IKO Industries

Senior Information Security Analyst

IKO Industries$106K — $120K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years of experience in Information Security, Security Operations, or Incident Response
  • Experience leading complex security investigations involving cloud and SaaS incidents
  • Hands-on expertise with SIEM/logging platforms like Splunk, QRadar, or Elastic
  • Strong background in endpoint, network, cloud, SaaS, and email security
  • Familiarity with Data Classification, Data Governance, and DLP initiatives

Responsibilities

  • Lead investigations and responses to security incidents across various platforms
  • Proactively hunt for threats and signs of data compromise in cloud and SaaS environments
  • Analyze logs and alerts to detect unauthorized access and privilege abuse
  • Produce clear incident reports with evidence and root cause analysis
  • Embed security requirements into IT and business projects involving hybrid environments
  • Contribute to security standards and perform technical risk assessments
  • Mentor junior analysts and enhance the maturity of the security operations function

Benefits

  • Onsite work environment promoting collaboration
  • Opportunities for professional growth and mentorship
  • Engagement in impactful security initiatives
  • Access to advanced security tools and technologies
  • Contribution to a strong information security culture within the organization
Full Job Description
Job Description

Senior Information Security Analyst
Location: Mississauga, ON (Onsite)
Reports to: Team Lead, Information Security

Compensation: $106,000 - $120,000

Role Summary

We are seeking a Senior Information Security Analyst with deep, hands-on experience across security operations, incident response, and data protection in enterprise, cloud, and SaaS environments. This role is responsible for defending the organization against advanced cyber threats while leading efforts to protect sensitive business, employee, and executive data across on-premise systems, cloud platforms, and collaboration tools such as Microsoft 365.

The Senior Analyst operates as a technical authority and trusted advisor, helping shape security detection, response, and data protection practices across the enterprise. This role goes beyond monitoring tools-it focuses on investigations, risk reduction, and building durable security controls that scale across modern hybrid IT and SaaS environments.

This position is fully onsite at our Mississauga, ON office.

What Success Looks Like in This Role
  • Cyber incidents are detected early across network, endpoint, cloud, and SaaS platforms, investigated thoroughly, and closed decisively
  • Sensitive data in email, file sharing, cloud storage, and business systems is protected by design-not discovered after an incident
  • Security controls balance risk reduction without breaking productivity in platforms like Microsoft 365 and other SaaS tools
  • Business and IT leaders understand cyber and data risk in clear, plain language
  • Junior analysts get stronger because of your guidance, not despite it


Key Responsibilities

Security Operations & Incident Response (Core)
  • Lead investigation and response to security incidents across network, endpoint, cloud infrastructure, SaaS platforms (including Office 365), email, and identity systems
  • Proactively hunt for threats, suspicious behavior, and signs of data compromise across on-prem, cloud, and SaaS environments
  • Analyze logs, alerts, and telemetry from SIEM, EDR, identity, email, and cloud platforms to identify unauthorized access, privilege abuse, lateral movement, and account compromise
  • Act as an escalation point for complex or high-impact security incidents, including cloud security breaches and SaaS account takeovers
  • Produce clear, defensible incident reports with evidence, root cause analysis, and corrective actions

Data Protection, Governance & DLP
  • Play a lead role in Data Governance and Data Classification initiatives covering on-premise systems, cloud platforms, and SaaS applications
  • Design, tune, and support Data Loss Prevention (DLP) controls across:
    • Email and collaboration platforms (e.g., Office 365)
    • Endpoints
    • Cloud storage and SaaS collaboration tools
  • Investigate data-related security events, including:
    • Unauthorized access to sensitive or regulated data in cloud and SaaS platforms
    • Large or unusual data transfers from cloud storage or collaboration systems
    • Data shared externally or to personal accounts from corporate email or SaaS environments
  • Partner with business owners to apply risk-based data protection controls without unnecessary friction

Security Architecture & Project Enablement
  • Embed security and data protection requirements into IT and business-led projects involving cloud, SaaS, and hybrid environments
  • Identify risks introduced by new systems, integrations, SaaS vendors, cloud services, or workflows
  • Recommend pragmatic remediation options, compensating controls, and secure design improvements
  • Provide hands-on security architecture guidance for cloud services, SaaS platforms, and identity-centric solutions when needed

Governance, Risk & Compliance
  • Contribute to security standards, policies, procedures, and technical guidelines related to cloud security, SaaS usage, identity, and data protection
  • Perform and review technical risk and threat assessments for critical systems, including cloud-hosted and SaaS-based services
  • Support internal and external audits (e.g., PCI, ISO 27001, regulatory reviews)
  • Define and track remediation plans through to closure

Tooling, Detection & Continuous Improvement
  • Improve detection logic, alert quality, and investigation workflows across SIEM, EDR, email security, cloud security, and SaaS telemetry
  • Evaluate new security tools and capabilities with a practical, outcomes-focused mindset
  • Reduce noise, false positives, and manual effort where possible
  • Stay current on emerging threats targeting cloud platforms, SaaS environments, identity systems, and collaboration tools

Leadership & Mentorship
  • Act as a technical mentor to junior and intermediate analysts
  • Lead by example during incidents, investigations, and projects
  • Raise the overall maturity of the security operations function across enterprise, cloud, and SaaS environments


Required Qualifications & Experience

Experience
  • 8+ years of progressive experience in Information Security, Security Operations, or Incident Response
  • Demonstrated experience leading complex security investigations end-to-end, including cloud and SaaS-based incidents
  • Hands-on expertise with SIEM / logging platforms (e.g., Splunk, QRadar, ArcSight, Elastic)
  • Strong background investigating endpoint, network, cloud, SaaS, and email-based threats
  • Proven experience working directly with IT infrastructure, cloud platforms, Microsoft 365, and enterprise applications

Data Protection Experience (Required)
  • Practical experience with Data Classification, Data Governance, and/or DLP
  • Strong understanding of how sensitive data moves across email, collaboration tools, cloud services, and enterprise systems
  • Experience investigating data misuse, data exfiltration, or insider-related incidents

Technical Experience (Strongly Preferred)
  • Endpoint Detection & Response (EDR) platforms
  • Network security and traffic analysis
  • Identity and access security (including cloud identity platforms)
  • Vulnerability management and risk-based remediation
  • Cloud security controls and SaaS environments (including Office 365 / Microsoft 365)


Certifications (Nice to Have)
  • CISSP, CISM, CRISC, or similar
  • Relevant cloud or security platform certifications


Core Skills & Attributes
  • Excellent investigative and analytical skills
  • Ability to explain cyber and data risk in plain business language
  • Calm and decisive during incidents
  • Strong written documentation skills (incident reports, risk assessments, recommendations)
  • Comfortable influencing without authority
  • Pragmatic, risk-based mindset-knows when "perfect" is the enemy of "secure"


Education & Other Requirements
  • Bachelor's degree in Information Technology, Computer Science, or related field preferred
  • Ability to travel across North America and Europe as required

About IKO Industries

IKO Industries is a global leader in the manufacturing and supply of residential and commercial roofing products, waterproofing, insulation systems and accessories. With over 70 years in the industry, IKO has a strong reputation for quality and innovation. The company operates in over 100 countries and has manufacturing plants in North America, Europe, and Asia. IKO is committed to sustainability and has implemented various initiatives to reduce its environmental impact. The company is also involved in various charitable initiatives, including supporting local communities and disaster relief efforts.
Learn more about IKO Industries
Size
4,000 employees
Industry
Founded
1951

Similar Jobs

More Jobs at IKO Industries

More Information Technology Jobs

Find similar Senior Information Security Analyst jobs: