Security Analyst

1 month ago


Toronto ON, Canada Toronto Parking Authority Full time
POSITION SUMMARY

The Security Information Analyst will assist the Toronto Parking Authority with the design, development and implementation of its security awareness plan and security initiatives to help ensure that the best possible measures are in place to maintain secure operations. The role will be focused on executing threat risk and vulnerability analysis (TRVA). In addition, this role will oversee risk remediation activities, in order to enable both operational and project teams to safely and securely manage their departments. This role will also be responsible to help monitor, evaluate and maintain systems and procedures to safeguard TPA information and systems while developing and implementing strategies, policies and procedures for the continued security of the organization.

RESPONSIBILITIES
Threat Monitoring: Continuously monitor network traffic, security alerts, and system logs to identify potential security incidents and vulnerabilities, with a focus on cardholder data protection.
PCI-DSS Compliance: Ensure adherence to PCI-DSS requirements, including maintaining compliance with all relevant standards and controls for handling and protecting cardholder data.
Incident Response: Respond promptly to security breaches or attacks, including investigating and analyzing incidents involving cardholder data, and implementing corrective measures to address any PCI-DSS violations.
Risk Assessment: Conduct regular risk assessments and security audits with a focus on PCI-DSS compliance to identify potential threats and vulnerabilities and recommend mitigation strategies.
Security Measures: Develop, implement, and enforce security policies, procedures, and best practices to enhance overall security and ensure PCI-DSS compliance.
Vulnerability Management: Perform regular vulnerability scans and assessments, addressing identified weaknesses in systems and applications, and ensuring compliance with PCI-DSS requirements.
Compliance Monitoring: Monitor compliance with PCI-DSS controls and procedures, including data encryption, access control, and network security measures.
Documentation: Maintain detailed records of PCI-DSS compliance activities, security incidents, investigations, and responses, and prepare reports for management and regulatory bodies.
Security Awareness: Educate and train staff on PCI-DSS requirements, security best practices, and organizational policies to promote a culture of security awareness and compliance.
Collaboration: Work closely with IT, development, and management teams to integrate PCI-DSS requirements into system designs and operational procedures.
Tool Management: Utilize and manage security tools and technologies, including firewalls, intrusion detection systems, and encryption software, to safeguard the organization’s digital assets in compliance with PCI-DSS.
Engage with QSA: Collaborate with Qualified Security Assessors (QSAs) to ensure compliance with PCI-DSS standards, prepare for formal assessments, and address any identified gaps or recommendations.

QUALIFICATIONS:
Bachelor's degree in computer science, Information Security, or a related field.
Relevant certification (e.g., CISSP, CEH, CompTIA Security+, PCI Professional) are considered an asset.
Minimum 5 years of experience in an Information Security role.
Minimum 5 years of experience with administration of various security products such as Palo Alto, CrowdStrike, Cisco ASA and Checkpoint, Microsoft Defender, Microsoft Purview and Symantec endpoint protection, Qualys and Tenable network and web application scanner, CIS benchmarks.
Demonstrated knowledge of and/or familiarity with standards and frameworks such as PCI-DDS, ITIL, COBIT, ISO/IEC 31000 series, ISO/IEC 27000 series, SOC 2.
Demonstrated experience in undertaking security threat and risk assessment using an industry recognized framework equivalent to the Harmonized Threat and Risk Assessment methodology.
Proven experience with LogRhythm or Splunk solutions.
Previous experience conducting IT audits considered an asset.
Threat Risk Vulnerability Assessment (TRVA) training.
Knowledge of current network, operating systems, hardware, protocols, and standards.
Excellent analytical skills
Demonstrated ability in solving I.T. issues, problems and possessing a sense of urgency.
Demonstrated integrity in dealing with information and issues of a highly confidential and sensitive nature.
Diligent, detail-oriented, and possess a success-driven work ethic. Demonstrates Commitment to Environment, Health & Safety: Manages risks to protect the health and safety of employees and the public.
Able to perform forensic collections of data and to conduct detailed forensic analysis task including data recovery, production of forensic images and compilation of forensic examination reports.
Ability to collect and manage of evidence to ensure that the chain of custody is fully documented in accordance with local statutes and policies.
Experience In use of forensic and data mining tools to collect, search, recover, sort and organize large amounts of information in all phases of an investigation.
A proven team player & ability to interact and work with people with a variety of backgrounds and at different levels within the organization.
Internal candidates: No new or reclassified employee with less than one (1) year’s continuous on the job service may apply.
KrTBYuGkLF
  • IT Security Analyst

    3 days ago


    Toronto, ON, Canada CorGTA Full time

    Role: Security Analyst (Fortune 1000 Client) Contract (6 months to start) Location: Toronto, ON (Hybrid 2-3 days in office per week) - We currently have an opportunity for a contract hybrid remote Security Analyst working for one of our Toronto based Fortune 1000 clients. - 6+ years experience in Security Analysis 3+ years of experience with security...


  • Toronto, ON, Canada CorGTA Full time

    Role: Security Analyst (Fortune 1000 Client)Structure: Contract (6 months to start)Location: Toronto, ON (Hybrid 2-3 days in office per week)-The role:We currently have an opportunity for a contract hybrid remote Security Analyst working for one of our Toronto based Fortune 1000 clients.-The required skills for this role will be:6+ years experience in...

  • IT Security Analyst

    2 days ago


    Toronto, ON, Canada CorGTA Full time

    Role: Security Analyst (Fortune 1000 Client)Structure: Contract (6 months to start)Location: Toronto, ON (Hybrid 2-3 days in office per week)-The role:We currently have an opportunity for a contract hybrid remote Security Analyst working for one of our Toronto based Fortune 1000 clients.-The required skills for this role will be:6+ years experience in...


  • Toronto, ON, Canada CorGTA Full time

    Role: Security Analyst (Fortune 1000 Client)Structure: Contract (6 months to start)Location: Toronto, ON (Hybrid 2-3 days in office per week)-The role:We currently have an opportunity for a contract hybrid remote Security Analyst working for one of our Toronto based Fortune 1000 clients.-The required skills for this role will be:6+ years experience in...

  • IT Security Analyst

    6 days ago


    Toronto, ON, Canada CorGTA Full time

    Role: Security Analyst (Fortune 1000 Client)Structure: Contract (6 months to start)Location: Toronto, ON (Hybrid 2-3 days in office per week)-The role:We currently have an opportunity for a contract hybrid remote Security Analyst working for one of our Toronto based Fortune 1000 clients.-The required skills for this role will be:6+ years experience in...

  • IT Security Analyst

    3 days ago


    Toronto, ON, Canada CorGTA Full time

    Role: Security Analyst (Fortune 1000 Client) Structure: Contract (6 months to start) Location: Toronto, ON (Hybrid 2-3 days in office per week)- The role: We currently have an opportunity for a contract hybrid remote Security Analyst working for one of our Toronto based Fortune 1000 clients. - The required skills for this role will be: 6+ years experience...


  • Toronto, ON, Canada Hana Bank Canada Full time

    Hana Bank Canada is a subsidiary of Hana Financial Group, the largest global financial group in South Korea which operates a domestic and overseas network of over 750 branches in 25 countries. As a leading provider of financial solutions for the Korean community in Canada, our mission of "Growing Together, Sharing Happiness" keeps us focused and grounded as...


  • Toronto, Ontario, Canada Mjolnir Security Full time

    About Mjolnir SecurityMjolnir Security is a leading provider of security services, seeking highly motivated and detail-oriented individuals to join our team as Cyber Security Analysts.Job OverviewWe are currently hiring two full-time Cyber Security Analysts to work in our Security Operations Center. As a Cyber Security Analyst, you will be responsible for...

  • Security Analyst

    6 months ago


    Toronto, Canada CB Canada Full time

    Security Analyst On behalf of our client in the Banking Sector, PROCOM is looking for a Security Analyst. Security Analyst – Job Description User access provisioning, granting access to banking applications and systems to employees and customers Provisioning access to Employees and Contractors using various applications and platforms ID and Mailbox...


  • Toronto, ON, Canada Hana Bank Canada Full time

    Hana Bank Canada is a subsidiary of Hana Financial Group, the largest global financial group in South Korea which operates a domestic and overseas network of over 750 branches in 25 countries. As a leading provider of financial solutions for the Korean community in Canada, our mission of "Growing Together, Sharing Happiness" keeps us focused and grounded...


  • Toronto, ON, Canada Hana Bank Canada Full time

    Hana Bank Canada is a subsidiary of Hana Financial Group, the largest global financial group in South Korea which operates a domestic and overseas network of over 750 branches in 25 countries. As a leading provider of financial solutions for the Korean community in Canada, our mission of "Growing Together, Sharing Happiness" keeps us focused and grounded...


  • Toronto, Ontario, Canada Business Analyst Computer Systems Full time

    At Business Analyst Computer Systems, we are seeking a skilled Business Solutions Specialist to join our team. A key responsibility of this role is to design, develop, and implement business solutions that identify and mitigate security risks, while developing and maintaining company policies. This includes consulting with clients to provide ongoing support...


  • Toronto, ON, Canada Infotek Consulting Services Inc. Full time

    Infotek Consulting is searching for an Intermediate Cyber Security Analyst - this is a hybrid contract assignment based in Toronto: Global Technology Control Testing The US cybersecurity and IT risk team oversees and advises on cybersecurity and IT risk matter in the US. The team primary focuses is to ensure the bank's security controls are in line with...


  • Toronto, ON, Canada Infotek Consulting Services Inc. Full time

    Infotek Consulting is searching for an Intermediate Cyber Security Analyst - this is a hybrid contract assignment based in Toronto: Global Technology Control Testing The US cybersecurity and IT risk team oversees and advises on cybersecurity and IT risk matter in the US. The team primary focuses is to ensure the bank's security controls are in line...


  • Toronto, Canada CB Canada Full time

    Information Security Analyst On behalf of our client in the Banking Sector, PROCOM is looking for an Information Security Analyst. Information Security Analyst – Job Description Manage assigned security platforms, following clients' procedures if required, which includes: Device health and availability monitoring Device health incident resolution and...


  • Toronto, ON, Canada Infotek Consulting Services Inc. Full time

    Infotek Consulting is searching for an Intermediate Cyber Security Analyst - this is a hybrid contract assignment based in Toronto: Global Technology Control Testing The US cybersecurity and IT risk team oversees and advises on cybersecurity and IT risk matter in the US. The team primary focuses is to ensure the bank's security controls are in line with...

  • Security Analyst

    6 months ago


    Toronto, Canada HTS Engineering - Heat Transfer Solutions Full time

    HTS Engineering Ltd. is the largest independent commercial HVAC manufacturers’ rep in North America, with 20 locations in the US and Canada. HTS has a vibrant look and brand promise -- one that reflects our company-wide commitment to ensure the individual success of all those involved in a project’s HVAC system selection, design, purchase, installation...

  • Security Analyst

    6 months ago


    Toronto, Canada HTS Engineering - Heat Transfer Solutions Full time

    Founded in 2015 in Toronto, Canada, KORE Solutions is a subsidiary company of HTS and an innovative technology solutions and services provider with a strong focus on the HVAC manufacturer’s representative industry. With a variety of offerings including business intelligence software, help service support, and more, KORE delivers end-to-end solutions that...

  • Security Analyst

    4 weeks ago


    Toronto, Ontario, Canada Nasdaq Full time

    Job DescriptionVerafin is a leading provider of cloud-based anti-money laundering solutions to the financial industry.Job Summary: We are seeking a highly skilled Security Analyst to join our team. As a Security Analyst, you will be responsible for analyzing security vulnerabilities and working collaboratively with our cloud operations and infrastructure...


  • Toronto, ON, Canada Astek Full time

    The Astek Group Founded in France in 1988, Astek is a global player in engineering and technology consulting. With its expertise in various industrial and tertiary sectors, Astek supports its international clients in the intelligent deployment of their products and services, as well as in the implementation of their digital transformation. Since its...