Resume Score

Check how well your resume matches this job before you apply.

Sign in to check score

About the role

  • Systems and Security Technical Lead securing Citizen Lab’s sensitive research systems and infrastructure. Leading security operations, privileged-access audits, incident response, and IT security projects at University of Toronto.

Responsibilities

  • Work with Citizen Lab and University IT staff and resources to minimize risks involving information, data, servers and server-based applications
  • Provide technical leadership and supervision to assigned staff, including work assignment, coaching, performance management and staff development
  • Plan and provide systems security, confidentiality, privacy and risk management for systems administration, server/service design, implementation, operation and support
  • Develop, update, implement, promote and train the community on Citizen Lab’s Information Security and Risk Management Program
  • Ensure reliable access controls, service availability and activity/incident reporting
  • Apply and establish security standards and best practices for IT solutions, systems, servers and network services
  • Support threat detection, containment, eradication and forensic investigations of compromised or circumvented access controls
  • Conduct detective audits of systems administrators and privileged accounts across Citizen Lab systems and servers
  • Proactively monitor security threats and maintain secure, resilient computing environments
  • Act as project manager for IT projects involving information security or confidential and restricted information
  • Apply security standards and best practices for identity and access management, information disclosure, information integrity, business continuity and privacy protection
  • Review security-control performance and project effectiveness against Citizen Lab security goals
  • Initiate, specify and assess contracts for information-security hardware, software, support and services
  • Propose service improvements and participate in reviewing others’ proposals
  • Contribute technical expertise and teamwork to daily organizational developments and tactical and strategic planning

Requirements

  • University degree in a relevant field (e.g. Computer Science, Engineering), or equivalent combination of education and experience
  • Six (6) years working in an Information Technology environment, including at least two years working with Information Security as a significant focus of activity
  • Broad and in-depth knowledge of industry innovations and state-of-the-art computing and networking technology
  • IT Security certifications held or in progress is an asset
  • Knowledge of high-performance computing systems management and networking is highly desirable
  • Expert understanding of client and server application deployment and support
  • Strong understanding of client and server activity tracking, IT Architecture, IT Operations and security methodologies
  • Experience auditing systems for regulatory compliance
  • Experience drafting, interpreting, applying and adapting information security standards and guidelines
  • Experience assessing risk management and determining controls
  • Experience administering enterprise-level Linux-based server applications
  • Strong scripting skills, including Shell and interpreted languages
  • Experience with Bash, Python, Ansible and MDM
  • Experience with web application management, security and monitoring, e.g. WordPress
  • Experience managing cloud collaboration SaaS platforms, e.g. Google Workspace, secure messaging, encrypted storage and SaaS applications
  • Experience configuring PostgreSQL, MySQL and database-backed applications
  • Extensive experience using network and security analysis tools
  • Extensive experience with host- and network-based intrusion detection and prevention
  • Experience selecting, configuring and deploying misuse detection and prevention technologies, e.g. Anti-Spam, XDR/EDR and Anti-DDoS
  • Experience conducting penetration testing and vulnerability scanning with Metasploit and Nessus
  • Experience deploying, configuring and securing virtualized environments and services
  • Expert understanding of Linux operating systems at server and client level
  • Comprehensive knowledge of TCP/IP networking, client-server architecture and protocols
  • Strong understanding of network configuration, hardware, and next-generation firewall/IPS technologies including Cisco ASA, Juniper, Fortinet and Palo Alto
  • Expert understanding of LDAP, Kerberos, OAuth/OpenID and Shibboleth/SAML
  • Expert knowledge of VPNs
  • Expert knowledge of symmetric, asymmetric and post-quantum encryption technologies
  • Strong understanding of cryptographic certificates and certificate authorities
  • Excellent communication, instruction and presentation skills
  • Ability to explain complex technical concepts and policies to users and senior leadership
  • Ability to deliver security awareness and education content to faculty, staff and students
  • Ability to work under pressure, manage multiple deadlines and prioritize risks
  • Strong service orientation and risk-mitigation ability
  • Strong ability to assess risks and controls of computing systems and operations
  • Demonstrated knowledge of information technology, networks, databases and application development
  • Ability and willingness to lead and collaborate with team members and stakeholders
  • Demonstrated sound judgment, tact, diplomacy and confidentiality
  • Ability to learn new systems, technologies and project management methods and tools

Benefits

  • Diversity Survey is voluntary and confidential
  • Accessibility accommodations available throughout the application and hiring process
  • Grant-continuing appointment

Job type

Full Time

Experience level

Senior

Salary

CA$93,592 - CA$109,190 per year

Degree requirement

Bachelor's Degree

Tech skills

AnsibleCloudLinuxMySQLPostgresPythonTCP/IPWordPress

Location requirements

OnsiteTorontoCanada

Report this job

Found something wrong with the page? Please let us know by submitting a report below.