08 Aug
|
Socket.dev
|
Ontario
08 Aug
Socket.dev
Ontario
Iron Logic Inc. is a software and development company focused on providing digital solutions to customers in a fast, streamlined fashion. We work with our partners (including Rogers, Microsoft and Samsung, among others) to provide hosting and development solutions that accelerate digital evolution.
As a Cybersecurity Analyst on the security team, you will forge and nurture trusted relationships with internal teams (Software Engineering & Infrastructure) and external customers. You will work closely with the entire organization to develop policies and procedures, operationalize, train, and enable secure operations. The ideal candidate for this role will understand the needs of data/information security and is eager to grow their career in the areas of cybersecurity, governance, risk and compliance.
HYBRID (3-4 days in office / Full Time Salary)
Responsibilities: Audit and review existing systems for threats
Establish activities for IT risk control, ensuring operational and application compliance with developed security policies/procedures
Lead information security assessment and conduct security testing, including vulnerability mitigation
Research, evaluate and recommend new IT security solutions and threat countermeasures
Ensure security solutions are working effectively (WAF, AV, firewalls, IDS)
Review security events to identify and analyze security incidents, orchestrating incident response activities, including tabletop exercises
Work independently and with various technical teams to improve our security stance
Conduct security awareness training programs including sending out phishing tests to users
Operationalize, configure, and monitor security applications such as EDR and Vulnerability Management systems
Serve as security point-of-contact for audit/certification programs
Interface with external customers on security reviews and assessments
Liaise between the Director of Security & Compliance and various teams,
ensuring relationships are maintained
Track documentation and ongoing security tasks (continuous monitoring, updating documentation, vulnerability remediation, security-related tests, etc.)
Coordinate security projects and timelines with various teams in an organized manner
Stay up-to-date with the latest threats and risks posed to the organization
Other ad-hoc duties, as required
Qualifications: College diploma or university degree in technology, computer science, engineering, cybersecurity or equivalent
Relevant industry certifications preferred (i.e. CISSP, CISM, CISA, SANS, CompTIA Security+, SSCP, etc.)
Access to transportation required to come into office a minimum of 3 times a week
Skills: Strong organizational skills
Strong time management skills
Strong problem-solving skills
Strong verbal and written communication skills to establish trust between various teams and write explicit documentation/correspondence between parties
Ability to work both individually and as part of a team
Knowledge of Azure and Azure-based security modules (e.g. Sentinel, Conditional Access, Azure Information Protection)
Familiar with Data Loss Prevention technologies
Understanding of anti-malware
Understanding of IAM/PAM concepts and tools
Knowledge of cybersecurity frameworks and standards (e.g. NIST, ISO, CIS)
Familiarity with various aspects of security compliance (technical controls, privacy, encryption, etc.)
Understanding of security logs, including endpoint (EDR) and network detection utilities (firewall logs)
Proficiency with MS Office 365 including Word, Excel, Teams and Outlook
Strong understanding of vulnerability scanning technologies (network, application, cloud and endpoint scanning)
Basic understanding of SQL and/or database utilization concepts preferred
Solid understanding of networking concepts, including routing, switching, firewalls, web application and cloud technologies preferred
#J-18808-Ljbffr
📌 Cyber Security Analyst (Ontario)
🏢 Socket.dev
📍 Ontario