Jobs
>
Toronto

    IT Security Analyst - Toronto, Canada - Raise

    Raise
    Default job background
    Description

    Location Address:
    Scarborough (1-2 day a month in office flexible on which days)

    Duration: 4 months with possible extension Reason: Additional support needed during a migration process

    Story Behind the Need:

    Business Group:
    Information Security & Control (IS&C)'s Enterprise Security Services – Application Security is responsible to improve security practices and, through that, to find and preferably prevent security issues within applications

    Typical Day in the Role:
    The incumbent is responsible for supporting the Senior Manager, Director, VP, SVP and CISO in achieving IS&C Strategic goals through various processes, including:

    • Develop and/or enhance strategies and processes to manage web application security vulnerabilities and threats for both transactional and marketing/informational web sites.
    • Develop and/or enhance communication model to manage web application vulnerability remediation with the development and infrastructure support teams in support of risk management practices on behalf of the business owner.
    • Develop and/or enhance reporting to development teams and all levels of management in order to provide proper tracking and measurement of remediation relative to established objectives
    • Recommend, design, assess, implement, deploy and maintain application security controls required to protect its customers.
    • Responsible for developing and/or enhancing the strategies and processes to identify, analyze, and communicate application vulnerabilities as per the CISO Directive and published communication process flows.
    • Responsible for adherence to an established process flow that ensures development support teams, infrastructure support teams, and business risk owners implement control measures that effectively mitigate or eliminate the identified risk.
    • Responsible for timely and accurate reporting of all findings to the development teams, appropriate levels of management and the business risk ownerMust Have Skills/Requirements:1) 10+ years of Experience as an IT Security Analyst2) A strong understanding of multi-tier Web Applications, web API, and related vulnerabilities and potentials threats. Staying abreast of information provided by recognized organizations such as OWASP (Open Web Application Security Project) and CVE (Common Vulnerabilities and Exposures). 3) Must have a comprehensive understanding of the HTTP protocol, Secure Software Development Lifecycle (SDLC) and Web Programing for multi-tier web applications and web services. An understanding of JavaScript, SQL, HTML, XML, , , Java, PHP, XML, Python, PowerShell and Ruby is essential. 4) Must have a comprehensive understanding of the OWASP Application Security Verification Standard (ASVS), and have proven working experience applying the ASVS.5) Experience performing source code and/or application security assessments, including risk assessments, and penetration testing. The ability to demonstrate exploitation of vulnerabilities is essential, as would experience with vulnerability testing and scanning tools such as Checkmarx, BurpSuite, Acunetix, NetSparker, WebInspect, AppScan, SQLMap, ZAP, and Fortify.

    Nice to have Skills:
    1) Prior Financial Institutional Experience2) An understanding of gateway technologies and network devices such as Load Balancers, Proxies, IPS, WAF, API Gateway.3) The ability to generate reports and tailor his/her communication strategy for various levels of technical staff, executive management, and business clients.


    Soft Skills:
    1)

    Excellent written and oral communication skills. Ideas must be able to be understood and shared easily.

    2) Strong organizational skillsBest Vs Average Candidate:
    The ideal candidate would have strong hands on experience as an IT Security Analyst. Specifically working in a team environment on a multifaceted project.


  • Esri Canada Toronto, ON, Canada

    Esri Canada has an exceptional opportunity for an Information Security Analyst, in our Technology Infrastructure team. Reporting to the Manager, Technology Infrastructure, The Information Security Analyst will primarily protect Esri Canada's computer systems, networks and sensiti ...

  • CB Canada

    Security Analyst

    6 days ago


    CB Canada Toronto, Canada

    Security Analyst · On behalf of our client in the Banking Sector, PROCOM is looking for a Security Analyst. · Security Analyst – Job Description · User access provisioning, granting access to banking applications and systems to employees and customers · Provisioning access to ...

  • Modis

    Security Analyst

    3 days ago


    Modis Toronto, Canada

    10+ years of Experience as an IT Security Analyst · 2) A strong understanding of multi-tier Web Applications, web API, and related vulnerabilities and potentials threats. Staying abreast of information provided by recognized organizations such as OWASP (Open Web Application Secur ...

  • BMO Financial Group

    Security Analyst

    5 days ago


    BMO Financial Group Toronto, Canada Contract

    Company Overview · BMO is an organization driven by a shared Purpose: Boldly Grow the Good in business and life. It calls on members of its team, to create lasting, positive change for its customers, its communities, and its people. By working together, innovating, and pushing bo ...


  • Igbo Union of Canada Old Toronto, Canada

    Aviator Spribe играть на тенге · You are not right. Write to me in PM, we will communicate. · Aviator Spribe играть онлайн казино · It is simply magnificent phrase · Добро пожаловать в захватывающий мир авиаторов Aviator – это увлекательная игра, которая позволит вам окунуться в ...

  • Raise

    IT Security Analyst

    2 weeks ago


    Raise Toronto, Canada

    Location Address: Scarborough (1-2 day a month in office flexible on which days) · Duration: 4 months with possible extension · Reason: Additional support needed during a migration process. · Story Behind the Need: · Business Group: Information Security & Control (IS&C)'s Enterpr ...

  • Modis

    Security Analyst

    7 hours ago


    Modis Toronto, Canada

    10+ years of Experience as an IT Security Analyst 2) A strong understanding of multi-tier Web Applications, web API, and related vulnerabilities and potentials threats. Staying abreast of information provided by recognized organizations such as OWASP (Open Web Application Securit ...

  • Modis

    Security Analyst

    1 day ago


    Modis Toronto, ON, Canada

    10+ years of Experience as an IT Security Analyst 2) A strong understanding of multi-tier Web Applications, web API, and related vulnerabilities and potentials threats. Staying abreast of information provided by recognized organizations such as OWASP (Open Web Application Securit ...

  • Finance Professionals Inc.

    Security Analyst

    4 weeks ago


    Finance Professionals Inc. Toronto, ON, Canada

    Location: Hybrid (Downtown, Toronto) · Our client a leading financial institution in Downtown Toronto is looking for a Security Analyst - DLP, ServiceNow to work with the Data Protection Advisors who provide advisory services to business lines regarding data protection and data l ...

  • Arthur Grand Technologies Inc

    Security Analyst

    3 weeks ago


    Arthur Grand Technologies Inc Toronto, ON, Canada

    Security Specialist - Penetration Testing – Senior · Arthur Grand Technologies Inc · federal contracting opportunities, federal contracting, federal contracting companies, federal contracting for small business, federal contracting agencies, us federal contracting corp, federal ...


  • CB Canada Toronto, Canada

    Information Security Analyst · On behalf of our client in the Banking Sector, PROCOM is looking for an Information Security Analyst. · Information Security Analyst – Job Description · Manage assigned security platforms, following clients' procedures if required, which includes ...


  • CB Canada Toronto, Canada

    IT Security Analyst – PAM (Privileged Access Management), Active Directory · IT Security Analyst - PAM (Privileged Access Management) - Active Directory · On behalf of our client in the Banking Sector, PROCOM is looking for an IT Security Analyst - PAM (Privileged Access Manage ...

  • A.S.P. Incorporated

    Security Analyst

    3 weeks ago


    A.S.P. Incorporated Toronto, ON, Canada

    RESPITE SECURITY SPECIALIST · Are you passionate about Safety & Security and seeking the opportunity to join a team of Security professionals? · Incorporated has provided security and customer service solutions for over 20 years to Canadian clients. P provides services to some o ...

  • Raise

    IT Security Analyst

    2 weeks ago


    Raise Toronto, Canada

    Location Address: Scarborough (1-2 day a month in office flexible on which days) Duration: 4 months with possible extension Reason: Additional support needed during a migration process. Story Behind the Need: Business Group: Information Security & Control (IS&C)'s Enterprise Secu ...

  • Finance Professionals Inc.

    IT Security Analyst

    2 weeks ago


    Finance Professionals Inc. Toronto, Canada

    Typical Day in the Role: · • The incumbent is responsible for supporting the Senior Manager, Director, VP, SVP and CISO in achieving IS&C Strategic goals through various processes, including: · • Develop and/or enhance strategies and processes to manage web application security ...


  • Visionpool Business Services Toronto, Canada

    Visionpool Business Services is hiring a HYBRID Senior Security Analyst with broad technical and security-based backgrounds. · Responsibilities:Perform security monitoring including alert triaging, investigation, and Incident reporting · Monitor Threat Intelligence feeds and impl ...

  • ASP Security Services

    Security Analyst

    3 weeks ago


    ASP Security Services Toronto, ON, Canada

    RESPITE SECURITY SPECIALIST · Are you passionate about Safety & Security and seeking the opportunity to join a team of Security professionals? · Incorporated has provided security and customer service solutions for over 20 years to Canadian clients. P provides services to some o ...


  • Halton Region Ontario, Canada Permanent

    Reporting to the Digital Senior Security Advisor, the Technology Security Analyst is responsible for the implementation and operation of security controls as defined in five of the six pillars the NIST CSF and relevant industry specific security frameworks (PCI-DSS etc.). · Duti ...


  • First National Toronto, Canada Full time

    We are hiring an Application Security Analyst, Information Security · The Role: · We're seeking an Application Security Analyst well-versed in risk analysis, vulnerability assessment methodologies, and information security concepts. Your role involves supporting security risk a ...


  • Lightspeed Toronto, Canada Full time

    Hi there Thanks for stopping by · Are you actively looking for a new opportunity? Or just checking the market? Well... you might just be in the right place to join our team. · The Staff Analyst, Security is a critical member of Lightspeed's Security Operations Team. They activel ...