Information Security Consultant

Canadian Institute for Health Information (CIHI)

Toronto

On-site

CAD 110,000 - 150,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

CIHI is seeking an Information Security Consultant to design, configure, and manage CIHI’s security infrastructure, including cloud environments, firewalls, and SIEM solutions. You will enforce information security policies while ensuring regulatory compliance and risk management.

The role requires 5+ years in security administration, cloud security experience in AWS/Azure, and strong incident response and threat mitigation capabilities. Collaboration with Privacy and Legal teams is essential.

Qualifications

  • Undergraduate degree in Computer Science or related discipline or equivalent experience.
  • AWS Certified Security Specialist or Palo Alto PCNSE or equivalent security certification.
  • Minimum 5 years of relevant experience as a security administrator.
  • Experience securing cloud service models (IaaS, PaaS, SaaS) on AWS and Azure, including security best practices and compliance.
  • Experience creating alerts, reports, and dashboards using SIEM solutions.
  • Proficient in network design (TCP/IP, DNS, DHCP, HTTP, TLS, SSH) and security architectures.

Responsibilities

  • Lead planning, design, and implementation of CIHI’s security environment.
  • Oversee secure deployment of cloud services (AWS, Azure) with required security controls.
  • Design, configure, and manage security controls in AWS and Azure.
  • Upgrade and maintain security systems (firewalls, IDS/IPS, SIEM, gateways, VPNs, endpoint security).
  • Lead IT security projects for deploying and integrating security solutions.
  • Participate in security incidents and lead incident playbooks and tabletop exercises.
  • Monitor risk, resolve incidents, and recommend improvements for cloud and on-premises architectures.
  • Stay current on evolving threats and implement mitigation measures.
  • Lead vulnerability assessments, penetration testing, and internal audits.
  • Provide consulting on CIHI’s security architecture and best practices.
  • Define evaluation benchmarks for new security technologies.
  • Assist with IT security policy development and maintenance.
  • Lead development of training materials for information security awareness.
  • Collaborate with Privacy and Legal teams and program areas.
  • Provide guidance to junior team members.

Skills

Cloud security
AWS
Azure
SIEM
Firewalls
Incident response

Education

BSc in CS or related

Tools

Palo Alto PCNSE
AWS Cloud
Azure Cloud
Wireshark
IDS/IPS

Job description

The Information Security Consultant is responsible for the effective design, configuration, management, monitoring, and protection of CIHI’s security infrastructure, including cloud environments, firewalls, and Security Information and Event Management (SIEM) solutions. The role enforces CIHI’s information security policies, procedures, and standards while maintaining compliance with industry, regulatory, and contractual requirements and managing risk. The Consultant ensures that security controls and infrastructure meet or exceed CIHI’s information security management requirements and continue to evolve in response to industry and regulatory changes.

What you'll do
  1. 1. Lead the planning, design, and implementation of CIHI’s security environment.
  2. 2. Oversee the secure deployment of cloud services provided by AWS, Azure, and other vendors, incorporating required security controls and monitoring solutions.
  3. 3. Design, configure, and manage security controls and policies in AWS and Microsoft Azure, ensuring protection for cloud-based infrastructure and applications.
  4. 4. Upgrade, configure, and maintain security systems and software, including firewalls, IDS/IPS, SIEM, web gateways, VPN solutions, and endpoint security software.
  5. 5. Plan and lead IT security projects for deploying, integrating, and enhancing security solutions in accordance with CIHI processes and industry best practices.
  6. 6. Participate and respond to security incidents as per CIHI’s security incident protocols, and lead the creation of incident playbooks and incident response tabletop exercises.
  7. 7. Monitor and asses risk, resolve security incidents (breaches, vulnerabilities, malware), and provide recommendations for improvements to existing configurations, enhancements, or new security solutions for cloud and on-premises architectures.
  8. 8. Remain current on evolving security threats and proactively implement mitigation solutions.
  9. 9. Lead periodic vulnerability assessments, penetration testing, and internal audits to ensure staff preparedness and regulatory compliance.
  10. 10. Provide consulting on CIHI’s security systems, architecture, and industry best practices.
  11. 11. Define evaluation benchmarks to appraise, test, and select new security software and hardware technologies.
  12. 12. Assist with the development, implementation, and maintenance of CIHI’s IT security policies and procedures.
  13. 13. Lead the development of training material to facilitate information security awareness within the organization.
  14. 14. Liaise with members of the Privacy and Legal team and program areas as appropriate.
  15. 15. Provide guidance and instruction to junior team members.
What you'll bring to the table
  • Undergraduate degree in Computer Science program or related discipline, or equivalent combination of education and related experience.
  • AWS Certified Security Specialist or Palo Alto PCNSE certification or equivalent security certification.
  • Minimum 5 years of relevant experience as a security administrator.
  • Experience in security for various cloud service models like IaaS, PaaS, SaaS, for AWS and Microsoft Azure, including the implementation of security best practices and compliance.
  • Experience in creating alerts, reports, and dashboards using SIEM solutions.
  • Expertise in the design of networks, IP Addressing and IP protocols such as TCP/IP, DNS, DHCP, HTTP, TLS, SSH, 802.1X, and IPsec.
  • Proficient in designing and managing enterprise security solutions such as firewall HA clusters, intrusion prevention systems, SIEM solutions, Web Gateways, Web Application Firewalls, Cloud Security Posture Management solutions, multi-factor VPN authentication, and application sandboxing.
  • Proven ability to design, configure and manage security controls and policies in AWS and Azure.
  • Demonstrated knowledge of forensic tools (Wireshark), techniques, and methodology.
  • Strong understanding of security in the OS platforms and technologies including MS Windows, Linux, virtualization, containerization, mobile devices, and cloud services.
  • Proficient understanding of tiered Web applications operating on Windows/Linux environment using Apache/IIS web servers and MS SQL/Oracle/MySQL databases.
  • Knowledge of NIST Cybersecurity framework and ISO 27001:2022.
  • Ability to conduct research into security issues and products, as required.
  • Strong interpersonal, communication skills, organizational skills and attention to detail.
  • Ability to effectively prioritize and execute tasks with minimal supervision.
  • Experience working in a team-oriented, collaborative environment.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Security Administrator
IT Security Administrator

ROBINSON • Winnipeg

On-site
CAD 70,000 - 100,000
Student, Security Platform Specialist
Student, Security Platform Specialist

Jobtailor • Toronto

On-site
CAD 34,440,000 - 48,216,000
Cloud Security Engineer-6
Cloud Security Engineer-6

REALIGN LLC • Toronto

On-site
CAD 110,000 - 160,000
Investment Advisor
Investment Advisor

0000050599 RBC Dominion Securities Inc. • Saskatoon

On-site
CAD 110,000 - 150,000
Cybersecurity Analyst -191 - IW- 191
Cybersecurity Analyst -191 - IW- 191

DGA Careers • Edmonton

On-site
CAD 90,000 - 120,000
Security Analyst
Security Analyst

EIZIE • West Hawk Lake

On-site
CAD 80,000 - 110,000
Competitive salary
Health and dental benefits
Professional development
+5
Senior Infrastructure Security Specialist
Senior Infrastructure Security Specialist

Jobtailor • Toronto

On-site
CAD 110,000 - 160,000
IT Security Analyst II
IT Security Analyst II

VC3 • Canada

On-site
USD 85,000 - 120,000
401K/RRSP company matching
Comprehensive benefits
IT Security Analyst II
IT Security Analyst II

VC3, Inc. • Canada

Hybrid
CAD 90,000 - 120,000
Cloud Security Engineer
Cloud Security Engineer

ALLTECH CONSULTING SVC INC • Quebec

On-site
CAD 80,000 - 120,000