
Senior IT Security Analyst
Posted Aug 27

Posted Aug 27
This is a fully remote position, open to applicants in United States.
• Oversee and enhance UBC’s cybersecurity initiatives within Azure Cloud and on-premises settings.
• Conduct threat intelligence assessments.
• Support the incident response team during investigations.
• Ensure the security and compliance of information system assets.
• Communicate security challenges and options to management while balancing business needs with security priorities.
• Execute risk assessments and threat modeling for crucial internal and external systems.
• Verify that security controls are implemented, effective, and in line with organizational policies and standards.
• Monitor, analyze, review, and respond to security alerts from various platforms.
• Optimize and fine-tune security alerts to minimize false positives and enhance detection capabilities.
• Ensure that assets are integrated and reporting into security monitoring and vulnerability management tools.
• Lead and facilitate the vulnerability management lifecycle, encompassing vulnerability scanning, risk-based prioritization, remediation coordination, and validation of fixes.
• Conduct and manage web application security scans, interpret results, and provide guidance on remediation.
• Keep an eye on threat intelligence feeds and external advisories for new threats and vulnerabilities.
• Engage in incident response, focusing on identification, containment, eradication, and recovery procedures.
• Develop and implement enhanced security measures in response to evolving threats, regulatory demands, and business requirements.
• Strengthen the security posture for both cloud and on-premises environments.
• Create, review, and enforce secure configurations, standards, and policies in collaboration with IT, engineering, and business teams.
• Assist project teams in adopting security measures compliant with UBC cybersecurity policies and external governance mandates.
• Maintain precise security documentation for systems, applications, and processes.
• Collaborate with security team members on various initiatives and best practices.
• Contribute to annual security initiatives and deliverables in line with the security roadmap.
• Engage in special projects and undertake additional responsibilities as assigned.
• Bachelor’s degree in a computer-related field, or 4–6 years of equivalent experience.
• 3–5 years of relevant work experience, ideally in IT Security and Azure cloud.
• Preferred certification in Information Security (GIAC - GSEC, Security+, CISSP, CompTIA CySA+, or equivalent).
• Familiarity with external regulations such as GDPR, 21 CFR part 11, HIPAA, and Sarbanes-Oxley.
• Strong grasp of information security principles and frameworks.
• Significant experience in vulnerability management, including scanning, remediation coordination, and verification.
• Practical experience with automated vulnerability scanning tools, including web application scanning solutions.
• Understanding of web application security concepts, including OWASP Top 10 and common attack methodologies.
• Familiarity with domain structures, user authentication, and digital signatures.
• Experience with both on-premises and cloud security controls and systems, including MS Intune, MS ATP, MS Purview, Active Directory, and IAM.
• Excellent documentation and communication skills.
• Proficient in research and analysis of findings.
• Experience as a member of an incident response team.
• Flexible working hours, with availability for after-hours support as required.
• Participate in an on-call rotation to address security alerts as needed.
• Experience in Digital Forensics is a plus.
• Programming and scripting skills are advantageous.
• Familiarity with cloud architecture is beneficial.
• Experience or understanding of AI tools and their various applications is a plus.
• Ability to coordinate with diverse teams for project completion and work collaboratively.
• Adaptability to a dynamic environment where requirements and procedures are constantly evolving.
• Capability to manage multiple tasks and time efficiently.
• Competitive salaries.
• Opportunities for career advancement.
• 401K plan with company matching.
• Tuition reimbursement program.
• Flexible work environment.
• Discretionary Paid Time Off (PTO).
• Paid holidays.
• Employee assistance programs.
• Comprehensive medical, dental, and vision coverage.
• Health Savings Account (HSA) / Flexible Spending Account (FSA).
• Telemedicine services for virtual doctor appointments.
• Wellness programs.
• Adoption assistance.
• Short-term and long-term disability coverage.
• Life insurance.
• Discounts through various programs.
Veracity Insurance Solutions, LLC
Positivo S+
ShorePoint Inc
General Dynamics Information Technology
Get handpicked remote jobs straight to your inbox weekly.