Chief Information Security Officer

H2B Montréal, Quebec Donna Cona Inc.

Posted 3 days ago

Job Viewed

Tap Again To Close

Job Description

Reference #: 7879
Location: Nunavut
Type: Sub-contract

Donna Cona Inc. is currently seeking a Chief Information Security Officer, for one of our key clients. The candidate will be a highly skilled and experienced Subject Matter Expert (SME) in Cybersecurity to lead the development of a comprehensive security program and operational plan. This critical role will support the protection of systems, data, and infrastructure by designing robust security frameworks, policies, and processes tailored to meet the unique needs of the client. The ideal candidate will bring extensive expertise in cybersecurity and IT governance, with a proven ability to deliver practical and scalable solutions. This role is instrumental in ensuring client systems and initiatives adhere to security best practices, safeguarding the integrity and confidentiality of client operations and services.

Key Duties and Responsibilities:

  • Program Development:
    • Design and establish a comprehensive cybersecurity program, including policies, standards, procedures, and guidelines;
    • Develop a governance framework to support compliance with relevant laws, regulations, and best practices; and
    • Conduct a detailed risk assessment to identify vulnerabilities and prioritize mitigation strategies.
  • Operational Planning:
    • Create an operational plan for implementing the security program, outlining timelines, resource requirements, and key milestones;
    • Define roles and responsibilities for cybersecurity within the organization, including staffing recommendations; and
    • Develop an incident response plan and disaster recovery protocols.
  • Participation in Projects:
    • Collaborate with project teams to ensure new solutions, systems, and technologies are designed and implemented in alignment with security best practices and standard;
    • Conduct security reviews and assessments during project lifecycles to identify and address risks; and
    • Provide expert recommendations to integrate security into the design, development, and deployment phases of initiatives.
  • Stakeholder Engagement:
    • Work with departments, agencies, and third-party stakeholders to align security initiatives with operational goals; and
    • Provide expert guidance to senior management and policymakers on emerging threats and strategic security priorities.
  • Training and Awareness:
    • Develop and implement a cybersecurity training and awareness program for employees at all levels; and
    • Promote a culture of security within the workforce.
  • Monitoring and Continuous Improvement:
    • Establish mechanisms for continuous monitoring and reporting on the security program's effectiveness; and
    • Stay abreast of new threats, vulnerabilities, and advancements in security technologies to ensure the program remains current and effective.
  • Technical Expertise:
    • Recommend and assist in deploying security tools and technologies, such as firewalls, intrusion detection systems, and encryption; and
    • Oversee the design of secure architecture for IT systems and infrastructure.
  • Compliance and Reporting:
    • Ensure compliance with applicable cybersecurity regulations, standards, and frameworks (e.g., ISO 27001, NIST, GDPR, or local regulations); and
    • Prepare detailed reports and presentations for executive leadership and external audits.

Donna Cona is committed to a diverse, equitable and inclusive workplace. We are an equal opportunity employer. We don't discriminate on the basis of gender, gender identity, sexual orientation, race, national origin, disability, age or any other protected status. We are committed to maintaining a barrier free recruitment process by providing equal employment opportunities through recruiting and retention of individuals.

  • To apply for this position please complete the form below.
  • Name First Last
    • Email
    • Daytime Phone
    • City
    • Province/State
    • Attach Cover Letter and Resume Max. file size: 20 MB. Please note that these must be in one document, and can be in .docx, .doc, .pdf or .rtf formats
This advertiser has chosen not to accept applicants from your region.

Security Analyst - VMaaS

Montréal, Quebec GoSecure

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Description

Job Description

GoSecure is recognized as a leader and innovator in cybersecurity solutions. The company is the first and only to integrate an Endpoint and Network threat detection platform, Managed Detection and Response services, and Cloud/SaaS delivery. Together, these capabilities provide the most effective response to the increased sophistication of continuously evolving malware and malicious insiders that target people, processes and systems. With focus on innovation quality, integrity, and respect, GoSecure has become the trusted provider of cybersecurity products and services to organizations of all sizes, across all industries globally. To learn more, please visit:


GoSecure offers a creative and challenging work environment, a competitive benefit package, and a great atmosphere to foster career growth. Come put your career on the leading-edge and bring your talents to a much sought-after high growth opportunity in technology- GoSecure!

GoSecure is an Equal Opportunity Employer committed to hiring a diverse work team (EEO/AA).

Summary

The VMaaS Analyst is responsible for supporting the delivery and operation of Vulnerability Management as a Service. This includes identifying, analyzing, prioritizing, and reporting vulnerabilities across client environments or internal systems. The analyst ensures timely remediation and maintains compliance with relevant security frameworks. This role is critical in reducing risk exposure and enhancing the organization’s overall security posture.

Duties and responsibilities

  • Operate and maintain vulnerability scanning tools (e.g., Tenable, Qualys, Rapid7, etc.)
  • Perform regular vulnerability assessments across on-premise and cloud environments.
  • Analyze scan results to identify false positives and prioritize true findings based on risk.
  • Develop and deliver vulnerability reports and dashboards tailored to technical and non-technical audiences.
  • Collaborate with system owners, IT teams, and application developers to track remediation efforts and provide guidance on fixes.
  • Monitor threat intelligence and CVE feeds to stay current on emerging vulnerabilities.
  • Support the tuning of scanning tools to improve detection accuracy and performance.
  • Ensure service-level agreements (SLAs) for vulnerability management are met.
  • Maintain documentation for processes, playbooks, and customer engagement models.
  • Assist in audits and compliance efforts (e.g., PCI-DSS, ISO 27001, NIST CSF).
  • Participate in incident response efforts related to newly disclosed or exploited vulnerabilities.
  • Contribute to continuous improvement of the VMaaS offering.

Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or related field; or equivalent work experience.
  • 2+ years of experience in vulnerability management or cybersecurity operations.
  • Hands-on experience with one or more vulnerability management tools (e.g., Tenable.io, Qualys, Rapid7 InsightVM).
  • Solid understanding of network protocols, operating systems, and web applications.
  • Familiarity with CVSS, NIST NVD, MITRE ATT&CK, and vulnerability scoring.
  • Strong analytical, organizational, and problem-solving skills.
  • Ability to interpret technical findings and communicate risks effectively.
  • Bilingual: English and French in order to respond effectively to our customers and colleagues outside of QC.

Preferred:

  • Experience with cloud platforms (AWS, Azure, GCP) and their security services.
  • Knowledge of patch management and secure configuration practices.
  • Certifications such as CompTIA Security+, CEH, OSCP, or GIAC GSEC/GCIH.
  • Familiarity with ticketing systems (e.g., ServiceNow, Jira) and SIEM tools (e.g., Splunk).

Why come to GoSecure?

3 weeks vacation, 5 personal days

14 paid statutory Holidays

Collective insurance: health, vision, dental, disability, life, travel

Employee Assistance Program (Dialogue)

RSP and employer matching contribution

Peers recognition program and other bonuses given along the year

Company stock options

GoSecurian perks

Young and dynamic team always looking to be better

and much more!


This advertiser has chosen not to accept applicants from your region.

Security Analyst - Pentest

Montréal, Quebec GoSecure

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Description

Job Description


Summary

An intrusion tester is part of the security testing team and performs various types of security tests for clients. Tests may include wireless assessment, web application test, internal network assessment, external network assessment, phishing exercises, red team assessment, physical security assessment, code review, mobile application assessment, embedded device assessment and other types of security tests.

Duties and responsibilities

  • Perform security test, in accordance to our methodology
  • Report the technical findings in a report. Tester may have to present the report to clients with varying level of technical knowledge. A good capacity to explain business impact as well as technical issues is a plus.
  • Act as an advisor to the client
  • Answers clients’ inquiries via phone or email in a professional and timely manner;
  • Stay up-to-date on information technology trends, security standards and IT security news.
  • Other duties as required.

Qualifications

  • 3 years of relevant experience.
  • Bachelor’s degree in related field and/or equivalent education/experience.
  • Knowledge of common pentesting methodologies (PTES, OSTMM), vulnerability scoring framework (CVSS, DREAD) and OWASP Top 10
  • OSCP is considered an asset
  • Should be eligible for Secret Clearance and not have any criminal records.
  • Excellent written and verbal communication skills
  • Energetic and positive attitude
  • Exceptional ability to multitask and meet deadline
  • Bilingual (English/French) is a big plus



This advertiser has chosen not to accept applicants from your region.

Security Analyst - VMaaS

Montréal, Quebec GoSecure

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Description

Job Description


Summary

The VMaaS Analyst is responsible for supporting the delivery and operation of Vulnerability Management as a Service. This includes identifying, analyzing, prioritizing, and reporting vulnerabilities across client environments or internal systems. The analyst ensures timely remediation and maintains compliance with relevant security frameworks. This role is critical in reducing risk exposure and enhancing the organization’s overall security posture.

Duties and responsibilities

  • Operate and maintain vulnerability scanning tools (e.g., Tenable, Qualys, Rapid7, etc.)
  • Perform regular vulnerability assessments across on-premise and cloud environments.
  • Analyze scan results to identify false positives and prioritize true findings based on risk.
  • Develop and deliver vulnerability reports and dashboards tailored to technical and non-technical audiences.
  • Collaborate with system owners, IT teams, and application developers to track remediation efforts and provide guidance on fixes.
  • Monitor threat intelligence and CVE feeds to stay current on emerging vulnerabilities.
  • Support the tuning of scanning tools to improve detection accuracy and performance.
  • Ensure service-level agreements (SLAs) for vulnerability management are met.
  • Maintain documentation for processes, playbooks, and customer engagement models.
  • Assist in audits and compliance efforts (e.g., PCI-DSS, ISO 27001, NIST CSF).
  • Participate in incident response efforts related to newly disclosed or exploited vulnerabilities.
  • Contribute to continuous improvement of the VMaaS offering.

Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or related field; or equivalent work experience.
  • 2+ years of experience in vulnerability management or cybersecurity operations.
  • Hands-on experience with one or more vulnerability management tools (e.g., Tenable.io, Qualys, Rapid7 InsightVM).
  • Solid understanding of network protocols, operating systems, and web applications.
  • Familiarity with CVSS, NIST NVD, MITRE ATT&CK, and vulnerability scoring.
  • Strong analytical, organizational, and problem-solving skills.
  • Ability to interpret technical findings and communicate risks effectively.
  • Bilingual: English and French in order to respond effectively to our customers and colleagues outside of QC.

Preferred:

  • Experience with cloud platforms (AWS, Azure, GCP) and their security services.
  • Knowledge of patch management and secure configuration practices.
  • Certifications such as CompTIA Security+, CEH, OSCP, or GIAC GSEC/GCIH.
  • Familiarity with ticketing systems (e.g., ServiceNow, Jira) and SIEM tools (e.g., Splunk).

Why come to GoSecure?

3 weeks vacation, 5 personal days

14 paid statutory Holidays

Collective insurance: health, vision, dental, disability, life, travel

Employee Assistance Program (Dialogue)

RSP and employer matching contribution

Peers recognition program and other bonuses given along the year

Company stock options

GoSecurian perks

Young and dynamic team always looking to be better

and much more!


This advertiser has chosen not to accept applicants from your region.

Senior Security Analyst

Montréal, Quebec Coveo

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Description

Job Description

Shape the future of GRC engineering at Coveo

As a Senior Security Analyst on our GRC team, you'll play a pivotal role in reducing risk across the company, with a strong focus on the Coveo Platform, our AI-powered B2B solution. This is your opportunity to transform how security, risk, and compliance are embedded into our cloud-based infrastructure.

Your mission? Bridge the gap between governance and engineering with practical, impactful insights and solutions.

Here's what makes this opportunity exciting:

The Coveo Platform is trusted by global enterprises to deliver personalized search and AI powered recommendations at scale. As part of the Security team, you'll play a key role in safeguarding this powerful platform by designing innovative ways to automate compliance and integrate security best practices into our engineering processes.

If you're passionate about transforming GRC processes into streamlined, developer-friendly solutions, this is your chance to make a real impact!

Here's what you'll be responsible for:
  • Automating compliance workflows to streamline GRC operations.
  • Enhancing reporting and data visualization to provide stakeholders with clear, actionable insights.
  • Expanding our GRC platform to integrate data from our security tools.
  • Advocating for security best practices and demonstrating how GRC efforts drive business value.
  • Collaborating with engineering teams to interpret security requirements and embed them into systems or products.
  • Developing tools that seamlessly integrate GRC controls into engineering workflows.
Here's what will qualify you for the role:
  • 5 years + of relevant security experience with 1-2 years of specific GRC experience in a SaaS technology company .
  • Experience with cloud infrastructure (AWS preferred) and governance frameworks (SOC2, HIPAA, ISO27001), with the ability to create clear, data-driven insights using visualization tools like PowerBI or Sigma.
  • Strong problem-solving and communication skills, with the ability to work in ambiguity, drive solutions, and explain complex security concepts clearly to both technical and non-technical audiences.
Here's what will make you stand out from the crowd:
  • You believe in the importance of in-person interactions and are excited to work in a flexible hybrid work environment, 2 days a week, in our Montreal or Quebec City offices.
  • You are bilingual (English/French) and can support stakeholders across the organization's international offices.
  • You have experience with Terraform, Kubernetes, or other infrastructure-as-code tools.

Do you think you can bring this role to life?
You don't need to check every single box; passion goes a long way and we appreciate that skillsets are transferable.

Send us your application, we want to get to know you! Join the Coveolife !

We encourage all qualified candidates to apply regardless of, for example, age, gender, disability, gaps in CV, national or ethnic background. We know that applying for a new role is a lot of work and we really appreciate your time.

#li-hybrid

This advertiser has chosen not to accept applicants from your region.

Network Security Analyst - Palo Alto, MS AVS Cloud Migration

Montreal Montréal, Quebec Astra North Infoteck Inc.

Posted 17 days ago

Job Viewed

Tap Again To Close

Job Description

Network Security Analyst - Palo Alto, MS AVS Cloud Migration

Competencies: Digital : Network Security Palo Alto, CNS_Network Security_Cisco Experience (Years): 6-8

Keywords: Palo Alto, Vmware

Role Description: Migration of On-Prem datacenter to Microsoft AVS Cloud. Coordination with clients Technical team Essential Skills:

1) skill and experience of migration of Palo Alto physical firewall configuration, routing configuration and other policy to virtual palo Alto firewall.

2) experience of migration of site to site VPN links from one dc to AVS cloud.

3) NSX T configuration skills including bgp routing in Azure.

4) overall VMware and Azure AVS migration skill is a plus.

5) IP design planning and deployment is a must skills.

6) IP whitelist, redesign of public IP, load balancer experience, SsL certificate migration are must Experience of Azure AVS technology.

Desirable Skills: Experience of Azure AVS technology.

This advertiser has chosen not to accept applicants from your region.

Security Business Analyst (IT) - Remote Contract

Montréal, Quebec Targeted Talent

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Description

Job Description

Security Business Analyst - Remote Contract

The Security Business Analyst is responsible for gathering, analyzing, and documenting business requirements for cyber security solutions. The ideal candidate will have a strong understanding of security concepts and technologies, as well as the ability to work effectively with both technical and business stakeholders.

Responsibilities:

  • Gather and analyze business requirements for cyber security solutions
  • Develop and maintain security requirements specifications
  • Work with technical stakeholders to design and implement security solutions
  • Test and validate security solutions
  • Provide training and support to users on security solutions
  • Facilitate workshops and presentations to clients and stakeholders
  • Identify and evaluate critical success parameters, factors, and performance measurements

Qualifications:

  • Bachelor's degree in computer science, information technology, or a related field
  • 5+ years of experience in security engineering or a related field
  • Strong understanding of security concepts and technologies
  • Excellent communication and interpersonal skills
  • Ability to work independently and as part of a team
  • Experience in Cyber technology end-to-end implementation projects
  • Extensive experience with and knowledge of Identity Governance and Administration (IGA) and Privileged Account Management (PAM)
  • Familiarity with cloud based IAM solutions such as Azure Ad, AWS IAM, or GCP IAM is an asset
  • International Institute of Business Analysis (IIBA), Certified Business Analysis Professional (CBAP) designation or PMI-BA is an asset
  • Knowledge of Federal and Provincial government and healthcare environments is an asset
  • Strong understanding of FIPPA, HIPPA etc

This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Cybersecurity analysts Jobs in Montréal !

 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Cybersecurity Analysts Jobs View All Jobs in Montréal