12 Aug
|
Southlake Health
|
Newmarket
12 Aug
Southlake Health
Newmarket
Cyber Security Analyst page is loaded## Cyber Security Analystlocations: Newmarket ONtime type: Full timeposted on: Posted Todaytime left to apply: End Date: April 24, 2026 (15 days left to apply)job requisition id: JR-101485Job Category: Professional### ### Hospital Location: Newmarket ON### ### Job Type: Permanent, Full time### ### ### ### Number of Positions: 1### ### Minimum - Maximum Hourly Rate: $43.70 - $51.95* A people-first workplace environment that prioritizes belonging, wellness, and psychological safety.* Hybrid, virtual, and in-person working environment (where applicable).* Progressive health and dental benefit plans.* HOOPP pension plan with employer and employee premium sharing.* Enhanced wellness initiatives, including virtual fitness classes and on-site gym memberships.If you are ready to embrace this exciting challenge and contribute to the success of Southlake Health, we encourage you to apply and be part of our dedicated team, making a difference in the lives of our employees and the community we serve!About the role: Reporting to the Manager, Cyber Security, this position performs an analyst/administration role in safeguarding data and Information Technology assets by assisting with developing, implementing, and sustaining the hospital’s Board of Director approved Cyber Security strategy & program. As a Cyber Security Analyst, the incumbent will apply their cyber security knowledge and skills to protect the hospital’s information and technology environment from increasingly complex and evolving cyber threats using the appropriate security tools, products, and best practices, and will help develop and implement robust security operation processes and procedures. The ideal candidate will have a strong technical background in servers or networking, with the ability to troubleshoot security related issues, incidents, and system anomalies. The role is part of any Shared Health Network Information Exchange (SHINE) Privacy and Security committees directed by SHINE Business Council executives, and implementation committees directed by Central Regional Cyber Security Partnership. This position adheres to a hybrid work structure, supporting both on site engagement and remote productivity.**What you'll be doing:****Execution and Compliance to Cyber Security Strategy & Program*** Ensure that appropriate cybersecurity controls are executed according to the security program.* Implement security improvements by assessing the current situation, evaluating trends and anticipating requirements.* Establish security standards for IT infrastructure and solutions and assess compliance of existing and proposed solutions.* Assist with Vulnerability and Threat Risk Assessments (TRA)
to identify potential security concerns; track and monitorthe remediation and mitigation of the identified concerns through risk management methodologies.* Help review externally completed Vulnerability and Threat Risk Assessments, track and monitor the remediation and mitigation of the identified concerns through risk management methodologies.* Conduct internal security audits (including assessing infrastructure components and operational processes against information security and privacy policies and standards), prepare documentation of the results, set priorities based on risk levels, and track remediation and mitigation of non-conformities to acceptance and/or resolution.* Contribute to the maintenance, testing, and improvement of incident response plans, procedures, and processes.* Organize and conduct penetration tests on the network infrastructure and recommend prioritized remediations and mitigations to reduce risk to an acceptable level.* Help prepare (depending on the scope/impact/situation) reports and action plans if a security breach does occur.* Assist with maintaining cyber security policies, principles, and standards in alignment with partnership commitments ie SHINE, Central Region Security Partnership, Ontario Health.* Maintain internal control matrices to demonstrate compliance with various frameworks and requirements, adapt to changing environments and processes, and measure the maturity of the Information Security program.* Assist with the creation and maintenance of Incident Response Plans and Playbooks for Emergency Preparedness (Code Grey, Loss of Systems).* Assist with the creation and maintenance of Departmental Business Continuity plans.**Cyber security infrastructure support and maintenance*** Key user/system administrator for the various cybersecurity tools that are utilized by the hospital (this includes ensuring the tools are kept up to date to a supportable level).* Work with vendors to coordinate updates, new implementations, bug fixes etc. for security tools.* Analyzing completion of patches (critical and otherwise) for all technology infrastructure and applications, and where necessary, assisting in deployment of the patches.* Conducting on-going audits to ensure compliance with security policies (both for IT staff,
as well as end users).* Maintain subject matter expertise on information security processes and standards.**Cyber Security Awareness and Training*** Help create the content and manage the process for providing security awareness training for hospital staff, physicians and any other groups that need access to corporate network and applications. This may involve providing town hall sessions and creating materials for the Learning Management Solution (LMS).* Assist with developing and delivering training for technical staff on network and information security best practices and procedures.* Collaborate with security partnerships (vendors and other organizations) on cyber education materials to ensure alignment where possible.* Help maintain industry awareness and knowledge of cyber education trends and solutions.**Infrastructure Support*** Leverage technical expertise and experience to provide infrastructure support to ensure that operational activities are maintained.**What you bring:*** Hands-on experience (at least 3 years) with information security is a requirement.* Strong Technical Experience in network and information systems for 5 years or more in a larger sized organization (more than 500 users).* Ability to work independently and with multiple and diverse contacts, including external organizations, other IT staff, and different levels of management within the organization.* Foundational understanding of information security principles.* Working experience and familiarity with common security and privacy industry standards (example: ISO/IEC 27001, NIST, PCI DSS etc.).* Ability to handle multiple concurrent tasks while demonstrating urgency and ownership to drive projects to completion.Southlake Health is fully committed to a culture of belonging and an inclusive setting that encourages every team member to lead within their role, generate innovative ideas that reinforce our mission and goal to create a healthy workplace where our community can thrive.Regular and reliable attendance is an expected requirement of this position.We are committed to a selection process and work environment that is inclusive and barrier-free. Accommodation will be provided in accordance with the Ontario Human Rights Code. Applicants who may require accommodation during the selection process are encouraged to notify the Human Resources Department when contacted for an interview. The People, Culture and Experience team will work together with the hiring committee to arrange reasonable and appropriate accommodation for the selection process, which will enable you to be assessed fairly and equitably.**Use of Artificial Intelligence (AI)**We prioritize a people-first workplace culture which emphasizes equity and inclusion throughout our hiring process. To ensure fairness and transparency, all applications are reviewed#J-18808-Ljbffr
📌 Cyber Security Analyst - $43.7 - $52.0 An Hour (Newmarket)
🏢 Southlake Health
📍 Newmarket