Cyber Security Analyst

Lorex Technology

Markham

On-site

CAD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Lorex Technology is seeking a Cyber Security Analyst to join the Cloud Technology & Security team. You will ensure compliance with security standards, perform vulnerability scans, and design secure solutions to protect Lorex’s data and operations.

You will collaborate with cross-functional teams, analyze threats, and implement safeguards while considering privacy implications. A strong background in information security and incident response is required, with comfort working in a fast-paced

Qualifications

  • Undergraduate degree in Information Security, Computer Engineering, or related field.
  • 3–5 years of hands-on experience in information security roles with large-scale environments.
  • Professional certifications such as CISSP, CISA, CEH or CCSK are assets.
  • Experience with vulnerability assessments, penetration testing, OS/Application hardening, and incident response.
  • Knowledge of ISO27001, NIST, CIS, SOC2 benchmarks and cloud security controls.

Responsibilities

  • Conducts Threat and Risk Assessments (TRAs), audits and security reviews against standards (ISO 27001/2, SOC2, NIST, GDPR).
  • Performs security analysis and vulnerability scans for mobile apps, cloud services, and embedded firmware.
  • Collaborates with project teams to provide secure design and deployment guidance.
  • Defines and reports security metrics and analytics; stays current with security technologies.
  • Responds to security incidents with containment and remediation; supports disaster recovery planning.

Skills

problem-solving
analytical skills

Education

Undergraduate degree in Information Security, Computer Engineering, or related field

Tools

SIEM
Endpoint protection
Monitoring tools
Firewalls
VPNs
PKI
IDS/IPS

Job description

For 34 years, Lorex has been creating security systems designed to protect your home and business. Founded and headquartered in Canada, we’ve grown to become leaders in DIY (Do It Yourself) security, offering premium solutions built on innovation, reliability, and expertise that enhance your lifestyle and protect what matters most.

Company Description

Proudly Canadian-founded, the Lorex team across North America is committed to the design, development, and deployment of ingenious smart home security and business monitoring solutions that enhance our customers’ lifestyles and sense of well-being. We achieve this by continuing to produce innovative solutions, all backed by cutting-edge technology and a dedicated team of forward thinkers.

Job Summary

The Cyber Security Analyst is a key member of the Cloud Technology & Security team, reporting to the Director of the department. You will play a critical role in ensuring compliance with security standards and regulations, conducting security analysis and vulnerability scans, designing secure solutions, analyzing threats, and implementing safeguards to protect sensitive data. This role combines proactive security reviews, incident response, and collaboration with cross-functional teams to maintain and strengthen Lorex’s security posture. In addition to security, the candidate should be comfortable with privacy considerations, as privacy goes hand in hand with security, though not required to be a subject matter expert.

Duties & Responsibilities:

Security Reviews and Assessments (60%)

  • Conducts Threat and Risk Assessments (TRAs), Audits and/or Security Reviews on Lorex Products and Services that are based on an industry reputable standard such as ISO 27001/2, SOC2, NIST, and GDPR requirements
  • Perform security analysis and vulnerability scans of mobile apps (iOS/Android), cloud services, and embedded system firmware
  • Partner with project teams to provide secure design and deployment guidance
  • Performs a gap analysis of Lorex security environment against industry best practices and recommend remediation
  • Recommend and validate secure configurations for infrastructure systems (Windows, Linux, macOS, AD, IDS/IPS, SIEM, etc.)
  • Define, review, and report on security analystics and metrics
  • Stay current with evolving information security technologies and best practices
  • Own the full cycle talent acquisition process from project kick-off to new hire onboarding where applicable
  • Identify and act on opportunities to streamline talent acquisition processes and tools
  • Own the full cycle talent acquisition process from project kick-off to new hire onboarding where applicable
  • Identify and act on opportunities to streamline talent acquisition processes and tools

Security Operations (40%)

  • Responds to security incidents applying appropriate containment and eradication techniques
  • Monitor infrastructure, security reports, and vulnerability assessments to identify threats or weaknesses
  • Support disaster recovery and business continuity planning and testing
  • Collaborate with software development, DevOps, and engineering teams to integrate security requirements and perform security testing
  • Serve as an internal security consultant across projects and external stakeholders engagements
  • Promote and foster a strong security culture within the organization
Qualifications & Experience
  • Undergraduate degree in Information Security, Computer Engineering, or related field
  • 3-5 years of hands on experience in information security roles with large scale environments
  • Professional certifications such as Certified Information Systems Security Professional (CISSP) certification, Certified Information Security Auditor (CISA), Certified Ethical Hacker (CEH) or Certificate of Cloud Security Knowledge (CCSK) are assets
  • Solid technical expertise in vulnerability assessments, penetration testing, application and OS hardening, firewalls, VPNs, PKI, IDS/IPS, encryption, and incident response
  • Familiarity with industry standards such as ISO27001, NIST, CIS, SOC2 benchmarks
  • Experience designing and implementing security controls in cloud (AWS, GCP, Digital Ocean etc.)
  • Experience conducting security analysis and vulnerability scans for mobile apps, cloud services, and embedded system firmware
  • Knowledge of SIEM, endpoint protection, and monitoring tools
  • Experience with surveillance, video, real-time communications and similar considered an asset
  • Ability to work independently and collaboratively, with strong problem-solving and analytical skillss
  • All prospective employees must pass a background check

Lorex welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sales Operations Specialist
Sales Operations Specialist

Lorex Technology • Markham

On-site
CAD 60,000 - 80,000
Senior Security Analyst
Senior Security Analyst

Longo's • Vaughan

Hybrid
CAD 80,000 - 100,000
Performance Marketing Manager
Performance Marketing Manager

Lorex Technology • Markham

On-site
CAD 90,000 - 120,000
L3 SOC Analyst / Incident Responder
L3 SOC Analyst / Incident Responder

act digital • Montreal (administrative region)

Hybrid
CAD 90,000 - 120,000
Remote working available
Flex Office work environment
Annual training and certification
Senior Information Security Analyst
Senior Information Security Analyst

IKO North America • Mississauga

On-site
CAD 106,000 - 120,000
Competitive compensation
Health care
Challenging workplace
+1
IT Security Analyst
IT Security Analyst

Pomerleau • Montreal (administrative region)

Hybrid
CAD 80,000 - 120,000
RRSP with up to 5% employer matching
Hybrid work model for corporate roles
Employee stock ownership program
+3
iOS and Android Engineer
iOS and Android Engineer

Lorex Technology • Markham

On-site
CAD 80,000 - 90,000
Security Analyst - Part Time
Security Analyst - Part Time

Equifax, Inc. • Toronto

On-site
USD 49,850 - 78,336
Information Security Analyst 3 (Cybersecurity Incident Response)
Information Security Analyst 3 (Cybersecurity Incident Response)

TechAlliance of Southwestern Ontario, London Economic Development Corporation • Toronto

On-site
CAD 85,000 - 135,000
Health & dental benefits
Mental health benefit
Volunteer day
CIT Information Security & GRC, Lead
CIT Information Security & GRC, Lead

Perseus Group, Constellation Software • Markham

On-site
CAD 104,000 - 127,000