Senior Security Analyst
2 weeks ago
one year salaried contract94K-110K 3 weeks vacation35 hr /weekcan opt in to pension contributionnet new role -team expanding3 x on site GTAtwo interviews - both onsitesecond round there is an assignment/presentation given ahead of timeMandatory: NEED ALL FOUR MANFATORIES as admin not USER only?PCISplunkCrowd StrikeCheckpointAbove as administrator, not user onlyPosition Title: Security AnalystReports To: Associate Director, Information ManagementRESPONSIBILITIES• Threat Monitoring: Continuously monitor network traffic, security alerts, and system logs to identify potential security incidents and vulnerabilities, with a focus on cardholder data protection.• PCI-DSS Compliance: Ensure adherence to PCI-DSS requirements, including maintaining compliance with all relevant standards and controls for handling and protecting cardholder data.• Incident Response: Respond promptly to security breaches or attacks, including investigating and analyzing incidents involving cardholder data, and implementing corrective measures to address any PCI-DSS violations.• Risk Assessment: Conduct regular risk assessments and security audits with a focus on PCI-DSS compliance to identify potential threats and vulnerabilities and recommend mitigation strategies.• Security Measures: Develop, implement, and enforce security policies, procedures, and best practices to enhance overall security and ensure PCI-DSS compliance.• Vulnerability Management: Perform regular vulnerability scans and assessments, addressing identified weaknesses in systems and applications, and ensuring compliance with PCI-DSS requirements.• Compliance Monitoring: Monitor compliance with PCI-DSS controls and procedures, including data encryption, access control, and network security measures.• Documentation: Maintain detailed records of PCI-DSS compliance activities, security incidents, investigations, and responses, and prepare reports for management and regulatory bodies.• Security Awareness: Educate and train staff on PCI-DSS requirements, security best practices, and organizational policies to promote a culture of security awareness and compliance.• Collaboration: Work closely with IT, development, and management teams to integrate PCI-DSS requirements into system designs and operational procedures.• Tool Management: Utilize and manage security tools and technologies, including firewalls, intrusion detection systems, and encryption software, to safeguard the organization's digital assets in compliance with PCI-DSS.• Engage with QSA: Collaborate with Qualified Security Assessors (QSAs) to ensure compliance with PCI-DSS standards, prepare for formal assessments, and address any identified gaps or recommendations.QUALIFICATIONS:• Bachelor's degree in computer science, Information Security, or a related field.• Relevant certification (e.g., CISSP, CEH, CompTIA Security+, PCI Professional) are considered an asset.• Minimum 5 years of experience in an Information Security role.• Minimum 5 years of experience with administration of various security products such as Palo Alto, CrowdStrike, Cisco ASA and Checkpoint, Microsoft Defender, Microsoft Purview and Symantec endpoint protection, Qualys and Tenable network and web application scanner, CIS benchmarks.• Demonstrated knowledge of and/or familiarity with standards and frameworks such as PCI-DDS, ITIL, COBIT, ISO/IEC 31000 series, ISO/IEC 27000 series, SOC 2.• Demonstrated experience in undertaking security threat and risk assessment using an industry recognized framework equivalent to the Harmonized Threat and Risk Assessment methodology.• Proven experience with LogRhythm or Splunk solutions.• Previous experience conducting IT audits considered an asset.• Threat Risk Vulnerability Assessment (TRVA) training.• Knowledge of current network, operating systems, hardware, protocols, and standards.• Excellent analytical skills• Demonstrated ability in solving I.T. issues, problems and possessing a sense of urgency.• Demonstrated integrity in dealing with information and issues of a highly confidential and sensitive nature.
-
Privacy and Security Compliance Analyst
1 week ago
Toronto, ON MS A, Canada SPRINT Senior Care Full time $60,000 - $80,000 per yearJob OverviewReporting to the Chief Operating Officer/Privacy Officer, the Privacy and Security Compliance Analyst plays a key role in supporting the organization's privacy, compliance, cyber security and IT-related governance programs and is responsible for fostering a culture of compliance and privacy across the organization.The Analyst provides support in...
-
Senior Security Analyst
2 weeks ago
Southwestern Ontario, Canada Carta Full timeThe Company You’ll Join Carta connects founders, investors, and limited partners through world‑class software, purpose‑built for everyone in venture capital, private equity and private credit. Trusted by 65,000+ companies in 160+ countries, Carta’s platform of software and services lays the groundwork so you can build, invest, and scale with...
-
Information Security Analyst
2 weeks ago
Ontario, Canada Insight Global Full timeRequired Skills & Experience 4-7 years experience within Information Security Risk at large enterprises Experience measuring security risks within application security and cloud security (Azure) Experience on risk assessments, and mitigating risk Experience in Architecture review or secure design review, TRA (threat risk assessments) Threat Modeling...
-
Senior Security Analyst
3 weeks ago
Southwestern Ontario, Canada Carta Full timeA private equity firm located in Southwestern Ontario is seeking a Senior Security Analyst to shape their security operations. The candidate will lead incident investigations, develop internal tools for automation, and mentor junior analysts. A deep understanding of security events and experience with various security technologies are essential. Join a...
-
Network Security Analyst
3 weeks ago
Ontario (ON), Canada Ateko, backed by Bell Canada Full timeAteko, powered by Bell Canada (formerly FX Innovation), is looking for a Network Security Analyst for one of his clients. ️ English fluency is mandatory / Bilingual with french could be a plus Confirmed profile: min 5 years of hands-on experience Occasional visits to the Toronto officeWe are seeking an experienced security analyst to provide day-to-day...
-
Senior Security Analyst: Detection
3 weeks ago
Southwestern Ontario, Canada Carta, Inc. Full timeA leading tech company in private equity is seeking a Senior Security Analyst to enhance detection and response capabilities. This role involves leading security incident investigations, developing tools, and mentoring junior analysts. Candidates should have 6+ years of experience in security operations, strong experience with SIEM tools, and excellent...
-
Network Security Analyst
3 weeks ago
Ontario (ON), Canada Rexall Pharmacy Group Ltd. Full timeThis position is a 7 month contract.What you are looking for:A closely connected cultureA total rewards package meant to enhance your work-life flexibilityFully utilizing your talentProfessional growth and development via challenging projects and assignmentsWarm and fuzzy feelings knowing you have helped your community, your team, the business and social...
-
Information Security Analyst
3 weeks ago
Toronto, ON, Canada Insight Global Full timeRequired Skills & Experience 4-7 years experience within Information Security Risk at large enterprises Experience measuring security risks within application security and cloud security (Azure) Experience on risk assessments, and mitigating risk Experience in Architecture review or secure design review, TRA (threat risk assessments) Threat Modeling...
-
Information Security Analyst
3 weeks ago
Toronto, ON, Canada Insight Global Full timeRequired Skills & Experience 4-7 years experience within Information Security Risk at large enterprises Experience measuring security risks within application security and cloud security (Azure) Experience on risk assessments, and mitigating risk Experience in Architecture review or secure design review, TRA (threat risk assessments) Threat Modeling...
-
Information Security Analyst
1 week ago
Toronto, ON, Canada Insight Global Full timeRequired Skills & Experience 4-7 years experience within Information Security Risk at large enterprises Experience measuring security risks within application security and cloud security (Azure) Experience on risk assessments, and mitigating risk Experience in Architecture review or secure design review, TRA (threat risk assessments) Threat Modeling...