Security Analyst Enterprise Technology

4 days ago


Brossard, Canada Purolator Full time

Working in Purolator’s Security Risk and Compliance team, the IT Security Analyst is responsible for governing all security aspects ensuring compliance to security guidelines, security auditing requirements, and following industrial best practices.

The IT Security Analyst will have an opportunity to develop and support our internal security technologies and services across the organization, working closely with other practice leads and the product teams to promote Dev/SecOps practices. The successful candidate will be driving implementation and adoption of security practices for the product lifecycle of the Business Solution Delivery (BSD) group from Architecture to Design, Test, Deployment and Operations.

The work we do at Purolator impacts every Canadian. To work with us, you must be eligible to obtain a Reliability Security Clearance

Responsibilities
  • Understand and improve the access model and bring security awareness to the product teams on applicable standards/policies.
  • Work with business and project teams to govern SAP/middleware access requests and related issues by following the standardized processes and procedures.
  • Manage the penetration testing process from end to end working closely with project teams and various vendors.
  • Assist in resolving issues related to roles & authorization, and in implementing a testing strategy for credentials management, code quality, vulnerability assessment, secrets management, and other roles & authorization related development.
  • Performing risk assessments, threat modeling and security architecture reviews, and prepare and maintain security related documents as and when required.
Additional Responsibilities
  • Familiarity with network layer technologies – FWs (Juniper, Checkpoint or similar), EDR fundamentals, VPN technologies, DNS.
  • Experience in designing and configuring SAP security solutions such as GRC Access Control, Identity Access Governance, GRC Process Control, SAP Enterprise Threat Detection and Onapsis.
  • Expertise in threat modeling frameworks.
  • Knowledge of OWASP Top 10, STRIDE, MITRE ATT&CK framework or similar.
  • Knowledge of NIST SP 800-53 Risk Management Framework.
  • Experience using Jira for Agile software development and deliver methodology.
Education
  • Academic: University degree in engineering, computer science, business, or equivalent.
  • Certifications: CISSP, CISA, or CISM are recommended.
Experience
  • 5+ years experience in the IT Security field.
  • Exceptional interpersonal skills and proven to flourish working in a fast-paced environment.
  • Ability to work effectively in a cross-disciplinary team, across multiple projects and multiple locations.
  • Sharp analytic and problem-solving capabilities that go beyond strict technical expertise.
  • Leadership skills, experience working with various stakeholders.
  • Experience managing and supporting privileged Access Management solutions.
  • Knowledge of entitlements and access control the various protocols for tracking records such as LDAP.
  • Experience with cyber security, controls testing, and presenting.
  • Strong SaaS/Application/Network security knowledge and experience. Extensive experience and knowledge in as many as possible of the following areas:
    • Application Security, SAP and non-SAP applications
    • Middleware Management
    • Data Security
    • Identity and Access Management - AWS Cloud, Okta, OpenID, OAuth, SAML, 2FA
    • Cloud Computing, Cloud Network Services and Software-Defined Networking (SDN)
    • Cyber Security and Cyber Investigation
  • Familiarity with Web technologies and standards – HTTP/S, JSON, REST, SOAP, XML, W3C Standards, Python.
  • SCA and SAST tools – OWASP Dependency-Check, OWASP Dependency-Track, Snyk, Veracode, SonarQube or similar.
  • Experience in Disaster Recovery, Test and Evaluation, and Risk Management.
Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr
  • Security Analyst

    2 weeks ago


    Brossard, Quebec, Canada GoSecure Full time

    The Security Analyst specialist is a member of GoSecure's MSD Services team. He provide technical consulting service in network security, such as Firewall technology, Antispam or EDR. Also provides expertise in security operations and technical support to various customers. As part of managed security contracts, the Security Analyst configure managed...

  • Lead Security Analyst

    2 weeks ago


    Brossard, Quebec, Canada OpenText Full time

    OpenText OpenText offers cloud-native solutions in an integrated and flexible Information Management platform to enable intelligent, connected and secure organizations. View company page OPENTEXTOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member...

  • Security Analyst

    1 day ago


    Brossard, Canada Strathcona Resources Ltd. Full time

    Strathcona Resources Ltd. (“Strathcona”) is a Calgary, Alberta based oil and gas production and development company focused on maximizing oil and gas recovery from its low decline, high free cash flow oil and gas resource base. Strathcona's operations, infrastructure and land position are focused in Alberta, British Columbia, and Saskatchewan.Strathcona...

  • Security Analyst

    1 day ago


    Brossard, Canada Strathcona Resources Ltd. Full time

    Strathcona Resources Ltd. (“Strathcona”) is a Calgary, Alberta based oil and gas production and development company focused on maximizing oil and gas recovery from its low decline, high free cash flow oil and gas resource base. Strathcona's operations, infrastructure and land position are focused in Alberta, British Columbia, and Saskatchewan.Strathcona...


  • Brossard, Canada OpenText Full time

    OpenText OpenText offers cloud-native solutions in an integrated and flexible Information Management platform to enable intelligent, connected and secure organizations. View company page OPENTEXTOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a...


  • Brossard, Canada OpenText Full time

    OpenText OpenText offers cloud-native solutions in an integrated and flexible Information Management platform to enable intelligent, connected and secure organizations. View company page OPENTEXTOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a...


  • Brossard, Canada OpenText Full time

    OpenText OpenText offers cloud-native solutions in an integrated and flexible Information Management platform to enable intelligent, connected and secure organizations. View company page OPENTEXTOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a...


  • Brossard, Canada OpenText Full time

    OpenText OpenText offers cloud-native solutions in an integrated and flexible Information Management platform to enable intelligent, connected and secure organizations. View company page OPENTEXTOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a...


  • Brossard, Canada OpenText Full time

    OpenText OpenText offers cloud-native solutions in an integrated and flexible Information Management platform to enable intelligent, connected and secure organizations. View company page OPENTEXTOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a...


  • Brossard, Canada Precision Drilling Full time

    If you are an experienced Cyber Security Analyst professional looking to enjoy a work-life balance, then please read on.Precision Drilling has a hybrid opening for a Cyber Security Analyst eager for fresh challenges and development toward potential future career growth as our business continues to innovate and grow.Working for Precision Drilling means being...


  • Brossard, Canada Precision Drilling Full time

    If you are an experienced Cyber Security Analyst professional looking to enjoy a work-life balance, then please read on.Precision Drilling has a hybrid opening for a Cyber Security Analyst eager for fresh challenges and development toward potential future career growth as our business continues to innovate and grow.Working for Precision Drilling means being...


  • Brossard, Quebec, Canada Precision Drilling Full time

    If you are an experienced Cyber Security Analyst professional looking to enjoy a work-life balance, then please read on.Precision Drilling has a hybrid opening for a Cyber Security Analyst eager for fresh challenges and development toward potential future career growth as our business continues to innovate and grow.Working for Precision Drilling means being...


  • Brossard, Canada Precision Drilling Full time

    If you are an experienced Cyber Security Analyst professional looking to enjoy a work-life balance, then please read on.Precision Drilling has a hybrid opening for a Cyber Security Analyst eager for fresh challenges and development toward potential future career growth as our business continues to innovate and grow.Working for Precision Drilling means being...


  • Brossard, Canada Precision Drilling Full time

    If you are an experienced Cyber Security Analyst professional looking to enjoy a work-life balance, then please read on.Precision Drilling has a hybrid opening for a Cyber Security Analyst eager for fresh challenges and development toward potential future career growth as our business continues to innovate and grow.Working for Precision Drilling means being...


  • Brossard, Canada Precision Drilling Full time

    If you are an experienced Cyber Security Analyst professional looking to enjoy a work-life balance, then please read on.Precision Drilling has a hybrid opening for a Cyber Security Analyst eager for fresh challenges and development toward potential future career growth as our business continues to innovate and grow.Working for Precision Drilling means being...

  • Lead Security Analyst

    2 weeks ago


    Brossard, Canada OpenText Full time

    OpenText OpenText offers cloud-native solutions in an integrated and flexible Information Management platform to enable intelligent, connected and secure organizations. View company page OPENTEXTOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a...

  • Lead Security Analyst

    2 weeks ago


    Brossard, Canada OpenText Full time

    OpenText OpenText offers cloud-native solutions in an integrated and flexible Information Management platform to enable intelligent, connected and secure organizations. View company page OPENTEXTOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a...


  • Brossard, Canada Horangi Cyber Security Full time

    Cloud Security Research Engineer, Philippines Horangi Cyber Security Leading cyber security firm in Asia, offering advanced cyber security products and services, including consulting. We specialize in equipping businesses with robust security solutions and expert guidance to navigate the digital landscape... View company page Horangi – A Bitdefender...


  • Brossard, Canada Horangi Cyber Security Full time

    Cloud Security Research Engineer, Philippines Horangi Cyber Security Leading cyber security firm in Asia, offering advanced cyber security products and services, including consulting. We specialize in equipping businesses with robust security solutions and expert guidance to navigate the digital landscape... View company page Horangi – A Bitdefender...


  • Brossard, Canada Horangi Cyber Security Full time

    Cloud Security Research Engineer, Philippines Horangi Cyber Security Leading cyber security firm in Asia, offering advanced cyber security products and services, including consulting. We specialize in equipping businesses with robust security solutions and expert guidance to navigate the digital landscape... View company page Horangi – A Bitdefender...