Auszug aus der Stellenanzeige von Affinity
Das ist der Job
Describe in detail.
Darum lohnt es sich
The resource will be expected to develop strong relationships with teams throughout the organization and work collaboratively to secure application assets.
Scored Requirements • Experience supporting enterprise security operations in complex, distributed, and hybrid environments. • Strong understanding of firewalls, intrusion detection and prevention systems, VPN, proxy services, secure web gateways, DNS security, load balancers, and network access controls. • Experience reviewing firewall rules, access control lists, network flows, routing paths, and security policies to identify risks, misconfigurations, and unauthorized access. • Ability to analyze network traffic, logs, packet captures, and security alerts to support threat detection, investigation, and incident response. • Working knowledge of TCP/IP, routing, switching, VLANs, NAT, DNS, DHCP, VPN, wireless security, and common network protocols. • Familiarity with Zero Trust principles, network segmentation, least privilege access, secure remote access, and identity-aware security controls. • Ability to document network security findings, risk statements, technical recommendations, operational procedures, and remediation actions. • Familiarity with cybersecurity frameworks and standards such as NIST Cybersecurity Framework, CIS Controls, ISO/IEC 27001, ISO/IEC 27002, and secure configuration baselines. • Experience participating in change management processes, including reviewing network changes for security impact and validating implementation. • Ability to work collaboratively with network, infrastructure, cloud, identity, endpoint, application, and security operations teams. • Strong troubleshooting, analytical, communication, and problem-solving skills, with the ability to explain technical findings clearly to both technical and non-technical stakeholders. • Diploma or degree in Cybersecurity, Network Engineering, Computer Science, Information Systems, or a related field, or equivalent practical experience. • Professional certifications such as CISSP, CISM, CCNP Security, CCIE Security, Fortinet NSE, Palo Alto PCNSE, Check Point CCSA/CCSE, CompTIA Security+ certifications are considered an asset.
Responsibilities • Handling security queue in ServiceNow application to manage security incident tickets and comply with incident response plans and processes to address potential threats. • Monitor, analyze, and investigate network security events and anomalies across firewalls, intrusion detection/prevention systems (IDS/IPS), web proxies, and other network security technologies. • Perform network traffic analysis to identify indicators of compromise, suspicious communications, unauthorized access attempts, and potential data exfiltration activities. • Support the implementation, administration, and continuous improvement of network security controls, including firewalls, network access control (NAC), segmentation, VPNs, and secure remote access solutions. • Conduct reviews of firewall rules, access control lists (ACLs), and network security configurations to ensure adherence to security standards and least-privilege principles. • Collaborate with architecture, infrastructure and networking teams to assess, troubleshoot and remediate network security risks, vulnerabilities and configuration gaps or weaknesses. • Participate in security investigations and incident response activities, including packet capture analysis, threat containment, and root cause determination. • Maintain awareness of emerging network-based threats, attack techniques, and security technologies, and recommend enhancements to detection and prevention capabilities. • Creating and maintaining operational reporting artefacts (e.g.
This requirement is heavily weighted. • Experience supporting enterprise security operations in complex, distributed, and hybrid environments. • Strong understanding of firewalls, intrusion detection and prevention systems, VPN, proxy services, secure web gateways, DNS security, load balancers, and network access controls. • Experience reviewing firewall rules, access control lists, network flows, routing paths, and security policies to identify risks, misconfigurations, and unauthorized access. • Ability to analyze network traffic, logs, packet captures, and security alerts to support threat detection, investigation, and incident response. • Working knowledge of TCP/IP, routing, switching, VLANs, NAT, DNS, DHCP, VPN, wireless security, and common network protocols. • Familiarity with Zero Trust principles, network segmentation, least privilege access, secure remote access, and identity-aware security controls. • Ability to document network security findings, risk statements, technical recommendations, operational procedures, and remediation actions. • Familiarity with cybersecurity frameworks and standards such as NIST Cybersecurity Framework, CIS Controls, ISO/IEC 27001, ISO/IEC 27002, and secure configuration baselines. • Experience participating in change management processes, including reviewing network changes for security impact and validating implementation. • Ability to work collaboratively with network, infrastructure, cloud, identity, endpoint, application, and security operations teams. • Strong troubleshooting, analytical, communication, and problem-solving skills, with the ability to explain technical findings clearly to both technical and non-technical stakeholders. • Diploma or degree in Cybersecurity, Network Engineering, Computer Science, Information Systems, or a related field, or equivalent practical experience. • Professional certifications such as CISSP, CISM, CCNP Security, CCIE Security, Fortinet NSE, Palo Alto PCNSE, Check Point CCSA/CCSE, CompTIA Security+ certifications are considered an asset.
Job Description On behalf of our public sector client, Affinity is seeking a Security Analyst to support cybersecurity operations and strategic security initiatives.
The role is responsible for security monitoring, incident response, network security analysis, investigations, reporting, stakeholder coordination, and continuous improvement of the Government of Saskatchewan’s cybersecurity posture.
Risk Management Decision Item (RMDI), incident reporting, human resource (HR) investigations, lost/stolen reporting, etc.). Compiles and analyzes data for management reporting and metrics. • Coordinating with CSRM Branch to create security awareness campaigns.
Research proactively regarding needs and trends to anticipate and identify potential security problems/incidents. • Engaging stakeholders to fulfill their requests (e.g. decommission request, assets decommission executions, etc.).
Coordinates with other peers in CSRM Branch to research needs and trends to anticipate security problems or incidents. • Proactively coordinating with appropriate stakeholders across GOS during a security incident – management, security, operations, and others to provide timely and relevant updates to stakeholders and decision-makers. • Analyzing cyber security incidents to solve issues and suggest improvement in incident response procedures.
Creating detailed reports and documentation of all incidents and procedures to the CSRM Branch, executive government, and leadership of GOS on a routine basis. • Supporting the execution and monitoring of phishing simulation exercises, including user targeting, response tracking, and reporting. • Responding to and resolving Privilege Access Management (PAM) related activities and service requests within defined SLAs using Service Now.
Qualifications • Resource must be available to work 100 per cent on-site located in a Government of Saskatchewan office in Regina, Saskatchewan, Canada, upon contract start. • Local Knowledge. GOS is interested in understanding the Resource’s experience with GOS, or comparable entities, as it relates to the technical and business landscape.
About Affinity Affinity Group is a technology and business consulting and services company. We believe in creating long term relationships between clients and consultants that foster a mutually beneficial partnership. Affinity is an equal opportunity employer.
We celebrate diversity and are committed to creating an inclusive environment for all employees. All employment is decided on the basis of qualifications, merit and business need. For more information on Affinity, please visit www.affinity-group.ca Job Number: 13749
Bereit?
Bewerbung wird direkt an Affinity übergeben — kein Konto nötig.
Aktuell die einzige offene Stelle bei Affinity.
Neue Stellen kommen monatlich dazu — schau gerne später noch mal rein.
Wenn dir dieser Job gefällt, schau dir auch an:
Andere Stellen auf der Karte
11 ähnliche im Umkreis von ~50 km — Klick auf einen Marker für die Details.