Cyber Security Analyst II managing cybersecurity for complex telecommunications systems. Responsible for vulnerability assessment, system design, and collaboration with various technical teams.
Responsibilities
Review vulnerability assessment results and penetration test reports; assist in prioritizing findings based on risk.
Support the development, validation, and maintenance of deployment scripts used for applying patches, configuration updates, and mitigation steps.
Execute repeatable test procedures to confirm that mitigations, patches, and system changes are functioning as expected.
Participate in system architecture discussions by contributing security focused observations and implementation considerations.
Analyze system specifications to identify potential security gaps, misconfigurations, or integration issues.
Assist in defining system requirements, integration steps, and qualification tests with a focus on security.
Evaluate and integrate third party components (hardware, software, or cloud tools) under the guidance of senior engineers.
Follow secure configuration baselines and support the development of system hardening templates or guidelines.
Ensure system designs and configuration approaches adhere to recognized industry standards and frameworks, including secure by design principles and best practices for hardening and risk reduction.
Conduct system integration tasks and run functional and security related test cases.
Help create and update technical documents, deployment procedures, and operational playbooks.
Work with Engineering, Cybersecurity, and Operations teams to implement solutions, resolve issues, and respond to emerging vulnerabilities or incidents.
Assist in troubleshooting customer impacting problems by analyzing logs, configurations, and behavior across systems and networks.
Stay informed on new vulnerabilities, CVEs, patches, and vendor advisories to support proactive mitigation activities.
Requirements
Ability to understand and assess vulnerabilities, system risks, and remediation steps.
Experience working with Windows 10/11 and Windows Server 2016+ in an operational or engineering context.
Basic to intermediate experience with Active Directory concepts and management.
Experience writing or modifying automation scripts (PowerShell, Python, Bash) to support deployment or testing tasks.
Familiarity with containerization and virtualization platforms (Docker, Kubernetes, VMware, KVM).
Experience with database systems such as MySQL/MariaDB or PostgreSQL.
Hands on experience administering or supporting Linux systems (RHEL, Debian or equivalents).
Ability to configure and troubleshoot basic networking devices (switches, routers, firewalls).
Analyste en sécurité des produits chez Alithya, intégrant la sécurité de l’information aux projets technologiques. Évaluation des risques, recommandations et suivi des mesures de sécurité.
Intermediate SOC Analyst monitoring and responding to security incidents for Long View, a North American IT provider. Managing SIEM tools, cloud environments, escalations, and 24x7 operations.
Azure AD Security Analyst leading identity and access management for Intact, a Canadian insurer. Integrating Azure AD, supporting IAM architecture, automation, privileged access, and major incidents.
Analyste sécurité informatique chez Beneva, compagnie d’assurance et de services financiers. Intégration des contrôles IAM, analyse des exigences de sécurité et accompagnement des équipes applicatives.
Security Analyst leading Cyber Threat Exposure Management transformation for iA Financial Group, a Canadian insurance and wealth - management provider. Coordinating risk reduction, governance, and cross - functional CTEM initiatives.
Senior Security Risk Analyst at Twilio enhancing security risk management and collaborating with cross - functional teams. Focused on identifying and mitigating cyber risks effectively and ensuring compliance.