IT Security Analyst at Canadian Nuclear Laboratories CA
Canada, Ontario, Canada -
Full Time


Start Date

Immediate

Expiry Date

29 Nov, 26

Salary

0.0

Posted On

31 Aug, 26

Experience

0 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

Yes

Skills

Industry

Information Technology & Services

Description

Leading the development, implementation, and ongoing operation of CNL’s Cyber Security Program (based on NIST 800-53 and ISO27001)

Coordinating and conducting audits of IT systems and infrastructure (hardware/software compliance, user accounts, application access, etc.), ensuring action items are identified, defined, and monitored for completion

Providing support to external auditors who are conducting audits and assessments against CNL systems and information

Participating and assisting in the design and execution of vulnerability assessments, penetration tests and security testing exercises

Monitoring the IT security toolset and enforcing IT security policies and procedures (e.g. password policy compliance, approval of external users, ensuring server configuration compliance, etc.)

Providing 2nd level Operational Support in assisting our customers and supporting teams in the response, assessment and containment of security-related activities

Creating reports on activities such as Internet usage, Email usage, and Malware/Virus Alerts; may be engaged in highly sensitive investigations and audits

Researching emerging threats, products, services, protocols, and standards in support of CNL’s Cyber Security Program (e.g. assess need for any security reconfigurations [minor to moderate]) and working with appropriate groups to implement changes to services (e.g. wireless, remote computing, encryption, etc.)

Making formal and informal recommendations to IT Leadership on long-term direction of the Cyber Security tools, infrastructure and Program

Participating in resolving identified Cyber Security Incidents and accurately documenting and reporting the details of Cyber Security Incidents, including participation in an on-call rotation for IT Incident Response

Recommending hardware/software security patches and any other security measures required in the event of a security breach

Providing input to Cyber Security Requirements for new projects, ensuring adequate Cyber Security engagement throughout the life of the project

Contributing to and reviewing project proposals and solutions, conducting risk assessments to ensure risk levels are managed, and compliance with Cyber Security Program, Privacy, and Protection of Information requirements

Working collaboratively with other departments within CNL IT and our business partners (Security, HR, Legal, etc.) to deliver on CNL’s APWB commitments and interacting with external agencies on IT security issues (e.g AECL, TBS, PWGSC, RCMP, CSIS, etc.)

Responsibilities
Loading...