
Senior IT Security Analyst
Posted Aug 27

Posted Aug 27
This is a fully remote position, open to applicants in United States.
• Oversee and enhance UBC’s Cybersecurity program across Azure Cloud and on-premises settings.
• Conduct threat intelligence analysis.
• Support the incident response team during investigations.
• Ensure the security and compliance of information system assets.
• Educate employees on security procedures and ensure adherence.
• Balance business requirements with security considerations and clearly communicate issues and options to management.
• Carry out risk assessments for sensitive internal and external systems and engage in threat modeling.
• Confirm that security controls are effectively deployed and aligned with organizational policies and standards.
• Monitor, review, analyze, and respond to security alerts.
• Adjust and optimize security alerts to minimize false positives and enhance detection capabilities.
• Ensure assets are integrated and reporting into security monitoring and vulnerability management tools.
• Lead and facilitate the vulnerability management lifecycle, which includes scanning, prioritization, remediation coordination, and validation of fixes.
• Manage and conduct web application security scans while providing guidance for remediation.
• Track threat intelligence feeds and external advisories for emerging threats and vulnerabilities.
• Engage in incident response activities, including identification, containment, eradication, and recovery.
• Develop and implement enhanced security measures to address evolving threats, regulatory demands, and business requirements.
• Collaborate with IT, engineering, and business teams to enforce secure configurations, standards, and policies.
• Assist project teams in applying measures that comply with UBC cybersecurity policies and external governance mandates.
• Maintain precise security documentation for systems, applications, and processes.
• Work alongside security team members on initiatives and share best practices.
• Contribute to annual security initiatives and deliverables in line with the security roadmap.
• Engage in special projects and take on additional responsibilities as assigned.
• Bachelor’s degree in a computer-related field or 4–6 years of equivalent experience.
• 3–5 years of relevant work experience, preferably in IT Security within Azure cloud environments.
• Certification in Information Security (GIAC - GSEC, Security+, CISSP, CompTIA CySA+ or equivalent) is preferred.
• Knowledge of external regulations, such as GDPR, 21CFR part 11, HIPAA, and Sarbanes-Oxley.
• Strong grasp of information security principles and frameworks.
• Solid experience in vulnerability management, including scanning, remediation coordination, and verification.
• Practical experience with automated vulnerability scanning tools, including web application scanning solutions.
• Understanding of web application security concepts (i.e., OWASP Top 10) and common attack methodologies.
• Familiarity with domain structures, user authentication, and digital signatures.
• Experience with on-premises and cloud security controls and systems, including MS Intune, MS ATP, MS Purview, Active Directory, and IAM.
• Excellent documentation and communication skills.
• Experience in research and analysis of findings.
• Previous involvement in an incident response team.
• Digital Forensics experience is a plus.
• Programming and scripting experience is a plus.
• Knowledge of cloud architecture is a plus.
• Familiarity with AI tools and their various applications is a plus.
• Proven ability to coordinate with multiple teams for project completion and work effectively in a team environment.
• Capability to adapt in a dynamic environment where requirements and procedures are constantly changing.
• Ability to multitask and manage time efficiently.
• Flexible working hours, with availability for after-hours support as necessary.
• Participate in an on-call rotation to address security alerts when required.
• Competitive salaries.
• Opportunities for career advancement.
• 401K plan with company match.
• Tuition reimbursement program.
• Flexible work environment.
• Discretionary Paid Time Off (PTO).
• Paid Holidays.
• Employee assistance programs.
• Medical, Dental, and Vision coverage.
• Health Savings Account (HSA) and Flexible Spending Account (FSA).
• Telemedicine services (virtual doctor appointments).
• Wellness programs.
• Adoption assistance.
• Short-term disability coverage.
• Long-term disability coverage.
• Life insurance.
• Employee discount programs.
Veracity Insurance Solutions, LLC
Positivo S+
ShorePoint Inc
General Dynamics Information Technology
Get handpicked remote jobs straight to your inbox weekly.