At a Glance
- Tasks: Lead security awareness training and develop engaging materials to combat cyber threats.
- Company: Join Canada Life, a trusted leader in improving Canadians' well-being.
- Benefits: Enjoy competitive salary, health benefits, career development, and community involvement.
- Other info: Flexible work options and a supportive community-focused workplace.
- Why this job: Make a real impact on cybersecurity culture while growing your skills in a dynamic environment.
- Qualifications: 5+ years in IT with 3+ years in information security; certifications preferred.
The predicted salary is between 49500 - 60500 £ per year.
The Senior Information Security Analyst – Security Awareness & Training plays a crucial role in our first line of cyber defense. This position involves collaborating with various stakeholders, including technology and business partners, to effectively manage information security risks and ensure compliance with organizational policies. Additionally, the role supports the delivery of analysis-driven cybersecurity services to our internal clients across Canada, US, and European segments.
We are seeking a highly skilled and experienced Senior Information Security Analyst to join our team in the Information Security & Technology Risk department. This role will primarily focus on security awareness and training. The successful candidate will play a critical role in implementing security awareness and training program requirements, enhancing the program based on evolving needs to elevate the security culture and drive behavioral change, and collaborating across our segments to improve the cybersecurity culture.
The ideal candidate should possess in-depth knowledge of security awareness and training, cybersecurity threats, risks, and mitigation strategies, along with the ability to communicate security concepts effectively to all levels of the organization.
What you will do:
- Develop, implement, and maintain security awareness and training program to educate employees on security best practices, threat prevention, and response procedures.
- Design targeted campaigns to address emerging threats such as phishing, deepfakes, AI assisted attacks, and social engineering.
- Evaluate and enhance training materials to ensure alignment with industry standards, regulatory requirements, and the evolving threat landscape.
- Create comprehensive security training learning paths tailored to various audiences within the organization.
- Manage user accounts, content updates, reporting functionalities, and other administrative actions through our security training platform.
- Create engaging training materials, including learning paths, lunch & learns, workshops, informational resources, webinars, and internal social media posts that promote a culture of security awareness.
- Track and report on training effectiveness and phishing simulation results, using data to continuously improve training programs.
- Plan and deliver on Cybersecurity Awareness Month programming, partnering with senior leaders across the organization to enhance cybersecurity culture.
- Keep up with the latest trends in cybersecurity threats and awareness training methodologies to ensure programs remain relevant and effective.
- Collaborate in the incident response tasks to analyze security incidents and develop training materials that address identified vulnerabilities.
- Strong desire to work collaboratively in an unconventional and non-linear way to problem-solve unique solutions.
- Be customer focused and delivery oriented to drive change in ambiguous situations.
- Collaborate proactively with internal clients to understand their needs and deliver creative solutions.
- Strive for continuous learning and can influence others.
What you will bring:
- Bachelor’s degree from an accredited college or university or equivalent experience.
- Minimum five years’ experience as an information technology professional with at least three of those in information security demonstrating the accountabilities as listed above.
- Holds at least one information security certification or actively working towards at least one security certification (e.g. CISSP, CISM).
- Excellent communicator including demonstrated presentation and negotiation skills.
- Experience interpreting and consulting around meeting the requirements of the Information Security Policies and Standards for a large organization.
- Strong knowledge of IT control frameworks and regulatory requirements such as COBIT, ISO 27001, and the NIST cyber security framework; along with OSFI B13.
- Working knowledge of IT Audit processes, including design of control test procedures.
- Demonstrated ability to foster relationships and build trust.
- Ability to work independently and deliver on commitments.
- Strong analytical and problem-solving skills.
- Strong written and verbal communication skills.
- Bilingualism (English/French) will be considered an asset.
The base salary for this position is between $94,800 - $144,800 annually. This represents base salary only and does not represent other variable compensation components of our total compensation (i.e. annual bonus, commission etc). If you are selected to move forward in our recruitment process, your recruiter will be able to discuss additional details of our total rewards program with you.
What we offer:
- Career Development: Opportunities for career advancement, access to industry-leading learning programs and up to $2,000 annually towards education reimbursement.
- Health & Wellness: Flexible health and dental benefits, plus a $5,000 mental health benefit to support your well-being.
- Time Off: In addition to regular vacation and personal days, we support community involvement with a volunteer day.
- Financial Security: Company-matching pension plan, share ownership program and additional investment options.
- Rewards and Recognition: Employee recognition programs, service milestone celebrations, employee discounts and more!
- Emphasis on Community: We provide a workplace where employees feel connected and supported through Employee Resource Groups (ERGs), mentorship programs, social clubs and events.
We’re committed to removing barriers and ensuring equal access to employment. Applicants requiring reasonable accommodation during the application process may contact talentacquisitioncanada@canadalife.com. All information provided will be handled in accordance with applicable laws and Canada Life policies.
Canada Life would like to thank all applicants, however only those who qualify for an interview will be contacted.
Information Security Analyst - Security Awareness & Training in London employer: Canada Life
Canada Life UK is an exceptional employer that prioritises the well-being and growth of its employees, offering a modern and agile work environment in vibrant locations like Bristol, London, and Watford. With a strong focus on building better futures, the company fosters a welcoming culture and provides ample opportunities for professional development, making it an ideal place for those seeking meaningful and rewarding careers.
StudySmarter Expert Advice🤫
We think this is how you could land Information Security Analyst - Security Awareness & Training in London
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Canada Life, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Canada Life
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Canada Life. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Information Security Analyst - Security Awareness & Training in London
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Canada Life insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Canada Life that you’re committed to staying ahead in the game.
How to prepare for a job interview at Canada Life
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Canada Life to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Canada Life.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.