Technology Security Analyst

Halton Region
Ontario, Ontario, Canada
$77.6K-$103.5K a year
Permanent

Reporting to the Digital Senior Security Advisor, the Technology Security Analyst is responsible for the implementation and operation of security controls as defined in five of the six pillars the NIST CSF and relevant industry specific security frameworks (PCI-DSS etc.).

Duties & Responsibilities

  • On going review and investigation of escalated security alerts from Halton’s MSSP (managed security service provider)
  • Monitors and where required remediates issues or implements controls to mitigate risks due to malware, phishing (and its variants), account hijacking and other attacks.
  • Ensures compliance of the Region’s information systems, internally developed applications (including third party libraries) and operational procedures current security policies, standards, and procedures through regular audit and reviews.
  • Administer (including patching) OR review & assess security infrastructure such as XDR / EDR / NDR solutions, network security solutions (firewalls, IPS, WAF) and GPOs, MDM policies or other configuration policy controls and their on-going activities.
  • Monitors and advises on the required adjustments of security controls for on premise, cloud, messaging (e-mail etc.) and other applications based upon internal and external threat conditions.
  • Conducts regular risk assessment and vulnerability analysis of critical IT systems, network segmentation controls and core business applications (ideally including internally developed applications) and on-premises IT and cloud infrastructure, including IoT (Internet of Things) devices.
  • Performs other operational security duties as assigned.
  • Develop and provide clear and concise documentation for each project assigned.
  • Execute / implement project related deliverables such as those defined in a project manager’s work break down structure.

Skills & Qualifications

Essential

  • Diploma in Computer Science from a recognized Community College and / or University.
  • Two (2) or more years IT security experience
  • Understanding and experience in Zero Trust Security architecture and its practices
  • Strong knowledge of network, operating system, cloud, and directory services and especially IAM (identity access management) and PAM / PIM (privilege access / identity management).
  • Experience and knowledge of common security solutions such as Windows Defender or similar third-party solutions.
  • Experience and knowledge with Microsoft based cloud and on-premises directories, OS (Operating System), Applications and Services.
  • Excellent verbal, listening & writing skills.
  • Strong interpersonal skills and the ability to work in a team environment
  • Security generalist comfortable working in other domains of security
  • Ability to work day-to-day on operational security duties while also contributing to assigned projects

Preferred

Achieved and maintains at least one of the following certifications : security certification (SSCP, CCSP, OSCP etc.) OR audit certification (CISA etc.

OR cloud (CCSK, AZ-900 etc.) OR any certification from a recognized organization or vendor (ISC 2, ISACA, OffSec, CSA, CompTIA, EC-Council, Microsoft, Cisco, etc.)

  • Experience with network-based security solutions (firewalls, WAFs, IPS / IDS etc.), host and network-based diagnostics (Netflow, Sysmon, etc.)
  • Experience and knowledge of application (primarily web) security and projects (OWASP)
  • Familiarity with OT (SCADA / PCS) technology and its security
  • Familiarity with forensics and e-Discovery tools and methodologies

Working / Employment Conditions

  • Current (obtained within the past six (6) months), original and acceptable Criminal Records Check by the first day of employment.
  • 30+ days ago
Related jobs
Halton Region
Ontario, Ontario, Canada

Reporting to the Digital Senior Security Advisor, the Technology Security Analyst is responsible for the implementation and operation of security controls as defined in five of the six pillars the NIST CSF and relevant industry specific security frameworks (PCI-DSS etc. On going review and investiga...

Bill Gosling Outsourcing
Barrie, Ontario

Assess physical and technical security risks to data, software and hardware. Develop policies, procedures and contingency plans to minimize the effects of security breaches. Computer and technology knowledge. Information technology (IT) service delivery. ...

Stratejm
Mississauga, Ontario

Assess physical and technical security risks to data, software and hardware. Develop policies, procedures and contingency plans to minimize the effects of security breaches. ...

Sleep Country Canada
Brampton, Ontario

Conduct studies that evaluate, recommend, and implement security solutions to enhance core security capabilities in the areas of security infrastructure, access management, identity management, networking, databases, servers. Perform the deployment, integration, and initial configuration of all new ...

Skanna Systems and Investigations
Toronto, Ontario

Heures de travail: 30 to 40 hours per week.Secondary (high) school graduation certificate.Schedule events, programs and activities.Assist clients/guests with special needs.Co-ordinate activities with other work units or departments.Ensure smooth operation of computer equipment and machinery.Prepare ...

Hana Bank Canada
Toronto, Ontario

The Information Security Analyst will assist the Information Security Officer (ISO) in achieving the overall success of the Information Security and Cyber Risk Management initiatives at the Bank. Minimum of 5 years’ experience in Information/Cyber Security, IT Risk Management, IT Operations, or Tech...

S.i. Systems
Ottawa, Ontario

Senior Secret Cleared Security Architect to assist in building a new Targeted Enterprise Architecture (TEA) on a large Business Transformation initiative within the Public Sector. Security Control Recommendations: Offer recommendations for security controls that need to be in place, including but no...

Toronto Transit Commission (TTC)
Toronto, Ontario

Information Technology Services (20000014) - Information Security Office (30000033). Provides technical expertise, support and services on all Cybersecurity awareness initiatives, this role works closely with various IT/OT and business subject matter experts to ensure appropriate security awareness ...

Scotiabank
Toronto, Ontario

Familiarity with Security concepts, protocol, and best practices. Collaborate with leading vendors and providers of security and cloud technologies. ...

Paladin Security
Smiths Falls, Ontario

Paladin Security: Making the World a Safer and Friendlier Place because we. Security license reimbursement . Conduct proactive and reactive security patrols. Respond to emergency situations (medical, fire, and security incidents). ...