Information Security Analyst
The Information Security Analyst supports the identification, investigation and resolution of security events; as well as supporting audits/assessments and taking timely action to remediate findings. They also assist with the creation and maintenance of standards, baselines, guidelines, and procedures.
Responsibilities
- Work on incidents, requests, alerts, and investigations for Cyber Security threats, events, and activities. Research potential cyber security threats and determine the risk and criticality to respond and report to business teams.
- Review logs and reports of existing systems; interpret the implications of identified activity and provide recommendations for appropriate resolution.
- Participate in vulnerability assessments, penetration tests, security audits, and support remediation of identified vulnerabilities.
- Supports the planning of enterprise security architecture; help maintain and improve configurations of security solutions for efficient and appropriate operations.
- Participate in the creation of enterprise Information Security documents (policies, standards, baselines, guidelines, and procedures).
- Help compile metrics related to the Information Security program, analyze threat trending, and recommend mitigation strategies to minimize identified risks.
- Supports the planning of an enterprise Business Continuity Plan and Disaster Recovery Plan
- Prepare and identify new security solutions or enhancements to existing security solutions to improve overall enterprise security posture
- Participate in the deployment and integration of new IT solutions and of any enhancements to existing IT solutions in accordance with standard best operating procedures and the enterprise’s security standards.
- Maintain up-to-date detailed knowledge of the Information Security industry including awareness of new or revised security solutions, improved security processes and the development of new attacks and threat vectors.
Qualifications
- Minimum 3 years of hands on related experience supporting security systems, incident response, risk assessments, vulnerability management, cloud security operations, identity and access management, user awareness training, mobile device management (MDM), etc.
- Experience with Privilege Access Management (PAM – BeyondTrust Password Safe or similar)
- Experience with Public Key Infrastructure (PKI – Keyfactor or similar)
- Developer/scripting skills (Python)
- Hands on experience with design and build architecture
- Endpoint Detection and Response (EDR) Solution experience (Crowdstrike or similar)
- Knowledge of variety of security technologies in areas of: IPS/IDS, Malware Protection (Network), SIEM, L7 Firewalls, Digital Certificates, Patch Management, URL filtering, Identity and Access management (IAM)
- Strong understanding of TCP/IP, IPSEC, SSL/TLS and other network and encryption protocols.
- Understanding of Security Operations in existing Cloud environments (AWS, Azure, GCP)
- Strong understanding of all currently supported Windows operating systems; knowledge of Linux distributions is an asset
This is a permanent role located in downtown Toronto with an annual salary of $110,000.00 – $114,000.00 plus bonus and benefits.
