Talent.com
407 ETR
Sr. IT Security Analyst407 ETR • Woodbridge, Ontario
No longer accepting applications
Sr. IT Security Analyst

Sr. IT Security Analyst

407 ETR • Woodbridge, Ontario
30+ days ago
Salary
CA$115,000.00 yearly
Job type
  • Full-time
Job description

Title: Sr. IT Security Analyst

Department: Information Technology

Location: 6300 Steeles Ave West, Woodbridge

Total Potential Compensation: $115,000-$140,000

Position Summary:

The Senior Security Analyst – Security Operationsis responsible foroperating, maturing, and continuously improving core cyber defense and detection capabilities across the enterprise. This role has a strong focus on Vulnerability Management, Endpoint Detection & Response (EDR), Network Detection & Response (NDR), and day‑to‑day Security Operations.

The incumbent will act as a senior technical resource within the SOC, providing advanced analysis, threat-driven prioritization, and operational leadership across security monitoring, incident response, vulnerability remediation, and control effectiveness measurement. The role directly contributes to improving the organization’s cyber risk posture, with measurable outcomes reflected in Security Risk Index (SRI) and other governance metrics aligned to NIST and ISO frameworks.

After-hours support and on-call duties may berequiredfor high-severity security incidents.

Position Responsibilities:

Vulnerability Management

  • Own andoperatethe enterprise vulnerability management lifecycle, including discovery, assessment, prioritization, remediation tracking, and risk acceptance

  • Correlate vulnerability data with asset criticality, exploitability, threat intelligence, and exposure to drive risk-based remediation

  • Track remediation SLAs and escalate overdue or accepted risks throughappropriate governancechannels

  • Support internal and external audit evidence for vulnerability management controls

  • Contribute vulnerability metrics to executive and risk committee reporting (e.g., SRI/NSRI)

Security Operations & Incident Response

  • Act as a senior escalation point for security incidents, providing deep technical analysis, containment guidance, and remediation recommendations

  • Lead investigation of alerts generated by EDR, NDR, SIEM, and security analytics platforms

  • Coordinate incident response activities across IT Infrastructure, Network, Cloud, and Application teams

  • Develop andmaintainincident response playbooks, runbooks, and escalation procedures

  • Support post‑incident reviews, root cause analysis, and lessons learned tracking

Endpoint Detection & Response (EDR)

  • Operate and tune EDR platforms to improve detection fidelity, reduce false positives, and enhance response effectiveness

  • Analyze endpoint telemetry for indicators of compromise (IOC), anomalous behavior, and threat actor activity

  • Support endpoint containment actions such as process isolation, host quarantine, and forensic data collection

  • Partner with IT Operations to ensure EDR coverage, health, and policy compliance across endpoints

Network Detection & Response (NDR)

  • Operate and maintain NDR capabilities, including alert triage, investigation, and threat hunting

  • Analyze network traffic, metadata, and behavior-based detections toidentifylateral movement, command-and-control activity, and policy violations

  • Collaborate with Network teams tovalidatedetections and improve network security controls and segmentation

  • Use NDR telemetry tovalidatenetwork segmentation effectiveness and control gaps

Threat Detection & Threat Hunting

  • Perform proactive threat hunting using EDR, NDR, SIEM, and log analytics platforms

  • Apply MITRE ATT&CK–aligned techniques toidentifystealthy or low-signal threats

  • Integrate external threat intelligence into detection and hunting activities

  • Recommend detection engineering improvements to SOC tooling and analytics

Metrics, Risk & Compliance

  • Define andmaintainsecurity operations KPIs and KRIs (incident trends, MTTR, vulnerability aging, control coverage)

  • Contribute to Security Risk Index (SRI) calculations and continuous improvement initiatives

  • Ensure alignment with NIST CSF, ISO 27001/27002, and internal security standards

  • Support audits by providing defensible evidence of control operation and effectiveness

Continuous Improvement & Leadership

  • Mentor junior analysts andprovidetechnical guidance within the SOC

  • Identifyopportunities to improve automation, orchestration, and response workflows

  • Participate in security architecture reviews and technology evaluations related to detection and response

  • Contribute to the development of security standards, procedures, and operational playbooks

Identity & Access Management (IAM)

  • Support operational security of IAM platforms (e.g., Active Directory, Azure AD / Entra ID, PAM solutions)

  • Monitor and investigate identity‑based threats, including credential misuse, privilege escalation, and anomalous authentication behavior

  • Correlate IAM events with EDR, NDR, and SIEM telemetry during incident investigations

  • Support access reviews, entitlement validation, and privileged access oversight in collaboration with IAM and IT teams.

  • Assistwith detection and response use cases related to:

- Compromised accounts.

- Excessive privileges.

- Service account misuse.

- Lateral movement via identity.

  • Contribute to IAM‑related risk metrics and control effectiveness reporting (e.g., MFA coverage, privileged account exposure).

  • Support audit evidence for IAM controls aligned to NIST CSFPR.AA, ISO 27001 A.5/A.8, and internal access standards.

Qualifications

  • Minimum5+ years of experience in IT Security, with strong hands-on experience in Security Operations.

  • College Diploma or University Degree in Computer Science, Engineering, or related field.

  • EDR platforms (e.g., endpoint containment, alert triage, investigation).

  • NDR technologies and network-based threat detection.

  • Security Incident Response and Investigation.

  • Strong understanding of attacker techniques and defensive controls (MITRE ATT&CK).

  • Experience working in regulated or audit-driven environments.

  • Hands‑on experience supporting IAM security operations, including identity monitoring and access control validation.

  • Strong understanding of authentication, authorization, MFA, RBAC, and privileged access concepts.

  • Experience analyzing identity logs and alerts within SIEM or security analytics platforms.

Preferred Qualifications

  • Experience with enterprise SOC tooling including SIEM, EDR, NDR, SOAR.

  • Experience operating security controls in hybrid (on‑prem and cloud) environments.

  • Familiarity with Security Risk Index (SRI), cyber risk metrics, or risk-based reporting.

  • Knowledge of network architecture and segmentation concepts.

  • One or more of the following certifications:

- CISSP

- CISM

- GCIA / GCED / GCEDR / GCIH

- CompTIA Security+

- SANS Blue Team certifications

We are actively seeking to fill this role as it is a current vacancy.

About 407 ETR

Highway 407 ETR is an all-electronic open-access toll highway located in the Greater Toronto Area in Ontario, Canada. The highway spans 108 kilometres from Burlington in the west to Pickering in the east.

407 International Inc. is the sole shareholder of 407 ETR and is owned by:

  • Cintra Global S.E., a subsidiary of Ferrovial S.A. (48.29%)

  • Canada Pension Plan Investment Board (CPP Investments) and other institutional investors with non-controlling interests (44.20%)

  • Public Sector Pension Investment Board (PSP Investments) (7.51%)

Learn more at

Note:

Create a job alert for this search

Sr. IT Security Analyst • Woodbridge, Ontario

Similar jobs

SOC Analyst: Threat Hunting & Incident Response

Charger Logistics Inc.Brampton, Peel Region, CA
Full-time

A logistics company in Brampton, Ontario is seeking a proactive individual for a security role.This position involves threat hunting, incident response, and the development of detection strategies ... Show more

 • Promoted

Cyber Security Architect

Intuitive.aiMississauga, Peel Region, CA
Full-time

Talent Acquisition Leader | Hiring Cloud Professionals Globally.Cloud is one of the fastest-growing (INC 5000, CRN) Cloud & SDx solution and services companies supporting enterprise customers on a ... Show more

 • Promoted

Senior Application Security Analyst

Purolator Inc.mississauga, peel region, Canada
Full-time

Purolator is one of Canada’s leading integrated freight, package, and logistics solutions providers, delivering dependable service to customers across the country.Security is a core enabler of Puro... Show more

 • Promoted

Senior Analyst, Security Compliance

P2PMississauga, Peel Region, CA
Full-time

Our Krakenites are a world-class team with crypto conviction, united by our desire to discover and unlock the potential of crypto and blockchain technology.Kraken is a mission-focused company roote... Show more

 • Promoted

Remote Information Risk & Security Analyst

DexianMississauga, Peel Region, CA
Remote
Full-time

A leading IT services firm is seeking an Information Control Testing Specialist to manage information risk and ensure compliance with security policies.You will work on global initiatives, conduct ... Show more

 • Promoted

Remote IT Security Consultant - Leading Security Initiatives

ExperisMississauga, Peel Region, CA
Remote
Full-time

A leading technology staffing firm is seeking experienced IT Security Consultants to enhance cybersecurity initiatives across Canada.In this remote role, you will lead security implementations, con... Show more

 • Promoted

Principal Security Analyst - Remote

CyderesMississauga, Peel Region, CA
Remote
Full-time

Be among the first 25 applicants.Cyderes (Cyber Defense and Response) is a pure-play, full life-cycle cybersecurity services provider with award-winning managed security services, identity and acce... Show more

 • Promoted

Sr. IT Analyst - Plant Maintenance & Procurement

Maple Leaf Foods IncMississauga
Full-time +1

IT Senior Analyst in the SAP Procurement and Plant Maintenance areas with a focus on Procurement, Asset Reliability, MRO (Maintenance, Repair and Operations) Inventory Management and.The position w... Show more

 • Promoted

Analyste principal Sécurité des réseaux – Infonuagique Remote

Empire VieMississauga, Peel Region, CA
Remote
Full-time

Une société d'assurance basée au Canada recherche un Analyste principal(e) en sécurité des réseaux pour rejoindre une équipe dynamique dédiée à la protection des infrastructures réseau.Le candidat ... Show more

 • Promoted

Senior Information Security Analyst

IKO IndustriesMississauga, Peel region, Canada
Full-time

Senior Information Security AnalystApplylocations: Mississauga, ONtime type: Full timeposted on: Posted 10 Days Agojob requisition id: REQ-12984**IKO Industries Ltd.IKO is a Canadian owned ... Show more

 • Promoted

Sr. Analyst Operational Technology

Chartwell Retirement ResidencesMississauga, Peel Region, CA
Full-time

Senior Analyst, Operational Technology is responsible for supporting all Information Technology Services (ITS)–governed Operational Technology systems, providing both technical and business process... Show more

 • Promoted

Analyst III, Security Operations

LibertyOakville, ON, CA
Full-time

At Algonquin-Liberty, we hire passionate people who care about doing the right thing for our customers.We are entrepreneurial, creative, and outcome-focused.Here, your natural talent and achievemen... Show more

 • Promoted

Network Security Analyst

Rexall Pharmacy Group Ltd.Mississauga
Full-time

Director of Information Technology, the Network Security Analyst is responsible for protecting and maintaining the security, integrity, and availability of the organization’s network and connected ... Show more

 • Promoted

Senior Remote Mainframe Security Architect

Open Systems TechnologiesMississauga, Peel Region, CA
Remote
Full-time

A leading IT solutions provider is seeking an experienced Enterprise Z-Security Architect for a fully remote position.The role involves mainframe security operations, support, and on-call duties, r... Show more

 • Promoted

Sr. Consultant - Offensive Security

CDW Canadavaughan, york region, Canada
Full-time

Be among the first 25 applicants.At CDW, we make it happen, together.Trust, connection, and commitment are at the heart of how we work together to deliver for our customers.It’s why we’re coworkers... Show more

 • Promoted

Remote Director of IT Security Role

DirectiveMississauga, Peel region, Canada
Remote
Full-time

Shape Directive Consulting's cybersecurity landscape as the Director of IT Security.This fully remote position emphasizes strategic oversight of information security across multiple regions.As the ... Show more

 • Promoted

Senior IT and security Administrator – Malware Protection Specialist

act digitalMississauga, Peel Region, CA
Full-time

Senior IT and security Administrator – Malware Protection Specialist.ALTER SOLUTIONS is a consulting and technology expertise company founded in 2006.Our mission is to support our clients with thei... Show more

 • Promoted

Sr. IAM Security Architect (Hybrid)- Toronto

Rubicon Pathbrampton, peel region, Canada
Full-time

IAM Security Architect (Hybrid) - Toronto.Our client, the top national telecommunication company is looking for a Senior IAM Security Architect.They drive large-scale, complex, and high-visibility ... Show more

 • Promoted

Senior Information Security Analyst

IKO North AmericaMississauga, Peel region, Canada
Full-time

Senior Information Security Analyst.Team Lead, Information Security.We are seeking a Senior Information Security Analyst with deep, hands‑on experience across security operations, incident response... Show more

 • Promoted

Senior Cyber Security Analyst - GRC

Metro Supply ChainMississauga
Full-time

Senior Cybersecurity Analyst – Governance, Risk, and Compliance (GRC).Responsible for implementing, and maintaining a firm-wide information security governance program designed to help ensure the S... Show more