22 Sep
|
Brydon Gama
|
Ontario
22 Sep
Brydon Gama
Ontario
About Us
BrydonGama is a Toronto-based IT recruiting and staffing firm, connecting organizations with high-caliber technology and business talent. We are recruiting this role on behalf of an established financial services company with operations across the
Greater Toronto Area.
The Role
This role provides security guidance to business and service partners — identifying and prioritizing security-related requirements and facilitating delivery of information security services across the organization. You'll be responsible for protecting the company's information security assets by identifying, assessing, and mitigating security risks across the environment.
You'll support security operations, vulnerability management, third-party risk, and security governance activities, working closely with management to ensure compliance with established risk-mitigating policies and procedures. Acting as an information security ambassador to the business, you'll determine security requirements by evaluating business initiatives and ensuring alignment with the organization's global information security standards.
This is a hands-on analyst seat reporting to the Manager, Information Security — a strong fit for someone who wants day-today ownership of security monitoring, vulnerability triage, and vendor risk work inside a regulated, enterprise-scale environment.
What You'll Do
- Monitor and act on security alerts and advisories from the SOC team and other security tools; triage, investigate, and escalate security incidents, and support incident response activities
- Review vulnerability reports, assess exploitability, and coordinate remediation efforts across the environment
- Support access governance — access reviews, least privilege,
segregation of duties — and investigate access anomalies and unauthorized access attempts
- Perform risk assessments of information systems and infrastructure, and develop and communicate mitigation recommendations
- Conduct security risk assessments of vendors and service providers, including review of SOC 2 reports and other security documentation, and track remediation of identified third-party risks
- Support internal and external audits, and maintain security policies, standards, procedures, and training materials
- Develop and maintain dashboards to track and report on key risk and compliance metrics for management
- Support business continuity planning, disaster recovery initiatives, phishing simulations, and annual security awareness campaigns
- Collaborate with business units, application teams, and service partners to define and guide security controls that manage risk
What You Bring
- Post-secondary education in Computer Science, Engineering, or a related field
- 5+ years of experience as an information security analyst, preferably in banking or financial services
- Hands-on experience with vulnerability management (e.g., Qualys), IAM (e.g., SailPoint, Okta), endpoint security (e.g.,
CrowdStrike), and privileged access management (e.g., CyberArk) tools
- Working understanding of network security (firewalls, VPNs, segmentation, zero trust), cloud security fundamentals
(Azure, AWS), authentication methods (MFA, SSO), DLP, SDLC, and API security
- Strong analytical and problem-solving skills, with the ability to translate technical risk into business terms
- Excellent written and verbal communication, and comfort managing multiple priorities in a fast-paced workplace
- Assets: CISSP (or working toward), CISM, CRISC, CCSP, or CCZT
📌 Information Security Analyst (Ontario)
🏢 Brydon Gama
📍 Ontario