First Canadian Financial Group
Security Analyst
First Canadian Financial GroupCanada5 hours ago
Full-timeInformation Technology
Job Details

Description

First Canadian is a national organization and we are experiencing unprecedented growth!

We aim to hire bright, hard-working people who share our values. We seek employees who are committed to learning, career growth, and opportunity. We take pride in being an organization that our employees support long-term. We believe in our employees and celebrate their success by asking for employee opinions and feedback so that we continue to be a Great Place to Work.

We Award Our Team With The Following

  • Off work 1 hour early on Fridays.
  • Earned Time-Off Program and vacation.
  • Group Retirement Savings Plan with employer match.
  • On-site gym including free weekly classes with a qualified trainer.
  • Newly renovated facility with ergonomic desks/chairs.
  • Educational assistance and career development.
  • Employee benefits.
  • Health and Wellness spending account.
  • Employee Assistance Program (EAP).
  • Employee discount programs.
  • A Culture Team dedicated to diversity, inclusion, and employee programs.
  • Employee recognition and appreciation events.
  • French is not required for this role but is an asset, an uplift of 5% is applied after the probationary period for qualified professional level French bilingualism (both spoken and written).

Check out our company page for all the information on why we believe First Canadian is an employer of choice!

If you are motivated to succeed by helping people, then this is the opportunity for you!

The Security Analyst is responsible for safeguarding the company’s technology environment by supporting secure network, server, and infrastructure operations, while driving security awareness and best practices across the organization. This role blends hands-on technical work with proactive monitoring, incident response, system hardening, data governance, and end-user training. The Security Analyst will play a key role in maturing the organization’s security posture, reducing risk, improving operational efficiency, and supporting scalable, secure IT growth.

Essential Responsibilities

  • Monitor networks, endpoints, servers, and cloud environments for threats using SIEM tools, logs, and alerts; investigate and respond to security incidents promptly.
  • Maintain and optimize security platforms including EDR, antivirus, email protection, and Microsoft Purview for data classification, retention, and compliance.
  • Administer secure configurations for servers (Windows, Linux, cloud), network infrastructure (firewalls, VPNs, switches, VLANs), and identity systems (MFA, SSO, least-privilege).
  • Perform security audits, configuration reviews, vulnerability assessments, and support penetration testing; ensure compliance with frameworks (ISO 27001, SOC2, CIS, NIST) as required.
  • Support risk assessments, asset inventories, and remediation activities; assist with infrastructure maintenance, upgrades, and performance tuning.
  • Configure and maintain secure SharePoint environments with access controls and DLP policies.
  • Develop and maintain IT security documentation, policies, and procedures; deliver staff security training and lead phishing simulations and awareness campaigns.
  • Collaborate with IT Help Desk for escalations; provide Tier 3 support for servers, networks, identity, and security tools.
  • Participate in IT/security projects such as migrations, new platform deployments, and process modernization; recommend improvements to strengthen security controls and automation.
  • Stay current with threat intelligence, security trends, and emerging technologies.
  • On-Call rotational support as required.
  • Perform other duties as assigned.

Qualifications

  • Bachelors' degree in Computer Science or related field is required, equivalent experience may be considered.
  • 4-6 years in information security or IT security roles is required; 3+ years preferred for IT infrastructure, systems administration, networking, or cybersecurity is preferred.
  • Experience working in enterprise IT environments (Active Directory/Azure AD, DHCP/DNS, Windows Server, virtualization, and cloud concepts) is required.
  • Strong troubleshooting skills across systems, networks, and endpoints is required.
  • Hands-on experience with Microsoft Purview, Crowdstrike and SharePoint security administration is required.
  • Knowledge of endpoint security tools, antivirus/EDR, patch management, MFA/SSO platforms, and email protection is required.
  • Familiarity with SIEM tools, DLP solutions, and identity management is required.
  • Experience with firewalls, switches, and secure network configurations is required.
  • Understanding of compliance frameworks and data protection regulations is required.
  • Industry-recognized certifications such as Security+, CISSP, CySA+, CCNA, MS-900/SC-900, AZ-500, or similar is required.
  • Experience with SIEM tools, vulnerability scanners, and log analysis platforms is required.
  • Exposure to governance/compliance frameworks (SOC2, CIS, NIST, ISO) is required.
  • Ability to create and deliver security training is an asset.
  • Fluent in English with proven competencies in verbal and written communication is required.
  • Fluent in French with proven competencies in verbal and written communication is an asset.
  • Ability to be on-call on a rotational basis to assist in resolving escalated emergencies during weekends and statutory holidays is required.
  • Successful completion of a criminal background check, education verification, license and certification verification, and employment reference checks is required before employment is required.

Thank you for considering our organization.

If you are bilingual there will be a French and English assessment as a part of the recruitment process.

We are an equal opportunities employer and welcome applications from all suitably qualified persons. Accommodations are available upon request.

Key Skills

Ranked by relevance