Senior Information Security Analyst - Vulnerability Management
Work Location: Toronto, Ontario, Canada
Hours: 37.5
Line of Business: Technology Solutions
Pay Details: $76,800 - $115,200 CAD. This role is eligible for a discretionary variable compensation award that considers business and individual performance.
Job Description:
About this Role
We are looking for a dedicated and experienced individual to join us and lead our Infrastructure Vulnerability Management program. The ideal candidate will lead the efforts to identify, assess, and mitigate security vulnerabilities across our organization's systems, networks, and applications. This role requires a deep understanding of vulnerability management processes, excellent analytical skills, and the ability to work collaboratively across teams to enhance our overall security posture.
Responsibilities
- As a Subject Matter Expert (SME) on Enterprise Vulnerability Management, provide expertise for the implementation and configuration of enterprise platforms and services with a role in the discovery, identification, prioritization, reporting and follow-up on Information Technology vulnerabilities and misconfigurations.
- Administer and optimize vulnerability scanning tools and platforms, ensuring accurate and efficient scanning.
- Evaluate and recommend new tools or solutions to enhance vulnerability management capabilities.
- Create innovative ways to design and implement automated security metrics representative of performance and risk related to the Vulnerability Management program.
- Serve as a trusted advisor to technical and non-technical stakeholders, providing insight into vulnerability management metrics and goals.
- Automate and enhance vulnerability tracking, prioritization, and reporting through ServiceNow.
- Use ServiceNow's advanced analytics and reporting capabilities to support leadership in making informed risk management decisions.
- Lead root-cause analysis for recurring vulnerabilities, driving long-term security improvements.
Qualifications
- 3-5 years of relevant experience within any of the following areas: Infrastructure Vulnerability Management, Cloud or Application Security.
- Completion of a University Degree or equivalent program in Computer Science, Management Information Systems, or similar field.
- Experience with ServiceNow reporting product.
- Hands-on experience with JIRA, Confluence and Tableau.
- Advanced knowledge of scripting languages, such as Python.
- Ability to apply agile methodology and practical judgement in decision making.
- Ability to quickly analyze large amounts of information and formulate action plans based on that analysis.
- Excellent written and oral communication skills and ability to articulate and present information to all levels of management and staff.
We look forward to hearing from you!