IT Security Analyst

3 weeks ago


Old Toronto, Canada Finance Professionals Inc. Full time

Typical Day in the Role:

• The incumbent is responsible for supporting the Senior Manager, Director, VP, SVP and CISO in achieving IS&C Strategic goals through various processes, including:

• Develop and/or enhance strategies and processes to manage web application security vulnerabilities and threats for both transactional and marketing/informational web sites.

• Develop and/or enhance communication model to manage web application vulnerability remediation with the development and infrastructure support teams in support of risk management practices on behalf of the business owner.

• Develop and/or enhance reporting to development teams and all levels of management in order to provide proper tracking and measurement of remediation relative to established objectives

• Recommend, design, assess, implement, deploy and maintain application security controls required to protect bank and its customers.

• Responsible for developing and/or enhancing the strategies and processes to identify, analyze, and communicate application vulnerabilities as per the CISO Directive and published communication process flows.

• Responsible for adherence to an established process flow that ensures development support teams, infrastructure support teams, and business risk owners implement control measures that effectively mitigate or eliminate the identified risk.

• Responsible for timely and accurate reporting of all findings to the development teams, appropriate levels of management and the business risk owner

Must Have Skills/Requirements:

1) 10+ years of Experience as an IT Security Analyst

2) A strong understanding of multi-tier Web Applications, web API, and related vulnerabilities and potentials threats. Staying abreast of information provided by recognized organizations such as OWASP (Open Web Application Security Project) and CVE (Common Vulnerabilities and Exposures).

3) Must have a comprehensive understanding of the HTTP protocol, Secure Software Development Lifecycle (SDLC) and Web Programing for multi-tier web applications and web services. An understanding of JavaScript, SQL, HTML, XML, ASP.net, VB.net, Java, PHP, XML, Python, PowerShell and Ruby is essential.

4) Must have a comprehensive understanding of the OWASP Application Security Verification Standard (ASVS), and have proven working experience applying the ASVS.

5) Experience performing source code and/or application security assessments, including risk assessments, and penetration testing. The ability to demonstrate exploitation of vulnerabilities is essential, as would experience with vulnerability testing and scanning tools such as Checkmarx, BurpSuite, Acunetix, NetSparker, WebInspect, AppScan, SQLMap, ZAP, and Fortify.

Nice to have Skills:

1) Prior Financial Institutional Experience

2) An understanding of gateway technologies and network devices such as Load Balancers, Proxies, IPS, WAF, API Gateway.

3) The ability to generate reports and tailor his/her communication strategy for various levels of technical staff, executive management, and business clients.

#J-18808-Ljbffr
  • IT Security Analyst

    3 weeks ago


    Old Toronto, Canada Security Bank & Trust Co. Full time

    Must Have Skills/Requirements: 1)   10+ years of Experience as an IT Security Analyst 2)   A strong understanding of multi-tier Web Applications, web API, and related vulnerabilities and potentials threats. Staying abreast of information provided by recognized organizations such as OWASP (Open Web Application Security Project) and CVE (Common...

  • IT Security Analyst

    3 weeks ago


    Old Toronto, Canada Security Bank & Trust Co. Full time

    Must Have Skills/Requirements: 1)   10+ years of Experience as an IT Security Analyst 2)   A strong understanding of multi-tier Web Applications, web API, and related vulnerabilities and potentials threats. Staying abreast of information provided by recognized organizations such as OWASP (Open Web Application Security Project) and CVE (Common...

  • IT Security Analyst

    5 days ago


    Old Toronto, Ontario, Canada Security Bank & Trust Co. Full time

    Must Have Skills/Requirements:1) 10+ years of Experience as an IT Security Analyst2) A strong understanding of multi-tier Web Applications, web API, and related vulnerabilities and potentials threats. Staying abreast of information provided by recognized organizations such as OWASP (Open Web Application Security Project) and CVE (Common Vulnerabilities and...


  • Toronto, Canada Atlantis IT group Full time

    **JD**: **Role - Network Security Analyst** **Location-** **CALGARY, AB (Hybrid)** **Duration - Contract** Establishes and maintains security architecture frameworks and practices across the enterprise, and communicates the strategy and roadmaps with a broad range of stakeholders including senior leadership and executives. Provides leadership in the...


  • Old Toronto, Canada Security Bank & Trust Co. Full time

    Our client, a major post-secondary institution, is looking to bolster their security program with the addition of two Senior Security Analysts. The main focus of the role will be to work alongside leadership in managing the program as a whole. Your input will be instrumental in the further development of their program.Experience1. Minimum 5 years of...


  • Old Toronto, Canada Security Bank & Trust Co. Full time

    Our client, a major post-secondary institution, is looking to bolster their security program with the addition of two Senior Security Analysts. The main focus of the role will be to work alongside leadership in managing the program as a whole. Your input will be instrumental in the further development of their program.Experience1. Minimum 5 years of...

  • IT Security Analyst

    1 month ago


    Old Toronto, Canada Nexus Systems Group Inc. Full time

    IT Security Analyst Typical Day in Role: • Review Firewall port requests on a daily basis, this will include Cloud security (GCP, Azure) • Provide approvals and complete risk memos incase risk is identified • Directly reporting to the Senior Manager, Information Security Advisor • Contractor will be working closely with the Network team, Security...

  • IT Security Analyst

    1 month ago


    Old Toronto, Canada Nexus Systems Group Inc. Full time

    IT Security Analyst Typical Day in Role: • Review Firewall port requests on a daily basis, this will include Cloud security (GCP, Azure) • Provide approvals and complete risk memos incase risk is identified • Directly reporting to the Senior Manager, Information Security Advisor • Contractor will be working closely with the Network team, Security...

  • IT Security Analyst

    3 weeks ago


    Old Toronto, Canada Nexus Systems Group Inc. Full time

    IT Security Analyst Typical Day in Role: • Review Firewall port requests on a daily basis, this will include Cloud security (GCP, Azure) • Provide approvals and complete risk memos incase risk is identified • Directly reporting to the Senior Manager, Information Security Advisor • Contractor will be working closely with the Network team, Security...

  • IT Security Analyst

    3 weeks ago


    Old Toronto, Canada Nexus Systems Group Inc. Full time

    IT Security Analyst Typical Day in Role: • Review Firewall port requests on a daily basis, this will include Cloud security (GCP, Azure) • Provide approvals and complete risk memos incase risk is identified • Directly reporting to the Senior Manager, Information Security Advisor • Contractor will be working closely with the Network team, Security...

  • IT Security Analyst

    1 month ago


    Old Toronto, Canada Nexus Systems Group Inc. Full time

    IT Security Analyst Typical Day in Role: • Review Firewall port requests on a daily basis, this will include Cloud security (GCP, Azure) • Provide approvals and complete risk memos incase risk is identified • Directly reporting to the Senior Manager, Information Security Advisor • Contractor will be working closely with the Network team, Security...

  • Cyber Security

    5 days ago


    Toronto, Canada Atlantis IT group Full time

    **Role - Cyber Security Analyst** **Location - Toronto, ON - Canada** **Duration - Long Term** This role will support all testing and validation activities for projects under Information Security portfolio and work closely with the PMs and BAs to complete all deliverables. To read all the documents and understand what needs to be tested Inform the PMs...

  • Security Analyst

    4 weeks ago


    Old Toronto, Canada Informa Group Plc. Full time

    Curinos is the leading provider of data, technologies and insights that enable financial institutions to make better and more profitable data-driven decisions faster. Born out of the combination of two familiar industry powerhouses, Novantas and Informa’s FBX business, Curinos brings to market a new level of industry expertise across deposits, treasury...

  • Security Analyst

    4 weeks ago


    Old Toronto, Canada Informa Group Plc. Full time

    Curinos is the leading provider of data, technologies and insights that enable financial institutions to make better and more profitable data-driven decisions faster. Born out of the combination of two familiar industry powerhouses, Novantas and Informa’s FBX business, Curinos brings to market a new level of industry expertise across deposits, treasury...

  • Security Analyst

    3 weeks ago


    Old Toronto, Canada Informa Group Plc. Full time

    Curinos is the leading provider of data, technologies and insights that enable financial institutions to make better and more profitable data-driven decisions faster. Born out of the combination of two familiar industry powerhouses, Novantas and Informa’s FBX business, Curinos brings to market a new level of industry expertise across deposits, treasury...

  • Security Analyst

    4 weeks ago


    Old Toronto, Canada Informa Group Plc. Full time

    Curinos is the leading provider of data, technologies and insights that enable financial institutions to make better and more profitable data-driven decisions faster. Born out of the combination of two familiar industry powerhouses, Novantas and Informa’s FBX business, Curinos brings to market a new level of industry expertise across deposits, treasury...

  • Security Analyst

    3 weeks ago


    Old Toronto, Canada Informa Group Plc. Full time

    Curinos is the leading provider of data, technologies and insights that enable financial institutions to make better and more profitable data-driven decisions faster. Born out of the combination of two familiar industry powerhouses, Novantas and Informa’s FBX business, Curinos brings to market a new level of industry expertise across deposits, treasury...


  • Old Toronto, Canada Nexus Systems Group Inc. Full time

    Security Analyst Typical Day in Role: • Focused individual on driving remediation of End Of Life (EOL)/Vulnerability within all Bank assets and assist with active engagements around Active Directory Clean up. • Security Risk Index – Chasing Global Technology (GTEP) for plans regarding EOL and Vulnerability remediation for network devices and GTEP...


  • Old Toronto, Canada Nexus Systems Group Inc. Full time

    Security Analyst Typical Day in Role: • Focused individual on driving remediation of End Of Life (EOL)/Vulnerability within all Bank assets and assist with active engagements around Active Directory Clean up. • Security Risk Index – Chasing Global Technology (GTEP) for plans regarding EOL and Vulnerability remediation for network devices and GTEP...


  • Old Toronto, Canada Nexus Systems Group Inc. Full time

    Security Analyst Typical Day in Role: • Focused individual on driving remediation of End Of Life (EOL)/Vulnerability within all Bank assets and assist with active engagements around Active Directory Clean up. • Security Risk Index – Chasing Global Technology (GTEP) for plans regarding EOL and Vulnerability remediation for network devices and GTEP...