Security Technology Analyst
Job in
Toronto, Ontario, M5A, Canada
Listing for:
University of Toronto
Full Time
position
Listed on 2026-10-07
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Network Security
Job Description & How to Apply Below
Date Posted: 10/06/2026
Req : 50456
Faculty/Division: Temerty Faculty of Medicine
Department: MedIT
Campus: St. George (Downtown Toronto)
Position Number:
Existing Vacancy: Yes
Description:
About us:
Home to over 40 departments and institutes, the University of Toronto's Temerty Faculty of Medicine lies at the heart of the Toronto Academic Health Science Network and is a global leader in ground-breaking research and education, spanning clinical medicine, basic science and the rehabilitation sciences sectors.
Your opportunity:
MedIT provides information technology support for the Temerty Faculty of Medicine. Our mission is to partner and collaborate with clients, University, and third parties to determine value based, sustainable technology solutions that enable the Faculty to achieve its academic mission.
As Security Technology Analyst, you will be responsible for implementing, tuning, and scaling advanced security technologies and AI tools to protect Temerty Faculty of Medicine systems, data, teaching, research, and administrative activities. Working closely with the Manager, Information Security, you will monitor multifaceted security data streams, proactively neutralizing threats through coordinated incident response, vulnerability management, and supporting incident response investigation. You will contribute to the secure and reliable operation of security technologies by working with vendor-specific platforms and tools such as firewalls, endpoint detection and response solutions, security information and event management systems, configuration and policy management systems, vulnerability management platforms, AI tools, and identity and access management technologies.
You will prepare technical evidence and reporting, automate repeatable workflows, execute approved remediation activities, and collaborating cross-functionally with IT and University security teams to reduce risk and strengthen security operations.
Your responsibilities will include:
Configure, tune, troubleshoot, and maintain security technologies, including but no limited to SIEM/security monitoring tools, endpoint protection and EDR/XDR platforms, firewalls, configuration management systems, vulnerability management tools, identity and access management technologies, log collectors, and related integrationsAnalyze security events and alerts, correlate activity across multiple tools and data sources, and provide initial assessments, trends, recommendations, and escalation informationOperate and support vulnerability scanning and assessment tools; schedule scans, review results, validate findings, and help identify affected systems and ownersPerform initial triage and investigation of security alerts and suspected incidents, gather relevant logs, sensitive information, and technical evidence, assess potentialsensitivity of impact, and escalate according to established proceduresProcess account provisioning, access modification, suspension, and deprovisioning requests through approved workflows, ticketing systems, and identity management platformsIdentify opportunities to standardize, automate, and improve security operations, access management, vulnerability tracking, incident response workflows, and operational reportingEssential
Qualifications:
Bachelor's Degree in a relevant field, preferably Computer Science, Information Security, Information Technology, Engineering, or an equivalent combination of education and experienceMinimum four years relevant work experience in information security, security operations, SOC analysis, threat analysis, vulnerability management, identity and access managementSignificant exposure to information security practices, information risk assessments, security controls, operational security processes, or control assurance activitiesExperience with one or more vulnerability management tools, such as Tenable, Qualys, or Rapid7Experience with security monitoring, SIEM, SOAR, endpoint, firewall, or detection platforms, such as Microsoft Sentinel, Splunk, Crowd Strike, Microsoft Defender, Sentinel One, Palo Alto, Cisco, or similar technologiesExperience analyzing logs, alerts, endpoint telemetry, network events, authentication events, and system activity to support threat detection, incident triage, and remediationExperience supporting incident response investigation, evidence gathering, sensitive or privileged information handling, containment, remediation, recovery, and post-incident improvement activitiesExperience supporting…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here: