Cyber Security Analyst - Incident Response
- Toronto, ON
- Hybrid
- Posted Oct 9, 2026
- 1 position
$80,000–$110,000 / year
Opens LinkedIn
- Employment type
- Full-time
- Experience level
- Senior · 5+ years
- Minimum education
- Bachelor’s degree
- Posting language
- English
- Working hours
- 40 hours per week
- Seniority
- Mid-Senior level
- Application method
- Direct apply is available
Featured jobs
Sponsored postings from employers hiring in this area.
Job summary
Lead incident response, investigate breaches, reduce their impact, and document lessons learned. Advise teams on security best practices, assess and mitigate risks across on-premise and cloud systems, maintain security controls, and support audits, compliance, and awareness training.
Job details
We are seeking a senior IT Security Analyst with strong experience in incident response for a permanent full time position. This is mainly remote with 1-2 days onsite per month. Key Responsibilities include: Carry out information technology security plans and policies Lead incident response, including steps to minimize the impact, identifying how a breach happened, the extent of the damage and lessons learned Guide and advise business units, technology solution delivery, other technology teams and partners on information technology security best practices. Identify and assess technology system security requirements at time of procurement, development and implementation of technology projects, identifying risks and implementing controls to mitigate operational risk at launch. Recommend, design, develop, test and implement information technology security platforms, tools and controls for on premise and cloud based solutions Lead and execute risk treatment remediation plans and tasks Maintain information technology security platforms, tools and controls Participate in information technology security control assessments and audits for on premise and cloud based solutions Participate in audits of partners, vendors, others in the supply chain and employees focused on determining it they are working within the framework of established policies Monitoring regulatory PCI, PIPEDA, internal policy and other compliance Support the information technology security awareness training program Develop and maintain incident response play books and standard operation procedures Technical: Experience with common information security tools and platforms. Experience with information security standards including NIST, CIS, OWASP and CSA. Experience with PCI, PIPEDA, CASL and PHIPA standards and regulations. Strong understanding of information security infrastructure and controls including: Iaas, PaaS, SaaS security controls and best practices SIEM EDR EPP XDR SWG CASB DLP Firewall WAF IDPS Microsegmentation VPN MFA AD, AAD, Windows Conditional Access Windows and Linux servers Networking protocols Virtual environments Education and Experience: Degree or diploma in Information Technology Security or Computer Science Minimum of 5 experience developing and implementing technology security standards, controls and best practices CISSP or CISM or similar designation is an asset CCSP or similar cloud security certification(s) is an asset Please apply today!
What you’ll do
Lead incident response, investigate breaches, reduce their impact, and document lessons learned. Advise teams on security best practices, assess and mitigate risks across on-premise and cloud systems, maintain security controls, and support audits, compliance, and awareness training.
Requirements
A degree or diploma in Information Technology Security or Computer Science is required, along with at least five years of experience developing and implementing technology security standards, controls, and best practices. Candidates should have experience with security tools and platforms, relevant standards and regulations, and infrastructure controls; CISSP, CISM, or cloud security certifications are assets.
Listed skills
- Control · Preferred
- Supply Chain · Preferred
- Technical · Preferred
- Conditional Access · Preferred
- System security · Preferred
- Teams · Preferred
- Compliance · Preferred
- Development · Preferred
- Windows · Preferred
- Time · Preferred
- Linux · Preferred
- Procurement · Preferred
Other relevant skills
Identified from the job description. Confirm important requirements above.
- Incident Response
- Information Security
- Security Risk Assessment
- Risk Remediation
- Security Controls
- Cloud Security
- SIEM
- EDR
- EPP
- XDR
- Firewalls
- Network Security
- Identity And Access Management
- Security Auditing
- Security Awareness Training
- Incident Response Playbooks
Job areas
- Technology
- Security & Safety
- Management & Leadership