Senior Security Specialist needed for hybrid contract in Toronto. Requires 8+ years IPC/OAGO audit experience and 5+ years TRA experience.
Responsibilities
The Senior Security Specialist will be responsible for conducting IPC and OAGO audits, performing Threat & Risk Assessments using NIST CSF, HTRA, and ISO 27001, and managing Information Security Governance including security policies, standards, and compliance. The role also involves working with PHIPA, SOC 2 Type II, and OAGO compliance frameworks, as well as risk management, risk registers, executive reporting, and stakeholder presentations.
Requirements
8+ years of hands-on experience with IPC and OAGO audits; 5+ years of experience in Threat & Risk Assessments (TRA) using NIST CSF, HTRA, and ISO 27001; strong experience in Information Security Governance; experience with PHIPA, SOC 2 Type II, and OAGO compliance frameworks; expertise in risk management, risk registers, executive reporting, and stakeholder presentations.
Threat Intelligence Analyst investigating telecom security threats and customer deployment data for Enea, a global telecom and cybersecurity software company. Supporting client security reviews and threat intelligence operations.
Information Security Analyst governing End - User Computing risks, controls, and remediation for TD, a major North American bank. Advising stakeholders and supporting governance reporting, audits, and regulatory requirements.
IT Security Analyst II coordinating cybersecurity monitoring, MSP oversight, audits, and incident follow - up. Supporting Veristat’s global life - sciences services and regulated technology environments.
Security Analyst protecting GitLab’s DevSecOps platform through vulnerability triage and CVE operations. Coordinating researchers, customers, and internal teams on secure software response.
SIEM/SOAR cybersecurity analyst monitoring threats, building alerts, and measuring controls. Supporting Wepoint’s digital transformation work for businesses and public sector organizations.
SIEM/SOAR information security analyst supporting Wepoint’s digital transformation services. Developing cybersecurity monitoring cases, alerts, dashboards, and security - control documentation.
Security Analyst II protecting Intact’s insurance operations through incident response and SIEM monitoring. Supporting security platforms, incident resolution, dashboards, and IT security initiatives.