providing technical support, and handling incident response and risk assessments. Voir plus

 • Offre sponsorisée

Penetration Testing & Application Security Consultant

Rsm Us Llp.Toronto
Temps plein

A leading professional services firm in Toronto is seeking a Security Analyst with expertise in web security.The role involves performing security assessments, conducting penetration testing, and c... Voir plus

 • Offre sponsorisée

Senior Information Security Analyst

ScotiabankToronto, ON, CA
Temps plein

Senior Information Security Analyst.Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.Contributes to the successful delivery and operational supp... Voir plus

 • Offre sponsorisée

Senior Security Analyst

MindlanceToronto
Temps plein

Global Cyber Security team, providing deep technical expertise and advisory support across endpoint and threat surface security platforms.This role focuses on maintaining and strengthening enterpri... Voir plus

 • Offre sponsorisée

Infrastructure Security Analyst - C$92,712 - C$109,056 A Year

City of North VancouverNorth York, Canada
Temps plein

Seeking an Infrastructure Security Analyst to support daily security operations, detect and mitigate cyber threats, analyze suspicious activity, respond to incidents, and provide security awareness... Voir plus

 • Offre sponsorisée

Akamai API Security or NoName API Security Analyst

Net2Source Inc.Toronto
Temps plein

Akamai API Security or NoName API Security Analyst.This position is offered by Net2Source Inc.Your actual pay will depend on your skills and experience — please consult with your recruiter for more... Voir plus

 • Offre sponsorisée

RQ00689 - Int. Security Specialist

Source CodeToronto, Ontario, Canada
Temps plein

Develops and implements cyber security strategy program and architecture.Experience with Control Testing and Assurance.Audit against NIST, CIS and ISO.Experience with implementing Risk Management F... Voir plus

 • Offre sponsorisée

Senior Security Engineer

EQ Bank | Equitable BankToronto, Ontario, Canada
Temps plein

Senior Security Engineer with a strong Cloud Security background.The candidate will have an in-depth Zero Trust and SASE security model understanding.Responsibilities include Cloud Logs Acquisition... Voir plus

 • Offre sponsorisée

Senior Security Analyst, Third Party Risk - C$50 - C$55 An Hour

Insight GlobalEast York, Canada
Temps plein

Seeking a Senior Security Analyst to join a GRC team for a retail client in Vancouver.Responsibilities include conducting IT risk assessments, defining security risk profiles, identifying threats, ... Voir plus

 • Offre sponsorisée

Security Analyst

York UniversityToronto, Ontario, Canada
Permanent

The Security Analyst contributes to the mission of the University by supporting the delivery of information security program.This includes security investigations, assessments, monitoring and incid... Voir plus

 • Offre sponsorisée

Security Analyst - Security & Governance Compliance

TVET CollegeRichmond Hill, York Region, CA
Temps plein

Security Analyst - Security & Governance Compliance.The Security Analyst, Security Risk & Compliance will support the management and continuous improvement of Staples Canada’s PCI compliance progra... Voir plus

 • Offre sponsorisée

Workday Security Analyst

neteffectsToronto, ON, CA
Temps plein

Remote from the UK - to work for an International US-based company.Workday security area – focusing on Workday HR user, domain, business process, and integrations security, privacy, audit, controls... Voir plus

 • Offre sponsorisée

Hybrid Security Operations Analyst: Cloud & Threat Detection

IFSToronto, ON, CA
Temps plein

A leading tech company in Toronto is seeking a Security Operations Analyst to enhance security in a hybrid environment combining on-premise and cloud systems.The candidate will manage incident resp... Voir plus

 • Offre sponsorisée

Senior Application Security Specialist

AIR MILES Reward ProgramToronto, ON, CA
Temps plein

The AIR MILES Reward Program is one of Canada’s most recognized loyalty programs, with over 10 million active collector accounts, representing more than half of all Canadian households.AIR MILES co... Voir plus

 • Offre sponsorisée

Senior Security Analyst - $70 - $95 An Hour

NewFound RecruitingEast York, Canada
Temps plein

Seeking a Security Analyst to support a Defence client in assessing and monitoring security for C2 and C4ISR systems.Responsibilities include SA&A, vulnerability analysis, penetration testing, ... Voir plus