Security Analyst Senior

Eagle is currently seeking a Security Analyst Senior. This is a six (6) month, contract position scheduled to start in June.

Key Responsibilities

The successful candidate will be responsible for:

  • Development, coordination and performance of security tests as part of the vulnerability assessment and penetration testing program for Corporate Security’s Information Security organization;
  • Assist with the identification and tracking of remediation of risk issues, advise on mitigation safeguards, processes and security best practices and act as a spokesperson and expert on related subjects;
  • Perform security testing of applications, web/mobile networks and infrastructures, including vulnerability assessments, penetration testing, manual testing techniques and source code reviews;
  • Devise and create custom exploits, solutions and techniques to discover vulnerabilities and exploitability of targets;
  • Strong networking and security background in areas such as routing and switching, firewall management, analysis of logs and incident response;
  • Document analysis results, identify security risks, produce reports and present to technical and executive stakeholders;
  • Track vulnerability risks to closure with GRC and participate in ongoing GRC use case development; 
  • Analyze security information and artifacts such as scan results, logs, and files in all phases of incident response;
  • Participate and define incident handling methodologies to proactively manage security risk; and,
  • Ability to produce, review and advise on secure architectures, hardening guides and policies and configurations for incident response and event management.

Skills and Qualifications

The qualified candidate must have:

  • Bachelor’s degree in a technology-related field, or in computer science with a specialization in telecommunications, or the equivalent;
  • Seven (7) years experience in information security; 
  • Extensive experience in Vulnerability Assessment and Penetration Testing for Web Application, Web Services, Databases, Mobile, Infrastructure and Networks;
  • In-depth understanding of penetration testing methodologies (OWASP, OSSTMM etc.); and,
  • Hands-on experience of Security Testing tools such as Burp Suite, Metasploit, Kali, Nessus, and core impact;
  • In-depth knowledge of networking design, routing and firewall segmentation of networks;
  • The following certifications are an asset: CISSP, CEH, GPEN, OSCP, OPST, OSWE, GWAPT, AWAE or similar;
  • Proven track record and experience delivering cybersecurity testing services and mitigation recommendations taking constraints into account; and,
  • Oversee implementation that meet objectives;
  • High degree of initiative, dependability and ability to work with little supervision;
  • Experience on Vulnerability Assessment and Penetration Testing for Infrastructure, Networks, Web Application, Web Services, Databases, and Mobile;
  • Good understanding of penetration testing methodologies such as OWASP and OTTSM;
  • Hands-on experience of Security Testing tools such as Burp Suite, Metasploit, Kali, and Nessus;
  • Hands-on experience in conducting web application testing using OWASP;
  • Ability to analyze scan reports and suggest remediation/mitigation plan to asset owner;
  • Good knowledge of common office tools;
  • Sound document writing skills; 
  • Ability to communicate in French (an asset);
  • Existing Secret clearance or ability to obtain is preferred.

Don’t miss out on this opportunity, apply online today!

Eagle is an equal opportunity employer and will provide accommodations during the recruitment process upon request. We thank all applicants for their interest; however, only candidates under consideration will be contacted. Please note that your application does not signify the beginning of employment with Eagle and that employment with Eagle will only commence when placed on an assignment as a temporary employee of Eagle.

  • Posted On: May 21, 2020
  • Job Type: Contract
  • Job ID: 66579
  • Location: Toronto/GTA ON