IT Security Officer - Information Management Group at Centre for Addiction and Mental Health
Toronto, ON M6J 1H4, Canada -
Full Time


Start Date

Immediate

Expiry Date

02 Sep, 25

Salary

0.0

Posted On

02 Jun, 25

Experience

3 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Encryption, Ipsec, Ips, It Security, Communication Skills, Collaborative Environment, Firewalls, Cissp, High Pressure Environment, Authentication, Ids, Operating Systems, Network Architecture, Edr, Malware Analysis, Infrastructure, Incident Response, Microsoft

Industry

Information Technology/IT

Description

Job Description
Through its core values of Courage, Respect and Excellence, CAMH is implementing its Strategic Plan: Connected CAMH, to transform lives, ignite innovation and discovery, revolutionize education and drive social change. CAMH is more than a hospital, it is a cause. CAMH is on a mission to change the way society thinks about and responds to mental illness. They aim to eliminate prejudice and discrimination and shape a world where mental illness is central to our healthcare system – a world where Mental Health is Health.
To learn more about CAMH, please visit their website at: www.camh.ca.
To view our Land Acknowledgment, please click here.
The Information Management Group/Information Technology at the Centre for Addiction and Mental Health (CAMH) is currently seeking a full-time, permanent IT Security Officer. Reporting to the IT Security Manager, this position is responsible for implements and enforces security policies and procedures, monitors systems for security breaches, investigates incidents, conducts risk assessments, and oversees the installation and maintenance of security software and hardware. The officer also stays up-to-date on the latest security threats and technologies, and communicates security risks and recommendations to management and staff as needed. This position requires strong analytical and problem-solving skills, as well as excellent communication and leadership abilities.

Key Accountabilities

  • Oversee the full lifecycle of security tools and solutions, including implementation, configuration, maintenance and support.
  • Execution of the hospital’s Cyber Security program, ensuring that best practices and policies are consistently followed.
  • Conduct in-depth security log analysis to identify and investigate potential threats, such as unauthorized access, malware, phishing attempts, and system vulnerabilities.
  • Develop and execute robust incident response plans in accordance with CAMH’s incident management standard.
  • Ensure compliance with policies and guidelines governing acceptable use of computing resources by CAMH staff.
  • Conduct thorough investigations into cyber threats, leveraging advanced techniques and tools to identify and mitigate risks.
  • Coordinate and work with outsourced vendors that provide information security functions for compliance with contracted service-level agreements. This includes IDS and Firewall, virus control, SIEM and other security related tools.
  • Coordinate with stakeholders across the organization to design and deliver cyber security awareness training for staff
  • Design and develop periodic security reports to provide ongoing insight into the hospital’s security posture, informing proactive steps to mitigate risks and maintain a strong defense against cyber threats.
  • Continuously monitor emerging cyber threats and vulnerabilities, and assess and implement effective mitigation strategies to maintain a resilient cybersecurity posture.
  • Consult with staff to ensure that security is considered during the evaluation, selection, and deployment of applications and infrastructure
  • Support security projects and provide guidance on security matters for other IT projects.
  • Provide mentor for other team members.

Job Requirements

  • Bachelor’s Degree in IT Security or IT related field
  • 3 to 5 years of experience in IT Security
  • Cybersecurity certification from ISC2(ex, CC, CISSP) and Azure Security, Proofpoint, Crowdstrike, Microsoft, Mitre or equivalent. Candidate require at least two certifications.
  • Working knowledge of firewalls, IDS/IPS, SIEM, EDR, Email Security Solution, proxy systems, load balancers and networking platform.
  • Knowledge of Internet protocols, network architecture, and security technologies including encryption and authentication (SSL, PKI, IPSec, SSO).
  • Ability to effectively review and validate security scan and incident findings.
  • Deep understanding of network architecture, operating systems, cloud services, and infrastructure, with the ability to troubleshoot and secure complex environments.
  • Strong background in incident response, malware analysis, threat hunting, and security architecture.
  • Proficient in vulnerability assessment and management, including scanning, analyzing results, prioritizing remediation, and tracking progress.
  • Demonstrated ability in securing systems and data in keeping with Personal Information Protection and Electronic Documents Act (PIPEDA) in a healthcare setting.
  • Adept at triaging, resolving, and escalating support tickets with efficiency.
  • Strong oral and written communication skills
  • Ability to effectively prioritize and execute tasks in a high-pressure environment
  • Experience working in a team-oriented, collaborative environment
  • Will work collaboratively with all stakeholders
  • Ability to work effectively in a wide range of settings with individuals from diverse backgrounds
  • Bilingualism (French/English) or proficiency in a second language is considered an asset.

Salary Range: Competitive salary and benefits package.

Responsibilities

Please refer the Job description for details

Loading...