TL;DR
Senior Analyst (SaaS Cybersecurity): Continuously monitoring and remediating SaaS application security issues with an accent on risk-based strategies, contextual intelligence, and data vulnerability management. Focus on collaborating with engineering teams to drive secure SaaS adoption and ensure compliance with industry standards.
Location: Charlottetown, Prince Edward Island, Canada. This role operates under a hybrid working model, requiring employees to work from an hirify.global office at least four full days each week.
Salary: USD $85,000–$90,000
Company
hirify.global is a leading independent global investment firm dedicated to rethinking possibilities for clients worldwide.
What you will do
- Continuously monitor SaaS applications for misconfigurations, risky user behavior, or other deviations against security baselines.
- Review and remediate SaaS security findings based on industry benchmarks, prioritizing vulnerabilities using risk-based strategies.
- Conduct periodic SaaS posture audits and prepare reports for leadership.
- Support SaaS onboarding projects with security configuration reviews.
- Collaborate with IAM, AppSec, SecOps, and Engineering teams to drive secure SaaS adoption.
- Monitor DLP alerts and investigate incidents across storage and applications.
Requirements
- 8+ years of Information Security or relevant experience.
- Solid understanding of SaaS security and controls frameworks.
- Experience with SSPM tools.
- Strong knowledge of OAuth apps, API tokens, SSO, SCIM provisioning, and RBAC models.
- Familiarity with large SaaS platforms and knowledge of standards like CIS Benchmarks, CSA CMM, SOC2, ISO 27001.
- Hands-on experience with enterprise DLP platforms and building mature vulnerability management processes.
- English: B2 required.
Culture & Benefits
- Hybrid working environment with work flexibility programs.
- RRSP Contributions and Health & Wellness Benefits.
- Parental Leave Benefits and Study Support.
- Commitment to fair and accessible employment practices.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →