Description
threat monitoring
vulnerability scanning
incident management
risk mitigation
security reporting
phishing simulation
The Junior Security Analyst reports to the Sr. Manager, Security Architecture and Operations and supports daily security operations while advancing the information security roadmap. The role balances multiple security functions, provides strong documentation and analysis, and proactively identifies and addresses needs.
- Support daily operations of the information security program.
- Monitor multiple environments for anomalous activity, security events, or unauthorized access.
- Resolve security tickets including malware infections, phishing, and suspicious network traffic.
- Conduct vulnerability scans and coordinate remediation from various sources (SAST/DAST, network scans, pen tests).
- Mitigate or close identified security risks and gaps.
- Track security trends and contribute to monthly security reporting.
- Perform root‑cause analysis of security incidents.
- Collaborate with Information Services teams to achieve common resolutions.
- Provide technical support for vulnerability and risk assessments, network security, and incident management.
- Evaluate security products and recommend upgrades to improve the security posture.
- Liaise with security vendors for day‑to‑day network support and monitoring.
- Create and deliver security awareness and training materials for diverse audiences.
- Manage phishing simulation campaigns, including template selection, launch, and compliance reporting.
- Monitor, triage, and respond to employee‑reported suspicious emails, delivering monthly metrics.
- Support incident management operations, including detection, response, and reporting.
- Provide 24/7 oversight of security operations, monitoring alerts and managing confirmed incidents.
Requirements
bachelor's
siem
cissp
windows
linux
problem solving
- Bachelor’s degree in Information Systems, Information Security, or related field.
- 1–2 years of experience applying information security principles in an enterprise environment, or 1–3 years supporting IT.
- Knowledge of security tools such as SIEM, IPS, EDR, MDM, web content filters, and email security gateways.
- Understanding of business impact of security tools, technologies, and policies.
- Familiarity with Windows and Linux operating systems and network protocols.
- Working towards CISSP and/or Security+ certifications (asset).
- Strong analytical and problem‑solving skills with experience troubleshooting technical issues.
- Ability to manage multiple tasks with minimal supervision.
- Excellent reporting skills with ability to create clear reports.
- Strong verbal, written, and interpersonal communication skills.
Benefits
Aecon’s core values are Safety Always, Integrity, Accountability, and Inclusion, guiding everything we do. We invest in our people through mental, emotional, and physical well‑being services, Aecon University, leadership programs, and inclusive initiatives such as Equity, Diversity & Inclusion training, Aecon Women in Trades, Aecon Diversity in Trades, and employee resource groups. We also focus on sustainable construction, minimizing environmental impact.
The position offers a salary range of $62,000–$70,000, replaces a departing employee, and reflects Aecon’s commitment to diversity, inclusion, accessibility (ACA), and responsible AI use in hiring.
Training + Development
Information not given or found