XX
Information Security AnalystMountain Equipment CompanyVancouver, British Columbia, Canada
XX

Information Security Analyst

Mountain Equipment Company
  • CA
    Vancouver, British Columbia, Canada
  • CA
    Vancouver, British Columbia, Canada

About

About MEC

At MEC, we believe the transformative power of the outdoors makes us better humans and drives us to do good for the planet. We are here to inspire and support everyone in getting active outside, matching people with gear and advice that instills confidence. We offer more than products; we offer passion for the outdoors. We play with purpose
Our business model is dependent on impassioned and well-trained outdoor enthusiasts and as such we look for individuals who live our purpose and fit with MEC ethos and lifestyle. If you are that person, we'd love to connect with you. Join us
Inclusivity at MEC
MEC is an equal opportunity employer and committed to building an inclusive community of staffers. We're proud to work with our people to create a diverse workplace, where everyone feels like they belong and has the opportunity to be successful. We welcome of all applicants to join our diverse team. Tell us what you need during the hiring process, and we'll do our best to accommodate you.
The Opportunity
As an Information Security Analyst, your role will be to help protect MEC's members, employees, and the company by responding to alerts, auditing compliance with Information Security policies, and assisting with the operation of MEC's Information Security Management System.
Our Information Security team plays a key role in keeping the business running smoothly. The Information Security team responds and actions internal and external alerts and manages incidents based on criticality. When not focusing on incident response, the team supports organizational projects along with internal security projects.
Location: This is a 2 week in-office hybrid position at MEC's Support Office (HO) in Vancouver, 

As an Information Security Analyst, you'll

  • Monitor, identify and validate security events generated from Information Security systems and tools, such as SIEM, Anti-virus, XDR or events identified by organization staff
  • Contribute to the development, implementation and tuning of SIEM use-cases/detection rules and other security control configurations to enhance threat detection and defense capabilities
  • Perform analysis of security event data to identify suspicious behaviour and potential threats
  • Respond to critical business impacting situations and coordinate efforts required to engage the necessary resources to remediate the issue
  • Escalation of security alerts to events and notifying the Information Security Team Lead
  • Responsible for creating, managing and distributing Information Security Awareness training to the organization
  • Responsible for responding to Information Security alerts occurring after-hours with a rotating after-hours on-call coverage
  • Support MEC's annual PCI Compliance requirements
  • Provide guidance to staff members across the organization on how to identify Information Security events and incidents and usage of Information Security tools
  • Responsible for managing and maintaining security tools such as vulnerability management, anti-virus, XDR, password manager, etc.
  • Perform Third-Party Risk assessments of vendors, tools and services
  • Work with various department projects to provide Information Security guidance and include controls in the development process
  • Participate in Information Security huddles, reporting on work done, current security event trends
  • Responsible for working on additional tasks as assigned by the Information Security Team Lead or Director of Infrastructure and Information Security
  • What you bring:

  • 1+ year experience in Information Security or related IT Information Security role
  • Obtained or working towards a bachelor's degree in information security or equivalent experience
  • Obtained or working towards Information Security certifications such as from ISACA, SANS/GIAC, CompTIA, ISC2
  • Ability to learn and adapt in a fast-paced, collaborative team environment where knowledge, skills and ideas are openly shared with other IT professionals and departments
  • High degree of initiative, dependability and ability to work with little supervision
  • Excellent English written and verbal communication skills
  • Strong interpersonal and collaborative skills with peers
  • High level of personal integrity, with the ability to handle confidential and otherwise sensitive matters professionally and with the appropriate level of judgement and maturity
  • Excellent diagnostic and problem-solving skills
  • Working knowledge of log management platforms such as a SIEM
  • Strong understanding of networking technologies such as TCP/IP, DNS, DHCP, switches, NGFW
  • Good working knowledge of security principles and trends in the security industry
  • Good working knowledge of Windows, Windows Server, Mac and Linux Operating Systems
  • Good working knowledge of Cloud environments such as Azure, AWS and GCP
  • Understanding of Security Frameworks such as CIS, ISO 27001, SOC 2
  • Working knowledge of scripting languages (PowerShell, Python, Shell)
  • The Compensation & Perks

    This is a permanent role with an anticipated annual base salary range of $75,500 - $94,900 base + bonus. The exact salary will be dependent on the successful candidate's relevant skills, experience, location, qualifications and internal equity. This role is eligible for our annual variable incentive plan.

    • Work-life flexibility
    • Hybrid work environment 
    • Variable annual incentive plan 
    • Generous annual vacation allotment 
    • Paid Care time (Wellness/sick) 
    • Maternity and Parental leave top-up
    • Staff Discount and amazing deals straight from vendors
    • Top-notch benefit plan 
    • Retirement Plan, with matched contributions
    • Paid days to pursue outdoor activities and/or volunteer in your community
    • Access to a learning platform and educational assistance support 
    • Career development opportunities
    • Note: Availability of the benefits and perks may be subject to your location & employment type and may have certain eligibility requirements. MEC reserves the right to alter these benefits and perks in whole or in part at any time without advance notice.
      Are you up for your next adventure? We'd love to hear from you
      The Candidate must be able to read and converse in English. Le candidat doit être à l'aise de lire et de converser en anglais.

    • Vancouver, British Columbia, Canada

    Languages

    • English
    Notice for Users

    This job comes from a TieTalent partner platform. Click "Apply Now" to submit your application directly on their site.