Security Analyst (Saskatchewan)

Security Analyst (Saskatchewan)

14 Sep
|
Saskatchewan Workers' Compensation Board
|
Saskatchewan

14 Sep

Saskatchewan Workers' Compensation Board

Saskatchewan

Provide rapid response to security incidents, monitors WCB’s ITS infrastructure and IT services to detect security threats, breaches or attacks. Identify false positives, triage and declare security incidents, performs root cause analysis, prepares documentation and reports throughout incident response (IR) process lifecycle. Run periodic audit scans using variety of security tools, datasets to identify security incidents. Performs periodic vulnerability assessments/penetration testing to identify/remediate security vulnerabilities/risks. Review and analyze the information systems security controls, develops remediation plans, implements and monitors security solutions. Assists in the development, implementation and enforcement of security policies, procedures and standards. Educates users in cyber security awareness including system abuse, security incident reporting and malware protection. Works with internal and external auditors to provide them with required IT information.
Responsible for utilizing a continuous process improvement approach to serve the WCB customers (workers and employers of Saskatchewan) by working with the business partners to ensure the security of WCB assets.
Duties & Responsibilities: Maintains security assets inventory, monitor security vulnerability information released by OEM, tracks, recommends upgrades/releases/updates, security patches as soon as it is released, follow-up with respective teams to remediate.
Monitor alerts, system reports and security logs for unusual events, attacks, intrusions, anomalies, unauthorized or illegal activities.
Monitors and continually fine-tunes advanced threat detection technology controls and practices in accordance with current vulnerabilities, risks, threats and best practices.
Leads security incident response, coordinate with various teams for remediation, handles the entire incident lifecycle.
Defines and implements secure configuration baseline for network, database, application, server and desktop technology areas.
Determine and implement appropriate data leakage controls and DLP policies, as well as the placement of such,



to meet business and regulatory and audit requirements.
Performs vulnerability assessment, Grey box assessment and penetration testing Coordinates vulnerability scans and develops remediation plans to address discovered vulnerabilities.
Quickly identifies the source of a security breach and investigate intrusions to determine the cause and extent of the breach, leveraging threat intelligence sources.
Assists in definition, development, implementation and refinement of WCB’s IT Security Policy, supporting security procedures and process documentation, including DR/BCP tests & reporting.
Tracks license compliance, monitor usage status, and manage the software asset life cycle. Discover unauthorized hardware and software on the network.
Monitors and reviews security controls implemented in IDS/IPS, Firewalls, LAN/WAN/VPN, Endpoint protection, Wireless controllers and MDMs.
Periodically revalidates remote access server, secure client, desktop security, guest access, TACACS/Radius/LDAP authentication, web applications security and analyze for anomalies.
Conduct host forensics, network forensics, log analysis, and malware triage in support of incident response investigations.
Facilitates ongoing cyber security awareness program.
Facilitates all security information requests for external and internal audits, documents and tracks recommendations from audit reports until it is completed.
Participates in the Security Architecture Committee and in special assigned projects and other departmental initiatives.
Qualifications: University degree in Computer Science or a related discipline and at least one industry accredited security certification (i.e. CISSP, OSCP, CEH, SANS GPEN, GIAC-GCIH, etc.)




Supplemented with 3 years related experience in Information Security, where a minimum of two of those years was in a Security Analyst role, demonstrating the following:
Working experience with next generation antivirus (NGAV), data leakage prevention (DLP), structured and unstructured data protection (UDP) technologies
Demonstrated expert in network technologies, endpoint, threat intelligence, forensics, malware
In-depth working knowledge of security technologies, testing tools (BURP) & security monitoring solutions (SIEM)
Application of industry standards regarding vulnerability management including Common Vulnerabilities and Exposures (CVE), Common Vulnerability Scoring System (CVSS) and Open Web Application Security Project (OWASP)
Functional experience working in securing global hybrid cloud workplace, including Azure, O365 and Microsoft Security (ATP, EMS), using CASB and cloud gateways
Functional experience with databases, business intelligence (BI) reporting and SQL queries.
Experience with Digital Rights Management (DRM), data tagging, encryption, cryptography, hashing, key management, digital certificates, TLS, etc.,
Experience in analyzing and applying information security controls and risk management practices for Disaster Recover & Business Continuity (DR/BCP)
Knowledge of national and international regulatory compliances, including ISO 27000 series, FOIP/LA-FOIP, HIPAA, and PCI-DSS.
Knowledge of frameworks and methodologies (NIST, CIS-CSC, OWASP, CSF etc.)
Process and organizational skills and the ability to prioritize.
Excellent communication and customer service skills.
Must possess a high degree of integrity, be trustworthy, and have the ability to maintain confidentiality.
Application Deadline: September 20, 2026 The Saskatchewan Workers' Compensation Board is committed to achieving a representative workforce. Members of designated groups (women, aboriginal people, people with disabilities and visible minorities) are encouraged to apply.

#J-18808-Ljbffr

📌 Security Analyst (Saskatchewan)
🏢 Saskatchewan Workers' Compensation Board
📍 Saskatchewan

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: security analyst (saskatchewan) / saskatchewan

Subscribe to this job alert:

Get the latest job offers by email for: security analyst (saskatchewan) / saskatchewan