Attack Surface Reduction Analyst [OneIT]

job
  • WSP
Job Summary
Location
Montreal ,QC
Job Type
Contract
Visa
Any Valid Visa
Salary
PayRate
Qualification
BCA
Experience
2Years - 10Years
Posted
11 Nov 2024
Share
Job Description
The Attack Surface Reduction Analyst will play a critical role in enhancing our organization’s cybersecurity posture by identifying, assessing, and mitigating vulnerabilities and threats across our digital environment. This role involves a combination of strategic analysis, hands-on implementation, and collaboration with various teams to reduce our attack surface and improve our overall security resilience.
What you can expect to do here:
Specific areas of responsibility may fall into any one of the following areas of Attack Surface Reduction:
Vulnerability Assessment: Conduct thorough assessments to identify potential vulnerabilities and weaknesses in our systems, applications, and networks.
Attack Surface Analysis: Analyze and map out the organization’s attack surface, including endpoints, network components, applications, and cloud environments, to identify areas of risk.
Mitigation Strategies: Develop and implement strategies and controls to reduce attack vectors and minimize potential entry points for malicious activities.
Risk Evaluation: Continuously evaluate emerging threats and vulnerabilities and assess their impact on our attack surface.
Incident Response Support: Collaborate with the Incident Response team to address and resolve security incidents related to identified vulnerabilities or attack vectors.
Collaboration: Work closely with I&O, Risk, SOC, SecDevOps, and other relevant teams to integrate security practices into the development and deployment processes.
Security Tools: Utilize and configure security tools and technologies for vulnerability scanning, threat intelligence, and attack surface monitoring.
Documentation & Reporting: Maintain detailed documentation of vulnerabilities, risk assessments, and mitigation actions. Prepare and present reports to stakeholders on security posture and risk status.
Continuous Improvement: Stay current with industry trends, threat intelligence, and emerging technologies to continually enhance our attack surface reduction strategies.
What you’ll bring to WSP:
Required:
7+ years related experience in Security Operations, Network Security, Vulnerability Management or similar position.
Bachelor's degree or equivalent in Information Technology, Computer Science, Engineering, Data Sciences, or related field.
Strong knowledge of security assessment tools, vulnerability scanning, and penetration testing.
Proficiency in security tools: Microsoft Defender, Microsoft Defender EASM, BitSight, Cybel Angel and others.
Strong analytical skills with a keen eye for detail and accuracy.
Effective communication skills, with the ability to clearly convey technical concepts to both technical and non-technical stakeholders.
Experience with IT Governance frameworks such as COBIT, ITIL, NIST and ISO 2700x.
Experience with risk management, including risk analysis, mitigation, and monitoring.
What sets you apart:
Master’s degree in information technology, Computer Science, Engineering, Data Sciences or related field.
Security+, CISSP, or other related certifications.
Please Note:
Health and Safety is a core paramount value of WSP. Given the importance of keeping one another safe it is expected that you comply with our Health, Safety & Environment (HSE) policy at all times as well as client HSE policies when working at client locations.
WSP welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process.
WSP is committed to the principles of employment equity. Only the candidates selected will be contacted.
#J-18808-Ljbffr
Other Smiliar Jobs