Information Technology Security Analyst

7 days ago


Old Toronto, Ontario, Canada Delpath Full time

Location Address: Scarborough (1-2 day a month in office flexible on which days)

Contract Duration: 4 months with possible extension

Schedule Hours: 9am-5pm

Reason: Additional support needed during a migration process.

Typical Day in the Role:


• The incumbent is responsible for supporting the Senior Manager, Director, VP, SVP and CISO in achieving IS&C Strategic goals through various processes, including:


• Develop and/or enhance strategies and processes to manage web application security vulnerabilities and threats for both transactional and marketing/informational web sites.


• Develop and/or enhance communication model to manage web application vulnerability remediation with the development and infrastructure support teams in support of risk management practices on behalf of the business owner.


• Develop and/or enhance reporting to development teams and all levels of management in order to provide proper tracking and measurement of remediation relative to established objectives


• Recommend, design, assess, implement, deploy and maintain application security controls required to protect Scotiabank and its customers.


• Responsible for developing and/or enhancing the strategies and processes to identify, analyze, and communicate application vulnerabilities as per the CISO Directive and published communication process flows.


• Responsible for adherence to an established process flow that ensures development support teams, infrastructure support teams, and business risk owners implement control measures that effectively mitigate or eliminate the identified risk.


• Responsible for timely and accurate reporting of all findings to the development teams, appropriate levels of management and the business risk owner

Must Have Skills/Requirements:

1) 10+ years of Experience as an IT Security Analyst

2) A strong understanding of multi-tier Web Applications, web API, and related vulnerabilities and potentials threats. Staying abreast of information provided by recognized organizations such as OWASP (Open Web Application Security Project) and CVE (Common Vulnerabilities and Exposures).

3) Must have a comprehensive understanding of the HTTP protocol, Secure Software Development Lifecycle (SDLC) and Web Programing for multi-tier web applications and web services. An understanding of JavaScript, SQL, HTML, XML, , , Java, PHP, XML, Python, PowerShell and Ruby is essential.

4) Must have a comprehensive understanding of the OWASP Application Security Verification Standard (ASVS), and have proven working experience applying the ASVS.

5) Experience performing source code and/or application security assessments, including risk assessments, and penetration testing. The ability to demonstrate exploitation of vulnerabilities is essential, as would experience with vulnerability testing and scanning tools such as Checkmarx, BurpSuite, Acunetix, NetSparker, WebInspect, AppScan, SQLMap, ZAP, and Fortify.

Nice to have Skills:

1) Prior Financial Institutional Experience

2) An understanding of gateway technologies and network devices such as Load Balancers, Proxies, IPS, WAF, API Gateway.

3) The ability to generate reports and tailor his/her communication strategy for various levels of technical staff, executive management, and business clients.

Best Vs Average Candidate: The ideal candidate would have strong hands on experience as an IT Security Analyst. Specifically working in a team environment on a multifaceted project.

Education : Bachelors/ degree related field

Interview Process:

1 Round of Interviews:

-1 hour long panel interview with the HM and the Team (6 members)

-Interviews to take place ASAP


#J-18808-Ljbffr

  • Toronto, Ontario, Canada Brainhunter Systems Ltd Full time

    Hiring for Senior Information Security Analyst role. Professionals suitable for the opportunity below may send their up-to-date resumes to Requirement SummaryJob Role/Title: Senior Information Security AnalystJob Location: We have active requirements in Toronto, ON / London, ON / Winnipeg, MB; locationsJob Duration: Initial contract of 6 months, with good...


  • Old Toronto, Ontario, Canada Canadian Investment Regulatory Organization Full time

    40 Temperance Street Suite 2600 Toronto, ON M5H0B4, CAN DescriptionPosition Title: Information Security AnalystDepartment:Information TechnologyLocation:TorontoStatus: Permanent Full-time (Hybrid)The Information Security Analyst will implement the information security program initiatives, administer information security systems, and assist with...


  • Toronto, Ontario, Canada CB Canada Full time

    Information Security Analyst On behalf of our client in the Banking Sector, PROCOM is looking for an Information Security Analyst. Information Security Analyst – Job Description Manage assigned security platforms, following clients' procedures if required, which includes: Device health and availability monitoring Device health incident resolution and...


  • Toronto, Ontario, Canada 2i Solutions, Inc Full time

    We are thrilled to present an outstanding 1 year contract opportunity for an accomplished Information Security Analyst (SOC Analyst) based in London, Ontario. This is a Fully remote role Must haves: 5+ years of IT operations experience with progressive responsibilities. 3+ years information security or other IT infrastructure security experience. If you...


  • Old Toronto, Ontario, Canada Finance Professionals Inc. Full time

    JOB DESCRIPTIONLocation: Hybrid (Scarborough, ON)Duration: Until September 30, 2024Our client a leading financial institution in Scarborough, ON is looking for an Information Security Analyst - SailPoint IIQ to to be involved in many different initiatives to further build the Bank's IAM capabilities while being able to improve processes. This individual will...

  • IT Security Analyst

    7 days ago


    Old Toronto, Ontario, Canada Security Bank & Trust Co. Full time

    Must Have Skills/Requirements:1) 10+ years of Experience as an IT Security Analyst2) A strong understanding of multi-tier Web Applications, web API, and related vulnerabilities and potentials threats. Staying abreast of information provided by recognized organizations such as OWASP (Open Web Application Security Project) and CVE (Common Vulnerabilities and...


  • Toronto, Ontario, Canada Delpath Full time

    Location Address: Scarborough (1-2 day a month in office flexible on which days)Contract Duration: 4 months with possible extensionSchedule Hours: 9am-5pmReason: Additional support needed during a migration processTypical Day in the Role:The incumbent is responsible for supporting the Senior Manager, Director, VP, SVP and CISO in achieving IS&C Strategic...


  • Toronto, Ontario, Canada CIBC Full time

    We're building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what's right for our clients.At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and...


  • Toronto, Ontario, Canada Cyber Crime Full time

    At Meridian our aspiration is to integrate our purpose into everything we do for people, the planet, and communities. This role provides advanced information security subject matter expertise to the organization through both strategic and operational projects and initiatives. This role works with IT resources, senior management, Security Analysts, and...


  • Toronto, Ontario, Canada Toronto Metropolitan University Full time

    About Toronto Metropolitan At the intersection of mind and action, Toronto Metropolitan University (TMU) is on a transformative path to become Canada's leading comprehensive innovation university. Integral to this path is the placement of equity, diversity and inclusion as fundamental to our institutional culture. Our current outlines each as core values...


  • Toronto, Ontario, Canada TD Bank Full time

    Information Security Analyst I:BRJob Category - Primary Technology SolutionsWork Location Front Street West CorporateEmployment Type RegularCity TorontoTime Type Full TimeProvince/State OntarioHours 37.5Workplace Model HybridPay DetailsDepartment OverviewBuilding a World-Class Technology Team at TDWe can't afford to be boring. Neither can you. The scale and...


  • Old Toronto, Ontario, Canada Quantum Technology Recruiting Inc. Full time

    Position: Third Party Risk Analyst Location: Toronto / RemoteJob Type: 6+ months contract, full-timeOur Toronto-based client, consistently ranked as one of Canada's top employers, is looking for a Third Party Risk Analyst, who has done full-cycle 3rd party vendor risk assessments to support their Information Security Risk Management and Governance...


  • Old Toronto, Ontario, Canada Security Bank & Trust Co. Full time

    Plan, coordinate, and direct all information security tasks within the area of responsibility to meet the global and local security goals.Support all security Incidents of the location with alignment to the incident management process.Works with the Procurement and Legal departments to review and screen Suppliers.Leads IT/security auditsCreates security...

  • Security Analyst

    6 days ago


    Old Toronto, Ontario, Canada Prenuvo Full time

    Prenuvo At Prenuvo, we provide whole body, radiation-free MRI scans in order for our patients to focus on early detection of over 500 cancers and diseases. View company page At Prenuvo , we are on a mission to flip the paradigm from reactive "sick-care" to proactive health care. Our award-winning whole body scan is fast (under 1 hour), safe (MRI has no...


  • Old Toronto, Ontario, Canada AutoTrader Full time

    TRADER Corporation is a trusted Canadian leader in online media, dealer and lender services. The company is comprised of , AutoSync and Dealertrack Canada. in Quebec) offers the largest inventory of new cars and used cars in Canada, receiving over 25 million monthly visits to its marketplace. With over 3,500 subscribers and counting, AutoSync is the...

  • IT Security Analyst

    7 days ago


    Old Toronto, Ontario, Canada Finance Professionals Inc. Full time

    JOB DESCRIPTIONLocation: RemoteOur client, a leading financial institution in Downtown Toronto is looking for anIT Security Analyst toconduct threat risk assessments on technology assets, specifically applications. The successful candidate will have the opportunity to work with one of the Top 5 Banks in Canada.Typical Day in role:Verify security controls,...


  • Toronto, Ontario, Canada First National Financial Full time

    We are hiring an Application Security Analyst, Information SecurityThe Role:Reporting To: Application Security Manager**Full-Time/Part Time**: FulltimePosting Date: March 5, 2024Closing Date: April 5, 2024Hours of Work: 8:30 a.m. - 5:00 p.m.Grade: 12.4Office Location: Toronto, ON Great location Steps away from the main public transit stationWhat we...


  • Toronto, Ontario, Canada Cognizant Technology Solutions Full time

    Information Security Technical Writer – Consultant At Cognizant, our global community sets us apart—an energetic, collaborative and inclusive workplace where everyone can thrive And with projects at the forefront of innovation, you can build a varied, rewarding career and draw inspiration from dedicated colleagues and leaders. Cognizant is right where...


  • Toronto, Ontario, Canada Cognizant Technology Solutions Full time

    Information Security Technical Writer – Consultant At Cognizant, our global community sets us apart—an energetic, collaborative and inclusive workplace where everyone can thrive And with projects at the forefront of innovation, you can build a varied, rewarding career and draw inspiration from dedicated colleagues and leaders. Cognizant is right where...

  • Security Analyst

    6 days ago


    Toronto, Ontario, Canada OntarioMD Full time

    Security AnalystPermanent Full TimeJob Band: 5The Security Analyst will work with internal and external stakeholders to advance the maturity of the OntarioMD Security program, ensure that IT Security is considered in all aspects of Electronic Medical Record (EMR) solutions including connectivity to provincial Electronic Health Record (EHR) Solutions and...