Retour à la recherche
A
AffinitySource d’offres vérifiée

Security Analyst(s)

Offre en anglais

The role involves monitoring and investigating network security events, managing incident tickets in ServiceNow, and performing traffic analysis to detect threats. Additionally, the analyst will support the implementation of security controls, conduct firewall rule reviews, and collaborate with various technical teams to remediate vulnerabilities.

  • Sur place
  • Regina, SK
  • Publié 23 juill. 2026
  • Postuler avant le 22 août 2026
  • 1 poste

Résumé du poste

Job Description On behalf of our public sector client, Affinity is seeking a Security Analyst to support cybersecurity operations and strategic security initiatives. The role is responsible for security monitoring, incident response, network security analysis, investigations, reporting, stakeholder coordination, and continuous improvement of the Government of Saskatchewan’s cybersecurity posture. The resource will be expected to develop strong relationships with teams throughout the organization and work collaboratively to secure application assets. Scored Requirements Experience supporting enterprise security operations in complex, distributed, and hybrid environments. Strong understanding of firewalls, intrusion detection and prevention systems, VPN, proxy services, secure web gateways, DNS security, load balancers, and network access controls. Experience reviewing firewall rules, access control lists, network flows, routing paths, and security policies to identify risks, misconfigurations, and unauthorized access. Ability to analyze network traffic, logs, packet captures, and security alerts to support threat detection, investigation, and incident response. Working knowledge of TCP/IP, routing, switching, VLANs, NAT, DNS, DHCP, VPN, wireless security, and common network protocols. Familiarity with Zero Trust principles, network segmentation, least privilege access, secure remote access, and identity-aware security controls. Ability to document network security findings, risk statements, technical recommendations, operational procedures, and remediation actions. Familiarity with cybersecurity frameworks and standards such as NIST Cybersecurity Framework, CIS Controls, ISO/IEC 27001, ISO/IEC 27002, and secure configuration baselines. Experience participating in change management processes, including reviewing network changes for security impact and validating implementation. Ability to work collaboratively with network, infrastructure, cloud, identity, endpoint, application, and security operations teams. Strong troubleshooting, analytical, communication, and problem-solving skills, with the ability to explain technical findings clearly to both technical and non-technical stakeholders. Diploma or degree in Cybersecurity, Network Engineering, Computer Science, Information Systems, or a related field, or equivalent practical experience. Professional certifications such as CISSP, CISM, CCNP Security, CCIE Security, Fortinet NSE, Palo Alto PCNSE, Check Point CCSA/CCSE, CompTIA Security+ certifications are considered an asset. Responsibilities Handling security queue in ServiceNow application to manage security incident tickets and comply with incident response plans and processes to address potential threats. Monitor, analyze, and investigate network security events and anomalies across firewalls, intrusion detection/prevention systems (IDS/IPS), web proxies, and other network security technologies. Perform network traffic analysis to identify indicators of compromise, suspicious communications, unauthorized access attempts, and potential data exfiltration activities. Support the implementation, administration, and continuous improvement of network security controls, including firewalls, network access control (NAC), segmentation, VPNs, and secure remote access solutions. Conduct reviews of firewall rules, access control lists (ACLs), and network security configurations to ensure adherence to security standards and least-privilege principles. Collaborate with architecture, infrastructure and networking teams to assess, troubleshoot and remediate network security risks, vulnerabilities and configuration gaps or weaknesses. Participate in security investigations and incident response activities, including packet capture analysis, threat containment, and root cause determination. Maintain awareness of emerging network-based threats, attack techniques, and security technologies, and recommend enhancements to detection and prevention capabilities. Creating and maintaining operational reporting artefacts (e.g. Risk Management Decision Item (RMDI), incident reporting, human resource (HR) investigations, lost/stolen reporting, etc.). Compiles and analyzes data for management reporting and metrics. Coordinating with CSRM Branch to create security awareness campaigns. Research proactively regarding needs and trends to anticipate and identify potential security problems/incidents. Engaging stakeholders to fulfill their requests (e.g. decommission request, assets decommission executions, etc.). Coordinates with other peers in CSRM Branch to research needs and trends to anticipate security problems or incidents. Proactively coordinating with appropriate stakeholders across GOS during a security incident – management, security, operations, and others to provide timely and relevant updates to stakeholders and decision-makers. Analyzing cyber security incidents to solve issues and suggest improvement in incident response procedures. Creating detailed reports and documentation of all incidents and procedures to the CSRM Branch, executive government, and leadership of GOS on a routine basis. Supporting the execution and monitoring of phishing simulation exercises, including user targeting, response tracking, and reporting. Responding to and resolving Privilege Access Management (PAM) related activities and service requests within defined SLAs using Service Now. Qualifications Resource must be available to work 100 per cent on-site located in a Government of Saskatchewan office in Regina, Saskatchewan, Canada, upon contract start. Local Knowledge. GOS is interested in understanding the Resource’s experience with GOS, or comparable entities, as it relates to the technical and business landscape. Describe in detail. This requirement is heavily weighted. Experience supporting enterprise security operations in complex, distributed, and hybrid environments. Strong understanding of firewalls, intrusion detection and prevention systems, VPN, proxy services, secure web gateways, DNS security, load balancers, and network access controls. Experience reviewing firewall rules, access control lists, network flows, routing paths, and security policies to identify risks, misconfigurations, and unauthorized access. Ability to analyze network traffic, logs, packet captures, and security alerts to support threat detection, investigation, and incident response. Working knowledge of TCP/IP, routing, switching, VLANs, NAT, DNS, DHCP, VPN, wireless security, and common network protocols. Familiarity with Zero Trust principles, network segmentation, least privilege access, secure remote access, and identity-aware security controls. Ability to document network security findings, risk statements, technical recommendations, operational procedures, and remediation actions. Familiarity with cybersecurity frameworks and standards such as NIST Cybersecurity Framework, CIS Controls, ISO/IEC 27001, ISO/IEC 27002, and secure configuration baselines. Experience participating in change management processes, including reviewing network changes for security impact and validating implementation. Ability to work collaboratively with network, infrastructure, cloud, identity, endpoint, application, and security operations teams. Strong troubleshooting, analytical, communication, and problem-solving skills, with the ability to explain technical findings clearly to both technical and non-technical stakeholders. Diploma or degree in Cybersecurity, Network Engineering, Computer Science, Information Systems, or a related field, or equivalent practical experience. Professional certifications such as CISSP, CISM, CCNP Security, CCIE Security, Fortinet NSE, Palo Alto PCNSE, Check Point CCSA/CCSE, CompTIA Security+ certifications are considered an asset. Affinity Earn Know someone who’s great for this, or any of our open roles? Earn up to $4,000/year for each successful referral through Affinity Earn. You can also earn up to $50,000 for helping us find new clients. Learn about our referral program at https://affinity-group.ca/earn/ or browse our jobs & follow us at https://www.linkedin.com/company/affinity-staffing/jobs/ About Affinity Affinity Group is a technology and business consulting and services company. We believe in creating long term relationships between clients and consultants that foster a mutually beneficial partnership. Affinity is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. All employment is decided on the basis of qualifications, merit and business need. For more information on Affinity, please visit www.affinity-group.ca Job Number: 13749

Ce que vous ferez

The role involves monitoring and investigating network security events, managing incident tickets in ServiceNow, and performing traffic analysis to detect threats. Additionally, the analyst will support the implementation of security controls, conduct firewall rule reviews, and collaborate with various technical teams to remediate vulnerabilities.

Exigences

Candidates should have experience supporting enterprise security operations in complex environments and a strong understanding of network protocols and security technologies. A degree in Cybersecurity, Computer Science, or a related field is required, and professional certifications like CISSP or Security+ are considered assets.

Autres compétences pertinentes

Relevées dans la description du poste. Confirmez les exigences importantes ci-dessus.

  • Cybersecurity Operations
  • Incident Response
  • Network Security Analysis
  • Firewalls
  • Intrusion Detection Systems
  • Intrusion Prevention Systems
  • VPN
  • TCP/IP
  • Zero Trust Principles
  • Network Segmentation
  • NIST Cybersecurity Framework
  • ISO/IEC 27001
  • Packet Capture Analysis
  • ServiceNow
  • Privilege Access Management
  • Troubleshooting

Domaines d’emploi

  • Technology
  • Security & Safety
  • Government & Public Sector
  • Consulting
  • Data & Analytics

Renseignements supplémentaires

Formation minimale
Diplôme professionnel
Expérience minimale
2+ ans
Postuler avant le
22 août 2026
Langue de l’offre
anglais
Heures de travail
40 heures par semaine
Niveau d’expérience
Entry level