Information Security Analyst
ExpiredThe Information Security Analyst manages security incident intake, response, and investigations while conducting threat and risk assessments. They also provide training on security policies and collaborate with technical teams to safeguard sensitive health information.
- On-site
- Surrey, BC
- Posted Aug 12, 2026
- Apply by Aug 12, 2027
- 1 position
This job has expired
This position at Fraser Health Authority is no longer accepting applications. The original posting remains below for reference.
Expired Aug 24, 2026
Current jobs at Fraser Health Authority
These verified opportunities are still accepting applications.
Social Worker (Acute Care) - Burnaby Hospital
- On-site
- Burnaby, BC
- Posted Aug 24, 2026
Registered Nurse, Surgical Services - Inpatient - Burnaby Hospital
- On-site
- Burnaby, BC
- Posted Aug 24, 2026
Registered Nurse, Surgical Services - Inpatient - Burnaby Hospital
- On-site
- Burnaby, BC
- Posted Aug 24, 2026
Registered Nurse, Surgical Services - Inpatient - Burnaby Hospital
- On-site
- Burnaby, BC
- Posted Aug 24, 2026
Original job posting
Salary The salary range for this position is CAD $38.88 - $55.89 / hour Job Summary We are hiring a Full Time Information Security Analyst to join our team in Surrey, B.C. In this role, you will play a critical role in protecting the systems and data that support patient care within one of the largest health authorities. In this high-impact role, you’ll lead security incident intake and response, conduct threat and risk assessments, and collaborate with clinical and technical teams to safeguard sensitive health information. If you’re driven by purpose and thrive in fast-paced, high-stakes environments, this is your opportunity to strengthen cybersecurity while directly supporting safe, patient-centered care. A career with Fraser Health will offer you the opportunity to be a part of a dedicated team of professionals in a dynamic and rewarding health care environment. We offer a competitive compensation and benefit package, including comprehensive health benefits coverage. Important to know Before we can finalize any offer of employment, you must: Confirm you are legally entitled to work in Canada Take the next step and apply so we can continue the conversation with you. BC’s health system is in the process of transformation. As part of the planned changes, certain IM/IT, Finance, and Supply Chain roles are expected to be in scope for transition to a new provincial shared services organization, BC Shared Health Services. Candidates applying to positions in these areas should be aware that, while the role is currently employed by the Health Authority, it may transition to BC Shared Health Services as part of the first or subsequent implementation phases. The intent of this transition is to support continuity of employment however, details regarding timing, process, and any impacts to employment arrangements will be confirmed as planning progresses. Providing this information at the recruitment stage is intended to ensure transparency about the broader system changes underway and to support informed decision-making by candidates. #LI-DNI Detailed Overview Supporting the Vision, Values, Purpose and Commitments of Fraser Health including service delivery that is centered around patients/clients/residents and families: The Information Security Analyst provides initial intake, assessment, and prioritization of requests for Health Informatics and Information Technology (HIIT) Information Security Services and/or events requiring incident response prioritizing based on risk and urgency, ensuring that work activities are logged and tracked and that higher priority events are appropriately escalated. The Analyst helps coordinate investigations for security-related incidents and policy violations as well as participates as a key member of an integrated breach response team. The Analyst deals with sensitive and critical situations and provides training and education on Fraser Health's security procedures, policies, and standards at all levels of the organization. Responsibilities Conducts HIIT Security threat and risk assessments, investigations, and performs incident management activities utilizing approved processes and techniques to conduct electronic audits, review security logs and gather forensic evidence. Analyzes complex information through acute problem-solving to manage and investigate security incidents; develops reports, action plans, and response communications on mitigation strategies. Monitors and maintains security tracking tools and associated databases and prepares reports and presentations on metrics and risk trends. Maintains clear, concise, objective and complete documentation regarding all details of information security incidents and investigations to ensure action taken to contain and remediate these events are formally recorded. Monitors and interprets security alerts generated by security monitoring systems to ensure appropriate and timely response to security-related incidents. Participates in security, vulnerability, and risk assessments related to the information security features of the systems, networks, and related administrative activities; recommends mitigation strategies where necessary. Participates in the design, implementation, and evaluation of information security projects, objectives, policies, and procedures. Develops and proposes new operational security processes and enhancement of existing processes to ensure adherence to FH security policies, industry standards and legislated FIPPA requirements. Provides day-to-day guidance and direction both verbally and in writing to internal staff, physicians, clinicians, and management on information security policy, standards, and best practices. Assists in the delivery of Information Privacy and Security training programs and initiatives. Promotes good security practices and an organization culture of information security awareness. Performs other related duties as assigned. Qualifications Education and Experience Bachelor's degree in Computer Science or a related field, plus five (5) years' recent, related experience in a large information technology services environment with a minimum of two (2) years' experience in an information security role, within a large organization, or an equivalent combination of education and experience. Preferred completion of intermediate to advanced information security certification from SANS, ISACA, (ISC)2 or other leading industry certification bodies. Competencies Demonstrates the leadership practices of the Fraser Health Leadership Framework of Clear, Caring and Courageous and creates the conditions for people to succeed. Professional/Technical Capabilities: Comprehensive knowledge of information security principles, standards, best practices, and industry trends. Working knowledge of core security technologies including firewalls, anti-virus, intrusion prevention, and web content filtering. Experience in Security Incident Response. Investigative and analytical skills to research, analyze, and interpret data and information from a variety of disparate sources. Ability to utilize both analytical skills and conceptual thinking to identify and resolve issues. Advanced proficiency in business applications, Microsoft Office Suite, databases, internet/intranet, and report writing. Ability to operate related equipment including applicable software applications Physical ability to perform the duties of the position About Fraser Health Fraser Health is the heart of health care for over two million people in Metro Vancouver and the Fraser Valley in British Columbia, Canada, on the traditional, ancestral and unceded lands of the Coast Salish and Nlaka’pamux Nations and is home to 32 First Nations within the Fraser Salish region. People - those we care for and those who care for them - are at the heart of everything we do. Our hospital and community-based services are delivered by a team of 50,000+ staff, medical staff and volunteers. We are committed to planetary health and value diversity in the work force. We strive to maintain an environment of respect, caring and trust. Fraser Health’s hiring practices aspire to ensure all individuals are treated in an inclusive, equitable and culturally safe manner. Together, we are the heart of health care. Instagram | Facebook | LinkedIn | X | Indeed | Glassdoor Protect yourself from recruitment and employment scams. We are aware of suspected fraudulent recruitment activity involving individuals impersonating Fraser Health recruiters or representatives. Fraser Health will never ask candidates or jobseekers for money, fees, gift cards or equipment purchases at any stage of the recruitment process. Learn more >
What you’ll do
The Information Security Analyst manages security incident intake, response, and investigations while conducting threat and risk assessments. They also provide training on security policies and collaborate with technical teams to safeguard sensitive health information.
Requirements
Candidates must have a bachelor's degree in Computer Science or a related field and at least five years of experience in a large IT environment, including two years in information security. Professional certifications from SANS, ISACA, or (ISC)2 are preferred.
Benefits
• Comprehensive health benefits coverage • Competitive compensation
Listed skills
- Problem solvingPreferred
Other relevant skills
Identified from the job description. Confirm important requirements above.
- Information security
- Incident response
- Threat assessment
- Risk assessment
- Security auditing
- Forensic evidence gathering
- Security log analysis
- Firewalls
- Anti-virus
- Intrusion prevention
- Web content filtering
- Policy development
- Technical documentation
- Security training
- Problem-solving
- Analytical skills
- Report Writing
- Security Investigations
- Courage
- Content Filtering
- Industry Standards
- Supply Chain
- Planning
- Patient-Centered Care
- Analytical Skills
- Research
- Auditing
- Health Informatics
- Management
- Decision Making
- Communication
- Computer Science
- Information Technology
- Cyber Security
- Information Privacy
- Incident Response
- Finance
- Firewall
- Forensic Identification
- Leadership
- Incident Management
- Intranet
- Intrusion Detection And Prevention
- Problem Solving
- Microsoft Office
- Operations Security
- Presentations
- Risk Analysis
- Security Awareness
Job areas
- Security & Safety
- Technology
- Healthcare
- Software
- Information Security Analyst
- Cyber Security Analyst
- Database and Network Professionals Not Elsewhere Classified
- Information Security Analysts
Additional details
- Minimum education
- Professional degree
- Minimum experience
- 5+ years
- Apply by
- Aug 12, 2027
- Posting language
- English
- Working hours
- 40 hours per week
