BVD Group

IT Security Analyst

IT Security Analyst
Notice info
LocationBrampton, ON
Job Typefull time
On-site
Oil and Gas

About This Job


About BVD Group

BVD Group is a leading Canadian family business, established in 1999, specializing in fuel services. Originating from a single gas station in Ontario, it has grown to become Canada's largest fuel network, serving thousands daily across North America. The company offers comprehensive fleet card programs, loyalty options, and credit solutions, supporting businesses of all sizes with over 850 partnering locations. Additionally, BVD Group empowers the supply chain through its BVD Capital division, ensuring timely delivery of North American goods. Their commitment to customer support and business growth makes them a top choice for truck drivers, road trippers, and commuters. Join BVD Group at their Brampton location for rewarding opportunities and be a part of their growing success!


Job Description

We are looking for an IT Security Analyst responsible for overall vulnerability management, application hardening, and complete security analysis of project phases. The IT Security Analyst is also responsible for ensuring that the final deliverable of a software development project meets all the intended security and hardening needs of the business. The IT Security Analyst will need to be able to understand the SDLC and Agile models and what their specific activities are to manage an application development project from an ethical hacking and security perspective. The IT Security Analyst will deliver a solid set of security requirements and documented artifacts to understand the project standards. The IT Security Analyst will develop and implement solid security test plans and ethical hacking test cases/scenarios to accurately test all aspects of the system and to maintain detailed and accurate documentation per all project standards. The successful candidate will have the opportunity to work on multiple IT projects based on their performance.


Job Requirements

- Develop, manage, and lead various security projects to include development and management of security project plans

- Ensure all projects align with global security standards including ISO/IEC 27001, NIST CSF, and CIS Benchmarks

- Interpret and analyze data from multiple security tools and sources, including IDS alerts, firewall logs, web/application logs, and network traffic, to detect Indicators of Compromise (IoCs) and malicious Tactics, Techniques, and Procedures (TTPs)

- Review security alerts for relevancy and urgency, provide tuning recommendations, identify and respond to sophisticated threats, and conduct risk assessments

- Perform requirements gathering and analysis utilizing OWASP ASVS (Application Security Verification Standard) to ensure secure-by-design principles are established before development begins

- Effectively manage security project efforts, to include project plan, scope, time management (activities & task planning), QA, and security testing/penetration testing.

- Develop and implement security test plans/scenarios to ensure successful and secure delivery of a project

- Lend support to various business and technology teams as necessary during project delivery, specifically regarding O365, Azure, AWS, and security tools

- Communicate effectively in both verbal and written form, with an emphasis on clear and concise risk-based reporting

- Accurately determine, assign, track, and manage project task, activity, documentation, and time information per internal standards

- Accurately assess the risks associated with each solution design/project, focusing on software and application hardening

- Effectively manage multiple priorities in a high-pressure environment

- Act as project manager on business-facing security initiatives

- Conduct post-project security evaluation and verification of remediation


Qualifications

- 4-7 years of experience in cyber incident response within an Incident Response or Security Operations Center (SOC) team

- 3-5 years of experience working as an Ethical Hacker, performing penetration testing and vulnerability research

- Minimum of 5 years of relevant IT experience or an equivalent combination of experience plus at least 3 years performing Security Engineering or Planning Operations

- Working knowledge of the SDLC, Agile, and Waterfall models/methodologies

- Strong understanding of security principles, practices, tools, and techniques used by cybersecurity teams

- Familiarity with offensive and defensive technologies (e.g., SIEM, EDR, firewalls, IDS/IPS, BURP Suite, Nessus, NMAP) and knowledge of programming languages and operating systems (e.g., Python, Kali Linux)

- Skilled in interpreting and analyzing data from multiple sources to detect Indicators of Compromise and malicious TTPs

- Ability to review alerts for relevancy, identify sophisticated threats, and conduct risk assessments with strong analytical skills

- Strong security and systems analysis, test planning, testing, and troubleshooting skills across numerous environments

- Ability to apply common security analysis techniques including threat modeling (STRIDE/PASTA) and attack surface mapping

- Experience in data gathering and facilitation techniques, such as JAD sessions

- Familiarity with regulatory requirements and industry standards (e.g., GDPR, ISO 27001)

- Demonstrated leadership and attention to detail skills at both strategic and tactical levels

- Advanced knowledge and experience with Microsoft Windows and Office 365 security features

- Required/Preferred Certifications: Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), CISSP, SANS, or CompTIA Security+

- Knowledge of the Occupational Health and Safety Act, its regulations, and the hazards associated with the work


Education Qualifications

- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field; or an equivalent combination of education and work experience


Work Schedule


- 8-hour shift (40-44 Hours/week)


Location

- This is not a work from home or hybrid position and is on-site at our Brampton Office


Job Types: Full-time, Permanent


Pay: $75,000.00-$85,000.00 per year


Benefits:

- Dental care

- Extended health care

- Paid time off

- Vision care


Work Location: In person

Similar Jobs

company-logo

IT Security Analyst

BVD Group
Job Typefull time
 
Brampton, ON
1 day ago
company-logo

IT Security Analyst

PPL Corporation
Job Typefull time
 
Louisville, KY
18 days ago
company-logo

Cyber Security Analyst - IT

Constellation Energy
Job Typefull time
Salary
$81600 - $122400
Cordova, IL
28 days ago
company-logo

Cyber Security Analyst - IT

Constellation
Job Typefull time
Salary
$91800 - $102000
Cordova, IL
28 days ago
company-logo

Security Analyst

SANTEE COOPER
Job Typefull time
Salary
$66390 - $82980
Moncks Corner, SC
4 days ago
company-logo

Security Analyst

Santee Cooper
Job Typefull time
Salary
$66390 - $128200
Moncks Corner, SC
4 days ago
company-logo

Cyber Security Analyst

Cape Fear Public Utility Authority
Job Typefull time
Salary
$65000 - $84500
Wilmington, NC
11 days ago
company-logo

Security Analyst

Newfoundland Power
Job Typefull time
 
St. John's, NL
17 days ago
company-logo

Cyber Security Analyst

Dolese Bros.
Job Typefull time
 
Oklahoma City, OK
25 days ago
company-logo

IT Security Engineer

Trafigura
Job Typefull time
 
Calgary, AB
20 days ago
company-logo

IT Analyst, Information Security (Hybrid)

Eversource Energy
Salary
$115630 - $128480
East Berlin, CT
29 days ago
company-logo

Technology Analyst - Security

Clark Public Utilities
Job Typetemporary, full time
Salary
$68165 - $100694
Vancouver, WA
14 days ago
company-logo

Cybersecurity Analyst

RelaDyne LLC
Job Typefull time
 
00
15 days ago
company-logo

IT Business Analyst

GAS Global
Job Typefull time
 
Houston, TX
25 days ago
company-logo

Cyber Security Operations Analyst

Explorer Pipeline
Job Typefull time
 
Tulsa, OK
14 days ago
company-logo

Cyber and Information Security Analyst

Bruce Power
Job Typefull time
 
Tiverton, ON
17 days ago
company-logo

Cyber Security, Senior Analyst

ENGIE
Job Typefull time
Salary
$99000 - $151800
Houston, TX
11 days ago
company-logo

Cyber Security Analyst -OT

PSEG
Salary
$91100 - $161900
Bethpage, NY
29 days ago
company-logo

IT Desktop Analyst

Energy Northwest
Job Typefull time
Salary
$80704 - $184021
Richland, WA
2 days ago
company-logo

IT Service Desk Analyst

Just Energy
Job Typefull time
 
Houston, TX
10 days ago

Trending Jobs

company-logo

Electrical Engineer

Dudley Staffing
Job TypeFull time
Salary
$55 - $75
Canonsburg, PA
10 months ago
company-logo

Division Order Analyst

Coronado Resources
Job TypeFull time
 
Dallas, TX
7 months ago
company-logo

Professional Landman

Penterra Services, LLC
Job TypeContract
 
Lovington, NM
6 months ago
company-logo

Accounts Payable Clerk

LPR Energy
Job TypeFull time
Salary
$65000 - $65000
Dallas, TX
8 months ago
company-logo

Division Order Landman

R. Lacy Services, Ltd.
Job TypeFull time
 
Longview, TX
7 months ago
company-logo

Title Landman

Sustain Land Services
Job TypeFull time
 
Norman, OK
9 months ago
company-logo

Oil and Gas Land and Title Analyst - SAM Associate II

Bank of America
Job TypeFull time
 
Dallas, TX
8 months ago
HE

Landman

Herbaly Exploration LLC
Job TypeFull time
 
Littleton, Colorado
about 1 month ago
company-logo

Lead Software Engineer

Energy Hire
Job TypeFull time
Salary
$120000 - $180000
Dallas, Texas
4 months ago
company-logo

Landman

Stockyards Energy Land Services
Job TypeContract
 
Akiachak, TX
11 months ago
company-logo

contract landman

HPS Oil & Gas Properties
Job TypeFull time
 
Lafayette, LA
10 months ago
company-logo

Attorney

Toeppich & Associates
Job TypeFull time
 
Houston, TX
over 1 year ago
company-logo

contract Landman

HPS Oil & Gas Properties
Job TypeFull time
 
Midland, TX
10 months ago
company-logo

Oil and Gas Title Attorney

Oliva Gibbs PLLC
Job TypeFull time
 
Houston, TX
8 months ago
company-logo

Title Reviewer

Innovation Land Services
Job TypeFull time
 
Pittsburgh, PA
10 months ago
company-logo

Civil/Structural Designer

Dudley Staffing
Job TypeFull time
Salary
$30 - $60
Canonsburg, PA
10 months ago
company-logo

Data Analyst

River City Science Academy
Job TypeFull time
Salary
$20 - $45
Jacksonville, FL
9 months ago
company-logo

Kentucky Director of Protection

The Nature Conservancy
Job TypeFull time
Salary
$80000 - $90000
Lexington, Kentucky
about 1 month ago
company-logo

Electrical Designer

Dudley Staffing
Job TypeFull time
Salary
$45 - $60
Canonsburg, PA
10 months ago
company-logo

IT Director - Data Management

Energy Hire
Job TypeFull time
 
Midland, Texas
3 months ago