Senior Analyst, IT Security Operations

MacEwan University

$100K — $120K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree in Computer Science, Information Systems or related field.
  • Current Information Security certification (e.g., CISSP, SSCP, OSCP).
  • 7+ years of progressive IT experience; 3+ years in information security.
  • Experience managing projects with compliance elements.
  • Knowledge of security risk frameworks and incident response practices.
  • Proven experience with incident response technologies like SIEM and SOAR.
  • Experience in a post-secondary or public sector environment is a plus.

Responsibilities

  • Lead technical work on IT security applications and controls based on audits and post-incident reviews.
  • Enhance the University's security monitoring to automate alerts and reduce operational tasks.
  • Design and deliver the annual Cyber Security & Privacy Awareness training course, ensuring regulatory compliance.
  • Collaborate with IT staff to assess security issues and recommend remediation actions.
  • Manage vulnerability processes and monitor compliance with PCI-DSS requirements.
  • Stay updated on information security trends and best practices across various disciplines.

Benefits

  • Competitive base pay
  • Generous vacation time
  • Secure pension plan
  • Flexible benefits package
  • Continuous learning culture
  • Opportunities for career growth
Full Job Description
Reporting to the Senior Director, the Senior Analyst, IT Security Operations plays an important role in the implementation, operation, and ongoing support of secure and reliable information security technologies at MacEwan. The position completes complex technical analyses, develops and implements security controls and operational enhancements, and supports the monitoring, protection, and continuous improvement of the University's technology environment. The role also supports cyber incident triage and response by investigating security alerts, assessing potential exposure, and supporting remediation in accordance with established incident response processes.

Key responsibilities include:
  • Leads technical work related to the implementation, operation, and continuous improvement of IT security applications, controls, and procedures, informed by audit findings, identified security gaps, and lessons learned from post-incident reviews;
  • Develops and extends the University's security monitoring platforms to provide automated alerts which minimize the daily operational tasks within the Information Security department. Works with other areas of IT to improve their security posture through industry best practices and security orchestration, automation, and response (SOAR) methodologies;
  • Designs, develops, and delivers the annual Cyber Security & Privacy Awareness training course, collaborating with the ITS Leadership and the Manager, Information & Privacy Office to ensure that regulatory and best practice training requirements for the University are met;
  • Works with ITS Leadership, and IT staff, including systems administrators, network administrators, security operations, and security governance, risk, and compliance (GRC) team members to assess security issues, recommend remediation actions, and support follow-up with responsible technical teams;
  • Supports and maintains the Information Technology Services vulnerability management processes by monitoring identified vulnerabilities, performing quarterly reviews to support PCI-DSS compliance requirements, ensuring that other IT areas are installing security patches and applying remediation security configurations for IT resources and that the University is properly monitoring these systems; and
  • Remains current in industry trends and best practices across a broad range of information security disciplines, including software development security, security operations, security assessment and testing, identity and access management (IAM), security and risk management, asset security, security architecture and design, and communication and network security.
Skills

You will have:
  • Passion, interest, and understanding of trends and best practices in information security and related technologies;
  • Demonstrable IT skills such as working with enterprise technology environments and modern platforms such as cloud service providers and security software;
  • Excellent communication skills, including the ability to communicate effectively with external stakeholders and internal stakeholders at varying levels within the organization and to translate technical concepts for non-technical audiences;
  • Excellent interpersonal skills, with the ability to work collaboratively and build/maintain strong working relationships;
  • Strong planning and project management skills, with the ability to manage multiple initiatives simultaneously;
  • The ability to gather data, investigate, analyze, and synthesize information to draw conclusions and make recommendations;
  • The ability to navigate situations that can be somewhat ambiguous with the ability to design solutions that work across platforms;
  • Strong attention to detail and excellent organizational, time management, analytical, problem-solving, and critical thinking skills, enabling you to effectively manage priorities and deliver high-quality results;
  • The ability to multitask, take initiative, demonstrate flexibility to adapt to changing situations and priorities, and meet critical deadlines;
  • Experience with various computer networks, operating systems, software, hardware, and diverse operating systems and platforms such as: Linux, Windows, macOS, iPhone, Android, and cloud environments and service providers such as Microsoft Azure, Amazon Web Services (AWS), and Google Cloud;
  • The ability to work independently and in a collaborative team environment; and
  • Scripting knowledge (e.g., Python or PowerShell) to support the automation of workflows and connectors; experience with these tools would be considered an asset.
Qualifications
  • A minimum of a Bachelor's Degree in Computer Science, Information Systems or related field.
  • Current Information Security certification, such as SSCP (Systems Security Certified Professional), Certified Information Systems Security Professional (CISSP), Certified Cybersecurity Operations Analyst (CCOA), Offensive Security Certified Professional (OSCP) from ISC2, ISACA, OffSec, or similar body.
  • A minimum of 7 years of progressive experience in Information Technology with at least 3 years of working experience with information security.
  • Experience in leading projects with elements of change management and compliance.
  • Demonstrated knowledge of security risk frameworks and incident response practices.
  • Proven experience with information security operational and response technologies such as security incident and event management (SIEM), extended endpoint detection and response (XDR), security orchestration and automated response (SOAR), digital forensics incident response (DFIR).
  • Experience working within a post-secondary or public sector environment is considered an asset.
  • An equivalent combination of education and experience may be considered.
Position Requirements
  • This position may be required to work overtime, including occasional evening or weekend work to accommodate system maintenance or urgent user support.
  • This position is required to be on-call in a rotational basis to support the 24×7 Information Technology Services On-Call & Escalation Process.
Benefits

When you become part of the MacEwan University team, you will enjoy a competitive salary. Our total compensation package includes:
  • Competitive base pay
  • Generous vacation time
  • Secure pension plan
  • Flexible benefits package
  • Continuous learning culture
  • Opportunities for career growth

Similar Jobs

More Jobs at MacEwan University

More Information Technology Jobs

Find similar Senior Analyst, IT Security Operations jobs: