Security Risk Assessment Analyst

NTT DATA


Date: 2 weeks ago
City: Montreal, QC
Contract type: Full time

NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.

We are currently seeking a Security Risk Assessment Analyst to join our team in Montreal, Quebec (CA-QC), Canada (CA).

Job Responsibilities Include:

  • Contacting system owners/vendors for assigned systems to gather relevant background material about the system/application and setting up interviews for information gathering.
  • Conducting remote/in-person interviews with system owners/vendors to get all the required information for assessment and to identify any gaps.
  • Reviewing system-related material including specifications, diagrams, requirements, and test plans to ensure security-related standards are followed.
  • Reviewing results with system owners/vendors and Senior Security Architecture Analysts, as needed. - Conducting security assessments using available documentation.
  • Creating comprehensive security architecture assessment reports that clearly identify root-cause and remediation strategies.
  • Developing and establishing global security standards and processes.
  • Evaluating new and emerging products and technologies while making recommendations concerning the introduction of new technologies

Basic Qualifications:

  • 3+ years of experience in Security Architecture Assessment.
  • Bachelor's degree in Information Systems Security or Computer Science

Preferred Skills:

  • Minimum of one professional certification amongst CISSP, SSCP, and CISM with good standing will be an added advantage.
  • Excellent verbal and written communications skills, including presentations to clients and senior technical resources.
  • Ability to manage expectations and handle high-pressure situations with tight deadlines.
  • Experience in an information security (application and/or infrastructure) role in an enterprise environment.
  • Ability to explain common application vulnerabilities and remediation strategies to developers.
  • Ability to explain technology risks; including XSS, CSRF, Injection attacks introduced by application vulnerabilities to a system's Business Owner.
  • Ability to quickly adapt to changing priorities and demands.
  • Excellent security knowledge (access control) of one or more applicable security technologies or platforms including SSO (Single Sign-On) technologies like SAML2.0 and Kerberos.
  • Excellent knowledge of information security processes, response procedures, and various attack methods used for information theft or network intrusion.
  • Excellent analytical and problem-solving skills.
  • Excellent knowledge of network technologies as they pertain to communications, computer system environments, and related infrastructures.
  • Excellent research ability and knowledge update on the security trends and attacks, following OWASP top 10 security understanding.

#INDFSINS

#L1-NAM

About NTT DATA

NTT DATA is a $30 billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long term success. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies.Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure and connectivity. We are one of the leading providers of digital and AI infrastructure in the world. NTT DATA is a part of NTT Group, which invests over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. Visit us at us.nttdata.com

NTT DATA endeavors to make https://us.nttdata.com accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at https://us.nttdata.com/en/contact-us . This contact information is for accommodation requests only and cannot be used to inquire about the status of applications. NTT DATA is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. For our EEO Policy Statement, please click here . If you'd like more information on your EEO rights under the law, please click here . For Pay Transparency information, please click here .

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Investment & Personal Banking Specialist - Griffintown, Montréal, Quebec

Scotiabank, Montreal, QC
18 hours ago
      Requisition ID: 211860 Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.   About the role As an Investment & Personal Banking Specialist you are customer-centric and able to connect with people in a relatable way.  As an essential member of the Canadian Banking Branch network, your focus is to provide exceptional service throughout the...

Senior Analyst Capital Management

National Bank of Canada, Montreal, QC
1 day ago
As a senior analyst in the capital management team at National Bank, you’ll be responsible for producing various capital measures. It is through your skills in finance, mathematics, or accounting, your experience with technological tools, and your ability to solve problems that you have a positive impact on the Bank and its shareholders.Your roleBe responsible for producing various capital measures and...

Analyste De Données - Produit

MaintainX, Montreal, QC
1 day ago
MaintainX est la plateforme de gestion de flux de travail mobile-first leader mondial pour les travailleurs industriels et de première ligne. Nous sommes un outil moderne basé sur le cloud et activé par l'IoT pour la maintenance, la sécurité et les opérations sur les équipements et les installations. MaintainX alimente l'excellence opérationnelle de plus de 7 500 entreprises, notamment Duracell,...