Cyber Security Specialist
Brampton, ON, CA
Rogers Communications
Choose a cell phone or plan for your needs. At Rogers, count on more mobile, Internet, TV, Home Security and Home Phone options.
Our Technology team wakes up every day with one goal in mind - connecting Canadians to the people and things that matter most. Together, we are proud to support 30 million Canadians each month through managing a robust portfolio that champions leading-edge technology. We drive large-scale, complex, and high-visibility technology projects and programs that shape the future of technology in Canada and expand connectivity from coast to coast. If you are interested in being a part of this, consider applying for the following opportunity:
Who we're looking for:
The Rogers Information and Cyber Security Unit is seeking a highly motivated Cyber Security Specialist to join our Threat and Vulnerability Management (TVM) team. Reporting to the Senior Manager, TVM, this individual will support activities related to evolving cyber threats, risk, and vulnerability management. This position requires an understanding of the various security testing and cyber security technologies / compliance models and how they inter-relate to deliver business outcomes.
What you'll do:
- Conduct security assessments, evaluating new threats and vulnerabilities and make recommendations aligned to Rogers Security Standards and Policies.
- Perform application code assessment and provide recommendations to improve overall security posture of code base/applications.
- Conduct threat and vulnerability analysis using Rogers approved tools and platforms.
- Create reports, metrics, and dashboards for consumption by various management stakeholders.
- Synthesize cyber risk information into succinct, concise, and logical summaries and reports.
- Help address threats and vulnerabilities by communicating risk insights in an effective and meaningful manner to management, delivery partners and resolver groups.
- Keep abreast of emerging cyber security technologies and industry trends to remain a subject matter expert in matters related to threat, vulnerability, and security technologies.
- Help develop Security Improvement Programs and enhance/automate processes within TVM and ICSU.
- Collaborate with teams in and out of ICSU to achieve security goals in a timely manner.
- Periodic support after regular office hours.
What you bring:
- Working knowledge of security principles and industry best practices related to threat and vulnerability management, application security, penetration testing.
- 1-3 years of hands-on experience with tools and solutions related to threat and vulnerability management, application security, penetration testing.
- 1-3 years of hands-on experience with incident management and associated vulnerability analyses.
- Experience with the complete cycle of vulnerability management including discovery, assessment, patching and tracking.
- Experience with communicating and managing security metrics, KRIs and KPIs to stakeholders and collaborators.
- Knowledge of information security standards and frameworks including ISO 27001, NIST, PCI DSS and/or COBIT.
- Knowledge of SANS, OWASP TOP 10, CWE 25, MITRE frameworks.
- Basic knowledge of ethical hacking techniques and forensic analysis
- Familiarity with server/application hardening and conforming to industry standards.
- Demonstrable project management, process documentation creation, and communication skills.
- Previous experience in the banking, telecommunications and media industry is an asset.
Technical Skills:
- Application security and code assessment.
- Threat and vulnerability management.
- Scripting and software coding.
- Use of tools/solutions related to the threat and vulnerability management field.
- CISSP, CEH, GIAC, CISA, CCSP, CCIE, MCSE, CCNA, CCNP or other security certifications a definite asset.
What’s in it for you?
We believe in investing in our people and helping them reach their potential as valuable members of our team. As part of our team, you’ll have access to a wide range of incredible resources, growth opportunities, discounts, and perks, including:
- Competitive salary & annual bonus
- Competitive & flexible health and dental benefits, pension plan, RRSP, TFSA, and Stock matching programs.
- Discounts: Enjoy up to 50% off Rogers Services and Blue Jays Tickets, 25% off
- TSC items, and a 20% discount on all wireless accessories sold in Rogers stores.
- Paid time off for volunteering
- Company matching contributions to charities you support
- Growth & Development Opportunities:
- Self-driven career development programs (E.g. MyPath program)
- Rogers First: priority in applying to internal roles of interest
- Wellness Programs:
- Homewood employee & family assistance program
- Cognitive Behavioural Therapy (CBT) & Virtual therapy sessions
- Low or no-cost fitness membership with access to virtual classes
- Our commitment to the environment and diversity:
- Work for an organization committed to environmental protection
- Strong commitment to diversity and inclusion with employee resource groups supporting equity-deserving groups including groups representing People of Colour, 2SLGBTQIA+, Indigenous Peoples, Persons with Disabilities and Women. We all bring something different, and we know what makes us different makes us great.
This is a hybrid work position and will require you to be in office three days per week. You can choose which days in office work best for you!
To protect our people, brand and assets, a pre-employment background check will be conducted. As part of our selection process, all candidates must clear a criminal background check. Additionally, a credit check and drivers abstract may be required depending on the role.
Schedule: Full time
Shift: Day
Length of Contract: Not Applicable (Regular Position)
Work Location: 8200 Dixie Road (101), Brampton, ON
Travel Requirements: Up to 10%
Posting Category/Function: Technology & Information Technology
Requisition ID: 316804
At Rogers, we believe the key to a strong business, is a diverse workforce where equity and inclusion are core to making everyone feel like they belong. We do this by embracing our diversity, celebrating our different perspectives, and working towards creating environments that empower our people to bring their whole selves to work. Everyone who applies for a job will be considered. We recognize the business value in creating a workplace where each team member has the tools to reach their full potential by removing any barriers for equal participation. We work with our candidates who are experiencing a disability throughout the recruitment process to ensure that they have what they need to be at their best. Please reach out to our recruiters and hiring managers to begin a conversation about how we can ensure that you deliver your best work. You matter to us! For any questions, please visit the Recruitment Process FAQ.
Posting Notes: Technology
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security Banking CCIE CCNP CCSP CEH CISA CISSP COBIT Compliance Ethical hacking GIAC ISO 27001 KPIs NIST OWASP PCI DSS Pentesting SANS Scripting Security assessment Vulnerabilities Vulnerability management
Perks/benefits: Career development Competitive pay Equity / stock options Fitness / gym Flex hours Flex vacation Health care Salary bonus Startup environment Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.