Security Analyst protecting Benevity’s social-impact technology through alert investigations, vulnerability remediation, and AI risk analysis. Supporting engineering and fraud teams with security enablement.
Responsibilities
Triage, validate, and investigate security alerts across EDR, SIEM, IDS/IPS, CSPM, and MDR tooling
Maintain documentation and write incident response playbooks
Participate in an on-call rotation
Conduct threat intelligence research and contribute to post-incident reviews
Analyze SAST, SCA, and DAST findings and provide engineering teams with remediation context
Assist with threat modeling and architectural reviews
Use AI tools to accelerate triage and investigation while validating outputs and practicing safe data handling
Identify AI-specific product risks, including prompt injection, insecure tool use, and third-party model exposure
Track vulnerability remediation lifecycles and SLA compliance
Partner with engineering and fraud teams on investigations, security enablement content, and self-serve resources
Track and report security metrics, trends, and process developments
Requirements
3+ years of experience in security operations, information security, or a closely related technical role
Hands-on experience with EDR, SIEM, CSPM, WAF, cloud-native logging, and SAST or SCA
Solid working knowledge of networking, operating systems, and cloud fundamentals
Practical experience using AI tooling in a technical context
Scripting proficiency in Python, PowerShell, or Bash
Familiarity with MITRE ATT&CK and NIST CSF
Strong analytical and problem-solving skills
Clear, inclusive written and verbal communication skills
Curious, continuous-learning approach and collaborative desire to support teammates
Experience in SaaS, cloud-native, containerized, or API-driven environments, or relevant certifications such as Security+, CySA+, or GCIH
Benefits
Flexible hybrid approach to where employees work
No set requirement for in-office time
Growth opportunities
Caring co-workers
DEIB investment and employee resource groups
Equal opportunities and accessible hiring process
Accommodations throughout the hiring or assessment process
Develop governance frameworks and lead cybersecurity project planning. Collaborate with stakeholders to enhance security posture in a financial environment.
Join TTC as a Cybersecurity Risk Specialist! Conduct risk assessments, maintain risk registers, and support mitigation strategies for a major public transit system.
Lead network security analyst overseeing assessments, architecture, and risk mitigation for CBC/Radio - Canada’s public - service media infrastructure. Hybrid role advising technical and non - technical stakeholders.
Security Analyst protecting Benevity’s social - impact technology platform. Investigating alerts, managing vulnerabilities, and addressing application and AI - related security risks.
Information Security Analyst strengthening GRC, risk management, and cybersecurity controls for EllisDon’s construction services. Supporting audits, vendor compliance, security awareness, and control remediation.
Cyber Security Co - op analyzing threats, data, and intelligence for RBC, Canada’s largest bank. Supporting detection, threat hunting, reporting, and security knowledge management.
Own AI governance and security strategy at the Alberta Energy Regulator, defining decision rights and the AI Register. Partner with security and data governance teams to ensure safe, secure AI use across a multi - vendor estate.