Security Analyst

Ward Technology Talent
ON, Canada
48,5 $ / heure (estimé)
Temps plein
Nous sommes désolés. L'offre d'emploi que vous recherchez n'est plus disponible.

Security Analyst

Contract REMOTE / GTA, ON October 2, 2022

Security Analyst

As an integral member of the Information Services division, the Security Analyst reports to the Manager, Information Security and Privacy.

The Security Analyst will identify, design and implement technical security solutions, controls and tools, governance and policy, support operations and shares in the responsibility for activities related to the development, implementation and operation of our Client’s information security program, based on the information security strategy developed by the Lead Security Analyst.

The Security Analyst is recognized as an expert in the Information Security domain and will work with Company stakeholders to understand how technology can be leveraged to support their business goals while ensuring it aligns with the organizations information security strategy.

Responsibilities

  • Identify and report on information security risks, threats, vulnerabilities and breaches and make recommendations on remediation opportunities to manage risks.
  • Develop, implement and maintain information security governance, policies, procedures and controls in coordination with Director, HIM and Information Privacy and Security to ensure continuous improvement aligned with the changing risk landscape.
  • Assist and support the development and delivery of an Information Security strategic and operating plans.
  • Implement best practice procedures to ensure uniform security architecture throughout Application Development, Operations and Infrastructure.
  • Ensure the team develops and implements the information technology security architecture framework.
  • Ensuring the continuous delivery of day-to-day information security and privacy operations.
  • Ensure team can provide 7 24 monitoring and security incident response.
  • Leads or commissions forensic analysis on security incidents.
  • Ensure the security processes and procedures are followed at all times and escalations are performed in a timely manner.
  • Leads design and execution of vulnerability assessments, penetration tests, risk assessments, and security and privacy audits and ensures they are performed on regular intervals.
  • Develop materials and promote activities to foster information security awareness across the organization.
  • Ensures that projects, programs and other activities in IS are implemented with proper consideration given to information security.
  • Determines minimum security requirements for applications and systems based on policy, data sensitivity, exposure, and other factors.
  • Maintain current knowledge security industry trends and technologies
  • Evaluate new technologies including emerging concepts for security impact on the environment and makes appropriate recommendations.
  • Monitor internet for emerging threats of new attacks and threat vectors.
  • Leads technical implementations of security-related systems.
  • Understand current regulatory environment and related implications to security management compliance.
  • Effectively communicate with a wide range of technical and non-technical personnel.
  • Review and validate IT controls and assess the impact of any related IT deficiencies.
  • Ensure that all documentation and materials are regularly reviewed and up to date.
  • Vendor relationship management.
  • After hours on call work maybe required for this role.

Work Experience Requirements

  • At least 5+ years of Information Security experience with expertise in either client / server, network or application security engineering.
  • Direct working experience performing IT security and risk assessments and audits :

o Working knowledge of information security frameworks such as the National Institute of Standards and Technology (NIST) Cyber Security Framework (CSF), and ISO 2700 standards.

o Working knowledge of auditing frameworks such as COBIT or PCI.

  • Certified Information Systems Security Professional (CISSP) certification is an asset.
  • Health care experience an asset.
  • Experience interpreting industry and regulatory requirements and authoring supporting controls.
  • Strong business and technical acumen.
  • Excellent written and verbal communication skills.

Desired Skills and Knowledge

  • Identity and access management (I&AM) experience with Active Directory, NTFS permissions, LDAP, and Single Sign On (SSO) solutions.
  • Experience developing and maturing information security governance frameworks, such as NIST CSF
  • Experience performing Application penetration testing
  • Application and database security experience including code reviews.
  • Network and security engineering experience including log and network traffic capture analysis.
  • Strong understanding of network protocols (e.g. IP, TCP / IP) and other network administration protocols.
  • Familiarity with Windows, Linux, and UNIX based operating systems.
  • Familiarity and knowledge of application development processes and typical application architectures.
  • Familiarity and understanding of encryption concepts.
  • Experience with system hardening procedures for Windows, Linux and UNIX platforms.
  • Security operations experience with firewalls, IDS / IPS, SEIM and end-point protection platforms.
  • Familiarity with Web application development experience using .NET framework as well client side applications for all mobile platforms.
  • Familiarity with database technology including Oracle and MS SQL.
  • Experience in with Business Continuity Plans and Disaster Recovery Plans.
  • Familiarity with Information Technology Infrastructure Library (ITIL) concepts.
  • Familiarity with architecture frameworks such as The Open Group Architecture Framework (TOGAF).
  • Demonstrated ability to understand the business side of information risk.
  • Strong analytical, research, writing, and communication skills.
  • Must have the ability to communicate with internal / external customers, vendors, management etc. in both formal and informal situations.
  • Ability to work with teams to achieve goals and meet deadlines in a fast-paced environment.
  • Works well under pressure and time constraints and can prioritize competing priorities appropriately.
  • Can work independently with minimal supervision and direction.

Key System Experience

  • Firewall : Palo Alto Networks NGFW
  • Email Security : ProofPoint Email Security Gateway
  • Endpoint Protection : Carbon Black Defense, McAfee EPO
  • Vulnerability Management : Tenable Security Center
  • SIEM : Tenable LCE
  • Nice to have : Cloud Security for Azure / AWS, Scripting

Education

  • Undergraduate degree in Information Management, Computer Science, Engineering, or emphasis in technology or related field
  • Masters degree or postgraduate diploma in information / computer science or a technology-related field preferred.

Security Analyst

Contract REMOTE / GTA, ON October 2, 2022

202-626 King St. W.

Toronto, ON, M5V 1M7

Canada

Stay up-to-date on current recruitment and hiring trends :

Email Address

J-18808-Ljbffr

Il y a 2 jours
Emplois reliés
Offre sponsorisée
Ward Technology Talent
ON, Canada
Temps plein

Apply as a Security Analyst in. Ward Technology Talent is looking for a Security Analyst. Your duties will be ..

Offre sponsorisée
Nouvelle offre
Curinos
Toronto, Ontario
Temps partiel

Job Description Curinos is looking for a meticulous and detail oriented Security Analyst to join our.. The Security Analyst will be responsible for ensuring the security of our on premise and cloud servers..

Offre sponsorisée
HTS Engineering
Toronto, Ontario
Temps plein

The Business Analyst provides strategic business analysis services to business partners. The focus of this position is to work closely with the business units to gain an in depth understanding..

Offre sponsorisée
Bay Street Staffing
Toronto, Ontario
Temps partiel

IT Security Analyst Location. Scarborough, ON, Hybrid Contract Length. 6 Months, Possible of extension.. We at Raise are hiring an IT Security Analyst for one of our top clients. After establishing themselves..

Offre sponsorisée
Nouvelle offre
Raise
Toronto, Ontario
Temps plein

Job DescriptionIT Security AnalystLocation. Scarborough, ON, Hybrid ContractLength. 6 Months, Possible.. We at Raise are hiring an IT Security Analyst for one of our top clients. After establishing themselves..

Offre sponsorisée
Apex Systems
Toronto, Ontario
Temps partiel

Senior Security Engineer Apex Systems is a global IT services provider and our staffing practice has an.. As a Senior Security Engineer, you'll leverage your expertise to design, integrate, configure, develop..

Offre sponsorisée
WELL Health Technologies Corp. (TSX: WELL)
Ontario, Canada
Temps plein +1

Knowledge of 4G 5G network is considered as an asset. Experience with security testing tools, threat.. CISSP, CISA, CISM or similar cyber security certification are assets. Roles and Responsibilities..

Offre sponsorisée
Tata Consultancy Services
Toronto, Ontario
Temps plein

About TCS TCS operates on a global scale, with a diverse talent base of more than 600,000 associates representing 153 nationalities across 55 countries. TCS has been recognized as ..

Offre sponsorisée
Randstad Digital
Toronto, Ontario
Temps plein

Senior Data Analyst (Contract Position) Number of Positions. 1 Duration. 8 months with possible extension Location. North York, ON, CA Must be eligible to work in Canada Hybrid position, 1 3days..

Offre sponsorisée
Procom Labs
Toronto, Ontario
Temps plein

Our client in the public health sector is looking for an Information Security Analyst. The role will.. In addition, the successful candidates will support day to day security operations in collaboration with..