Analyst, IT Security Vulnerability
Job Summary
Application Deadline:
Address:
250 Yonge StreetJob Family Group:
BMO BLUE REWARDS is seeking an experienced IT Vulnerability Security Analyst to join our Security Operations team. This role operates in a fastpaced environment where responsibilities such as vulnerability management SIEM monitoring incident response security awareness activities and metrics reporting may occur simultaneouslyoften alongside troubleshooting and internal consulting.
In addition to detecting and responding to security threats across the organizations digital infrastructure the Security Analyst will be expected to demonstrate strong expertise in vulnerability management system hardening endpoint security and cybersecurity incident response. The ideal candidate will bring a proven track record in these areas supported by relevant industry-recognized certifications.
Join a team where you can make a measurable security impact continuously grow your expertise and advance your career while helping protect the business. This role offers the opportunity to protect the organisation from cyber threats while developing highly valuable cybersecurity skills and experience.
This role follows a hybrid work model with employees expected to work from the office three days per week. The successful candidate will be based at Blue Rewards (BR) part of the Bank of Montreal family of companies at its downtown Toronto office located at 250 Yonge Street Toronto Ontario.
This position follows a standard Monday to Friday schedule from 9:00 a.m. to 5:00 p.m. with no shift work required.
As part of the role the successful candidate will participate in a 24/7 pager-based on-call rotation typically one week per month (Tuesday to Tuesday) including coverage during statutory holidays when scheduled.
Additional compensation is provided for participation in the on-call rotation.
CORE/KEY SKILLS and experience :
3-4 years of expertise with enterprise vulnerability management tools (Tenable Qualys Rapid7 etc.).
3-4 years of demonstrated success in understanding of vulnerabilities CVEs CVSS and risk prioritization specially nowadays with AI-enabled threats.
Strogn experience with analyzing scan results and validating remediation actions (including suggestion of security controls to be implemented to reduce the exploitability of the vulnerability).Ability to collaborate with technical teams to drive timely vulnerability remediation efforts.
Strong analytical and communication skills with experience reporting on security risk and remediation metrics.
Proficiency with cloud-based vulnerability scan tools SIEM(s) endpoint protection platforms email security solutions and incident response frameworks.
Experience monitoring analysing and responding to cybersecurity threats and security alerts.
Strong understanding of cybersecurity principles technologies and security controls.
Experience with security tools such as SIEM EDR email security and mainly on vulnerability management platforms.
Ability to investigate security incidents and perform root cause analysis.
Strong analytical and problem-solving skills with attention to detail.
Ability to communicate security risks findings and recommendations clearly to stakeholders (sometimes non-technical)
Knowledge of common cyber threats attack techniques and mitigation strategies.
Ability to deal with many initiatives/work at the same time
Bachelors degree in Computer Science Information Technology Cybersecurity or a related field.
Proven experience in security operations vulnerability management endpoint security and incident response.
Analytical and Communication Skills: Strong analytical abilities attention to detail prioritization skills and excellent written and verbal communication skills.
Teamwork: Ability to work collaboratively in a fast-paced environment and communicate effectively with technical and non-technical stakeholders.
Recognized professional certifications such as GIAC Incident Handler (GCIH) Certified Ethical Hacker (CEH or CEH-Practical). Vendor-based and relevant cloud certifications from major public cloud providers (e.g. AWS GCP Azure) are highly desirable.
KEY Responsibilities:
Vulnerability and Configuration Management: ongoing operations to conduct regular vulnerability scans assess risks and advise on remediation efforts to minimize exposure to cyber threats and adherence to remediation timelines.
Monitor Detect and Respond to Security Threats: Utilize Security Information and Event Management (SIEM) tools to identify correlate and escalate potential security incidents.
Endpoint and Email Security: Manage and enhance endpoint protection solutions and email security protocols to safeguard against malware phishing and other cyberattacks.
Incident Response: Act as a key member of the incident response team coordinating with IT and business stakeholders to investigate contain and remediate security incidents. This may involve on-call 24/7 pager rotation with other team members.
Security Documentation and Metrics Reporting: Maintain detailed playbooks incident reports and security documentation. Collect data and generate regular reports on security metrics and threat trends for senior management.
Collaboration and Training: Work closely with IT infrastructure and compliance teams to enforce security policies and support user awareness training initiative.
Continuous Improvement: Recommend and implement improvements to security processes tools and procedures based on emerging threats and best practices.
Compliance and Audits: Assist with compliance audits risk assessments and ensure adherence to internal policies and external regulations
Additional Information:
Monitors restores service changes supports and handles day-to-day activities 7/24/365 required to run the mission critical Information Security systems for BMO. Provides responsive customer service in support of cyber security.
- Builds effective relationships with internal/external stakeholders.
- Anticipates and reduces complexity for others.
- Provides input into the planning and implementation of operational programs.
- Develops and documents procedures and processes conforming to the industry best practices and Banks security regulations policies and standards.
- Assists in the preparation of end user materials.
- Gathers and documents requirements for use in various audits reports & projects.
- Monitors & maintains security tools and applications.
- Creates activity reports for security tools and applications.
- Collaborates with internal and external stakeholders in order to deliver on business objectives and to support operational activities for Information Security.
- Develops an understanding of organizational interactions and complexity to engage with the appropriate matrix areas.
- Actions service requests transactions queries etc. within relevant service level agreements.
- Coordinates and facilitates incident management activities. Includes deploying changes to the production environment and engaging 2rd party providers contracted to the Bank during an incident.
- Recommends approaches or changes to streamline and integrates security processes and systems in the organization while considering Information Security methodology to improve overall efficiency.
- Provides technical Information Security subject matter expertise.
- Identifies opportunities to strengthen the capability of the Information Security organization at BMO such as: sharing expertise to promote technical development and mentoring employees.
- Stays abreast of industry technical and business trends through participation in professional associations practice communities and individual learning.
- Ensures consistent high quality practices/work and the achievement of business results in alignment with business/group strategies and with productivity goals.
- Focus is primarily on business/group within BMO; may have broader enterprise-wide focus.
- Exercises judgment to identify diagnose and solve problems within given rules.
- Works independently on a range of complex tasks which may include unique situations.
- Broader work or accountabilities may be assigned as needed.
- Take measured risks while protecting the bank by applying our Risk Management Framework in the execution of your role in line with our Risk Culture and within our approved Risk Appetite making sound and risk informed decisions that align to business strategy protect assets and adhere to applicable policy documents (Frameworks Policies Standards Procedures and Supporting documents) laws and regulations.
Qualifications:
- Typically between 2 - 4 years of relevant experience and post-secondary degree in Business or Computer Science or a related field of study or an equivalent combination of formal training or industry / technical certifications or work experience.
- Preference for candidates who have or are pursuing at least one certification in a related field with strong preference for Information Security certifications from a well-recognized institution (e.g. (ISC)2 ISACA SANS).
- Experience in Information Security or with multiple areas of systems and computer operations (e.g. Identity & Access Management IT operations Certification & Key Management Security Platform Administration Security Incident Response).
- Understanding and problem solving ability of information security issues within their business group - In-depth.
- Partnering communication and negotiation skills to communicate effectively within the team and with technology and business partners - Working.
- Understands the scope of complexity that exists in the operating environment and the ways which security platforms impact that environment.
- Knowledge of Information Security support and operations concepts practices concepts and technology obtained through formal training and work experience.
- Knowledge of Information Security processes procedures and controls - In-depth.
- Knowledge of the technical and business environment and the corporate processes and procedures - In-depth.
- Technical proficiency gained through education and/or business experience.
- Verbal & written communication skills - In-depth.
- Collaboration & team skills - In-depth.
- Analytical and problem solving skills - In-depth.
- Influence skills - In-depth.
- Data driven decision making - In-depth.
Salary:
Pay Type:
SalariedThe above represents AIR MILES pay range and type.
Salaries will vary based on factors such as location skills experience education and qualifications for the role and may include a commission structure. Salaries for part-time roles will be pro-rated based on number of hours regularly worked. For commission roles the salary listed above represents AIR MILES expected target for the first year in this position.
AIR MILES total compensation package will vary based on the pay type of the position and may include performance-based incentives discretionary bonuses as well as other perks and rewards. AIR MILES also offers health insurance tuition reimbursement accident and life insurance and retirement savings plans. To view more details of our benefits please visit: Us
The AIR MILES Reward Program is one of Canadas most recognized loyalty programs with over 10 million active collector accounts representing more than half of all Canadian households. AIR MILES collectors earn Reward Miles at more than 300 leading Canadian global and online brands and at thousands of retail and service locations across the country. AIR MILES is a wholly-owned subsidiary of the Bank of Montreal (BMO). BMO is Canadas oldest bank and the 8th largest in North America with more than 12 million customers globally.
As a member of the AIR MILES team you are valued respected and heard and you have more ways to grow and make an impact. We strive to help you make an impact from day one for yourself and our customers. Well support you with the tools and resources you need to reach new milestones as you help our customers reach theirs. From in-depth training and coaching to manager support and network-building opportunities well help you gain valuable experience and broaden your skillset.
AIR MILES is committed to an inclusive equitable and accessible workplace. By learning from each others differences we gain strength through our people and our perspectives. Accommodations are available on request for candidates taking part in all aspects of the selection process. To request accommodation please contact your recruiter.
Note to Recruiters: AIR MILES does not accept unsolicited resumes from any source other than directly from a candidate. Any unsolicited resumes sent to AIR MILES directly or indirectly will be considered AIR MILES property. AIR MILES will not pay a fee for any placement resulting from the receipt of an unsolicited resume. A recruiting agency must first have a valid written and fully executed agency agreement contract for service to submit resumes.
Required Experience:
IC
About Company
We cover the whole balance sheet, from foreign exchange, trade finance and treasury management to corporate lending, securitization, public and private debt and equity underwriting. Our team of experts can also provide a full range of advisory services, along with industry-leading res ... View more