Analyst L, Cyber Threat and Vulnerability Management

2 weeks ago


Toronto, Canada Toronto District School Board Full time

No. CUPE C-23-0045UE
POSTED: February 7, 2023

DEADLINE: 4:30 p.m: February 21, 2023

**Analyst l, Cyber Threat and Vulnerability Management**

1 - Permanent Position

**Information Technology Services**
**CUPE Local 4400, Unit C - Grade O (12 Months)**

**$42.90 - $51.10 per hour
**The Toronto District School Board adheres to equitable hiring, employment and promotion practices.**
- Reporting to the Senior Analyst, IT Security Threat Management, the Analyst I, Cyber Threat and _
- Vulnerability Management will assist the Senior Analyst to ensure that the Cyber Threat and Vulnerability _
- Management functions are managed and carried out.- The Analyst 1, Cyber Threat and Vulnerability Management will ensure that the Cyber Threat and _
- Vulnerability are managed in accordance with the TDSB security and risk tolerance including the functions _
- to ensure safety and security of the users along with availability, confidentiality and integrity of the _
- technology assets including the data contained within. _

**Summary of Duties**:
Perform Cyber Threat and Vulnerability management tasks in accordance with established
programs and directed by the Senior Analyst;
Conduct regular review of Indicators of Attack (IoAs) and Indicators of Compromise (IoCs)
derived from all available sources (e.g., SIEM, NGFW, Logs from Systems and Security Tools)
to assess the real and material threats and vulnerabilities;
Tune the SIEM to recognize real and actionable threats from security information and events
collected;
Create playbooks to automate the response for actionable threats and link them to risk objects;
Optimize the collection, processing, and analysing parameters to improve the efficiency of the

SIEM;
Create and evolve new/existing rules in the SIEM to accommodate new and evolving threats;
Collaborate/Support with/to other IT units to assess, neutralize and reconcile threats and

vulnerabilities, and report deviation;
Perform proactive threat hunting in a systemic and iterative manner throughout the environment

to detect and isolate threats;
Perform threat-based risk assessments on systems and services and effectiveness of controls;
Assess discovered/identified/obtained through subscribed feeds threat/vulnerability impact and

recommend appropriate actions to reduce exposure and ensuring risks remains within the
tolerance levels;
Perform ethical hacking activities on the direction of management, as well as perform
programming, and related scripting duties;
Review, develop and report on appropriate metrics for the Threat/Vulnerability Management
solutions, performance, exception and compliance and ensure continuous improvements of such
metrics and its affects;
Track and report threat and vulnerability mitigation efforts;
Develop and document guidelines, processes and procedures for review and approval and

implement approved procedures to secure IT environment;
Liaise between departments to develop and implement approved security standards and

guidelines;

Raise awareness of good security practices to all levels of the organization and perform security
awareness and learning duties as directed;
Analyze and define training requirements in security matters related to Cyber Threat and
Vulnerability management for staff;
Analyze and help define appropriate controls to manage Cyber risks for approval;
Identify controls that require changing/adding based on the changes to the IT environment;
Maintain broad awareness of threat and vulnerability trends including changes to legislations

and regulatory frameworks;
Advise on security practices for all IT projects as required;
Other related duties as assigned.

**Qualifications**:
University Degree in Computer Science or related field with three years progressive working

experience in IT security/threat management within an Information Technology environment or
an equivalent combination of education and experience;
Training and/or technical certification in Global Information Assurance in the following areas:
Security Essentials, Information Security Fundamentals, Threat Hunting, Penetration Testing,
Intrusion Analysis, Forensic Analysis, Perimeter Defense, Enterprise Defense, System and
Network Auditing;
Experience in monitoring threat landscape, mapping potential applicable threats, and ethical
hacking methodologies and tolls;
Experience in vulnerability assessment of end points, switches, routers, gateways, servers,
Experience using Splunk SIEM technologies (Splunk enterprise security administration and
management), O365 Security technologies, end-point detection and Response (EDR)
technologies;
Experience with Azure technologies, and security products;

PowerShell, and other programming languages;
Maintain currency of knowledge on current and emerging security trends, including but not

limited to cloud based services, IoT, etc.;
Demonstrated ability to understand the implications of legislation, insurances and regulatory

frameworks;
Understanding of IT



  • Toronto, Canada Canadian Tire Corporation Full time

    What you’ll do The Manager Vulnerability & Threat Intelligence within Cyber Threat Management (CTM) is a key member of a fast-paced team responsible for defending Canadian Tire’s technology infrastructure and web assets against a complex cyber threat environment. Working independently and as part of a large Cybersecurity team, this position...


  • Toronto, Ontario, Canada Canadian Tire Corporation Full time

    What you'll doThe Manager Vulnerability & Threat Intelligence within Cyber Threat Management (CTM) is a key member of a fast-paced team responsible for defending Canadian Tire's technology infrastructure and web assets against a complex cyber threat environment. Working independently and as part of a large Cybersecurity team, this position collaborates with...


  • Toronto, Canada Canadian Tire Corporation Full time

    What you'll doThe Manager Vulnerability & Threat Intelligence within Cyber Threat Management (CTM) is a key member of a fast-paced team responsible for defending Canadian Tire's technology infrastructure and web assets against a complex cyber threat environment. Working independently and as part of a large Cybersecurity team, this position collaborates with...


  • Toronto, Canada Canadian Tire Corporation Full time

    What you’ll do The Manager Vulnerability & Threat Intelligence within Cyber Threat Management (CTM) is a key member of a fast-paced team responsible for defending Canadian Tire’s technology infrastructure and web assets against a complex cyber threat environment. Working independently and as part of a large Cybersecurity team, this position...


  • Old Toronto, Canada nugget.ai Full time

    Location: Toronto (hybrid->3 times per week) Employment Type: Contract About the Role: The Threat Modeling Analyst is responsible for identifying threats and vulnerabilities across company systems and communicating the issues with the appropriate team – infrastructure, IT, risk, DLP, or any affected members. Responsibilities: Work cross-functionally with...


  • Old Toronto, Canada nugget.ai Full time

    Location: Toronto (hybrid->3 times per week) Employment Type: Contract About the Role: The Threat Modeling Analyst is responsible for identifying threats and vulnerabilities across company systems and communicating the issues with the appropriate team – infrastructure, IT, risk, DLP, or any affected members. Responsibilities: Work cross-functionally with...


  • Toronto, Canada VortalSoft Usa Full time

    Conduct comprehensive risk assessments to identify potential security threats and vulnerabilities within the organization’s systems and processes. Policy development, compliance management, training, incident management. Pay: $40.00-$45.00 per hour Expected hours: 40 per week **Benefits**: - Dental care - Extended health care - Paid time...


  • Toronto, Canada David Joseph & Company Full time

    JOB SUMMARY:To provide senior level strategic and tactical guidance to the Director Cyber Advisory as well as the Deputy Chief Information Security Office (CISO) in the execution of its mandate to establish and maintain a City-wide cyber program to ensure the City is adequately protected. To provide leadership, guidance and manage the design, integration and...


  • Toronto, Canada LeverageTek IT Solutions Full time

    Opportunity DetailsLeverageTek is actively seeking a Senior Business Analyst – Cyber for a 4-month contract with its Ottawa/Montreal-based customer.Work LocationRemoteKey TasksCollaborate with stakeholders to elicit, document, and validate the business and system requirements Contribute to the development of cyber security strategies aligned with...


  • Toronto, Canada LeverageTek IT Solutions Full time

    Opportunity Details LeverageTek is actively seeking a Senior Business Analyst – Cyber for a 4-month contract with its Ottawa/Montreal-based customer. Work Location Remote Key Tasks Collaborate with stakeholders to elicit, document, and validate the business and system requirements Contribute to the development of cyber security strategies aligned with...


  • Toronto, Canada LeverageTek IT Solutions Full time

    Opportunity Details LeverageTek is actively seeking a Senior Business Analyst – Cyber for a 4-month contract with its Ottawa/Montreal-based customer. Work Location Remote Key Tasks Collaborate with stakeholders to elicit, document, and validate the business and system requirements Contribute to the development of cyber security strategies aligned with...


  • Toronto, Canada LeverageTek IT Solutions Full time

    Opportunity Details LeverageTek is actively seeking a Senior Business Analyst – Cyber for a 4-month contract with its Ottawa/Montreal-based customer.Work LocationRemoteKey TasksCollaborate with stakeholders to elicit, document, and validate the business and system requirements Contribute to the development of cyber security strategies aligned with...


  • Toronto, Canada LeverageTek IT Solutions Full time

    Opportunity Details LeverageTek is actively seeking a Senior Business Analyst – Cyber for a 4-month contract with its Ottawa/Montreal-based customer. Work Location Remote Key Tasks Collaborate with stakeholders to elicit, document, and validate the business and system requirements Contribute to the development of cyber security strategies aligned with...

  • Analyst, Risk

    2 weeks ago


    Toronto, ON, Canada nugget.ai Full time

    Location: Toronto (hybrid-3 times per week) Employment Type: Contract About the Role : The Threat Modeling Analyst is responsible for identifying threats and vulnerabilities across company systems and communicating the issues with the appropriate team – infrastructure, IT, risk, DLP, or any affected members. Responsibilities : Work...


  • Toronto, Canada George Brown College Full time

    Competition Number: REQ 6071 TITLE:  Cyber Security Architect DIVISION:  Information Technology SALARY:  Payband L, starting rate $ per hour HOURS:  9:00 am to 5:00 pm HOURS PER WEEK:  40 LOCATION:  230 Richmond Street East STATUS:  Full Time Support EFFECTIVE DATE:  Immediately CLOSING:  May 10, 2024 ...


  • Toronto, ON, Canada Cyber Crime Full time

    CyberSecurity Applications Developer/Analyst Bank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered. We’re building a relationship-oriented bank for the modern world. Design & Develop: Act as a technical lead and SME (subject matter expert) on the analysis and documentation of business requirements,...


  • Toronto, Canada Air Canada Full time

    **Description** **Being part of Air Canada is to become part of an iconic Canadian symbol, recently ranked the best Airline in North America. Let your career take flight by joining our diverse and vibrant team at the leading edge of passenger aviation.** The Cyber Security Operations Centre Analyst will be working in a fast paced and innovative environment...


  • Toronto, Canada Transatlantic Business Consulting Inc. Full time

    **Project**:The Cyber Security and Privacy Consultant role requires extensive knowledge and experience with both cyber security and privacy controls to reduce the impact of evolving cyber threats in the Ontario K-12 school board environment. This work involves working in close partnership with the K-12 education sector. The resource may need to travel the...


  • Toronto, Canada Cleo Consulting Full time

    **Requisition: RQ00043** **Supplier Assignment: RQ00043 - Senior Security Project Manager** **Account: Supply Ontario** **Start Date: 2023-12-11** **End Date: 2024-12-13** **Business Days: 256.00** **Job Title: Senior Security Project Manager** **Office Location: 200 Front St West, Toronto** **Assignment Type: Hybrid** **Notes from the Hiring...


  • Toronto, Canada Royal Bank of Canada Full time

    **Come Work with Us!** At RBC, our culture is deeply supportive and rich in opportunity and reward. You will help our clients thrive and our communities prosper, empowered by a spirit of shared purpose. Whether you’re helping clients find new opportunities, developing new technology, or providing expert advice to internal partners, you will be doing work...