Our client, is seeking a detail-oriented, analytical Info Security Analyst IV to join their core Technology Controls and Information Security division.
...
In this senior consulting role, you will play a critical part in protecting enterprise assets, optimizing access management governance, and identifying potential security vulnerabilities across key business applications. Serving as a primary analytical anchor for access controls, you will review application access profiles to detect unauthorized permissions, toxic access combinations, and documentation gaps. Additionally, you will support incident response workflows, help track control metrics, and process security governance requests. This role is ideal for a proactive information security professional who pairs a deep understanding of Identity and Access Management (IAM) with strong ticketing system navigation (ServiceNow, Jira) and advanced data evaluation skills.
Duration: 12-Month Contract (with high potential for extension)
Work Arrangement: Hybrid (2 days per week on-site, 3 days work from home)
Anchor Days: On-site presence required on Tuesdays and Thursdays
Advantages
High-Visibility Governance Mandate: Directly influence technology risk management frameworks and access governance across a premier, global enterprise.
Complex Risk & Data Sandbox: Apply advanced data analysis to audit complex application permissions, identify toxic access combinations, and resolve compliance gaps.
Stable Long-Term Engagement: Secure a full 12-month contract position with a well-funded, stable cyber security and controls team.
Structured Hybrid Schedule: Enjoy a predictable, balanced work model featuring dedicated anchor days for collaborative on-site teamwork combined with work-from-home flexibility.
Responsibilities
Access Management & Request Processing
ServiceNow Queue Management: Review, validate, and process incoming access, security, and technology control requests submitted via ServiceNow in a timely, SLA-compliant manner.
Dashboard & SLA Tracking: Actively monitor and manage access governance dashboards, following up on long-pending approvals and ensuring queue bottlenecks are cleared.
Stakeholder Clarification: Connect directly with business and technology partners to clarify request scope, validate requirements, and resolve submission discrepancies.
Application Security, Risk & Audit Analysis
Access Breach Analysis: Analyze and evaluate in-scope enterprise applications to detect toxic combinations of access, unauthorized permissions, and inaccurate system documentation.
Compliance & Audit Support: Research regulatory compliance requirements, investigate audit findings, and assist the team in resolving regulatory and internal compliance inquiries.
Metric Reporting & Analytics: Assist in developing ongoing Technology Risk reporting, monitoring key security trends, and leveraging data analysis (e.g., advanced Excel queries) to measure control effectiveness.
Incident Response Representation: Participate in computer security incident responses relevant to the business, representing technology control standards and organizational policies.
Process Documentation: Communicate operational and process changes to team members, maintain structured email artifact archives, and recommend opportunities to streamline workflow efficiency.
Qualifications
Experience: 5+ years of progressive experience operating as an Information Security Analyst, IAM Analyst, or Technology Risk & Controls Specialist within a large-scale enterprise environment.
Access Management Expertise: Proven, hands-on experience in Access Management (IAM), entitlement reviews, toxic access combination analysis, and privilege governance.
Ticketing & Workflow Tooling: Direct experience utilizing ServiceNow for request processing/queue management and Jira for task tracking.
Advanced Data Analysis: Strong technical data analysis skills with expert-level proficiency in the Microsoft Office Suite (specifically utilizing Excel as a database for data manipulation, cross-referencing, VLOOKUPs, and pivot tables).
Governance & Risk Literacy: Solid background in technology risk management, control standards, and regulatory compliance frameworks.
Soft Skills: Exceptional written and verbal communication skills; outstanding time management and prioritization abilities; a self-motivated team player with acute attention to detail.
Preferred Assets & Nice-to-Haves
Experience working inside a large-scale enterprise or Tier-1 financial institution.
Practical automation knowledge utilizing tools such as Power Automate, Power Query, or Power BI for metric visualization and task automation.
Relevant industry certifications (e.g., Security+, CISA, CRISC, or CISSP) are considered a strong asset.
Summary
If you are a tech-savvy Info Security Analyst who pairs an absolute command of access governance and ServiceNow request workflows with the data evaluation skills needed to detect security risks across complex applications, this 12-month hybrid contract is an exceptional professional opportunity. Bring your risk analysis precision, queue management discipline, and collaborative focus to our client's growing technology security team today!
Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.
Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
This posting is for existing and upcoming vacancies.
show more
Our client, is seeking a detail-oriented, analytical Info Security Analyst IV to join their core Technology Controls and Information Security division.
In this senior consulting role, you will play a critical part in protecting enterprise assets, optimizing access management governance, and identifying potential security vulnerabilities across key business applications. Serving as a primary analytical anchor for access controls, you will review application access profiles to detect unauthorized permissions, toxic access combinations, and documentation gaps. Additionally, you will support incident response workflows, help track control metrics, and process security governance requests. This role is ideal for a proactive information security professional who pairs a deep understanding of Identity and Access Management (IAM) with strong ticketing system navigation (ServiceNow, Jira) and advanced data evaluation skills.
Duration: 12-Month Contract (with high potential for extension)
Work Arrangement: Hybrid (2 days per week on-site, 3 days work from home)
Anchor Days: On-site presence required on Tuesdays and Thursdays
Advantages
...
High-Visibility Governance Mandate: Directly influence technology risk management frameworks and access governance across a premier, global enterprise.
Complex Risk & Data Sandbox: Apply advanced data analysis to audit complex application permissions, identify toxic access combinations, and resolve compliance gaps.
Stable Long-Term Engagement: Secure a full 12-month contract position with a well-funded, stable cyber security and controls team.
Structured Hybrid Schedule: Enjoy a predictable, balanced work model featuring dedicated anchor days for collaborative on-site teamwork combined with work-from-home flexibility.
Responsibilities
Access Management & Request Processing
ServiceNow Queue Management: Review, validate, and process incoming access, security, and technology control requests submitted via ServiceNow in a timely, SLA-compliant manner.
Dashboard & SLA Tracking: Actively monitor and manage access governance dashboards, following up on long-pending approvals and ensuring queue bottlenecks are cleared.
Stakeholder Clarification: Connect directly with business and technology partners to clarify request scope, validate requirements, and resolve submission discrepancies.
Application Security, Risk & Audit Analysis
Access Breach Analysis: Analyze and evaluate in-scope enterprise applications to detect toxic combinations of access, unauthorized permissions, and inaccurate system documentation.
Compliance & Audit Support: Research regulatory compliance requirements, investigate audit findings, and assist the team in resolving regulatory and internal compliance inquiries.
Metric Reporting & Analytics: Assist in developing ongoing Technology Risk reporting, monitoring key security trends, and leveraging data analysis (e.g., advanced Excel queries) to measure control effectiveness.
Incident Response Representation: Participate in computer security incident responses relevant to the business, representing technology control standards and organizational policies.
Process Documentation: Communicate operational and process changes to team members, maintain structured email artifact archives, and recommend opportunities to streamline workflow efficiency.
Qualifications
Experience: 5+ years of progressive experience operating as an Information Security Analyst, IAM Analyst, or Technology Risk & Controls Specialist within a large-scale enterprise environment.
Access Management Expertise: Proven, hands-on experience in Access Management (IAM), entitlement reviews, toxic access combination analysis, and privilege governance.
Ticketing & Workflow Tooling: Direct experience utilizing ServiceNow for request processing/queue management and Jira for task tracking.
Advanced Data Analysis: Strong technical data analysis skills with expert-level proficiency in the Microsoft Office Suite (specifically utilizing Excel as a database for data manipulation, cross-referencing, VLOOKUPs, and pivot tables).
Governance & Risk Literacy: Solid background in technology risk management, control standards, and regulatory compliance frameworks.
Soft Skills: Exceptional written and verbal communication skills; outstanding time management and prioritization abilities; a self-motivated team player with acute attention to detail.
Preferred Assets & Nice-to-Haves
Experience working inside a large-scale enterprise or Tier-1 financial institution.
Practical automation knowledge utilizing tools such as Power Automate, Power Query, or Power BI for metric visualization and task automation.
Relevant industry certifications (e.g., Security+, CISA, CRISC, or CISSP) are considered a strong asset.
Summary
If you are a tech-savvy Info Security Analyst who pairs an absolute command of access governance and ServiceNow request workflows with the data evaluation skills needed to detect security risks across complex applications, this 12-month hybrid contract is an exceptional professional opportunity. Bring your risk analysis precision, queue management discipline, and collaborative focus to our client's growing technology security team today!
Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.
Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
This posting is for existing and upcoming vacancies.
show more