North American construction and infrastructure development company delivering civil, transport, nuclear, utility and industrial projects.
Support daily security operations, monitor incidents, handle tickets, assess vulnerabilities.
8 days ago ago
Junior (1-3 years)
Full Time
Toronto, Ontario, Canada
Office Full-Time
Company Size
9,427 Employees
Service Specialisms
Construction services
Project Management
Engineering
Design
Technical Services
General Contractor
Property Development
Turnkey
Sector Specialisms
Nuclear
Civil
Industrial
Urban Transportation
Utility
Electrical Transmission and Distribution
Renewables
Pipeline Distribution
Role
Description
incident response
security monitoring
vulnerability assessment
product evaluation
phishing simulation
security training
Actively seek mitigation or closure in identified security risks and gaps
Work with our internal Communications and Learning teams to provide security awareness and training materials for a wide range of audiences, which ranges from senior leaders to field staff
Support the day-to-day operations of the information security program set out by management
Track security trends/events to provide information on monthly security reporting
Support the operational components of incident management, including detection, response, and reporting
Ensure you and your family receive the services needed to support your mental, emotional, and physical well-being.
Provide 24/7 response to security operations as it relates to monitoring and alerting of potential security incidents. Be available at any time to actively investigate / document those alerts and manage confirmed security incidents
Conduct security product evaluations, and recommend products, technologies and upgrades to improve Aecon’s security posture
Utilize problem solving to find root cause in security incidents
Assist with security vulnerability assessments, identifying and prioritizing findings for resolution
Liaise with security product and service vendors to provide day to day support and monitoring of all networks
Provide management of regular phishing simulations including, but not limited to, selection of templates, launching of campaigns and providing reporting & enforcement of compliance with phishing related policies
Provide technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation, incident management and security tool implementation
Work collaboratively with other Information Services teams to reach common resolutions and goals
Monitor multiple environments to detect, validate and respond to anomalous activity, security events, or unauthorized access of information assets
Work to promptly resolve tickets related to information security, such as virus/malware infections on desktop, phishing, suspicious network traffic and vendor account reviews
Monitor, triage and respond to emails that have been reported by employees as suspicious and potential phishing attacks. Provide monthly metrics related to these reported emails
Attend security industry talks, seminars and events to stay current with latest information security trends
Requirements
infosec degree
security experience
siem
aws/azure
cissp
communication
2-3 years’ experience applying information security principles and practices in an enterprise environment, or 3-5 years of experience supporting information technology
A bachelor's degree in Information Systems or Information Security
A good understanding of Windows and Linux operating systems, and network protocols
Excellent verbal, written and interpersonal communication skills with the ability to explain technical matters to a non-technical audience
A strong understanding of the business impact of security tools, technologies and policies
An ability to manage multiple tasks with minimal supervision
Hands on experience of security technologies and tools such as SIEM, IPS, EDR, MDM, web content filters and email security gateways
A good understanding of the public cloud (AWS, Azure, etc.)
Flexibility and ability to adjust quickly to changes in priorities, or to different business demands
Must be able to respond to, and action, security alerts on a 24x7 basis
Working towards and/or having CISSP and/or Security+ certifications would be an asset
Strong in analytical thinking, problem solving and troubleshooting
Excellent reporting skills, with demonstrated ability to create reports
Benefits
Information not given or found
Training + Development
Information not given or found
Interview process
Information not given or found
Visa Sponsorship
Information not given or found
Security clearance
Information not given or found
Company
Overview
C$9.7B Backlog
Record Project Orders
Signifies a substantial and growing pipeline of construction and infrastructure projects.
C$150M Investment
Utilities Expansion Fund
Strategic financial backing to bolster and expand utilities infrastructure development.
From humble beginnings in plumbing and gas fitting, the company has evolved into a leading infrastructure developer, with operations rooted in Hamilton since its founding in 1877.
Offers comprehensive construction services across civil infrastructure, urban transit, nuclear power, utilities, and industrial works.
Through its Concessions arm, the company specializes in private-public partnerships (P3) for global infrastructure development, emphasizing integrated delivery from planning to long-term operations.
Delivers iconic projects including the CN Tower, Vancouver SkyTrain, Montreal-Trudeau Airport, Gordie Howe Bridge, and major nuclear refurbishments.
Expanding into next-generation energy solutions with Canada’s largest battery storage initiative and leadership in small modular reactor development.
While maintaining a strong presence in Canada, the company also caters to North American markets and selectively engages in international concessions.
Demonstrates expertise in complex mega-projects through seamless integration of engineering, construction, financing, and operations.
Culture + Values
Safety First - Ensuring a safe, healthy work environment and fostering a 'zero injury' culture.
Trust and Candour - Conducting ourselves professionally, with candour, respect, and integrity.
Passion for Excellence - Being pace-setting and innovative, always striving to find a better way, and doing it right the first time - every time.
A People Focused, Learning Culture - Developing the best leaders and realizing the full potential of our people. Learning is core - we never stop trying to improve.
Results Oriented - Having a 'do whatever it takes' attitude. Empowered and entrepreneurial operations within a common framework of values, strategies, and key processes.
Environment + Sustainability
30% CO₂ Reduction
CO₂ Emissions Intensity Target
Aims to reduce CO₂ emissions intensity (Scopes 1 & 2) by 30% by 2030 compared to 2020 levels.
59% Revenue from Sustainability
Revenue Linked to Sustainability Projects
59% of 2024 revenue is tied to projects focused on climate change mitigation, energy transition, renewable energy, and water management.
78% Backlog Sustainability
Backlog Linked to Sustainability
78% of the company's backlog is connected to sustainability-related projects, highlighting a strong focus on environmental initiatives.
34% Early Target Achievement
Early Achievement of 2030 Target
Surpassed the 2030 target for Scope 1 & 2 emissions intensity reduction by achieving a 34% cumulative reduction by 2024, relative to revenue.
Net‑zero target for Scopes 1, 2 & 3 by 2050
20% cumulative Scope 1 & 2 GHG reduction by end of 2023 (vs 2020)
Projects include grid‑scale SMR, nuclear refurbishments, Oneida Energy Storage, Site C hydroelectric, Réseau express métropolitain, Surrey Langley SkyTrain
Approved science‑based near/long‑term emissions targets; SBTi‑verified net‑zero by 2050
Silver Certification from Progressive Aboriginal Relations; procured $127 M Indigenous goods/services in 2024
Inclusion & Diversity
$275M Procured
Indigenous Procurement
Significant investments in Indigenous goods and services were made in 2023 and 2024.
0.89 Injury Frequency
Safety Metrics
Improved workplace safety with a low Total Recordable Injury Frequency in 2023.
Inaugural Reconciliation Action Plan established
Silver Certification in Progressive Aboriginal Relations
Established three Indigenous‑led joint ventures
Expanded Aecon Women in Trades program (added nuclear cohort)
Inclusion stated as core value alongside Safety Always, Integrity and Accountability
Committed to inclusion through equitable opportunities, Equity, Diversity & Inclusion training, Women in Trades and Diversity in Trades programs, and Employee Resource Groups