Information Security Engineer leading security practices across global enterprise. Collaborating with teams to integrate security into software development lifecycle in a hybrid setting.
Responsibilities
Lead and support information security projects including planning, execution, documentation, and reporting
Collaborate with development teams to embed security into the software development lifecycle, including secure coding practices and code reviews
Provide oversight and strategic guidance in the design, implementation, and continuous improvement of DevSecOps tooling and secure development pipelines
Conduct risk assessments, develop mitigation strategies, and track remediation efforts
Ensure compliance with security frameworks and regulations such as NIST, ISO 27001, SOX, and PCI DSS
Design and implement security controls for cloud platforms including AWS and Azure
Perform threat modeling and vulnerability assessments to identify and mitigate risks
Communicate security risks and recommendations effectively to both technical and non-technical stakeholders
Requirements
Bachelor's degree in Computer Science, Information Systems, or Information Security
Minimum 5 years in Information Security Architecture, Engineering, or Auditing
Strong understanding of security countermeasures for web applications, networks, databases, IT systems, and cloud environments
Hands-on experience with cloud security architecture and controls in AWS and Azure
Proficiency in managing and tuning DevSecOps tools and CI/CD security integrations
Knowledge of security frameworks such as NIST 800-53, ISO 27001, and CIS Controls
Ability to conduct secure code reviews and provide actionable feedback to developers
Excellent communication, collaboration, and project management skills
Benefits
Wellness and mental health initiatives
Support volunteerism and environmental efforts
Employee education through leadership training and skill-building
Senior Cyber Security Analyst protecting customers from cyber threats while enhancing cyber security services at technology firm. Focused on both security operations and technical delivery.
Cybersecurity Analyst assisting in the review and implementation of cybersecurity initiatives across a large environment at Kemper. Responding to cyber threats and improving processes and technologies.
Senior Information Security Analyst managing Information Security Management System at BMLL Technology. Supporting compliance with ISO 27001 and enhancing security measures.
Graduate Cyber Security Analyst at McKesson participating in a 24 - month Cyber Academy program. Monitor security alerts and contribute to incident response efforts while gaining mentorship.
Threat Intelligence Analyst role analyzing cyber threats and providing strategic recommendations. Working with cybersecurity teams at PwC Canada to safeguard client data and systems.
Contract Security Analyst specializing in security operations and incident response for cloud security at Embark. Focus on alert handling, detection engineering, and data loss prevention.
Cyber Security Analyst providing security operations support for USAF Cloud One project. Engaging in incident response and cybersecurity compliance activities within a hybrid environment.
Cybersecurity Analyst responsible for monitoring, analyzing, and responding to security incidents in SOC. Developing detection rules and conducting threat - hunting campaigns within a hybrid work setup.
Information Security Analyst working with Optasia to enforce security controls and protect data. Collaborating on technical projects and auditing systems in a hybrid work environment.
Cyber Security Analyst investigating and responding to security events at A+E Global Media. Collaborating cross - functionally to improve detection and response processes.