- Company Name
- Canadian Cancer Society
- Job Title
- Cybersecurity Analyst
- Job Description
-
**Job title:** Cybersecurity Analyst
**Role Summary:**
The Cybersecurity Analyst is responsible for maintaining, testing, and monitoring the Canadian Cancer Society’s cybersecurity posture. Working under the Sr. Manager, Enterprise Infrastructure, Cloud and Security, the analyst configures, implements, and manages a broad suite of security solutions across a geographically distributed environment, ensuring compliance with best practices, incident response, and continuous improvement.
**Expectations:**
- Maintain and enhance a comprehensive security solution portfolio, including firewalls, VPN, MFA, endpoint protection, SIEM, and cloud security.
- Actively monitor and respond to threats, incidents, and vulnerabilities, ensuring rapid remediation and adherence to security policies.
- Deliver measurable KPI‑driven awareness programs and regular security reporting.
- Provide tier‑2/3 technical escalation support, evaluate new security technologies, and drive continuous improvement initiatives.
- Communicate evolving threat landscapes and security recommendations to stakeholders.
**Key Responsibilities:**
- Configure, update, test, and monitor security solutions (Cisco, Microsoft, Fortinet, Meraki, etc.).
- Conduct daily security checks, triage alerts, and manage incident tickets.
- Review security incidents, trends, and vulnerabilities.
- Participate in vulnerability management and pen‑testing processes.
- Maintain IT security policies, documentation, and best‑practice guidelines.
- Run organization‑wide cybersecurity awareness programs, track KPIs, and produce threat assessments.
- Advise on new security technologies, ensuring compliance with guidelines.
- Support end‑user security requests and evaluate new applications.
- Foster a diverse, inclusive, and equitable security culture.
**Required Skills:**
- Proficient in securing networks, endpoints, cloud services, and email systems.
- Strong knowledge of firewalls, IDS/IPS, VPN, MFA, SSO, DMZ, EDR/XDR, SIEM, and SOC operations.
- Experience with Cisco, Microsoft, Fortinet, Meraki, Office 365 security controls.
- Ability to assess and mitigate IPS/IDS, NAC, CASB, mobile device security, and encryption solutions.
- Incident response planning, investigation, and resolution skills.
- Excellent communication and documentation skills; KPI tracking.
- Familiarity with vulnerability assessment, ethical hacking, and penetration testing.
**Required Education & Certifications:**
- Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or equivalent experience.
- Minimum 3 years of experience in managing IT security solutions in a distributed environment.
- Valid professional certifications (e.g., Cisco CCNA/CCNP Security, Microsoft MCSE Security, Fortinet NSE 4/5, CompTIA Security+, CEH) preferred but not mandatory.