Information Security Analyst

1 week ago


Mississauga, Ontario, Canada Just Energy Full time

As the Information Security Analyst, reporting to the Manager, IT Cyber and Information Security, you will foster strong relationships with business partners, including IT, internal audit, SOC vendors, and other compliance and risk stakeholders within Just Energy. In your capacity, you will effectively position your team to understand, articulate, and influence the IT Risk and Compliance (ITRC) strategy, plans, results, issues, and outcomes. As a project leader, you will frequently communicate with executives to represent and discuss IT risks and compliance positions, including consultation with the Manager of IT Cyber and IS. You will also lead efforts to govern, communicate, and educate staff on the adherence to risk and compliance policies, standards, processes, and procedures.

You will lead in a highly complex, fast-paced matrixed environment, with tight deliverable timeframes and multiple internal and external stakeholders to IT. We expect you to act independently and demonstrate strong initiative, influence outcomes, minimize and address conflicts, and demonstrate an in-depth understanding of risk management activities and business risks and control environments.

The role requires a sense of urgency, passion for results, and personal accountability for achievement. The successful candidate must possess expertise in process, technology, and business acumen, along with strategic and innovative thinking and an unwavering focus on security and our customers. Your strong leadership and relationship skills, resilience, and ability to effectively communicate will be vital in driving results the right way in our entrepreneurial environment.

Key Responsibilities

• Identification of Information Security issues.

• Participate in the development of security architecture solutions.

• Monitor emerging security threats, along with evaluate and recommend mitigation strategies.

• Maintain necessary documentation to support security strategy by outlining the requirements and benefits of specific security tools and/or solutions.

• Document and communicate security incidents, vulnerabilities, and the current state of the system.

• Facilitate security risk management activities, advise on threats, vulnerabilities, and mitigation strategies

• Daily Scanning, Implementing, and maintaining information security tools and documentation

• Provide support to internal teams with security concerns

• Responsible for spam prevention and monthly vulnerability Scanning

• Responsible for updating Blocklists and Allow lists for our various in-house rules.

• Working with 3rd party companies to resolve spam complaints, and backlisting.

• Supporting the annual external audit

• Perform other duties as assigned

• Monitor information security requirements, policies, and compliance

• Document and communicate security incidents, vulnerabilities, and the current state of the system.

• Facilitate security risk management activities, advise on threats, vulnerabilities, and mitigation strategies

• Daily Scanning, Implementing, and maintaining information security tools and documentation

• Provide support to internal teams with security concerns and with security incident response

• Responsible for Spam Prevention and monthly vulnerability Scanning

• Responsible for updating block lists and allowing lists for our various in-house rules.

• Working with 3rd party companies to resolve spam complaints and black listings.

• Supporting the annual external audit

• Perform other duties as assigned

Qualifications

• 2+ years of experience in Information Security, Cybersecurity, and advanced threat protection

• 2+ years of experience with Data Discovery and Data Classification strategies

• BA or BS degree in CS or IT preferred Computer Science or Engineering or related field.

• Experience in information security covering, Infrastructure, Web applications, software development, cloud, System, and Network Operating systems.

• Experience with computer network penetration testing and techniques.

• Ability to identify and mitigate network, web application, and software development vulnerabilities and explain how to avoid them.

• Understanding of patch management with the ability to deploy patches promptly while understanding business impact.

• Working knowledge of the following IT Compliance, Standards, and Frameworks:

o National Institute of Standards and Technology (NIST) Security Standard
o Cybersecurity and Information Security
o Payment Card Industry Data Security Standard (PCI-DSS) requirement.
o Open Web Application Security Project (OWSAP) Top Ten Vulnerabilities
o Common Vulnerabilities and Exposures/Weaknesses
o ISACA -COBIT for Information Security
o Microsoft Windows Server/Workstation administration and security
o Application and Network Penetration Testing with one or more of these products (Rapid7, Veracode, Qualys Guard, Burp Suite, etc.)
o Administration/Security of Cisco Routers/Switches and other WAN/LAN/WLAN/VPN/Firewall Technologies
o Mcafee ePO, Solidcore, DLP (Devicelock), FIM (Cimtrak), DAM (Imperva), SIEM (Arcsight), and endpoint security management
o Working experience with the following tools – IDPS, MITRE, SIEM, SOAP, WS Security, PowerShell & Bash, and Python scripting

Professional Certificates and Registration Required
CISSP/GIAC/CCSP certification will be nice to have or work toward any of them.

Working knowledge of the following domains will be a plus

• ISO IEC 27001 L.A (ISMS)

• Certified Ethical Hacker (CEH)

• Qualys Certified Specialist (QCS)

• Cisco Certified Network Professional (CCNP)/ Cisco Certified Network Associate (CCNA)

• Microsoft Certified IT Professional (MCITP)

• Microsoft Certified Systems Administrator (MCSA)

• Microsoft Certified Technology Specialist (MCTS)

Understanding Knowledge of the following standards and frameworks will be an advantage.

• Knowledge of Microsoft O/S, Identity Management and AD, Azure AD, ADFS

• Good understanding of Network equipment, O/S, and configuration. Cisco IOS, NX-OS, PaloAlto Firewalls, Meraki

• Working knowledge of IT standards – ISO27001 and ITIL, Framework -, NIST, OWSAP

• Knowledge of routing protocols (OSPF, BGP, IGRP/EIGRP) and MPLS.

• Fundamental knowledge of IP-based applications, experience with security threats and security tools to mitigate the impacts of those threats preferred.

Benefits:
Just Energy offers a robust benefits plan for staff members, as well as Employee Assistance Programs that offer a wealth of tools and resources to enrich the employee experience. The company also provides several cost-free, self-development courses for those that wish to build on their skills and competencies. In addition, a variety of awards offer another opportunity to recognize and reward employees.

We offer:


• Competitive compensation and incentives

• Paid Holidays/Vacation

• Company paid L&AD for employees plus Short-term disability.

• Personal and Career development resources with "growth" opportunity

• Hybrid -Remote Work Model depending on role

• Health and wellbeing tools and resources and more



  • Mississauga, Ontario, Canada Just Energy Full time

    DescriptionJob Title: Information Security AnalystLocation: Mississauga, ON (Hybrid)Reports To: Manager, IT Cyber and Information SecurityJust Energy and its subsidiaries are an equal opportunity employer. We are committed to building a workforce that reflects the communities we serve and to promote a diverse, inclusive, accessible, merit-based, respectful,...


  • Mississauga, Ontario, Canada IKO Industries Ltd. Full time

    IKO Industries Ltd. is a market leader in the manufacturing of roofing and building materials. IKO is a Canadian owned and operated business with production facilities worldwide and has many years of unparalleled success in the roofing materials industry. Quality, integrity, and trustworthiness are the values that underlie this success, and we have built...


  • Mississauga, Ontario, Canada Electricenergyonline Full time

    Job ID Description Job Title: Information Security Analyst Location: Mississauga, ON (Hybrid) Reports To: Manager, IT Cyber and Information Security Just Energy and its subsidiaries are an equal opportunity employer. We are committed to building a workforce that reflects the communities we serve and to promote a diverse, inclusive, accessible,...

  • Security Analyst

    1 week ago


    Mississauga, Ontario, Canada Control Gap Inc. Full time

    We're looking for entry-level security specialists to grow our team. If you are a student and looking to work a co-op term as an Information Security Analyst or Specialist and look forward to working in challenging and changing environments, we have an excellent opportunity for you.As part of the Control Gap team, you'll work with high-profile clients in...


  • Mississauga, Ontario, Canada EllisDon Full time

    Join our team Are you ready to work on groundbreaking projects that shape our cities? At EllisDon, we have a diverse team of Full-Stack Developers, Data Analysts, UX Designers, Product Owners, and IT experts who are powered by cutting-edge technology. We are rapidly expanding and looking for talented individuals, including top digital modelers and BIM...


  • Mississauga, Ontario, Canada Flair Airlines Ltd. Full time

    Are you ready to take your career to new heights?As Canada's largest independent ultra-low-cost airline, that's exactly what we're doing at Flair Airlines. By consistently offering airfares that are a fraction of the ticket prices of "those other airlines", we are making air travel an affordable option for millions of couch-bound Canadians.Yes, we're an...


  • Mississauga, Ontario, Canada Control Gap Inc. Full time

    We're looking for entry-level security specialists to grow our team. If you are a student and looking to work a co-op term as an Information Security Analyst or Specialist and look forward to working in challenging and changing environments, we have an excellent opportunity for you.As part of the Control Gap team, you'll work with high-profile clients in...


  • Mississauga, Ontario, Canada KUBRA Full time

    Overview:KUBRA's head office in Mississauga is looking for a Security Operations Analyst to join our growing Information Security teamThe Security Operations Analyst will be working to enhance and validate the compliance, integrity and security of all KUBRA Data Transfer Ltd. systems and services, while maintaining operational effectiveness.What you get to...


  • Mississauga, Ontario, Canada Cyber Crime Full time

    KUBRA We provide customer experience solutions to help companies engage with their customers through multiple channels. Discover our suite of services today. View company page KUBRA is looking for a Security Operations Analyst to join our Information Security teamAs a Security Operations Analyst your job will be to enhance and validate the compliance,...


  • Mississauga, Ontario, Canada Finastra USA Corporation Full time

    Responsibilities:About the roleFinastra's Cyber Security Operations team is at the front line of detecting, monitoring for and responding to cybersecurity incidents within the global infrastructure. The Security Operations Center Analyst will have a crucial role in defending the enterprise network from potential and active threats. You will be agile, willing...


  • Mississauga, Ontario, Canada EllisDon Full time

    Connect with us LinkedIn, Instagram, Facebook, Twitter Do you want to build the software that builds cities? EllisDon's construction technology team is made up of Full-Stack Developers, Data Analysts, UX Designers, Product Owners, IT Operations and we're growing fast Our team also includes some of the best digital modelers and BIM specialists in the...


  • Mississauga, Ontario, Canada Epsilon Solutions Ltd. Full time

    Job Title : Tech Security AnalystLocation : Mississauga ON (Onsite role)Position Type : Full Time RoleJob Description" Work closely with Business, Vendor Senior Management, collaborate as Tech SME to drive product adoption, onboarding of the SaaS/PaaS platform(s)" Collaborate effectively with colleagues globally, sharing information and knowledge...


  • Mississauga, Ontario, Canada EllisDon Full time

    Do you want to build the software that builds cities? EllisDon's construction technology team is made up of Full-Stack Developers, Data Analysts, UX Designers, Product Owners, IT Operations and we're growing fast Our team also includes some of the best digital modelers and BIM specialists in the industry, experts who are working with the latest tech on...


  • Mississauga, Ontario, Canada Trillium Health Partners Full time

    Job Description:_____________________________________Position: Information Security Technical LeadFile#: Status: Full TimeRole Level: PG 13 Professional Group Band 13 $ $66.25Dept/Health System: Technology and Infrastructure ServicesPosted: November 17, 2023Internal Deadline: December 1, 2023_________________________________________Trillium Health Partners...


  • Mississauga, Ontario, Canada BlackBerry Full time

    Worker Sub-Type:RegularJob Description:Responsibilities: Oversees incident response & remediation functions Conducts penetration testing, forensics and red team exercises Lead and motivate a team of security professionals to help ensure the company continues to operate in a secure and stable environment. Communicate and ensure compliance with organizational...


  • Mississauga, Ontario, Canada Active Security Full time

    Language Requirement: English Job Requirements: Education: High School Diploma Experience: 7 Months to less than 1 Year Ability to Supervise: 5 – 10 People Transportation/Travel Information: Valid Drivers License, Owns a vehicle Work Conditions & Physical Capabilities Work under pressure, combination of sitting, standing, walking, fast-paced...


  • Mississauga, Ontario, Canada Canada Cartage Full time

    Application Analyst - IT Why you'll love Canada CartageAn iconic Canadian company with over 100 years of helping companies grow and succeed in Canada, we provide national dedicated fleet solutions, general freight services, managed transportation, fulfillment & distribution, and home delivery. With a national network of terminals, cross-docks, and...


  • Mississauga, Ontario, Canada Canada Cartage Full time

    Application Analyst - ITWhy you'll love Canada CartageAn iconic Canadian company with over 100 years of helping companies grow and succeed in Canada, we provide national dedicated fleet solutions, general freight services, managed transportation, fulfillment & distribution, and home delivery. With a national network of terminals, cross-docks, and...


  • Mississauga, Ontario, Canada Security Bank & Trust Co. Full time

    Press Tab to Move to Skip to Content Link Select how often (in days) to receive an alert: Reports to: Director IT Operations & Governance As Canada's leading integrated freight, package, and logistics provider, we've been helping promises get where they need to be for more than 60 years. So, whether you're looking to build new skills, make an impact in your...


  • Mississauga, Ontario, Canada CDW - Canada Full time

    Forsythe Technology is a CDW company. We share common values as a performance-driven, customer-focused culture. CDW is a leading multi-brand provider of information technology solutions to business, government, education and healthcare customers across the globe.This role will support our Mississauga, Ontario area Security Operations Centre, and can be based...