Security Analyst
1 day ago
POSITION SUMMARY
The Security Information Analyst will assist the Toronto Parking Authority with the design, development and implementation of its security awareness plan and security initiatives to help ensure that the best possible measures are in place to maintain secure operations. The role will be focused on executing threat risk and vulnerability analysis (TRVA). In addition, this role will oversee risk remediation activities, in order to enable both operational and project teams to safely and securely manage their departments. This role will also be responsible to help monitor, evaluate and maintain systems and procedures to safeguard TPA information and systems while developing and implementing strategies, policies and procedures for the continued security of the organization.
RESPONSIBILITIES
- Threat Monitoring: Continuously monitor network traffic, security alerts, and system logs to identify potential security incidents and vulnerabilities, with a focus on cardholder data protection.
- PCI-DSS Compliance: Ensure adherence to PCI-DSS requirements, including maintaining compliance with all relevant standards and controls for handling and protecting cardholder data.
- Incident Response: Respond promptly to security breaches or attacks, including investigating and analyzing incidents involving cardholder data, and implementing corrective measures to address any PCI-DSS violations.
- Risk Assessment: Conduct regular risk assessments and security audits with a focus on PCI-DSS compliance to identify potential threats and vulnerabilities and recommend mitigation strategies.
- Security Measures: Develop, implement, and enforce security policies, procedures, and best practices to enhance overall security and ensure PCI-DSS compliance.
- Vulnerability Management: Perform regular vulnerability scans and assessments, addressing identified weaknesses in systems and applications, and ensuring compliance with PCI-DSS requirements.
- Compliance Monitoring: Monitor compliance with PCI-DSS controls and procedures, including data encryption, access control, and network security measures.
- Documentation: Maintain detailed records of PCI-DSS compliance activities, security incidents, investigations, and responses, and prepare reports for management and regulatory bodies.
- Security Awareness: Educate and train staff on PCI-DSS requirements, security best practices, and organizational policies to promote a culture of security awareness and compliance.
- Collaboration: Work closely with IT, development, and management teams to integrate PCI-DSS requirements into system designs and operational procedures.
- Tool Management: Utilize and manage security tools and technologies, including firewalls, intrusion detection systems, and encryption software, to safeguard the organization's digital assets in compliance with PCI-DSS.
- Engage with QSA: Collaborate with Qualified Security Assessors (QSAs) to ensure compliance with PCI-DSS standards, prepare for formal assessments, and address any identified gaps or recommendations.
- Bachelor's degree in computer science, Information Security, or a related field.
- Relevant certification (e.g., CISSP, CEH, CompTIA Security+, PCI Professional) are considered an asset.
- Minimum 5 years of experience in an Information Security role.
- Minimum 5 years of experience with administration of various security products such as Palo Alto, CrowdStrike, Cisco ASA and Checkpoint, Microsoft Defender, Microsoft Purview and Symantec endpoint protection, Qualys and Tenable network and web application scanner, CIS benchmarks.
- Demonstrated knowledge of and/or familiarity with standards and frameworks such as PCI-DDS, ITIL, COBIT, ISO/IEC 31000 series, ISO/IEC 27000 series, SOC 2.
- Demonstrated experience in undertaking security threat and risk assessment using an industry recognized framework equivalent to the Harmonized Threat and Risk Assessment methodology.
- Proven experience with LogRhythm or Splunk solutions.
- Previous experience conducting IT audits considered an asset.
- Threat Risk Vulnerability Assessment (TRVA) training.
- Knowledge of current network, operating systems, hardware, protocols, and standards.
- Excellent analytical skills
- Demonstrated ability in solving I.T. issues, problems and possessing a sense of urgency.
- Demonstrated integrity in dealing with information and issues of a highly confidential and sensitive nature.
- Diligent, detail-oriented, and possess a success-driven work ethic. Demonstrates Commitment to Environment, Health & Safety: Manages risks to protect the health and safety of employees and the public.
- Able to perform forensic collections of data and to conduct detailed forensic analysis task including data recovery, production of forensic images and compilation of forensic examination reports
- Ability to collect and manage of evidence to ensure that the chain of custody is fully documented in accordance with local statutes and policies.
- Experience In use of forensic and data mining tools to collect, search, recover, sort and organize large amounts of information in all phases of an investigation.
- A proven team player & ability to interact and work with people with a variety of backgrounds and at different levels within the organization.
- Internal candidates: No new or reclassified employee with less than one (1) year's continuous on the job service may apply.
About the Toronto Parking Authority
Toronto Parking Authority (TPA) is the largest municipal parking operator in North America, third largest bike share operator and largest operator of municipally owned EV charging in Canada. At the Toronto Parking Authority, we aspire to create a seamless customer experience that delivers on choice, ease, and speed through the City. We are proud to be a major strategic asset for the City in supporting Toronto's Mobility goals. Our advancements, such as enhancements to the Green P app, the expansion of Bike Share Toronto and establishment of a new systems operating centre reflect our commitment to innovation and service excellence.
-
IT Security Analyst
20 hours ago
Toronto, Ontario, Canada Alfa AI Full timeRole OverviewAs a Senior IT Security Analyst within the Information Security Advisory Services team, you will be a central point of reference and core competency for Information Security at Scotiabank. You will provide expert advisory services to various business lines, subsidiaries, and affiliates, ensuring the achievement of the Bank's Information Security...
-
Cyber Security Analyst
1 week ago
Toronto, Ontario, Canada RANA SOFT CONSULTING Full time US$80,000 - US$100,000 per yearCompany DescriptionWe suggest you enter details here.Role DescriptionThis is a full-time, on-site role based in Toronto, ON, for a Cyber Security Analyst. The primary responsibilities include monitoring and responding to security incidents, analyzing threats and vulnerabilities, performing malware analysis, implementing application security measures, and...
-
Information Technology Security Analyst
18 hours ago
Toronto, Ontario, Canada Procom Full time US$66,000 - US$99,000 per yearOn behalf of our Banking client, Procom is searching for a Senior Technical Security Analyst – ServiceNow for a 6-month role. This position is a hybrid position with 4 days onsite at our client's Toronto office.Senior Technical Security Analyst – ServiceNow - Job Description:The project involves Access Request Provisioning within a diverse team...
-
Security Analyst
7 days ago
Toronto, Ontario, Canada Cypfer Full time $60,000 - $120,000 per yearAbout Us: CYPFER is a true first-responder Cybersecurity organization enabling clients to return to business rapidly, the right way, following a cyber-attack. We are a global market leader in ransomware post-breach remediation and cyber-attack first response. We deliver results that far surpass market statistics for cyber-extortion and ransomware events....
-
Analyst, Cyber Security
1 week ago
Toronto, Ontario, Canada Coca-Cola Canada Bottling Limited Full time $80,000 - $120,000 per year5 Nov 2025Work Location - Toronto, ONEmployee Type - Regular Employee FT SalariedHybrid Work - This position currently offers a hybrid work schedule. Subject to change. The in-office requirement is a minimum of three days per week (Tuesday, Wednesday & Thursday), with the flexibility to work remotely on the remaining days.Initial Posting Close Date -...
-
Analyst, Cyber Security
1 week ago
Toronto, Ontario, Canada CONA Services Full time $60,000 - $90,000 per yearWork Location - Toronto, ONEmployee Type - Regular Employee FT SalariedHybrid Work - This position currently offers a hybrid work schedule. Subject to change. The in-office requirement is a minimum of three days per week (Tuesday, Wednesday & Thursday), with the flexibility to work remotely on the remaining days. Initial Posting Close Date - November 12,...
-
Senior Security Analyst
1 day ago
Toronto, Ontario, Canada Momentum Financial Services Group Full timeWho We Are At Momentum Financial Services Group, we help people move forward by reimagining how money works for those who need it most. With more than 40 years of experience, we're the team behind Money Mart—Canada's largest non-bank branch network—and a leader in financial solutions for underserved communities. From short-term loans to money transfers...
-
Analyst, Systems Security
1 week ago
Toronto, Ontario, Canada BCE Full time $80,000 - $120,000 per yearReq Id: At Bell, our purpose is to advance how Canadians connect with each other and the world. We achieve this by providing consumers and businesses with the best network technologies in the world, innovative digital solutions and seamless customer experiences. It's all developed and delivered by the members of #TeamBell and we're always on the lookout for...
-
Senior IT Security Analyst
7 days ago
Toronto, Ontario, Canada 123Dentist Full time $80,000 - $120,000 per yearJob Title:Senior IT Security Analyst123Dentist is Canada's largest majority dentist-owned network of dental practices, with almost 500 locations nationwide and nearly 8,000 employees. We provide Canadian dentists and dental practices with an array of non-clinical support and resources, including HR, marketing, finance, as well as supply & equipment...
-
IT Security Analyst
1 day ago
Toronto, Ontario, Canada Dawn InfoTek Full time $90,000 - $108,000 per yearDawn InfoTekInc. is a professional IT consulting team that partners with major financial institutions, investment firms and government sectors. We have been dedicated to delivering cutting-edge consulting services and recruiting all levels of IT positions for our clients.We are currently seeking competent individuals to fulfill the role ofIT Security...