Analyst, Cyber Security
1 week ago
5 Nov 2025
- Work Location - Toronto, ON
- Employee Type - Regular Employee FT Salaried
- Hybrid Work - This position currently offers a hybrid work schedule. Subject to change. The in-office requirement is a minimum of three days per week (Tuesday, Wednesday & Thursday), with the flexibility to work remotely on the remaining days.
- Initial Posting Close Date - November 12, 2025
About This Opportunity
We are seeking a Cybersecurity Analyst (Vulnerability Management) to join our Cybersecurity team. This key role within the Security Engineering group is responsible for maintaining and strengthening the organization's security posture.
The analyst leads the end-to-end vulnerability management lifecycle—from scanning and analysis to driving remediation—across our IT, Operational Technology (OT), and Application Security environments. The analyst plays a critical role in embedding security practices into development and infrastructure operations to reduce risk and ensure compliance with regulatory standards.
Responsibilities
- Contribute to and execute the vulnerability management lifecycle across IT and OT environments, including regular scanning, analysis, prioritization, and tracking until closure.
- Support the management, configuration, and tuning of Application Security (AppSec) tooling, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA) to proactively identify and manage risks in the Software Development Lifecycle (SDLC).
- Utilize and integrate threat intelligence feeds to enrich vulnerability data, allowing for risk-based prioritization focused on actively exploited or highly relevant threats.
- Perform periodic security configuration assessments against servers, network devices, and platforms to identify and remediate configuration drift and hardening deficiencies.
- Coordinate and collaborate with infrastructure teams to ensure timely and effective deployment of patches and updates across all managed assets, ensuring minimal operational impact.
- Partner with DevOps, Infrastructure (Infra), and Cloud teams to embed security as code, ensuring secure configurations and practices are maintained in CI/CD pipelines (DevSecOps).
- Support and track the remediation of security audit and compliance findings related to vulnerabilities, policy violations, and control gaps.
- Assist in the analysis and configuration review of network security controls, including Firewall configurations, to ensure security policies align with risk tolerance.
- Generate detailed and executive-level reports to demonstrate adherence to regulatory and internal security policies and frameworks.
- Create and maintain comprehensive technical documentation for vulnerability management procedures, tool configurations, standard operating procedures (SOPs), and risk treatment plans.
Qualifications
- College diploma and/or degree in Cybersecurity, Computer Science, or a related technical field is required.
- A minimum of one foundational security certification is required, such as CompTIA Security+ or an equivalent credential.
- Relevant vendor or professional certifications such as AZ-500 (Azure Security Engineer), AZ-400 (Azure DevOps Engineer), AZ-104 (Azure Administrator), AZ-204 (Azure Developer), or GIAC certifications are an asset.
- 1–3 years of experience in Vulnerability Management or a related security role is required.
- Experience in OT or a strong understanding of the unique security and availability requirements for securing industrial control systems (ICS) is an asset.
- Knowledge of industry security frameworks and benchmarks, such as NIST, ISO frameworks, SOC 2, and CIS.
- Familiarity with the Microsoft Azure technology stack, including Microsoft Defender for Cloud (MDC), Data Loss Prevention (DLP), Defender for Endpoint/Email, and Azure DevOps with a focus on securing CI/CD pipelines, is preferred.
- Proficient documentation skills for technical procedures and reporting are required.
- Demonstrated ability as a good problem solver, good communicator (both written and verbal), and possessing a strong desire to learn and adapt to complex, evolving technologies is essential.
About Us: Proudly Canadian and Independently Owned, We are Coke Canada
Coca-Cola Canada Bottling Limited is Canada's premier bottling company. We are an independently owned business encompassing over 5,800 associates, more than 50 sales and distribution centers, and 5 production facilities nationwide. For more information about Coke Canada Bottling, please visit
Important
All offers of employment at Coca-Cola Canada Bottling Limited ("Coke Canada Bottling") are conditional upon a successful background clearance obtained through our contracted third-party vendor. The standard clearance requirements depend on the position and may include some or all of the following: criminal clearance, employment verification, education verification and drivers abstract review. Please advise the Talent Acquisition team if you have any questions or concerns in regards to this once you are contacted for further consideration.
Coke Canada Bottling is committed to creating a diverse and inclusive workforce with several programs, policies and resources in place to support our people. For individuals requiring accommodations or support throughout the recruitment process please contact our Talent Acquisition Services team by calling or email
-
Cyber Security Analyst
1 week ago
Toronto, Ontario, Canada RANA SOFT CONSULTING Full time US$80,000 - US$100,000 per yearCompany DescriptionWe suggest you enter details here.Role DescriptionThis is a full-time, on-site role based in Toronto, ON, for a Cyber Security Analyst. The primary responsibilities include monitoring and responding to security incidents, analyzing threats and vulnerabilities, performing malware analysis, implementing application security measures, and...
-
Cyber Security Risk Analyst
1 week ago
Toronto, Ontario, Canada S&P Global Full time $120,000 - $180,000 per yearAbout the Role:Grade Level (for internal use): 10S&P Dow Jones IndicesThe Role: Cyber Security EngineerThe Team:Are you passionate about cyber security? Do you enjoy solving complex problems and collaborating with diverse teams? The Cyber Security Risk Analyst will support and help coordinate activities across the department to drive process improvement. The...
-
Cyber Security Risk Analyst
1 week ago
Toronto, Ontario, Canada S&P Global Full time $90,000 - $120,000 per yearAbout the Role:Grade Level (for internal use):10S&P Dow Jones Indices The Role: Cyber Security EngineerThe Team: Are you passionate about cyber security? Do you enjoy solving complex problems and collaborating with diverse teams? The Cyber Security Risk Analyst will support and help coordinate activities across the department to drive process improvement....
-
Cyber Security Analyst
2 weeks ago
Toronto, Ontario, Canada fc71e8c5-deda-48e9-b38c-23c0611c543b Full time $70,000 - $120,000 per yearKey Responsibilities:Monitor and analyze security alerts, logs, and events using SIEM platforms (Splunk, QRadar, Sentinel, etc.).Investigate security incidents, perform triage, and support end-to-end incident response activities.Conduct vulnerability scans, risk assessments, and coordinate remediation efforts with technical teams.Research emerging cyber...
-
Junior Cyber Security Analyst
2 weeks ago
Toronto, Ontario, Canada Sagard Full time $60,000 - $80,000 per yearSagard Overview:Sagard is a multi-strategy alternative asset management firm active in venture capital, private equity, private credit and real estate. Sagard also engages in private wealth management through Sagard Wealth.Founded in 2016 and guided by the core values of entrepreneurship, innovation, collaboration, rigour and authenticity, Sagard has...
-
Cyber Security
2 weeks ago
Toronto, Ontario, Canada TECONICA SOFTWARES Full time $80,000 - $120,000 per yearJob Description – Cyber Security SIEM Solutions Data ExpertObjective:The Cyber Security SIEM Solutions Data Expert interfaces between internal platform architects and the Cyber Intelligence Response Centre. The role involves interpreting raw data into actionable security insights and improving detection of anomalies and incident response.Key...
-
Analyst - Akamai Cyber Security (WAF)
1 week ago
Toronto, Ontario, Canada n2psystems Full time $100,000 - $150,000 per yearAbout the RoleWe are seeking an experienced Cyber Security Analyst with deep expertise in Akamai Web Application Firewall (WAF). The ideal candidate will be responsible for application onboarding, traffic/security policy management, and incident troubleshooting. This is a hands-on role requiring strong skills in API security, DDoS protection, and bot...
-
Security Analyst
6 days ago
Toronto, Ontario, Canada Cypfer Full time $120,000 - $180,000 per yearCYPFER is a true first-responder Cybersecurity organization enabling clients to return to business rapidly, the right way, following a cyber-attack. We are a global market leader in ransomware post-breach remediation and cyber-attack first response. We deliver results that far surpass market statistics for cyber-extortion and ransomware events. Our team of...
-
Lead Cyber Security Engineer
1 week ago
Toronto, Ontario, Canada EQ Bank Full time $120,000 - $180,000 per yearPurpose of the Job: The Lead Cyber Security Engineer – Cyber Defense is responsible for designing, fixing and maintaining tools and processes to ensure fast and flawless cyber security threat detection, investigation and response along with keeping systems related to cyber operations up-to-date and effective. Their primary responsibilities will be...
-
Security Analyst
7 days ago
Toronto, Ontario, Canada Cypfer Full time $60,000 - $120,000 per yearAbout Us: CYPFER is a true first-responder Cybersecurity organization enabling clients to return to business rapidly, the right way, following a cyber-attack. We are a global market leader in ransomware post-breach remediation and cyber-attack first response. We deliver results that far surpass market statistics for cyber-extortion and ransomware events....