Job descriptionInformation Security Specialist Date Posted: 04/21/2026
Closing Date: 05/05/2026, 11:59PM ET
Position Summary I&ITS is a high-volume service delivery operation. The Information Security Specialist supports the Information Security programs, implementing, managing and optimizing information security platforms to protect data and systems. The role acts as SME for security controls across technologies, ensuring controls meet an evolving threat landscape. The Specialist configures, maintains, tunes security tools (SIEM, EDR, PAM, MDM, Firewall, vulnerability scanner, intrusion prevention/detection systems) to ensure proactive threat detection. The Specialist monitors security alerts, responds to suspicious activities, and performs incident response and forensic data gathering. The Specialist works closely with IT teams and other departments to integrate security best practices into operations and projects.
Qualifications I. Education
University degree in Computer Science, Engineering or equivalent combination of education and experience. CISSP and other security certifications are a strong asset.
II. Experience
Minimum 7 years of Information security experience in a heterogeneous environment, including at least 2 years focusing on Information Security.
Minimum 3 years of progressive experience creating, implementing and maintaining Information Security technologies and platforms.
Excellent understanding of security tools such as firewall, IDS/IPS, SIEM, EDR, etc., with previous implementation and management experience.
IT Security certifications held or in progress are an asset.
Expert proficiency in security frameworks, foundational networking/OS security (Zero Trust concepts, TCP/IP, VPNs, Windows/Linux/Unix hardening).
Experience with scripting (Python, Bash) to automate security tasks.
Experience leveraging network and security analysis tools for packet inspection, forensic analysis and advanced troubleshooting.
Experience selecting, configuring, deploying service misuse detection and prevention technologies (Anti-Spam, Anti-Virus, Anti-DDOS, etc.).
Experience running penetration testing and vulnerability scanning (Metasploit, Nessus, etc.).
Experience drafting information security standards and guidelines, assessing risk management, and determining controls.
Experience performing security assessments of infrastructure (cloud and on-premise), applications and websites.
III. Skills
Strategic thinking about change and new solutions.
Excellent oral and written communication and presentation skills.
Strong analytical and problem-solving skills.
Ability to prioritize and reprioritize work as required.
Collaboration and teamwork.
Thirst for knowledge, self-education and research.
Strong planning and organization skills.
IV. Other Ability to work under pressure of high volume and expectations, meeting multiple deadlines. Strong service orientation and risk assessment. Broad knowledge of information technology, instructional technology, classroom technology, audiovisual technologies, digital signage, network technologies, databases and application development. Ability to lead and collaborate with teams at all levels.
Diversity Statement The University of Toronto embraces Diversity and builds a culture of belonging. We encourage applications from Indigenous Peoples, Black and racialized persons, women, persons with disabilities, and people of diverse sexual and gender identities. Applicants showing a commitment to equity, diversity, and inclusion are valued. A brief Diversity Survey will be asked; it is voluntary and confidential. Results are aggregated for planning purposes.
Accessibility Statement The University strives to be an equitable and inclusive community, following the Accessibility for Ontarians with Disabilities Act (AODA). We provide accommodations as required for applicants with disabilities. If you require any accommodations during the application and hiring process, contact uoft.careers@utoronto.ca.
#J-18808-Ljbffr