Analyst, Cybersecurity Risk Management

4 weeks ago


Toronto, Canada Toronto Transit Commission (TTC) Full time

JOB INFORMATION
**Requisition ID**: 9327
**Number of Vacancies**: 1
**Department**: Information Technology Services (20000014) - Information Security Office (30000033)
**Salary Information**: $88,306.40 - $110,401.20
**Pay Scale Group**: 09SA
**Employment Type**: Regular

**Weekly Hours: 35 Off Days: Saturday and Sunday Shift**:
**Posted On**: May 17, 2024
**Last Day to Apply**: May 26, 2024
**Reports to**: Director, Cybersecurity Risk Management

The Toronto Transit Commission (TTC) is North America's third largest transit system and has been recognized as one of the top places to work in the GTA. Guided by a forward-thinking strategic plan, the TTC's vision is to be a transit system that makes Toronto proud. The TTC's recruitment efforts are directly aligned to its mission of providing "a reliable, efficient, and integrated bus, streetcar and subway system that draws its high standards of customer care from our rich traditions of safety, service and courtesy."

Career Opportunity
A great opportunity within the Information Technology Services to work on Cybersecurity Initiatives.

What You Will Do
Reporting to the Director, Cybersecurity Risk Management, the Analyst Cybersecurity Risk Management is responsible for reducing information security and cybersecurity risks to the Information Technology (IT) of the TTC. The incumbent supports the risk mitigation efforts through conducting risk assessments, establishing and maintaining governance and compliance standards, creating, communicating, and enforcing information security policies and providing recommendations on risk management strategies.

The incumbent executes and administers security solutions/systems consistent with regulations and established frameworks and may lead relevant implementation projects and is also responsible for promoting cybersecurity awareness throughout the TTC.

The incumbent is also responsible for promoting cybersecurity awareness throughout the TTC.

You will be responsible for Security Risk Assessment and Governance and Compliance where you will conduct comprehensive security risk assessments of new and existing information systems, networks and infrastructure to identify potential vulnerabilities, threats, and risks, evaluate and benchmark TTC's cybersecurity capabilities in line with NIST Cybersecurity Framework and develop plans to prioritize actions and investments required to improve capabilities to industry best practices recommend controls to mitigate security risks identified through the risk assessment process and communicate risk findings that are clear and actionable by relevant stakeholders, conduct Threat Risk Assessment (TRA) (e.g. Harmonized Threat and Risk Assessment (HTRA) methodology) and populate Risk Register with ongoing risks to the organization, develop, enhance and communicate security governance frameworks policies, standards and procedures across the TTC, define and operationalize data classification standard to classify and label data and files and define security controls baseline for classified data, and esign and document technical, administrative, and physical controls to ensure the business demonstrates compliance, ensuring that the TTC meets both the requirements and intent of its regulatory and compliance obligations.

You will also be responsible for Third Party Supplier and Vendor Risk Management where you will perform 3rd party / vendor risk assessments to ensure supply chain risk is managed throughout the supplier's lifecycle, 3rd party due diligence (initial risk assessment before commencement of services and on-going risk-based monitoring) for adherence to TTC security standards and articulate results of the final assessments to business stakeholders, project sponsors, program managers, and other internal parties.

In addition to the above work collaboratively with cross-functional teams, including IT, OT, legal, compliance, and business units, to ensure effective risk management and security governance, support, develop, and administer GRC systems for Information Security and responsible for treating passengers and/or employees with respect and dignity and ensuring the needs of passengers or employees with disabilities are accommodated and/or addressed (if applicable and within their area of responsibility) in accordance with the Ontario Human Rights Code and Related Orders so that they can fully benefit from the TTC as a service-provider and an employer and perform related duties as assigned.

What Qualifications Do You Bring?

University degree in Computer Science, Information Security, Cybersecurity, or a related field as well as several years of Cybersecurity risk management experience or the equivalent combination of education and experience.
Several years of relevant Cybersecurity experience in Governance, Risk and Compliance
Several years of Information Technology experience in Microsoft and Linux platforms
Experience with security frameworks (such as NIST CSF, ISO/IEC 27001/2700



  • Toronto, Canada ISA Cybersecurity Full time

    About the Role: The Cybersecurity Analyst - Tier 2 is responsible for gathering details needed to assess the scope of a cyber-attack and respond to severe attacks or those with high business impact. The Tier 2 role will clearly understand the customer’s environment (i.e. current security controls) and provide consultation on security controls required to...


  • Toronto, Canada ISA Cybersecurity Full time

    **About the Role**: The Cybersecurity Analyst - Tier 2 is responsible for gathering details needed to assess the scope of a cyber-attack and respond to severe attacks or those with high business impact. The Tier 2 role will clearly understand the customer’s environment (i.e. current security controls) and provide consultation on security controls required...


  • Toronto, Canada ISA Cybersecurity Full time

    **About the Role**: The function of a CIOC Cybersecurity Analyst Tier 1 is to be on the forefront of incident response where they will utilize the latest in network security technology while providing Computer Network Defense and Information Assurance (IA) support to ISA’s client base and internal network. You will be joining an exciting and rapidly...


  • Toronto, Canada Toronto Transit Commission Full time

    **JOB INFORMATION** **Requisition ID**: 9327 **Number of Vacancies**: 1 **Department**: Information Technology Services (20000014) - Information Security Office (30000033) **Salary Information**: $88,306.40 - $110,401.20 **Pay Scale Group**: 09SA **Employment Type**: Regular **Weekly Hours**: 35 **Off Days**: Saturday and Sunday **Shift**: **Posted On**:...


  • Toronto, Canada Quickpass Cybersecurity Full time

    **Information Security Analyst** **Who we are** Quickpass Cybersecurity (“CyberQP”) is a leading cybersecurity solution provider for Managed Service Providers (MSPs), dedicated to delivering cutting-edge security solutions to our clients. As we continue our rapid growth trajectory, we are seeking a versatile and proactive Information Security Analyst...


  • Toronto, Canada Dream Unlimited Full time

    Job Details Description **Dream is looking to welcome its latest Cybersecurity, Analyst** We are always looking for the best and brightest to join our thriving community. Dream’s Cybersecurity Team is currently looking for a Cybersecurity Analyst to support our Technology Operations Group. This position will encompass all major aspects of cybersecurity...

  • Cybersecurity Analyst

    2 weeks ago


    Toronto, Canada Dream Unlimited Full time

    Job Details Description **Dream is looking to welcome its latest Cybersecurity, Analyst** We are always looking for the best and brightest to join our thriving community. Dream’s Cybersecurity Team is currently looking for a Cybersecurity Analyst to support our Technology Operations Group. This position will encompass all major aspects of cybersecurity...

  • Cybersecurity Manager

    4 weeks ago


    Toronto, Canada Randstad Canada Full time

    Our client in downtown Toronto is looking for an Cybersecurity Manager - Risk, Hybrid to provide strategy, planning, and hands-on responsibility for their comprehensive Information Security program. The successful Cybersecurity Manager - Risk, Hybrid candidate will have at least 5 years' experience working in cybersecurity and will have experience managing...

  • Cybersecurity Manager

    4 weeks ago


    Toronto, Canada Randstad Canada Full time

    Our client in downtown Toronto is looking for an Cybersecurity Manager - Risk, Hybrid to provide strategy, planning, and hands-on responsibility for their comprehensive Information Security program. The successful Cybersecurity Manager - Risk, Hybrid candidate will have at least 5 years' experience working in cybersecurity and will have experience managing...

  • Cybersecurity Manager

    2 weeks ago


    Toronto, Canada Randstad Canada Full time

    Our client in downtown Toronto is looking for an Cybersecurity Manager - Risk, Hybrid to provide strategy, planning, and hands-on responsibility for their comprehensive Information Security program. The successful Cybersecurity Manager - Risk, Hybrid candidate will have at least 5 years' experience working in cybersecurity and will have experience managing...


  • Toronto, Canada Randstad Canada Full time

    Our client in downtown Toronto is looking for an Cybersecurity Manager - Risk, Hybrid to provide strategy, planning, and hands-on responsibility for their comprehensive Information Security program. The successful Cybersecurity Manager - Risk, Hybrid candidate will have at least 5 years' experience working in cybersecurity and will have experience managing...

  • Cybersecurity Analyst

    2 weeks ago


    Toronto, Canada OTT Financial Full time

    OTT Pay Group Inc. "(OTT Pay)" is a fully funded established FINTECH focused on delivering simplified financial payment products. With a strategic emphasis on both Acquiring and Issuing businesses, we are developing a mobile-first platform that offers straightforward banking services, loyalty solutions, and innovative products including credit cards,...

  • Cybersecurity Analyst

    2 weeks ago


    Toronto, Canada OTT Financial Group Full time

    OTT Pay Group Inc. "(OTT Pay)" is a fully funded established FINTECH focused on delivering simplified financial payment products. With a strategic emphasis on both Acquiring and Issuing businesses, we are developing a mobile-first platform that offers straightforward banking services, loyalty solutions, and innovative products including credit cards,...


  • Toronto, Canada OTT Financial Group Full time

    OTT Pay Inc. "(OTT Pay)" is a fully funded established FINTECH focused on delivering simplified financial payment products. With a strategic emphasis on both Acquiring and Issuing businesses, we are developing a mobile-first platform that offers straightforward banking services, loyalty solutions, and innovative products including credit cards, accounts,...

  • Cybersecurity Analyst

    2 months ago


    Toronto, Canada Systematix Full time

    We are Systematix and we are looking for a **Cybersecurity Analyst **to fill a six-month contract position with one of our key clientele in the equipment manufacturing industry in the Greater Toronto Area. **About the Project**: Our client, one of the world’s leading commercial, industrial and construction equipment manufactures, is seeking a IT...


  • Toronto, Canada BFL Canada Full time

    We offer more than a job, we offer a career! We support our employees to shape their career by encouraging continuing education and investing in training and development. We put our employees at the center of what we do to allow them to grow personally and professionally, with projects and challenges that are motivating and rewarding. We inspire people...


  • Toronto, Canada BFL Canada Full time

    We offer more than a job, we offer a career! We support our employees to shape their career by encouraging continuing education and investing in training and development. We put our employees at the center of what we do to allow them to grow personally and professionally, with projects and challenges that are motivating and rewarding. We inspire people...


  • Toronto, Canada BFL Canada Full time

    We offer more than a job, we offer a career! We support our employees to shape their career by encouraging continuing education and investing in training and development. We put our employees at the center of what we do to allow them to grow personally and professionally, with projects and challenges that are motivating and rewarding. We inspire people...


  • Toronto, Canada BFL Canada Full time

    We offer more than a job, we offer a career! We support our employees to shape their career by encouraging continuing education and investing in training and development. We put our employees at the center of what we do to allow them to grow personally and professionally, with projects and challenges that are motivating and rewarding. We inspire people...

  • Cybersecurity Analyst

    2 months ago


    Toronto, Canada CB Canada Full time

    Cybersecurity Analyst On behalf of our client in the Banking Sector, PROCOM is looking for a Cybersecurity Analyst. Cybersecurity Analyst – Job Description Assist with incident handling, reporting focal for Cybersecurity Operations Reporting to Global Head of threat monitoring and response, working with stakeholders around the globe Bridging communication...