Sr Info Security Analyst

Location
Toronto
Workplace
Hybrid

About this role

About Haventree Bank   

Haventree Bank is a Schedule I Canadian bank dedicated to advancing financial security and upward mobility for Canadians underserved by traditional financial services. Through our broker-distributed alternative mortgage and GIC solutions, as well as our growing digital banking platform, we provide straightforward products that support long-term financial well-being and meaningful growth.

As a CDIC-insured, federally regulated bank, we offer the trust and stability of a traditional financial institution while embracing the innovation and customer-first mindset of a modern digital bank.

If you're looking for a place where your work has a direct impact, your ideas are valued, and innovation is encouraged, Haventree Bank is the place for you.

Position Summary:

Reporting to the Director, Information Security, the Senior Information Security Analyst plays a key role in advancing the Bank's security operations and strengthening its ability to detect, respond to, and mitigate evolving threats. This role combines hands-on technical execution with broader contributions to the Bank's security programs and overall risk posture.

Major Duties & Responsibilities:

  • Monitor, investigate, and coordinate response to security alerts and incidents across cloud, endpoint, identity, email, and network environments
  • Act as an escalation point for complex investigations, analyzing attack patterns, scope, and potential business impact
  • Collaborate with MSSP and internal teams to ensure effective detection, response, and operational alignment
  • Perform proactive threat hunting to identify suspicious or malicious activity not detected through standard alerting
  • Develop, tune, and maintain detection use cases aligned to attacker tactics and frameworks such as MITRE ATT&CK
  • Support and enhance the effectiveness of security platforms (e.g., SIEM, EDR/XDR, CNAPP, and identity)
  • Coordinate vulnerability management activities, including prioritization, remediation tracking, and risk reporting
  • Design and execute comprehensive phishing simulation campaigns to assess organizational security awareness. Analyze campaign results and create detailed reports for management and board presentations.
  • Manage and deliver security awareness training programs for employees, focusing on regulatory compliance, social engineering threats, and secure handling of financial data. Track completion rates and assess program effectiveness.
  • Conduct security reviews for systems, projects, and vendors to ensure alignment with security requirements and regulatory expectations
  • Expand and mature data protection initiatives, including alignment with data classification and DLP controls
  • Develop and maintain operational metrics, reporting, and runbooks to improve visibility, consistency, and response effectiveness
  • Stay up-to-day on information security trends and industry best practice approaches

Qualifications & Experience:

Degrees, Diplomas & Certifications:

  • Bachelor’s degree in Computer Science, Information Security, or a related field

Relevant industry certifications are considered an asset, including:

  • CompTIA Security+ or CySA+
  • GIAC (e.g., GCIH, GCIA)
  • Microsoft Certified: Azure Security Engineer Associate (or equivalent M365 security certifications)
  • Certified Cloud Security Professional (CCSP) or similar cloud-focused certification

Years and Range of Experience Required to Perform the Job:

  • 5+ years of progressive experience in information security, security operations, threat detection, incident response, or related cybersecurity roles
  • Hands-on background investigating security events and incidents across multiple security domains
  • Proven ability to develop, tune, and validate detections in SIEM, EDR/XDR, or related security platforms
  • Strong working knowledge of cloud and SaaS security, including Microsoft 365 and Azure (Sentinel, Defender, Entra ID); exposure to AWS or GCP is considered an asset
  • Practical understanding of identity and access management (IAM) concepts, including user access reviews, privileged access management, or identity governance platforms
  • Demonstrated involvement in vulnerability management programs, security assessments, and operational security reporting
  • Familiarity with threat intelligence concepts, indicators of compromise (IOCs), and threat landscape monitoring
  • Proficiency in scripting (e.g., PowerShell, KQL, Python) for automation, detection development, or log analysis is considered an asset
  • Background working with MSSPs, managed detection and response providers, or external security partners is considered an asset
  • Exposure to regulated industries (e.g., financial services, banking) is considered an asset

While we thank everyone for their interest in Haventree Bank, please note that only candidates selected for an interview will be contacted. Haventree Bank is committed to providing accommodation when needed. If you require an accommodation, we will work with you to meet your needs.  

  1. As a job candidate, our recruitment process includes collecting personal information. Please click the link here to review our Privacy Policy. Privacy Statement | Haventree Bank
  2. Stay in touch with us, if this position is not the right one for you – please click on this link for other roles at Careers | Haventree Bank or follow us on LinkedIn at www.linkedin.com/company/haventree-bank/
  3. Haventree Bank embraces equal opportunity, diversity, and inclusion. Please let us know if you require any accommodations during the recruitment and selection process by contacting [email protected]

#LI-TA1 

#LI-Hybrid

 

 

Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.

Know someone who'd be great for this?