Enable job alerts via email!

Cybersecurity Vulnerability Management Analyst

Aviva

Markham

Hybrid

CAD 70,000 - 110,000

Full time

18 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is looking for a resourceful Vulnerability Management Analyst to lead their information security program. This role is crucial for identifying and remediating vulnerabilities within the infrastructure, ensuring that security controls are applied throughout the software development lifecycle. The ideal candidate will have a strong background in cybersecurity, excellent problem-solving abilities, and the capacity to work collaboratively across teams. Join a forward-thinking organization that values professional development and offers a hybrid work model, competitive benefits, and a commitment to diversity and inclusion.

Benefits

Annual bonus eligibility
Retirement savings plan
Health benefits
Personal wellness opportunities
Volunteer opportunities
Career development opportunities
Competitive vacation package
Corporate wellness programs

Qualifications

  • 3+ years in enterprise IT with a focus on vulnerability management.
  • Active information security certification like CISSP or OSCP is required.

Responsibilities

  • Manage vulnerability scanning activities and coordinate remediation efforts.
  • Provide technical guidance on vulnerability remediation across teams.

Skills

Problem-solving skills
Analytical skills
Communication skills
Interpersonal skills
Project management skills

Education

Bachelor's Degree in Cybersecurity
Equivalent experience in Information Security

Tools

Vulnerability management solutions

Job description

Individually we are people, but together we are Aviva. Individually these are just words, but together they are our Values – Care, Commitment, Community, and Confidence.

We are seeking a resourceful and forward-thinking Vulnerability Management Analyst. Your primary role is to operate information security’s vulnerability management program, work with peers in different decision centers to remediate vulnerabilities, present the findings and help others in remediation activities - so strong problem-solving skills are a must. This position is critical to the success of the organization by providing outstanding understanding of attack surface of Aviva’s infrastructure. You will also ensure that appropriate security controls are applied and tested throughout the software development lifecycle.

Responsibilities include:

  1. Planning and prioritizing vulnerability scanning activities and coordinating remediation efforts.
  2. Taking ownership of vulnerability management activities like scanning, triaging, prioritization, and streamlining the vulnerability management process with timely remediation.
  3. Reporting the maturity of scanning and vulnerability findings to different partners.

The role is part of Aviva’s Canada information security operations team.

The incumbent will have extensive experience with Information Technology and expert level knowledge of Information Security principles as well as basic project-management skills, with outstanding communications skills.

What you'll do

  • Operate information security’s vulnerability management program efficiently to reduce operational risks and meet the program’s SLAs and KPIs.
  • Ensure that appropriate security controls are applied and tested throughout the software development lifecycle. Work on vulnerability management process with ability to identify, resolve and improve efficiency in operations.
  • Identify gaps and support action plans to strengthen Vulnerability Management control efficiency.
  • Partner with multiple teams across the organization and 3rd party service provider to map, track, monitor and communicate progress on vulnerability remediation activities.
  • Provide technical guidance collaboratively to peers in both IT and information security on vulnerability remediation.
  • Provide the required support to senior management on matters related to vulnerability management program.
  • Anticipate and plan for future risk in meeting vulnerability SLA’s Coordinate and communicate with internal partners across the IT department.
  • Ensure all Vulnerability Management related controls are demonstrable and sustainable on a continuous basis.
  • Ability to adapt in a fast-paced environment.

What you'll bring

  • Bachelor's Degree with a focus on Cybersecurity or equivalent experience.
  • Financial industry specific background would be an asset.
  • A background in information security operations; threat and vulnerability management.
  • At least 3 years’ experience working in an enterprise IT environment; Demonstrated ability to establish effective working relationships and collaborative work approaches with both internal and external peers.
  • Active information security certification, such as CISSP, OSCP, etc.
  • Deep technical skills, knowledge of network protocols and network communication principles, understanding of vulnerabilities and remediation techniques. Build procedures and customized scan configurations appropriate for the desired performance and accuracy.
  • Skilled at reviewing, analyzing, discussing, explaining, and reporting vulnerability scan results.
  • Good interpersonal skills, ability to handle multiple projects simultaneously in a controlled manner.
  • Outstanding communications skills including preparing briefings, presentations, and oral status reports.
  • Possess strong analytical skills and problem-solving capabilities.
  • Experience with vulnerability management solutions.

What you’ll get

  • Compelling rewards package including base compensation, eligibility for annual bonus, retirement savings, share plan, health benefits, personal wellness, and volunteer opportunities.
  • Outstanding Career Development opportunities.
  • We’ll support your professional development education.
  • Competitive vacation package with the option to purchase 5 extra days off per year.
  • Employee driven programs focused on gender, LGBTQ+, origins, diversity, and inclusion.
  • Corporate wellness programs to support our employees’ physical and mental health.
  • Hybrid flexible work model.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.