Security Analyst – GRC supporting clients on their security journey in a remote role at Kobalt.io. Collaborate with vCISOs and manage compliance programs for cybersecurity.
Responsibilities
Partner directly with clients to draft and implement policies and customized security roadmaps, set up and manage user security awareness training campaigns and manage recurring phishing simulations.
Manage small-scale security compliance programs, guiding clients from initial readiness through successful audit completion.
Lead and assist with regular client meetings to track progress, resolve blockers, and maintain project momentum.
Collaborate with vCISOs to design and execute Incident Response tabletop exercises, test the resilience of client IR plans, conduct various security assessments to identify gaps and mature client security postures.
Leverage GRC platforms to accelerate compliance and streamline security program management.
Act as a responsive subject matter expert across all communication channels, ensuring a "customer-first" resolution to security challenges.
Build automation tools to compress manual tasks.
Capture key performance metrics and contribute to the evolution of Kobalt’s service offerings through documentation and knowledge-base creation.
Requirements
3-5 years of experience in GRC, Internal Audit, Information Security, Technology Risk, or related fields.
Direct experience with governance frameworks (e.g., SOC 2, ISO 27001, HIPAA, etc.)
Strong understanding of cybersecurity domains, including Security Operations, Security Engineering, and Information Risk Management.
Customer-first focus, with the ability to support both internal teams and external client inquiries.
Excellent ability to communicate effectively, both verbally and in writing, with clients and internal audiences.
Can work independently and with teams to identify and resolve challenges and overcome roadblocks.
Ability to adapt security best practices to diverse client tech stacks.
Professional certification is desired but not required.
Intermediate scripting/coding skills for process automation.
A strong team player with the ability to provide on-the-job training and knowledge sharing to other team members.
Self-initiative with strong time management and the ability to perform in high-paced environments.
Solid sense of integrity and identification with the mission.
Understanding and basic level competence with AI systems such as Google Gemini, Google NotebookLM, Anthropic Claude, or OpenAI ChatGPT.
Benefits
Competitive salary
health benefits
RRSP matching
equity
Comprehensive health, dental, and vision insurance
Security Analyst at EXFO monitoring threats and responding to incidents for IT systems. Collaborating with IT teams to enhance cybersecurity measures with diverse client environments.
Provide IT support and security analysis for MaRS users. Diagnosing and resolving technical issues while ensuring secure access to IT services and applications.
SAP Security Analyst and Junior Security Analyst roles ensuring ERP system security for the Government of Alberta. Lead security controls, collaborate with teams and resolve access issues.
Join TD as an Information Security Analyst focusing on audit response and controls implementation. Contribute to enhancing compliance and security solutions in an agile environment.
IT Security Analyst monitoring Stantec’s systems for signs of intrusion and security incidents. Collaborating with IT Security team for compliance and remediation effort.
Security Analyst safeguarding networks and systems at PointClickCare using AI for enhanced security operations and incident response. Responsible for implementing security measures to protect data centers and cloud deployments.
6 - month contract, 3 days onsite in Scarborough. Focus on vulnerability management, incident response, and security gap analysis across Azure AD, O365, and on - prem.