Security Analyst – GRC supporting clients on their security journey in a remote role at Kobalt.io. Collaborate with vCISOs and manage compliance programs for cybersecurity.
Responsibilities
Partner directly with clients to draft and implement policies and customized security roadmaps, set up and manage user security awareness training campaigns and manage recurring phishing simulations.
Manage small-scale security compliance programs, guiding clients from initial readiness through successful audit completion.
Lead and assist with regular client meetings to track progress, resolve blockers, and maintain project momentum.
Collaborate with vCISOs to design and execute Incident Response tabletop exercises, test the resilience of client IR plans, conduct various security assessments to identify gaps and mature client security postures.
Leverage GRC platforms to accelerate compliance and streamline security program management.
Act as a responsive subject matter expert across all communication channels, ensuring a "customer-first" resolution to security challenges.
Build automation tools to compress manual tasks.
Capture key performance metrics and contribute to the evolution of Kobalt’s service offerings through documentation and knowledge-base creation.
Requirements
3-5 years of experience in GRC, Internal Audit, Information Security, Technology Risk, or related fields.
Direct experience with governance frameworks (e.g., SOC 2, ISO 27001, HIPAA, etc.)
Strong understanding of cybersecurity domains, including Security Operations, Security Engineering, and Information Risk Management.
Customer-first focus, with the ability to support both internal teams and external client inquiries.
Excellent ability to communicate effectively, both verbally and in writing, with clients and internal audiences.
Can work independently and with teams to identify and resolve challenges and overcome roadblocks.
Ability to adapt security best practices to diverse client tech stacks.
Professional certification is desired but not required.
Intermediate scripting/coding skills for process automation.
A strong team player with the ability to provide on-the-job training and knowledge sharing to other team members.
Self-initiative with strong time management and the ability to perform in high-paced environments.
Solid sense of integrity and identification with the mission.
Understanding and basic level competence with AI systems such as Google Gemini, Google NotebookLM, Anthropic Claude, or OpenAI ChatGPT.
Benefits
Competitive salary
health benefits
RRSP matching
equity
Comprehensive health, dental, and vision insurance
Security Analyst providing technical client support in Managed Security Services at CDW. Monitoring security alerts and incidents while fostering trust and loyalty with clients.
Temporary Security Specialist supporting Microsoft security assessment for public sector client. Hybrid role focusing on security posture improvement and implementation planning.
Junior Cybersecurity Analyst role in Toronto, working with senior leadership in a growing Cyber division. Requires understanding of cyber principles, diligent personality, and some complex environment experience.
Security Analyst improving cybersecurity at Aviso's IT and Cloud infrastructure. Responsible for identifying, mitigating, and resolving security threats while enhancing security posture.
Cybersecurity Analyst contract role in Scarborough, ON requiring 10+ years IT experience and 3+ years cybersecurity. Hybrid work with $68 - 85/hour pay for 6 months.
Safeguard Norfolk County’s technology infrastructure as a Junior or I.T. Security Analyst. Monitor threats and manage system updates ensuring secure operations.
Apprentice Epic Security Analyst role providing hands - on EHR support and maintenance. Collaborating with analysts and clinical teams to fulfill healthcare IT needs.
Cybersecurity Analyst 6 - month contract at a Top 5 Bank. Requires 8 years of SOC/cybersecurity experience and knowledge of computing/networking concepts.