IT Security Analyst – Security Operations
The IT Security Analyst manages the full lifecycle of vulnerabilities and threat management to strengthen the organization's security posture. They are responsible for monitoring security alerts, implementing detective controls, and leading remediation efforts across infrastructure and applications.
- On-site
- Canada
- Posted Jul 31, 2026
- 1 position
Job summary
About Multimatic Multimatic is a privately held global enterprise supplying engineered components, systems, and services to the automotive industry. Its core competencies include complex mechanisms, body hardware, suspension systems, structural components, and lightweight composite automotive systems. Job Summary The IT Security Analyst will play a key role in strengthening Multimatic’s security posture by managing vulnerability and threat management activities, supporting security operations, and leading remediation efforts across infrastructure and applications. This role will work closely with the Manager, IT Security Operations, and broader IT teams to implement security controls, respond to incidents, and drive continuous improvements in the organization’s cybersecurity capabilities. Key Responsibilities Vulnerability & Threat Management Manage the full lifecycle of vulnerabilities, from identification to remediation and validation Recommend and track remediation actions from application and infrastructure security testing Continuously monitor CVSS databases and external threat intelligence sources Perform threat analysis, vulnerability assessments, and risk prioritization based on exposure and attack surface Maintain and enhance a formal Threat and Vulnerability Management Program Support and maintain an accurate CMDB / asset inventory Security Operations & Incident Response Participate in and support incident detection, investigation, and response activities Analyze security alerts from SIEM, EDR, and other security tools Perform regular security assessments on assigned systems and environments Contribute to attack surface reduction efforts across infrastructure and applications Security Engineering & Architecture Implement and manage preventive and detective security controls/tools Design and enhance secure architectures across infrastructure, platforms, and applications Support deployment and optimization of: SIEM Endpoint Detection & Response (EDR) Data Loss Prevention (DLP) Network security controls (IDS/IPS, firewalls) Collaborate with development and engineering teams to embed security into system design Patch & Risk Management Enhance patching standards and processes across all assets: Operating systems, applications, mobile devices, network systems Conduct risk assessments and document findings in the risk register Provide regular reporting on vulnerabilities, remediation status, and risk posture Collaboration & Governance Work closely with IT and security teams to understand data flows and system dependencies Partner with stakeholders to prioritize remediation actions Lead or contribute to security projects from design through deployment Ensure compliance with industry standards, internal policies, and customer requirements Reporting & Intelligence Deliver regular reports on vulnerability trends, risks, and remediation progress Track evolving threat landscape and provide actionable intelligence Support development of a security intelligence capability Qualifications Required 5+ years of experience in IT Security or Security Operations Strong experience in: Vulnerability management and threat analysis Network, OS, and application security Security tools (SIEM, EDR, IDS/IPS, DLP) Hands-on experience with: Vulnerability scanning and penetration testing tools Threat hunting and attack methodologies Strong knowledge of: TCP/IP and protocols (HTTP, HTTPS, SMTP, FTP, SNMP) Experience in incident response and security operations Proven ability to analyze security alerts and vulnerability data Bachelor’s degree in Computer Science, MIS, or related field (or equivalent experience) Desired Skills Infrastructure and server hardening Security architecture and design in complex environments Certificate and key management IT compliance and regulatory assessments Experience leading security projects and initiatives Strong documentation and communication skills Certifications (Preferred) CISSP, SANS, or equivalent industry certifications Key Competencies Strong analytical and problem-solving skills Ability to prioritize risks based on business impact Effective collaboration and stakeholder management Continuous learning mindset Leadership capability within security initiatives Additional Requirements Must be legally authorized to work in Canada WORKING ENVIRONMENT Location: Onsite. This job posting is for an existing vacancy. The total cash compensation range for this position is expected to be: $47,424.00 - $87,000.00 To learn more about Multimatic, check out our youtube channel - https://www.youtube.com/watch?v=psOjJIh3t90 If you are interested in this position, apply by sending us your cover letter and resume. We thank all interested candidates in advance; however, only individuals selected for interviews will be contacted. As part of our commitment to ensuring our employment practices are fair, accessible, and inclusive of persons with disabilities, recruitment-related accommodations for disabilities, are available upon request throughout the recruitment and assessment process for applicants with disabilities.
What you’ll do
The IT Security Analyst manages the full lifecycle of vulnerabilities and threat management to strengthen the organization's security posture. They are responsible for monitoring security alerts, implementing detective controls, and leading remediation efforts across infrastructure and applications.
Requirements
Requires 5+ years of experience in IT security operations with strong knowledge of network protocols and security tools like SIEM and EDR. A Bachelor's degree in Computer Science or a related field is required, and industry certifications like CISSP are preferred.
Other relevant skills
Identified from the job description. Confirm important requirements above.
- Vulnerability Management
- Threat Analysis
- Incident Response
- SIEM
- EDR
- DLP
- IDS/IPS
- Network Security
- Penetration Testing
- Threat Hunting
- TCP/IP
- Risk Assessment
- Security Architecture
- Patch Management
- Infrastructure Hardening
- Compliance
Job areas
- Technology
- Security & Safety
- Engineering
- Software
- Manufacturing
Additional details
- Minimum education
- Professional degree
- Minimum experience
- 5+ years
- Posting language
- English
- Working hours
- 40 hours per week
