Security Analyst

at  Sunnybrook Health Sciences Centre

Toronto, ON, Canada - 00000

Start DateExpiry DateSalaryPosted OnExperienceSkillsTelecommuteSponsor Visa
Immediate25 Apr, 3626Not Specified23 Sep, 20195 year(s) or aboveCisa,Cobit,Risk Assessment,Email,Word Processing,Itil,Cisco Asa,Wsus,Computer Skills,Technology,Database,Vulnerability,Coso,It Governance,Software,Aoda,Isaca,Disabilities,Pmi,Endpoint Protection,Operations ManagementNoNo
Required Visa Status:
CitizenGC
US CitizenStudent Visa
H1BCPT
OPTH4 Spouse of H1B
GC Green Card
Employment Type:
Full TimePart Time
PermanentIndependent - 1099
Contract – W2C2H Independent
C2H W2Contract – Corp 2 Corp
Contract to Hire – Corp 2 Corp

Description:

Posted: 7/5/2019 1:24:18 PM
We currently have a Temporary Full-Time opportunity for a Security Analyst in the Information Services Department at our Bayview Campus until Approximately June 2020. .
Reporting to the Manager, Information Security, the Information Security Analyst is responsible for information technology risk assessments, general information security program operational activities and reporting within our client’s Information Services group, in support of our Information Security Program accountabilities.

QUALIFICATIONS/SKILLS:

  • University Degree in Business Administration, Science or Engineering or equivalent;
  • Minimum 5 years of experience in an Information Security role;
  • Minimum 5 years of experience with administration of various security products such as Palo Alto, Cisco ASA and Juniper firewalls, VPN, McAfee DLP and endpoint protection, Microsoft SCCM, WSUS, Qualys network and web application scanner;
  • Possess good understanding of vulnerability scan remediation, and management;
  • Strong understanding of IT Security concepts and best practices;
  • Superior written and oral communications, interpersonal and customer-service skills;
  • Demonstrated knowledge of and/or familiarity with standards and frameworks such as ITIL, COBIT, ISO/IEC 31000 series, ISO/IEC 27000 series, PCI, COSO;
  • Demonstrated experience in undertaking supervised security threat and risk assessments, preferably within a healthcare context, using an industry recognized framework equivalent to the Harmonized Threat and Risk Assessment (HTRA) methodology;
  • Certification in one or more IT governance or control standards such as ISC2 (e.g. CISSP), SANS, ISACA (e.g. CISM, CISA), PMI (e.g. PMBOK) or equivalent preferred;
  • Strong analytical, problem-solving and negotiation skills;
  • Excellent computer skills utilizing office productivity tools including email, word processing, database and spreadsheet
  • applications;
  • Knowledge of information technology project management, technology (software or hardware) development and/or
  • technology operations management preferred; and
  • Knowledge of the healthcare sector and direct hospital administrative or clinical support experience preferred.
    Qualified candidates are invited to submit their resume and cover letter (in one document) quoting 191713 to:
    Human Resources
    Sunnybrook Health Sciences Centre
    To apply, please click “Apply for Position” at the bottom of this page
    Sunnybrook Health Sciences Centre is committed to providing accessible employment practices that are in compliance with the Accessibility for Ontarians with Disabilities Act (AODA). If you require accommodation for disability during any stage of the recruitment process, please indicate this in your cover letter.
    Sunnybrook Health Sciences Centre is strongly committed to inclusion and diversity within its community and welcomes all applicants including but not limited to: visible minorities, all religions and ethnicities, persons with disabilities, LGBTQ persons, and all others who may contribute to the further diversification of ideas

Responsibilities:

  • Undertake security threat and risk assessments for our client’s services and systems identified by the Security Council in accordance with industry recognized standards and which support appropriate security risk response, including the identification of administrative, procedural and technical control remediation items as required;
  • Review of TRAs which may be provided by 3rd parties in support of shared systems and services reviews in which our client is a participant;
  • Review of mobile and other emerging end point applications and for cloud-based services which our client’s programs and service areas may be proposing to acquire from a third party or develop in-house, in conjunction with the combined support of their Communications and Stakeholder Relations, internal legal, and Information services groups;
  • Collaborate with and support other departments to identify security risks within their respective operational areas, make recommendations for appropriate security control remediation items and support the development of security process control improvements within those portfolios suitable for risk mitigation;
  • Monitor, review and respond on security events received from our client’s SOC and track through to resolution
  • Escalate issues that cannot be resolved within acceptable time frames;
  • Monitor for emerging threats, assess risks and recommend relevant controls and mitigation strategies;
  • Coordinate and perform both network and web application vulnerability assessments;
  • Review emerging security technologies and provide recommendation to enhance security of the infrastructure;
  • Work with the respective team to implement server and network device hardening;
  • Support security related projects;
  • Review IT security controls and processes for the new application and services to ensure proper technical security controls on systems and applications, and processes;
  • Work with external consultants as appropriate for independent security audits and risk remediation;
  • Manage security awareness training program and report key findings and recommendations;
  • Develop, manage and update, as required, information security policies and procedures;
  • Perform other related duties as assigned.


REQUIREMENT SUMMARY

Min:5.0Max:10.0 year(s)

Information Technology/IT

IT Software - Network Administration / Security

Graduate

Business administration science or engineering or equivalent

Proficient

1

Toronto, ON, Canada