Security Analyst
5 days ago
**Xello is looking for a Security Analyst**:
***Who are you?**:
You are a dedicated security professional who thrives in environments where Governance, Risk, and Compliance (GRC) intersect with hands-on security operations. You excel at developing and implementing robust policies and procedures aligned with industry standards such as SOC2, ISO27001, and GDPR. Your proactive approach to risk assessment, incident response, and collaboration ensures that your organization remains compliant, resilient, and ahead of emerging threats.
You possess a strong understanding of regulatory requirements and privacy frameworks, and you stay current with industry best practices. You’re not just knowledgeable about compliance and security tools (SIEMs, IDS/IPS, vulnerability management platforms); you’re adept at using them to identify, assess, and mitigate risks. You’re skilled in creating actionable strategies for security awareness, educating your peers, and ensuring that everyone in the organization has the knowledge to uphold strong security practices.
With a proven track record in incident response, you are calm under pressure, methodical in analyzing threats, and decisive in implementing remediation plans. Your ability to work cross-functionally with IT, legal, and business units, coupled with your excellent communication skills, ensures that stakeholders are aligned on security and GRC goals.
Above all, you are committed to fostering a culture of security and compliance, viewing them not as checkboxes but as opportunities to strengthen the organization. Your work contributes to building trust with clients, external auditors, and regulators, ensuring the organization’s long-term success in a rapidly evolving digital landscape.
** What you'll do...**:
- ** Governance, Risk, and Compliance (GRC)**
- Develop, implement, and maintain GRC policies, procedures, and controls aligned with regulatory requirements (SOC2, ISO27001, GDPR, CCPA, etc.).
- Lead or assist with security and privacy audits, ensuring compliance with industry standards.
- Perform risk assessments to identify, evaluate, and mitigate risks across the organization.
- Work closely with various departments to ensure proper implementation of controls and to manage security risks.
- Maintain and update the GRC management system to track compliance efforts, manage risks, and report progress to senior leadership.
- Prepare and assist in security and privacy-related questionnaires and vendor risk assessments.
- Stay up-to-date with regulatory changes and industry best practices to ensure the organization remains compliant.
- ** Incident Response and Security Operations**:
- Support the security team in responding to security incidents, including investigation, containment, and remediation of incidents.
- Monitor and analyze security events from various systems and tools (SIEM, IDS/IPS, firewalls) to detect suspicious activity.
- Conduct post-incident analysis to determine root cause and implement preventive measures.
- Develop and improve incident response playbooks and processes to ensure efficient and timely handling of security incidents.
- Assist with vulnerability assessments and penetration testing efforts, working with internal and external teams to prioritize remediation.
- ** Security Awareness and Education**:
- Develop and deliver training programs to educate staff on security and privacy best practices, including data protection and incident handling.
- Conduct regular phishing simulations and social engineering tests to ensure employee readiness.
- ** Documentation and Reporting**:
- Create and maintain accurate documentation for all GRC initiatives, incident response procedures, and remediation efforts.
- Prepare detailed reports for senior management on the state of security, including compliance gaps, risk profiles, and incidents.
- Provide clear and concise updates on ongoing risk assessments, audits, and security metrics.
- ** Collaboration**:
- Work cross-functionally with IT, legal, and business units to ensure proper alignment on GRC and security measures.
- Collaborate with external auditors, regulators, and clients to demonstrate compliance and resolve any findings.
**What we're looking for...**:
- Bachelor's degree in Information Security, Computer Science, or a related field (or equivalent experience).
- 2-5 years of experience in a similar role, focusing on GRC, privacy, or security operations.
- Experience with compliance frameworks such as SOC2, ISO27001, NIST, GDPR & CyberEssentials.
- Familiarity with incident response processes, security controls, and risk management.
- Hands-on experience with security tools and platforms, such as SIEM, vulnerability management tools, and compliance management software.
- Certifications such as CISSP, CISA, CISM, or equivalent would be an asset.
- Knowledge of data privacy regulations, including GDPR, CCPA, etc.
- Strong analytical and problem-solving skills, with the ability to
-
Cyber Security Professional
1 week ago
Toronto, Ontario, Canada Mjolnir Security Full timeAbout Mjolnir SecurityMjolnir Security is a leading provider of security services, seeking highly motivated and detail-oriented individuals to join our team as Cyber Security Analysts.Job OverviewWe are currently hiring two full-time Cyber Security Analysts to work in our Security Operations Center. As a Cyber Security Analyst, you will be responsible for...
-
Security Analyst
6 months ago
Toronto, Canada CB Canada Full timeSecurity Analyst On behalf of our client in the Banking Sector, PROCOM is looking for a Security Analyst. Security Analyst – Job Description User access provisioning, granting access to banking applications and systems to employees and customers Provisioning access to Employees and Contractors using various applications and platforms ID and Mailbox...
-
Business Solutions Specialist
1 week ago
Toronto, Ontario, Canada Business Analyst Computer Systems Full timeAt Business Analyst Computer Systems, we are seeking a skilled Business Solutions Specialist to join our team. A key responsibility of this role is to design, develop, and implement business solutions that identify and mitigate security risks, while developing and maintaining company policies. This includes consulting with clients to provide ongoing support...
-
Information Security Analyst
6 months ago
Toronto, Canada CB Canada Full timeInformation Security Analyst On behalf of our client in the Banking Sector, PROCOM is looking for an Information Security Analyst. Information Security Analyst – Job Description Manage assigned security platforms, following clients' procedures if required, which includes: Device health and availability monitoring Device health incident resolution and...
-
Security Analyst
6 months ago
Toronto, Canada HTS Engineering - Heat Transfer Solutions Full timeHTS Engineering Ltd. is the largest independent commercial HVAC manufacturers’ rep in North America, with 20 locations in the US and Canada. HTS has a vibrant look and brand promise -- one that reflects our company-wide commitment to ensure the individual success of all those involved in a project’s HVAC system selection, design, purchase, installation...
-
Security Analyst
6 months ago
Toronto, Canada HTS Engineering - Heat Transfer Solutions Full timeFounded in 2015 in Toronto, Canada, KORE Solutions is a subsidiary company of HTS and an innovative technology solutions and services provider with a strong focus on the HVAC manufacturer’s representative industry. With a variety of offerings including business intelligence software, help service support, and more, KORE delivers end-to-end solutions that...
-
Security Analyst
4 weeks ago
Toronto, Ontario, Canada Nasdaq Full timeJob DescriptionVerafin is a leading provider of cloud-based anti-money laundering solutions to the financial industry.Job Summary: We are seeking a highly skilled Security Analyst to join our team. As a Security Analyst, you will be responsible for analyzing security vulnerabilities and working collaboratively with our cloud operations and infrastructure...
-
Cyber Security Analyst
3 weeks ago
Toronto, Canada Mjolnir Security Full timeWe are hiring two full time team members to work rotating shifts including 2nd and 3rd shift and weekends. The position start date is Jan/Feb 2025. **Responsibilities** - SIEM and IPS/IDS monitoring - Documenting security incidents according to defined policies - Research, document, and respond to security incidents in accordance with response time service...
-
Security Analyst
3 days ago
Toronto, Canada HITACHI RAIL STS CANADA, INC. Full time**About Us** A career at Hitachi Rail will help create a legacy. With operations in every corner of the world, our work goes to the cutting-edge of digital transformation and technology. From the multi-cultural strength of our global organisation to the sustainable and innovative ways we work to bring people together, there’s something for everyone to get...
-
Security Analyst
1 week ago
Toronto, Canada Tarion Full time**Security Analyst, SA112924** **Department**:Underwriting **Type of Position**: Full Time, Permanent **Location**: 7th Floor, 5160 Yonge Street, Toronto, ON **Reporting to**: Director, Analytics & Security **Work Model**:Hybrid - flexible work schedule _(All remote work must be completed _from your home office within the province of Ontario.)_ **About...
-
Security Analyst
6 months ago
Toronto, Canada Tarion Full time**Security Analyst, SA012924** **Department**:Underwriting **Type of Position**: Full Time, Permanent **Location**: 7th Floor, 5160 Yonge Street, Toronto, ON **Reporting to**: Director, Analytics & Security **Work Model**: Hybrid - flexible work schedule **About Tarion** Since 1976, Tarion has provided new home warranty protection to more than 2...
-
Junior SOC Analyst
3 months ago
Toronto, Canada Mjolnir Security Full timeMjolnir provides clients with a suite of highly advanced and AI/ML driven tools and services - Security Ops Center as a Service, Threat Detection and Dark web Threat Intelligence, Digital Forensics, Threat Analysis and Incident Response services, as well as Cyber Security training. Mjolnir supports both corporate and public agencies - and specializes in...
-
Security Analyst
6 months ago
Toronto, Canada Aviso Wealth Full time**Aviso Wealth**: **The Opportunity**: We’re looking for a Security Analyst to join or Information Security team. This role can be mostly remote, however we will on occasion require you to come onsite to our office at 151 Yonge St, Toronto, ON. Reporting to the Senior Manager of Information Security, the Security Analyst is responsible for ensuring the...
-
Junior Cybersecurity Analyst
3 months ago
Toronto, Canada Mjolnir Security Full time**Job Overview**: This role requires the ability to travel across Canada, support clients on-site, and occasionally lift up to 30 lbs during hardware deployments or security equipment setups. **Key Responsibilities**: - Assist in the detection, analysis, and response to security incidents using various security tools and techniques. - Conduct threat...
-
Cyber Security Analyst
6 months ago
Toronto, Canada Compest Solutions Inc Full time**Cyber Security analyst (Cloud, Security, infrastructure, Finance, Bank)** **Job Description for** **(security tech writers/ security analyst (info security specialist) - 2 Hires -** **(CICS Infrastructure Project)** **Max Rate: $50/hr On Inc** **Location: GTA** **Work Type: Hybrid (3 days in office)** Job description bullets for the security tech...
-
Cyber Security Analyst
5 months ago
Toronto, Canada Compest Solutions Inc Full time**Cyber Security analyst (Cloud, Security, infrastructure, Finance, Bank)** **Job Description for** **(security tech writers/ security analyst (info security specialist) - 2 Hires -** **(CICS Infrastructure Project)** **Max Rate: $50/hr On Inc** **Location: GTA** **Work Type: Hybrid (3 days in office)** Job description bullets for the security tech...
-
Physical Security Analyst
3 months ago
Toronto, Canada Allied Universal Full timePhysical Security Analyst **Overview**: We are North America's leading security and facility services provider with approximately 300,000 service personnel. At Allied Universal(R), we pride ourselves on fostering a promote from within culture. There are countless examples of individuals who began their career as Security Professionals and today hold...
-
IT Security Analyst
1 month ago
Toronto, Canada Michael Page International Canada Limited Full time* Assist the Infrastructure, End User Computing and Applications teams in maintaining a current security posture across all aspects of the IT environment, (hardware, operating system, application, cloud and mobile)* Work with the global IT Security team to identify risks and vulnerabilities in the Canada region.* Work with Canada IT to identify gaps in Asset...
-
Physical Security Analyst
3 months ago
Toronto, Canada Allied Universal® Full timePhysical Security Analyst **Overview**: We are North America's leading security and facility services provider with approximately 300,000 service personnel. At Allied Universal(R), we pride ourselves on fostering a promote from within culture. There are countless examples of individuals who began their career as Security Professionals and today hold...
-
Security Analyst
6 months ago
Toronto, Canada Prenuvo Full time**About Us** At Prenuvo, we are on a mission to flip the paradigm from reactive "sick-care" to proactive health care. Our award-winning whole body scan is fast (under 1 hour), safe (MRI has no ionizing radiation), and non-invasive (no contrast). Our unique integrated stack of optimized hardware, software, and increasingly AI, coupled with the...