Threat Security Consultant

2 weeks ago


Toronto, Canada Nucleo Digital Full time

Purpose of Job

The Information Security Risk Consultant will work closely with the technology teams and line of business teams to mitigate the risk of security attacks while enabling the business to grow the bank and serve our customers efficiently and securely.

**Main Activities**:
Provide security advisory services to technology and business teams.

Review architectural diagrams.

Draw security diagrams and data flow diagrams.

Identify threats and security gaps.

Represent the threats identified in attack tree.

Capture existing controls and recommend possible security mitigation controls for the identified threats.

Track and remediate design flaws identified.

Manage security risks for assigned portfolio to ensure that action/mitigation plans are defined and actioned in-time.

Escalate outstanding risks as required.

Update and mature security processes.

Identify opportunities for improvements.

**Knowledge/Skill Requirements**:
A college diploma or university degree is required. Higher accreditation (e.g. Bachelor of Computer Science) is preferred.

At least five (5) years of information security and information risk experience.

Hands on experience in drawing security diagram and data flow diagram with Architectural diagrams or high-level design details.

Experience in recommending possible security mitigation controls for the identified threats and representing them in attack tree.

Hands on experience using threat modeling Methodologies like STRIDE and attack tree.

Familiarity with MITRE attack framework and OWASP top 10

Hands on experience in Attacker centric, Threat centric, Software centric and Asset Centric threat model.

Understanding of API security is an asset

Knowledge in open banking is an asset

**The following certifications are preferred**: CCSP, CCSK, CISM, CISSP, or CRISC.

Background and experience in Architecture or Application Development is an asset

Understanding and experience with PCI DSS, MITRE ATT&CK, BSIMM, NIST, ISO 27K series is an asset.

Experience working in a banking or financial services environment is an asset.

**What EQ Bank offers**:
Named “Best Workplaces in Financial Services & Insurance 2021”

An inclusive and collaborative working environment that encourages curiosity, creativity and innovation.

An experience to work and learn from diverse industry leaders.

A continuous improvement journey using the latest technologies.

An opportunity for innovation, continuous learning and career progression.

A competitive total benefit package that includes a base salary, a performance bonus, company matching programs, vacation, personal & sick days, maternity/paternity leave, medical, vision and dental benefits and much more.



  • Toronto, Canada Tech4Soft Consulting Full time

    **About us** At Tech4Soft Consulting, we strive to create a collaborative and innovative work environment where employees can thrive and make a real impact. We have a strong commitment to professional growth and development, and we believe in investing in our employees' success. Sr. Cybersecurity Consultant Toronto, ON (Hybrid) **Must-have**: Cyber...


  • Toronto, Canada Transatlantic Business Consulting Inc. Full time

    **Project**:The Cyber Security and Privacy Consultant role requires extensive knowledge and experience with both cyber security and privacy controls to reduce the impact of evolving cyber threats in the Ontario K-12 school board environment. This work involves working in close partnership with the K-12 education sector. The resource may need to travel the...


  • Toronto, Canada CB Canada Full time

    IT Technical Consultant - Network Security On behalf of our client in the Public Services Sector, PROCOM is looking for an IT Technical Consultant - Network Security. IT Technical Consultant - Network Security – Job Description Assist with management of day-to-day operations associated with Network security technologies such as Network Intrusion...


  • Toronto, Canada eSentire Full time

    About eSentire Founded in 2001, the company’s mission is to hunt, investigate and stop cyber threats before they become business-disrupting events. Combining cutting-edge machine learning XDR technology, 24/7 Threat Hunting, and proven security operations leadership, eSentire mitigates business risk and enables security at scale. The Team eSentire...


  • Toronto, Canada Arthur Grand Technologies Inc Full time

    Arthur Grand Technologies is currently seeking a highly motivated and skilled **Specialized IT Consultant - Senior** for one of our clients. **Position: Specialized IT Consultant - Senior** **Location: 777 Bay St. Toronto Ontario (Hybrid)** **Duration: Long Term Contract** **Must Have** **Cyber Security and Privacy** - 10+ years’ experience with cyber...


  • Toronto, Canada Canadian Tire Corporation Full time

    What you’ll do The Manager Vulnerability & Threat Intelligence within Cyber Threat Management (CTM) is a key member of a fast-paced team responsible for defending Canadian Tire’s technology infrastructure and web assets against a complex cyber threat environment. Working independently and as part of a large Cybersecurity team, this position...


  • Old Toronto, Canada nugget.ai Full time

    Location: Toronto (hybrid->3 times per week) Employment Type: Contract About the Role: The Threat Modeling Analyst is responsible for identifying threats and vulnerabilities across company systems and communicating the issues with the appropriate team – infrastructure, IT, risk, DLP, or any affected members. Responsibilities: Work cross-functionally with...


  • Old Toronto, Canada nugget.ai Full time

    Location: Toronto (hybrid->3 times per week) Employment Type: Contract About the Role: The Threat Modeling Analyst is responsible for identifying threats and vulnerabilities across company systems and communicating the issues with the appropriate team – infrastructure, IT, risk, DLP, or any affected members. Responsibilities: Work cross-functionally with...

  • Security Technician

    4 weeks ago


    Greater Toronto Area, Canada 360 Security Inc Full time

    **About us** We are professional, agile, and our goal is to We offer quality home alarm monitoring products and services as well as business security systems and video surveillance from ADT by Telus - an industry leader. ADT by Telus offers enhanced alarm monitoring services that protect Canadians. Since 1874, ADT by Telus has been protecting homes,...


  • Toronto, Canada Turner & Townsend Full time

    **Company Description** From the inception of a project through to completion and beyond, Turner & Townsend help to deliver the outcomes that matter through transformational programs covering the full spectrum of consultancy, project delivery and post-project operations. With offices located globally, you're never far away from our services. Working from...


  • Toronto, Canada Canadian Tire Corporation Full time

    What you'll doThe Manager Vulnerability & Threat Intelligence within Cyber Threat Management (CTM) is a key member of a fast-paced team responsible for defending Canadian Tire's technology infrastructure and web assets against a complex cyber threat environment. Working independently and as part of a large Cybersecurity team, this position collaborates with...


  • Toronto, Ontario, Canada Canadian Tire Corporation Full time

    What you'll doThe Manager Vulnerability & Threat Intelligence within Cyber Threat Management (CTM) is a key member of a fast-paced team responsible for defending Canadian Tire's technology infrastructure and web assets against a complex cyber threat environment. Working independently and as part of a large Cybersecurity team, this position collaborates with...


  • Toronto, Canada Nucleo Digital Full time

    **Responsibilities**: - Focused on providing information security consultation to business and IT clients - Working with project teams to identify required security controls, and ensuring controls have been implemented prior to transitioning technology platforms to production - Conducting information security threat risk assessments and third-party security...


  • Toronto, Canada Emerald Security Services Full time

    Emerald Security Services is seeking dedicated and skilled On-Call Security Guards to join our team. As an On-Call Security Guard, you will play a vital role in ensuring the safety and security of our clients and their premises. We are looking for individuals with a strong physique and excellent crowd control skills to maintain order and provide a safe...


  • Toronto, Canada Infotek Consulting Inc. Full time

    We are seeking a skilled and experienced Cybersecurity Analyst. The ideal candidate will have a strong background in cybersecurity, with a focus on security applications, incident response, vulnerability analysis, and network security. This position offers the opportunity to work in a dynamic environment and contribute to the ongoing protection of our...


  • Toronto, Canada Infotek Consulting Inc. Full time

    We are seeking a skilled and experienced Cybersecurity Analyst. The ideal candidate will have a strong background in cybersecurity, with a focus on security applications, incident response, vulnerability analysis, and network security. This position offers the opportunity to work in a dynamic environment and contribute to the ongoing protection of our...


  • Toronto, Canada Infotek Consulting Inc. Full time

    We are seeking a skilled and experienced Cybersecurity Analyst. The ideal candidate will have a strong background in cybersecurity, with a focus on security applications, incident response, vulnerability analysis, and network security. This position offers the opportunity to work in a dynamic environment and contribute to the ongoing protection of our...


  • Toronto, Canada Infotek Consulting Inc. Full time

    We are seeking a skilled and experienced Cybersecurity Analyst. The ideal candidate will have a strong background in cybersecurity, with a focus on security applications, incident response, vulnerability analysis, and network security. This position offers the opportunity to work in a dynamic environment and contribute to the ongoing protection of our...


  • Toronto, Canada Canadian Tire Corporation Full time

    What you’ll do The Manager Vulnerability & Threat Intelligence within Cyber Threat Management (CTM) is a key member of a fast-paced team responsible for defending Canadian Tire’s technology infrastructure and web assets against a complex cyber threat environment. Working independently and as part of a large Cybersecurity team, this position...


  • Toronto, Canada Broadmind INC Full time

    **Role: THREAD MODELING CONSULTANT** **Location: Toronto, ON** **Hybrid Role** **Duration: 12 Months Contract** **JOB DESCRIPTION**: - Provide security advisory services to technology and business teams. - Perform security assessments for technical solution designs. - Identify threat scenarios and evaluate risk rating based on a thorough review of the...