Full Job Description
About the Role:
We are seeking a hands-on Security Analyst to join our Information Security team and help drive the day-to-day execution of security operations across IMAX.
The Security Analyst will monitor the environment for security threats and vulnerabilities, investigate and respond to cybersecurity incidents, and help drive issues through remediation and resolution. The role will also proactively identify weaknesses across security controls, processes and technologies, partnering with IT, Infrastructure, DevOps and business teams to strengthen IMAX's overall security posture.
Beyond operational security, the Security Analyst will contribute to the secure design and implementation of IMAX products, services and capabilities, helping ensure alignment with security best practices, industry frameworks and applicable MPA, TPN and Studio partner requirements. The role will take ownership of key security initiatives, continuously improve operational procedures and playbooks, and serve as a trusted security resource across the organization.
Responsibilities
• Monitor networks, systems and security technologies for security events, vulnerabilities and potential threats, investigating and responding to cybersecurity incidents through resolution.
• Lead and support incident response activities from detection and triage through remediation and post-incident review, documenting incidents and assessing potential impact to IMAX.
• Proactively identify gaps and weaknesses in existing security controls, tools and processes and work cross-functionally with IT, Infrastructure, DevOps and business teams to drive remediation.
• Support the health, effectiveness and operational assurance of security technologies, including SIEM, EDR/XDR, vulnerability management and threat intelligence platforms.
• Monitor emerging threats, vendor advisories and threat intelligence and recommend appropriate proactive countermeasures.
• Develop, maintain and continuously improve security procedures, operational playbooks, standards and mitigation techniques, including documentation that supports knowledge sharing and cross-training.
• Partner with all IMAX teams to help align security operations with broader architecture, risk and compliance requirements.
• Act as an Information Security subject matter resource and trusted advisor to business partners and IMAX project teams on security risks, requirements and mitigation strategies.
• Evaluate security technologies and tools against organizational requirements and contribute to recommendations for enhancements and improvements.
Qualifications
• 2+ years of progressive Information Security experience, including hands-on experience in security operations, SOC environments and/or incident response.
• Demonstrated experience investigating and responding to cybersecurity incidents, including incident detection, analysis, remediation and post-incident review.
• Hands-on experience with enterprise security technologies such as SIEM, EDR/XDR, vulnerability management, threat intelligence and intrusion detection platforms.
• Experience with enterprise-class IT infrastructure, including Windows and Linux operating systems, networking, routing, switching, firewalls, endpoint protection and mobile device management.
• Knowledge of security technologies and platforms such as Splunk, Palo Alto firewalls/GlobalProtect, workstation encryption and vulnerability scanning technologies and methodologies.
• Understanding of security architecture, network security, cloud security, identity and access management, threat modelling and security standards and frameworks.
• Experience developing, documenting or improving security procedures, operational playbooks and security controls.
• Strong analytical, troubleshooting and critical-thinking skills with the ability to identify security weaknesses and develop practical solutions.
• Proven ability to independently manage priorities and drive initiatives through completion with minimal supervision while working effectively as part of a broader team.
• Strong cross-functional collaboration skills with the ability to work effectively with IT, Infrastructure, DevOps, business stakeholders and external partners.
• Strong written and verbal communication skills, including the ability to translate complex technical security concepts and risks for non-technical audiences.
• Ability to manage multiple priorities effectively in a fast-moving security environment while balancing proactive security improvements with incident-response requirements.
• Formal education or training in Information Security, Cybersecurity, Computer Science or a related discipline is an asset.
• Relevant security certifications such as CCSP, SSCP, CISSP, GCIH, GCIA or similar are considered an asset.
• Experience supporting content protection, Studio/MPA/TPN requirements or working within a highly regulated industry environment is considered an asset.
Position Status:
Existing Vacancy
This job posting reflects a current vacancy within the organization. The position is active, approved, and intended to be filled as part of our staffing needs. / Cette offre d'emploi reflète un poste actuellement vacant au sein de l'organisation. Le poste est actif, approuvé et destiné à être pourvu dans le cadre de nos besoins en dotation.
Hiring Range / Échelle salariale à l'embauche :
$81,873.99 / 81.873,99$ - $95,519.66 / 95.519,66$ (per year / par an) Final pay within this range will be determined based on experience, skills, internal equity, and the geographic location of the role. Additional non-discretionary compensation may apply where eligible. / La rémunération finale dans cette échelle sera déterminée en fonction de l'expérience, des compétences, de l'équité interne et de l'emplacement géographique du poste. Une rémunération non discrétionnaire supplémentaire peut s'appliquer lorsque le poste y est admissible.
For consideration, please apply online. We thank all applicants for their interest in IMAX but only those selected for an interview will be contacted.