Salary range (but not limited to):
118,700 - 145,100
Annual bonus target, based on the base salary, with a potential payout of up to double the target (subject to personal and company performance):
15%
As part of our commitment to Win As A Team, we share our success with employees through our annual bonus plan and Employee Share Purchase Plan (ESPP) – with Intact matching 50% of your net shares.
Our pension offerings provide flexibility and long-term security for our employees beyond their careers. We are one of the few companies offering the opportunity to receive guaranteed income for life via our defined benefit pension plan.
Salary for the candidate will be determined taking into consideration a number of factors including: experience, skills, qualifications, anticipated contribution to role, internal equity, etc. The salary range presented above is based on a 35-hour workweek and would represent a majority of different candidate profiles. However, we encourage candidates who may fall outside of this range to apply as well.
About the role
We’re looking for a Security Advisor Specialist to join our growing team!
What you'll do here:
- Identify security events and risks that need to be monitored, measured, and reported.
- Design, implement, and continuously optimize CDN and WAF security controls across enterprise environments.
- Develop, maintain, and tune security rules aligned with industry best practices, including the OWASP Top 10.
- Configure and enhance bot protection, DoS, and DDoS mitigation capabilities while balancing security, performance, and availability.
- Protect web applications and APIs against common attacks and emerging threats.
- Manage CDN and WAF configurations as Infrastructure as Code using Terraform, including reusable modules and secure configuration standards.
- Integrate CDN and WAF changes into CI/CD pipelines with version control, peer review, automated validation, and controlled deployments.
- Develop automated tests and scripts for security policies, configuration changes, operational tasks, and reporting.
- Monitor WAF logs and security telemetry, investigate attack patterns, tune policies, and minimize false positives.
- Detect configuration drift, support incident response, and maintain clear documentation for WAF architecture, policies, and operational procedures.
What you bring to the table:
- University degree in information security, computer science, or a related field, or an equivalent combination of education and experience.
- Minimum five years of relevant experience in information technology, including hands-on experience supporting enterprise web and application security.
- Extensive experience administering and supporting enterprise-grade CDN and WAF platforms in complex environments.
- Deep understanding of networking fundamentals and protocols, including TCP/IP, HTTP/S, DNS, TLS, routing, load balancing, reverse proxies, caching, and traffic flows across distributed environments.
- Strong understanding of web traffic, application architectures, APIs, and common attack techniques.
- Proven ability to develop, document, and enforce security policies, standards, and procedures.
- Experience managing security policies throughout their lifecycle, including requirements gathering, implementation, testing, approvals, exception management, reviews, and retirement.
- Strong Terraform expertise, with experience creating and maintaining reusable modules, managing environments through version control, and applying Infrastructure as Code practices to security services.
- Proficiency in scripting and automation using Python, Bash, or similar languages.
- Ability to interpret security events and technical data, troubleshoot complex production issues, identify root causes, and communicate practical recommendations to technical and business stakeholders.
- Strong collaboration skills, sound judgment, and a commitment to ethical security practices.
- Security certification would be an asset.
- For candidates located in Quebec, bilingualism is required considering the necessity to interact on a regular basis with English-speaking colleagues across the country
- No Canadian work experience required however must be eligible to work in Canada
#LI-Hybrid
Il s'agit d'un nouveau rôle au sein de notre équipe en pleine croissance | This role is a new member of our growing team.