Information Security Analyst

3 days ago


Toronto, Canada Wittington Full time

**Location**:
22 St. Clair Avenue East, Toronto, Ontario, M4T 2S7

**About Us**

Wittington Investments, Limited, a private Canadian company, is the holding company of the Weston group of companies, which includes George Weston Limited, Loblaw Companies Limited and Choice Properties REIT.

George Weston Limited is a Canadian public company, founded in 1882. George Weston has two operating segments: Loblaw Companies Limited, Canada’s largest food and drug retailer and a provider of financial services, and Choice Properties Real Estate Investment Trust, Canada’s largest and preeminent diversified REIT. With over 200,000 employees working at George Weston and its operating segments, the group of companies represent one of Canada’s largest private sector employers.

**Information Security Analyst**

Wittington is a holding company that acts as the central investment vehicle for the Weston family. It is the controlling shareholder of George Weston and, through it, Wittington controls Loblaw and Choice Properties. The firm’s private investment arm manages a global, diversified portfolio and direct investments focused on selected sectors. Wittington is also the home to several charitable foundations, including the Weston Family Foundation and Hilary & Galen Weston Foundation. Wittington also operates as the family office for the Weston family.

**Role Overview**

Wittington Information Security is responsible for protecting the information assets of the organization. This is achieved through various programs including security monitoring, security awareness training, risk management, and incident response. In addition, Wittington Information Security provides recommendations and mitigation strategies to enable the business to operate securely in pursuit of its goals.

**Duties & Responsibilities**
- Actively monitor, review, and respond to alerts from various information security platforms and tools.
- Monitor systems for threats and vulnerabilities and provide prioritization and guidance for remediation.
- Develop and update Information Security related documentation, which includes policies, standards, and procedures.
- Assist with the Information Security Awareness program, including the development of phishing campaigns, report creation, and end-user training.
- Monitor and assess phishing threats, including those reported by users.
- Assist with risk management activities, including risk assessments, control assessments, risk remediation and tracking.
- Engage with vendors and IT partners to assess third-party security and supply chain risk.
- Support the maintenance of cybersecurity incident readiness plan and related playbooks. Assist the Information Security and IT teams in any cyber-related incident remediation action.
- Support Information Security improvement plan, along with other IT-related projects.

**Required Skills, Qualifications and Behavioral Attributes**
- Intermediate knowledge and experience in Cybersecurity / Information Security industry.
- Previous experience working in Security Operations role is a plus.
- Knowledge and experience in creating Cyber Incident Response Plan and playbooks.
- Understanding of computer systems and networking.
- Familiarity with setting up SIEM is a plus.
- 5+ years of experience in Cybersecurity.
- Previous working experience with Information Security tools.
- Previous experience in detection, response, and resolution of cyber incidents.
- Previous experience in setting up mobile policies in Intune.
- Previous experience conducting security assessments.
- Nice to have: Experience with Apple products.
- Nice to have: Experience in penetration testing.
- Bachelor’s degree in Information technology, Cybersecurity, Computer Science, or related field required.
- Cybersecurity certification (CompTIA Security+, CISSP, CCSP, CGRC, etc.)
- Relevant certifications (e.g., CompTIA A+, Network+, Microsoft Certified: Modern Desktop Administrator Associate) are a plus.
- Cybersecurity Frameworks (NIST, COBIT, ISF, etc.)
- Wittington Investments, Limited is an equal opportunity employer committed to promoting a diverse and inclusive workplace. We know our success depends on the perspectives and contributions of all our employees. Diverse backgrounds and experiences make our business stronger._**_ We thank all applicants for showing an interest in this position. Only those selected for an interview will be contacted._**

**Number of Openings**

1

Wittington recognizes Canada’s diversity as a source of national pride and strength. We have made it a priority to reflect our nation’s evolving diversity in the people we hire, and the culture we create in our organization. Accommodation is available upon request for applicants and colleagues with disabilities.

In addition, we believe that compliance with laws is about doing the right thing. Upholding the law is part of our Code of Conduct - it reinforces what our customers and stakeholders expect of us.

For more information, plea



  • Toronto, Canada Investment Industry Regulatory Organization of Canada (IIROC) Full time

    **Position Title: Information Security Analyst** **Department: Information Technology** **Location: Toronto** **Status: Permanent Full-time (Hybrid)** The Information Security Analyst will implement the information security program initiatives, administer information security systems, and assist with monitoring information security policy compliance. The...


  • Toronto, Ontario, Canada Global Technical Talent, an Inc. 5000 Company Full time

    Primary Job Title:Information Security AnalystAlternate / Related Job Titles:Senior Information Security AnalystCyber Risk Assessment LeadThird-Party Cyber Risk AnalystIT Security Risk ConsultantLocation & Onsite Flexibility:Toronto, ON —Hybrid(2 days onsite, moving to 4 days onsite)Work Location: 160 Front Street West, Toronto, OntarioContract...


  • Toronto, Canada CAS Cyber Security Full time

    CAS Cyber Security is a one-stop shop for all matters cyber security. Offering various consulting and a comprehensive managed service, CAS takes the mystery out of cyber security and allows you to focus on running your business. Leveraging our military background, we ensure you stay one step in front of cyber criminals deploying the most advanced systems...


  • Toronto, Canada Bond Brand Loyalty Inc Full time

    Bond is proudly recognized as a Great Place to Work and Best Managed Company. We’re 800(ish) people working tirelessly together to make the world a more loyal place. You’ll be joining a hyper-talented team with a galaxy of skill sets ranging from research to creative to digital and beyond. You’ll have an excellent opportunity to grow, learn and make an...


  • Toronto, Canada CAAT Pension Plan Full time

    **We believe that everyone has the right to DEFINE themselves and their future.** **That includes YOU.** How would you like to do it in a fun, high-performance culture that’s truly one of a kind - on a team that appreciates you for being you, helps our members retire with confidence and makes Canada better, all at the same time? If that sounds like your...


  • Toronto, Canada Mindlance Full time

    Information Security Analyst Location: Toronto, ON (Onsite) Duration: 6+ Months Responsibilities Execute IAM operational risk controls by identifying and reporting security risks in accordance with Client's Logical Access Security Standards (LASS). Providing operational support to internal employees at all levels of management for SailPoint (i.e., Access...


  • Toronto, Canada Mindlance Full time

    Information Security Analyst Location: Toronto, ON (Onsite) Duration: 6+ Months Responsibilities Execute IAM operational risk controls by identifying and reporting security risks in accordance with Client's Logical Access Security Standards (LASS). Providing operational support to internal employees at all levels of management for SailPoint (i.e., Access...


  • Toronto, Canada Mindlance Full time

    Information Security Analyst Location: Toronto, ON (Onsite) Duration: 6+ Months Responsibilities Execute IAM operational risk controls by identifying and reporting security risks in accordance with Client's Logical Access Security Standards (LASS). Providing operational support to internal employees at all levels of management for SailPoint (i.e., Access...


  • Toronto, Canada Altus Group Full time

    Job Category: Information Technology Opportunity Awaits at Altus Group! **Job Description**: The opportunity Reporting to the Manager, Information Security GRC, we are adding an Information Security Analyst to the global team. You will provide support in information security governance, risk and compliance (GRC) activities to business units and...


  • Toronto, Canada Canada Life Assurance Company Full time

    **Job Description**: The Information Security Analyst II is part of the first line of cyber defense team, working with IT and business partners to help them understand and manage information security risks and comply with the organizational information security policies. The role also supports the delivery of analysis-based cyber security services to our...