Conduct Threat Risk Assessments (TRA) for software, systems, and solutions. Assess threats and vulnerabilities, applying RCMP HTRA methodology.
Responsibilities
Conducts Threat Risk Assessments (TRA) and other relevant assessments for software, systems and solutions. Assesses internal and external threats and vulnerabilities of information systems and resources and the likelihood of these threats and resulting impacts. Where possible, reduce risks through system or organizational design. Ensures the incorporation of IT security and contingency measures in the development of systems. Applies the RCMP Harmonized Threat Risk Assessment (HTRA) or equivalent risk assessment methodology. Advises on the identification, analysis, and resolution of specific security factors, risks, vulnerabilities; protection of personal privacy issues; and appropriate industry and international security standards.
Requirements
5+ years experience conducting Threat Risk Assessments (TRA) and assessing internal and external threats and vulnerabilities. Experience applying the RCMP Harmonized Threat Risk Assessment (HTRA) or equivalent methodology.
Threat Intelligence Analyst investigating telecom security threats and customer deployment data for Enea, a global telecom and cybersecurity software company. Supporting client security reviews and threat intelligence operations.
Information Security Analyst governing End - User Computing risks, controls, and remediation for TD, a major North American bank. Advising stakeholders and supporting governance reporting, audits, and regulatory requirements.
IT Security Analyst II coordinating cybersecurity monitoring, MSP oversight, audits, and incident follow - up. Supporting Veristat’s global life - sciences services and regulated technology environments.
Security Analyst protecting GitLab’s DevSecOps platform through vulnerability triage and CVE operations. Coordinating researchers, customers, and internal teams on secure software response.
SIEM/SOAR cybersecurity analyst monitoring threats, building alerts, and measuring controls. Supporting Wepoint’s digital transformation work for businesses and public sector organizations.
SIEM/SOAR information security analyst supporting Wepoint’s digital transformation services. Developing cybersecurity monitoring cases, alerts, dashboards, and security - control documentation.
Security Analyst II protecting Intact’s insurance operations through incident response and SIEM monitoring. Supporting security platforms, incident resolution, dashboards, and IT security initiatives.