أبلاي إيدج ابدأ البحث عن عمل

Security Analyst – Intermediate

BITS Recruiting · Toronto, Ontario, Canada

قدّم وتابع مع أبلاي إيدج
Contract: October 1, 2026 – April 1, 2027We are seeking an experienced Security Analyst – Intermediate to support IT Security, cybersecurity governance, risk management, third-party risk, compliance, audit, and security monitoring activities within a large public-sector environment.Key ResponsibilitiesMonitor and analyze security events to identify potential security incidents, alerts, and threats.Investigate security alerts and tickets by collecting and analyzing logs, network traffic, volatile data, and other indicators.Support cybersecurity risk management, governance, compliance, audit, and reporting activities.Perform vendor security risk assessments and contribute to the development and execution of Third-Party Risk Management (TPRM) programs.Support third-party cybersecurity assessments, including reviewing vendor security controls, attestations, gaps, and remediation activities.Contribute to security penetration testing activities conducted by third-party providers.Develop and report IT Security performance KPIs and metrics to internal and external stakeholders.Support compliance with cybersecurity frameworks and standards including NIST, ISO 27001, PCI, and applicable Ontario privacy requirements.Support internal and external security audits, including PCI and other assurance activities.Collaborate with Risk & Compliance, Privacy, Finance, Procurement, IT Operations, and other business stakeholders to identify and manage cyber risks.Assist with digital asset inventory management, including asset identification, classification, ownership, risk, and compliance requirements.Provide cybersecurity guidance and promote security awareness and governance practices across the organization.Evaluate cybersecurity products, intrusion detection technologies, and other security solutions to help minimize vulnerabilities.Required Qualifications4–6 years of progressive IT experience, with a strong focus on IT Security/Cybersecurity.Approximately 3–5 years of relevant cybersecurity, security governance, risk management, or security operations experience.Hands-on experience with vendor risk assessments and Third-Party Risk Management (TPRM).Experience with security monitoring, incident response, threat analysis, and investigation.Strong understanding of *TCP/IP, network infrastructure, internet applications, and Windows/nix environments.Knowledge of cybersecurity threats, attack types, vulnerabilities, and appropriate mitigation strategies.Experience supporting security audits, compliance, risk reporting, and cybersecurity governance.Strong communication and stakeholder management skills.Certifications – AssetsProfessional security certifications such as:CISSPCISMCGEITCRISCCISAOther relevant cybersecurity/security management certificationsAgile certifications such as ACP or CSPO are also considered an asset.If you have strong experience in cybersecurity, IT risk, security governance, vendor risk, compliance, and security operations, we’d like to hear from you!📩 Interested candidates can apply or send their resume for consideration.AI-enabled tools may be used to sort applications based on job-related criteria. All AI generated results are vetted by our team and the decision of which candidates move forward is always made by a human.