Security Analyst

Saskatchewan Workers' Compensation Board

Regina

On-site

CAD 90,000 - 120,000

Full time

11 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Saskatchewan Workers' Compensation Board is seeking a Security Analyst to monitor ITS infrastructure, detect threats, and manage the incident response lifecycle. You will run audit scans, perform vulnerability assessments, and collaborate with auditors to provide required information.

You will also help implement security policies, remediate weaknesses, and educate staff on cyber security best practices while coordinating with various teams across the organization.

Qualifications

  • University degree in Computer Science or a related discipline.
  • 3 years related experience in Information Security, including 2 years as a Security Analyst.
  • Experience with NGAV, DLP, and data protection technologies.
  • Strong knowledge of security controls, risk management and incident response.

Responsibilities

  • Lead security incident response and coordinate remediation.
  • Monitor security logs and alerts for anomalies and incidents.
  • Perform vulnerability assessments and coordinate remediation plans.
  • Develop and enforce security baselines across networks, apps, and data.
  • Support audits with required IT information and documentation.
  • Educate users on cyber security awareness and incident reporting.
  • Maintain license compliance and monitor software/hardware assets.
  • Participate in security architecture and strategic initiatives.

Skills

Security incident response
Threat intelligence
Forensics
SIEM
DLP
NGAV
Vulnerability management
Cloud security
SQL queries
Data encryption
CVE/CVSS/OWASP
Azure security

Education

University degree in Computer Science or related

Tools

Burp Suite
CASB tools

Job description

Provide rapid response to security incidents, monitors WCB’s ITS infrastructure and IT services to detect security threats, breaches or attacks. Identify false positives, triage and declare security incidents, performs root cause analysis, prepares documentation and reports throughout incident response (IR) process lifecycle. Run periodic audit scans using variety of security tools, datasets to identify security incidents. Performs periodic vulnerability assessments/penetration testing to identify/remediate security vulnerabilities/risks. Review and analyze the information systems security controls, develops remediation plans, implements and monitors security solutions. Assists in the development, implementation and enforcement of security policies, procedures and standards. Educates users in cyber security awareness including system abuse, security incident reporting and malware protection. Works with internal and external auditors to provide them with required IT information.

Responsible for utilizing a continuous process improvement approach to serve the WCB customers (workers and employers of Saskatchewan) by working with the business partners to ensure the security of WCB assets.

Duties & Responsibilities:
  • Maintains security assets inventory, monitor security vulnerability information released by OEM, tracks, recommends upgrades/releases/updates, security patches as soon as it is released, follow-up with respective teams to remediate.
  • Monitor alerts, system reports and security logs for unusual events, attacks, intrusions, anomalies, unauthorized or illegal activities.
  • Monitors and continually fine-tunes advanced threat detection technology controls and practices in accordance with current vulnerabilities, risks, threats and best practices.
  • Leads security incident response, coordinate with various teams for remediation, handles the entire incident lifecycle.
  • Defines and implements secure configuration baseline for network, database, application, server and desktop technology areas.
  • Determine and implement appropriate data leakage controls and DLP policies, as well as the placement of such, to meet business and regulatory and audit requirements.
  • Performs vulnerability assessment, Grey box assessment and penetration testing Coordinates vulnerability scans and develops remediation plans to address discovered vulnerabilities.
  • Quickly identifies the source of a security breach and investigate intrusions to determine the cause and extent of the breach, leveraging threat intelligence sources.
  • Assists in definition, development, implementation and refinement of WCB’s IT Security Policy, supporting security procedures and process documentation, including DR/BCP tests & reporting.
  • Tracks license compliance, monitor usage status, and manage the software asset life cycle. Discover unauthorized hardware and software on the network.
  • Monitors and reviews security controls implemented in IDS/IPS, Firewalls, LAN/WAN/VPN, Endpoint protection, Wireless controllers and MDMs.
  • Periodically revalidates remote access server, secure client, desktop security, guest access, TACACS/Radius/LDAP authentication, web applications security and analyze for anomalies.
  • Conduct host forensics, network forensics, log analysis, and malware triage in support of incident response investigations.
  • Facilitates ongoing cyber security awareness program.
  • Facilitates all security information requests for external and internal audits, documents and tracks recommendations from audit reports until it is completed.
  • Participates in the Security Architecture Committee and in special assigned projects and other departmental initiatives.
Qualifications:

University degree in Computer Science or a related discipline and at least one industry accredited security certification (i.e. CISSP, OSCP, CEH, SANS GPEN, GIAC-GCIH, etc.)

Supplemented with 3 years related experience in Information Security, where a minimum of two of those years was in a Security Analyst role, demonstrating the following:

  • Working experience with next generation antivirus (NGAV), data leakage prevention (DLP), structured and unstructured data protection (UDP) technologies
  • Demonstrated expert in network technologies, endpoint, threat intelligence, forensics, malware
  • In-depth working knowledge of security technologies, testing tools (BURP) & security monitoring solutions (SIEM)
  • Application of industry standards regarding vulnerability management including Common Vulnerabilities and Exposures (CVE), Common Vulnerability Scoring System (CVSS) and Open Web Application Security Project (OWASP)
  • Functional experience working in securing global hybrid cloud environment, including Azure, O365 and Microsoft Security (ATP, EMS), using CASB and cloud gateways
  • Functional experience with databases, business intelligence (BI) reporting and SQL queries.
  • Experience with Digital Rights Management (DRM), data tagging, encryption, cryptography, hashing, key management, digital certificates, TLS, etc.,
  • Experience in analyzing and applying information security controls and risk management practices for Disaster Recover & Business Continuity (DR/BCP)
  • Knowledge of national and international regulatory compliances, including ISO 27000 series, FOIP/LA-FOIP, HIPAA, and PCI-DSS.
  • Knowledge of frameworks and methodologies (NIST, CIS-CSC, OWASP, CSF etc.)
  • Process and organizational skills and the ability to prioritize.
  • Excellent communication and customer service skills.
  • Must possess a high degree of integrity, be trustworthy, and have the ability to maintain confidentiality.
Application Deadline: September 20, 2026

The Saskatchewan Workers' Compensation Board is committed to achieving a representative workforce. Members of designated groups (women, aboriginal people, people with disabilities and visible minorities) are encouraged to apply.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Information Security Analyst
Senior Information Security Analyst

Kaizen Lab Inc. • Winnipeg

Hybrid
CAD 90,000 - 120,000
Health Spending Account
Pension plan
Professional development
+7
Senior Security Analyst
Senior Security Analyst

Nearcodecr • Regina

On-site
CAD 90,000 - 130,000
Security Analyst
Security Analyst

EIZIE • West Hawk Lake

On-site
CAD 80,000 - 110,000
Competitive salary
Health and dental benefits
Professional development
+5
Cybersecurity Analyst -191 - IW- 191
Cybersecurity Analyst -191 - IW- 191

DGA Careers • Edmonton

On-site
CAD 90,000 - 120,000
Cybersecurity Analyst -191
Cybersecurity Analyst -191

DGA Careers • Edmonton

On-site
CAD 90,000 - 130,000
Cyber Security Engineer
Cyber Security Engineer

Manitoba Liquor & Lotteries Corporation • Winnipeg

On-site
CAD 80,000 - 100,000
Healthcare benefits
Retirement plans
Senior Solution Architect - Cybersecurity & IT Risk
Senior Solution Architect - Cybersecurity & IT Risk

Workplace Safety and Insurance Board • Toronto

Hybrid
CAD 116,000 - 145,000
Senior Information Security Analyst
Senior Information Security Analyst

Kaizen Lab Inc. • Calgary

Hybrid
CAD 100,000 - 140,000
Health Spending Account
Pension plan with employer contrib.
Professional development opportunities
+5
IT Security Analyst II
IT Security Analyst II

VC3 • Canada

On-site
USD 85,000 - 120,000
401K/RRSP company matching
Comprehensive benefits
IT Security Analyst II
IT Security Analyst II

VC3, Inc. • Canada

Hybrid
CAD 90,000 - 120,000