Security Analyst
Date: May 5, 2025
Location: CA
Company: Independent Electricity System Operator
INDEPENDENT ELECTRICITY SYSTEM OPERATOR (IESO)
Requisition ID: | 20370 |
Location: | Mississauga/Hybrid |
Status: | Regular |
Business Unit: | Information & Technology Services |
Why join us?
You’ve got great skills. And you want to use them in an organization where you know what you do every day matters. We get that.
We also know that ensuring Ontarians have access to affordable and reliable power doesn’t happen by accident. So we give you the tools, flexibility and support you need to achieve your goals, and development opportunities to help you grow. You’ll thrive in a collaborative, team-based environment that values your unique skills and experiences – and recognizes that when you do better, we become even better too.
Who we are
The Independent Electricity System Operator (IESO) works at the centre of the province’s power system, ensuring Ontarians have access to reliable and cost-effective electricity when and where they need it. We operate the province’s electricity grid 24/7, design, run and oversee the wholesale electricity markets, and plan and prepare to meet Ontario’s electricity needs – now and into the future.
The opportunity
The Security Analyst will coordinate, plan and/or organize the response to a detected cybersecurity issue within the IESO and the Ontario electricity industry. This function will work with the Security Operations, Security Architecture, Security Technology, Access Management and Threat/Vulnerability and Risk Teams and our security providers including our government security partners. This function is the first point of technical contact in the organization around cyber security operations. This is a critical role in the identification of cyber incidents.
What you'll do
- Oversee/monitor access logs and privileges.
- Contribute to the development of Information Security standards and procedures for business units consistent with corporate security objectives and generally accepted and leading edge Information Security practices and professional security standards and in coordination with IT Process Development Leaders and the Senior Manager, Information Security.
- Support the delivery of the Security Operations and Technology programs for applications, tools, anti-virus, encryption and fire walls, implementation support, identification of system vulnerabilities, User and Entity Behaviour Analysis, system assessments, Information Security advice and consultation, business resumption planning and disaster recovery planning.
- Provide input to supervision on all areas of Information Security.
- Contribute to the development/delivery of awareness training and general Information Security education.
- Provide strategic, operational, and technical insight to ensure the IESO Security program is adequately prepared to detect current and future threats
- Review and modify, in conjunction with the Threat/Risk and Governance Teams, the security technology rules and filters to better detect and prevent security incidents. As part of this change, formal review and documentation of the change will need to take place to prevent outages or detrimental system impact
- Create and implement the automation routines and information collection and identification tools for security correlation purposes
- Identification and formally revie redundant monitoring tasks, redundant security event analysis or data duplication on collection tasks to streamline and free up system resources. Where “Reduction” occurs documentation will need to be developed explaining the proposed solution
- Monitor and ensure Service Provider is empowered to review the security data feeds among the various servers, applications and networks within relevant processes
- Document and review with other SOC analysts at the Service Provider the interactions of the filters, rules and matching routines and security applications within the deployed security technologies.
- Assist, through strong documentation and communications skills, the Service Provider SOC analysts in explaining the solutions that were developed, designed and implemented to security operations and non-security operations personnel
- Keep up-to-date on the latest security information pertaining to the SOC technology in order to validate the security capabilities of the SOC
- Keep up-to-date on the vulnerability of appliances, servers, OS, application, etc. of the SOC
- Conduct the installation, operation and management of approved security tools and applications to provide security information, security event relationship and security event analytical tools for the SOC analysts
- Participate in improvement efforts to gather, analyze, and define security operations and information security requirements for a variety of threat and vulnerability management issues
- Perform product evaluations and recommendations. The analyst may be asked to choose security products and services to implement, and plan the implementation based on industry best-practices or procedures in relationship to the SOC
- Develop, document, and present general and technical presentations
- First point of contact from Service provider during business hours.
- Provide leadership and insight for the security monitoring and security incident investigation and response personnel
- Handle confidentiality issues, requiring high level of trust and integrity
- Perform other duties/tasks/projects as required or assigned.
What you need to succeed
- Requires a sound knowledge of computer science, information technology and telecommunications systems.
- Good written and oral communication skills, in order to deal with end-users, review/input on procedures, standards and/or methods; and design/deliver training.
This knowledge is considered to be normally acquired either through the successful completion of a university degree in the area of Computer Science or related discipline or equivalent.
- Experience coordinating/analyzing enterprise security systems, or components of the security program, on a diverse set of computing platforms, operating systems and applications, especially Windows NT and UNIX.
- Experience with networking products, large package and systems implementation. Previous experience as part of a large multi-disciplined project, and with systems vendors, which requires having sound project management skills
- A period of over 4 years, up to and including 6 years is considered necessary to gain this experience.
What’s in it for you
- A comprehensive total rewards program, including best-in-class benefits and a flexible workplace
- A challenging, fast-paced and collaborative team environment, where your perspectives and experiences matter
- Leaders who support your growth and success through regular feedback and coaching
- The opportunity to work with some of the brightest minds in the industry
Deadline: May 12, 2025
For future reference, please ensure to save a copy of the job description as it will no longer be available once the posting closes.
At the IESO, we know that achieving great results depends on embracing diversity by attracting, developing and retaining people from a wide variety of backgrounds. We do this by ensuring our recruitment and advancement policies are fair and equitable, and by creating an accessible and inclusive environment – one that values every team member’s unique skills and experiences and ensures they have the support they need to achieve their potential. If you require accommodation during the recruitment process, please let us know.
We thank you for your interest in a career at the IESO, but we will only contact those candidates selected for an interview.
Note: The successful candidate must be eligible to work in Canada and will be subject to a background check.
The IESO offers a hybrid work model program to most of our employees, based on business needs. Individuals participating in the program can work an average of three days per week remotely within Ontario. It also offers three flex weeks when individuals can work remotely within Ontario . When working in the office, you will be located at our Mississauga, Toronto, or Oakville location.
Join our talent community
Sign up for talent community; stay in touch, find out about new opportunities – and discover how you can make a difference. Discover how we use our expertise and commitment to deliver reliable and affordable electricity to Ontario’s businesses and communities, and how we’re innovating to secure a stronger energy future for all Ontarians. Visit Careers at IESO and be sure to follow us on LinkedIn.
Find out why we were selected as Greater Toronto’s Top 2024 Employers, and what we offer.