Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness * Leverage industry standard and emerging tools to evaluate ...
Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness * Leverage industry standard and emerging tools to evaluate ...
Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness * Leverage industry standard and emerging tools to evaluate ...
Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness * Leverage industry standard and emerging tools to evaluate ...
Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness * Leverage industry standard and emerging tools to evaluate ...
Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness * Leverage industry standard and emerging tools to evaluate ...
Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness * Leverage industry standard and emerging tools to evaluate ...
Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness * Leverage industry standard and emerging tools to evaluate ...
Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness * Leverage industry standard and emerging tools to evaluate ...
Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness * Leverage industry standard and emerging tools to evaluate ...
Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness * Leverage industry standard and emerging tools to evaluate ...
Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness * Leverage industry standard and emerging tools to evaluate ...
Security Guard (Temporary) - Markham
Thornhill, ON · On-site
$23/hr
Obtain Security Control certification within six months of hire, in accordance with level-progression policy. WE ARE EXCITED FOR YOU TO OFFER US: * Ontario Secondary School Diploma * *MUST*Ontario ...
Security Guard (Temporary) - Markham
Thornhill, ON · On-site
$23/hr
Obtain Security Control certification within six months of hire, in accordance with level-progression policy. WE ARE EXCITED FOR YOU TO OFFER US: * Ontario Secondary School Diploma * *MUST*Ontario ...
Our Chalk River location is looking for a Security Support Control Maintainer to integrate hardware, software, and network components to ensure proper operation. If you answered yes, then this may be ...
Our Chalk River location is looking for a Security Support Control Maintainer to integrate hardware, software, and network components to ensure proper operation. If you answered yes, then this may be ...
Nuclear Employment Type: Full Time Position Overview The Nuclear Security and Import-Export Control Specialist is responsible for administering and supporting compliance with Canadian nuclear ...
Nuclear Employment Type: Full Time Position Overview The Nuclear Security and Import-Export Control Specialist is responsible for administering and supporting compliance with Canadian nuclear ...
Must-have * 10+ years of IT operations, identity and access management, or enterprise security experience; 5+ years in a leadership or senior control/governance role * Expert-level knowledge of ...
Must-have * 10+ years of IT operations, identity and access management, or enterprise security experience; 5+ years in a leadership or senior control/governance role * Expert-level knowledge of ...
Principal, Security Engineering
Toronto, ON · On-site
Collaborate closely with senior leadership and principals to develop and implement strategic initiatives that contribute to a durable and resilient security control environment. * Continually ...
Principal, Security Engineering
Toronto, ON · On-site
Collaborate closely with senior leadership and principals to develop and implement strategic initiatives that contribute to a durable and resilient security control environment. * Continually ...
... security control deviations Define business requirements for a centralized tracking and reporting solution Develop governance reporting to support executive reporting, trend analysis, and risk ...
... security control deviations Define business requirements for a centralized tracking and reporting solution Develop governance reporting to support executive reporting, trend analysis, and risk ...
Collaborate closely with senior leadership and principals to develop and implement strategic initiatives that contribute to a durable and resilient security control environment. * Continually ...
Collaborate closely with senior leadership and principals to develop and implement strategic initiatives that contribute to a durable and resilient security control environment. * Continually ...
Full-Time Overnight Access Control Security Guard
Toronto, ON · On-site
CA$19.19/hr
As an Access Control Security Guard, you will be the person spotting threats before they escalate in environments such as security operation centres, call centers, etc What's in it for you? * Hourly ...
New
Full-Time Overnight Access Control Security Guard
Toronto, ON · On-site
CA$19.19/hr
As an Access Control Security Guard, you will be the person spotting threats before they escalate in environments such as security operation centres, call centers, etc What's in it for you? * Hourly ...
New
CA$19.19/hr
As an Access Control Security Guard, you will be the person spotting threats before they escalate in environments such as security operation centres, call centers, etc What's in it for you? * Hourly ...
New
CA$19.19/hr
As an Access Control Security Guard, you will be the person spotting threats before they escalate in environments such as security operation centres, call centers, etc What's in it for you? * Hourly ...
New
Regulatory Compliance & Governance- Oversee compliance with RBC governance, regulatory, and security control requirements across program execution * Ensure timely completion and validation of ...
Regulatory Compliance & Governance- Oversee compliance with RBC governance, regulatory, and security control requirements across program execution * Ensure timely completion and validation of ...
Technical Architecture & Implementation You'll partner closely with Engineering to ensure technical architecture and security control implementations are aligned with NIST 800-53 baselines. You'll ...
Technical Architecture & Implementation You'll partner closely with Engineering to ensure technical architecture and security control implementations are aligned with NIST 800-53 baselines. You'll ...
Software Architect
Ottawa, ON · On-site +1
... security control, or how the component inherits the security control implementation from its containing environment. * Develop IaC Deployments for Navy Organizational infrastructure required to ...
Quick apply
Software Architect
Ottawa, ON · On-site +1
... security control, or how the component inherits the security control implementation from its containing environment. * Develop IaC Deployments for Navy Organizational infrastructure required to ...
Security Service Technician
Markham, ON · On-site
Install,maintain, and repair electronic security equipment (IP video, access control, alarm systems, integrations, etc.). * Inspect and test equipment and assembliesto diagnose,locate,and resolve ...
Quick apply
Security Service Technician
Markham, ON · On-site
Install,maintain, and repair electronic security equipment (IP video, access control, alarm systems, integrations, etc.). * Inspect and test equipment and assembliesto diagnose,locate,and resolve ...
Crypto Engineer
Toronto, ON · Hybrid
... Security & Control functions. Is this role right for you? In this role you will: * Lead multiple innovative crypto security capability initiatives and solve complex technical challenges, ensuring the ...
Crypto Engineer
Toronto, ON · Hybrid
... Security & Control functions. Is this role right for you? In this role you will: * Lead multiple innovative crypto security capability initiatives and solve complex technical challenges, ensuring the ...
Security Control information
What is the difference between Security Control vs Security Analyst?
| Aspect | Security Control | Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CISSP, CISA | CompTIA Security+, CISSP, GIAC |
| Work Environment | Implementing and managing security measures, often in security operations centers or IT departments | Monitoring, analyzing, and responding to security incidents, often in security operations or cybersecurity teams |
| Employer & Industry Usage | Used across industries to establish security policies and controls | Commonly employed in cybersecurity teams to analyze threats and vulnerabilities |
Security Control professionals focus on implementing and managing security measures to protect organizational assets, while Security Analysts monitor and analyze security events to identify and respond to threats. Both roles are essential in cybersecurity, often working together within security teams to ensure comprehensive protection.

Full-time
Life, Retirement
Posted 26 days ago
Job description
Our employees are at the heart of everything we do. Together, we help people, businesses, and society prosper in good times and be resilient in bad times.
Our employee promise represents Intact's commitment to you in exchange for living our Values, striving to do your best work, being open to change and investing in your career. In return, we promise to provide support, opportunities and performance-led financial rewards at a workplace where you can shape the future, win as a team and grow with us.
Pay at Intact is about much more than just salary.
Flexible work arrangements and a hybrid work model
Possibility to purchase up to 5 extra days off per year
Multiple benefits offered to support physical and mental wellbeing, including telemedicine, Wellness account and much more
Share plan & other savings: up to 12% of salary or even more (ask how you could earn guaranteed income for life)
Salary range (but not limited to):
0 - 0Annual bonus target, based on the base salary, with a potential payout of up to double the target (subject to personal and company performance):
15%As part of our commitment to Win As A Team, we share our success with employees through our annual bonus plan and Employee Share Purchase Plan (ESPP) - with Intact matching 50% of your net shares.
Our pension offerings provide flexibility and long-term security for our employees beyond their careers. We are one of the few companies offering the opportunity to receive guaranteed income for life via our defined benefit pension plan.
Salary for the candidate will be determined taking into consideration a number of factors including: experience, skills, qualifications, anticipated contribution to role, internal equity, etc. The salary range presented above is based on a 35-hour workweek and would represent a majority of different candidate profiles. However, we encourage candidates who may fall outside of this range to apply as well.
About the role
We're looking for a Security Advisor Specialist, Offensive Security to join our Global Red Team!
The Security Specialist, Offensive Security is responsible for testing the security controls, the network, and threat response for Intact Financial globally (All regions and all affiliate companies). He/she works as a specialist employing techniques, tactics and protocols to test security controls, working as part of a global offensive security team.
The Specialist, Offensive Security reports to the Director, Offensive Security and works with a team of technical advisors across multiple locations and time zones.
If you can think outside of the Kali box, and love to think like an attacker (with a track record to prove your capabilities) we want to talk to you about joining our team!
What you'll do here:
- Conduct reconnaissance on network environment to build external landscape using industry standard tools, threat intelligence feeds, OSINT and other readily available information sources
- Conduct offensive security testing to ensure security controls and response actions are effective. If you are detected, shifting from a red team focus to a purple team approach - your purpose isn't to create a "Gotcha!" moment - our mission is to strengthen our controls throughout the entire attack chain across the enterprise.
- Employ attack strategies to simulate real-world attacks by threat actors and benchmark response capabilities across the enterprise.
- Ability to identify and exploiting vulnerabilities in computer systems, networks and applications to simulate attacks by threat actors - you have a proven track record of evading modern EDR (eg. Crowdstrike, MDE, SentinelOne) while elevating privileges/hitting your target.
- Analyze and report on the results of security assessments and make recommendations to improve the security posture of the enterprise.
- You understand the TCP/IP stack in depth and know how to exploit it to create covert beacons, C2 channels, exfiltrate data across DNS. Understanding how routing tables work (eg. BGP) and how they can be exploited is an asset.
- Work with regional cyber governance and risk teams to ensure that findings are properly tracked for remediation
- Generate the required metrics and reports to support the CISO IFC Affiliates in reporting on enterprise security control effectiveness
- Leverage industry standard and emerging tools to evaluate emerging threats to the financial services space and benchmark regions and affiliate companies to peers.
- Able to consume threat intelligence and apply the attack surface to crown jewel assets for target and tactic development, proposing clear rules of engagement for testing activities (either one time or perpetual) and ensuring compliance to the ROE through all phases of testing.
- Maintain and update all offensive security tools, technologies and processes in line with company rules of engagement
- Provide timely and effective communications to key internal stakeholders in alignment with policy and rules of engagement.
What you bring to the table:
- Advanced knowledge in the following areas: computer networks, operational security platforms, information security principles, TCP/IP, DNS, UDP, BGP, SOC, IAM, SIEM, DLP, EDR, Threat intelligence, Incident Response, technical writing, information risk.
- Bachelor's degree in Computer Technology, Information Security, an asset.
- A minimum of five (5) years of relevant professional experience in information technology.
- A minimum of three (3) years of experience in information security.
- Knowledge of offensive security operations, tools and techniques.
- Knowledge of information security standards, regulations and legislation (NIST, COBIT5, ISO 27001), an asset.
- Python scripting comes naturally, and have a history of using it in blue/red/purple team engagements
- Proficiency in manual testing techniques beyond automated scanning.
- Strong knowledge of OWASP Top 10, MITRE ATT&CK, and CVSS scoring.
- You can take many vectors of technical vulnerability information (Pentest reports, vulnerability scanning data, SAST/DAST reports) and build an attack plan on critical assets.
- You must have the ability to take highly technical data and results and translate them to business-friendly language to help non-technical stakeholders understand the approach, impact and outcome from offensive security operations.
- If you've joined capture the flag competitions (even better if you won) we want to hear about it!
- Recognized certification in information security (CEH, CISM or other), an asset.
- Analytical mind, pragmatic approach to IT security issues and problems.
- Strong partner in all areas, internally and externally, to provide a secure solution.
- Ability to reduce stress in situations that are stressful to you and others.
- Positive attitude, initiative with strong analytical and interpersonal skills to lead work groups, negotiate and build consensus.
- Ability to write and present material to communicate difficult concepts and gain consensus.
- Ability to work in a dynamic environment with multiple objectives.
- Highly motivated and self-directed, with attention to detail.
- Ability to prioritize and execute tasks in a high-pressure environment.
- Ability to deal diplomatically and effectively at all levels of the organization.
- Ability to challenge the status quo.
- Customer focused approach.
- For candidates located in Quebec, bilingualism is required considering the necessity to interact on a regular basis with English-speaking colleagues across the country.
- No Canadian work experience required however must be eligible to work in Canada.
#LI-Hybrid
Ce poste jouera un role essentiel au sein de notre equipe. | This position will fill an essential role in our team.
We are an equal opportunity employer
At Intact, our Value of respect is founded on seeing diversity as a strength. We strive to create an accessible workplace where employees feel valued, included and encouraged to share their unique perspectives.
We encourage applications from individuals who are members of equity-deserving groups, including but not limited to women, Indigenous peoples, persons with disabilities, Black people, and members of the 2SLGBTQI+ community.
As part of Intact's commitment to reconciliation, we acknowledge that we work, meet and travel across the land currently called Canada, originally inhabited by First Nations, Metis and Inuit people. This history extends through many centuries and continues to evolve today.
We have policies to ensure equal access and participation for people with disabilities, including providing workplace adjustments (accommodations). A copy of applicable policies is available on request.
If we can provide a specific adjustment to make the recruitment process more accessible for you, please let us know when we reach out about a job opportunity. We'll work with you to meet your needs.
Learn more about our recruitment process and your candidate journey here.
Please note that Intact does not provide sponsorship or other support for immigration-related matters including but not limited to employer-specific closed work permits. Candidates must be eligible to work in Canada from the anticipated start date and throughout their employment and are solely responsible for maintaining their work eligibility.
If you are an employee of Intact or belairdirect, please apply for this role on Internal Career Site.
About Intact
Sourced by ZipRecruiter
Industry
Insurance services
Company size
10,000+ Employees
Headquarters location
Toronto, ON, CA