08 Sep
|
Socket.dev
|
Saskatchewan
08 Sep
Socket.dev
Saskatchewan
Security Analyst Permanent Appointment
Regina Head Office
Job Summary:
Provide rapid response to security incidents, monitors WCB’s ITS infrastructure and IT services to detect security threats, breaches or attacks. Identify false positives, triage and declare security incidents, performs root cause analysis, prepares documentation and reports throughout incident response (IR) process lifecycle. Run periodic audit scans using variety of security tools, datasets to identify security incidents. Performs periodic vulnerability assessments/penetration testing to identify/remediate security vulnerabilities/risks. Review and analyze the information systems security controls, develops remediation plans, implements and monitors security solutions. Assists in the development, implementation and enforcement of security policies, procedures and standards. Educates users in cyber security awareness including system abuse, security incident reporting and malware protection. Works with internal and external auditors to provide them with required IT information.
Responsible for utilizing a continuous process improvement approach to serve the WCB customers (workers and employers of Saskatchewan) by working with the business partners to ensure the security of WCB assets.
Qualifications: University degree in Computer Science or a related discipline and at least one industry accredited security certification (i.e. CISSP, OSCP, CEH, SANS GPEN, GIAC-GCIH, etc.)
Supplemented with 3 years related experience in Information Security, where a minimum of two of those years wasin a Security Analyst role, demonstrating thefollowing:
Working experience with next generation antivirus (NGAV), data leakage prevention (DLP), structured and unstructured data protection (UDP)
technologies
Demonstrated expert in network technologies, endpoint, threat intelligence, forensics, malware
In-depth working knowledge of security technologies, testing tools (BURP) & security monitoring solutions (SIEM)
Application of industry standards regarding vulnerability management including Common Vulnerabilities and Exposures (CVE), Common Vulnerability Scoring System (CVSS) and Open Web Application Security Project (OWASP)
Functional experience working in securing global hybrid cloud workplace, including Azure, O365 and Microsoft Security (ATP, EMS), using CASB and cloud gateways
Functional experience with databases, business intelligence (BI) reporting and SQL queries.
Experience with Digital Rights Management (DRM), data tagging, encryption, cryptography, hashing, key management, digital certificates, TLS, etc.,
Experience in analyzing and applying information security controls and risk management practices for Disaster Recover & Business Continuity (DR/BCP)
Knowledge of national and international regulatory compliances, including ISO 27000 series, FOIP/LA-FOIP, HIPAA, and PCI-DSS.
Knowledge of frameworks and methodologies (NIST, CIS-CSC, OWASP, CSF etc.)
Process and organizational skills and the ability to prioritize.
Excellent communication and customer service skills.
Must possess a high degree of integrity, be trustworthy, and have the ability to maintain confidentiality.
Salary: $62,033.40 - $79,208.22 per year
The Saskatchewan Workers' Compensation Board is committed to achieving a representative workforce. Members of designated groups (women, aboriginal people, people with disabilities and visible minorities) are encouraged to apply.
#J-18808-Ljbffr
📌 Security Analyst (Saskatchewan)
🏢 Socket.dev
📍 Saskatchewan