Back to job search
OP
Oxford Properties GroupVerified Job Source

Student Analyst, OT Cybersecurity (Winter 2027, 4 Months)

Support vulnerability management and compliance evidence collection for operational technology across a real estate portfolio. Monitor security alerts and maintain firewall policies and CMDB accuracy using tools like SentinelOne and ServiceNow.

  • Hybrid
  • Toronto, ON
  • Posted Sep 7, 2026
  • Apply by Oct 7, 2026
  • 1 position

Opens an external site

More jobs you can apply to directly

Similar opportunities posted by employers hiring on Jobs.ca, with no external application form.

Job summary

Choose a workplace that empowers your impact. Join a global workplace where employees thrive. One that embraces diversity of thought, expertise and passion. A place where you can personalize your employee journey to be — and deliver — your best. We are a leading global real estate investor, developer and manager. We combine our capital with our capabilities to create real estate that strengthens economies and communities. By prioritizing people, partnerships and places, we generate meaningful returns for OMERS members, enhance value for our capital partners and create a brighter world for our customers. Join us to accelerate your growth & development, prioritize wellness, build connections, and support the communities where we live and work. Don’t just work anywhere — come build tomorrow together with us. Know someone at OMERS or Oxford Properties? Great! If you're referred, have them submit your name through Workday first. Then, watch for a unique link in your email to apply. Oxford Properties is looking for a Student Analyst, OT Cybersecurity (Co-op) to join our Technology Operations team. In this hands-on student role, you’ll support vulnerability management, contribute to compliance evidence and controls, and help strengthen the security posture of our operational technology environment across a geographically distributed real estate portfolio. You’ll work alongside the team with OT infrastructure (network devices, building automation systems, endpoint protection, and monitoring platforms) to help identify risk, close gaps, and keep the compliance program current. You Will Be Responsible For Vulnerability Management Support triage and remediation of vulnerabilities across OT network infrastructure using Qualys VMDR. Help track vulnerability SLAs, escalate breaches, and maintain the vulnerability register. Coordinate patching and mitigation activities with property-level technology teams. Compliance & Controls Support maintenance and evidence collection for compliance controls mapped to NIST CSF / CIS frameworks. Help produce audit ready evidence packages and support SOC 2 / PCI-DSS assessments. Assist with the risk register by helping assess, score, and track risk treatment plans. Security Operations Support monitoring and response to alerts from SentinelOne (EDR) and OPManager (network monitoring). Assist with incident investigation, root cause analysis, and documentation. Help maintain and review FortiGate firewall policies across sites. Platform & Tooling Work in ServiceNow, our ITSM and CMDB platform. Contribute to automation (Deluge scripts, REST API integrations) that supports compliance workflows. Help maintain CMDB accuracy for OT network devices across the portfolio. Preferred Skills & Experience What You’ll Bring (Nice to Have) Enrollment in a post-secondary program (e.g., Cybersecurity, Computer Science, IT, Engineering, or related). Interest in security operations, vulnerability management, or risk/compliance. Familiarity with vulnerability scanning concepts or tools (Qualys or similar) through coursework, labs, or projects. Awareness of security frameworks and controls (e.g., NIST CSF, CIS Controls, SOC 2, PCI-DSS). Basic understanding of networking fundamentals, including VLANs, ACLs, routing, DNS, and DHCP. Exposure to firewalls and endpoint security concepts (FortiGate and/or EDR is a plus). Curiosity about OT/ICS environments and how they differ from enterprise IT. Strong written documentation skills and comfort working in ticketing/ITSM tools. Core Competencies Takes ownership and doesn’t wait to be told a vulnerability needs attention. Communicates clearly with both technical teams and nontechnical stakeholders. Works independently across multiple priorities. Pragmatic and focused on real risk, not checkbox compliance. Committed to continuous learning and improving the program. Work Arrangement & Expectations Work location: Toronto, ON (on site 4 days). Hours: Standard business hours; occasional after-hours maintenance or incident response as required. On-call: May participate in an on-call rotation for OT/security incidents (details to be confirmed). Travel: Occasional travel to properties/sites as needed (frequency to be confirmed). This posting is for an existing vacancy. The expected salary range for this position is $50,700.00 - $70,200.00 per year, prorated based on the term of the contract. You may also be eligible to receive an annual Incentive Award pursuant to our Short-term Incentive plan and our Long-Term Incentive plan (if applicable), and to participate in our group benefits and retirement plans – details on these elements of compensation are included within OMERS & Oxford offer letters. Oxford's purpose is to strengthen economies and communities through real estate. Our people-first culture is at its best when our workforce reflects the communities where we live and work — and the customers we proudly serve. From hire to retire, we are an equal opportunity employer committed to an inclusive, barrier-free recruitment and selection process that extends all the way through your employee experience. This sense of belonging and connection is cultivated up, down and across our global organization thanks to our vast network of Employee Resource Groups with executive leader sponsorship, our Purpose@Work committee and employee recognition programs. Artificial intelligence (AI) tools are used to support certain stages of the OMERS recruitment process. While AI assists us in our process, human judgment and decision-making remain central to our candidate experience.

What you’ll do

Support vulnerability management and compliance evidence collection for operational technology across a real estate portfolio. Monitor security alerts and maintain firewall policies and CMDB accuracy using tools like SentinelOne and ServiceNow.

Requirements

Enrollment in a post-secondary program in Cybersecurity, Computer Science, or a related field is preferred. Candidates should have a basic understanding of networking, security frameworks, and vulnerability scanning tools.

Benefits

• Annual Incentive Award • Short-term Incentive Plan • Long-Term Incentive Plan • Group Benefits • Retirement Plans

Listed skills

  • RecruitmentPreferred
  • analysisPreferred
  • CompliancePreferred
  • DNSPreferred
  • managementPreferred
  • Decision MakingPreferred
  • ProcessPreferred
  • AccuracyPreferred
  • DevelopmentPreferred
  • maintenancePreferred
  • AuditPreferred
  • Group BenefitsPreferred

Other relevant skills

Identified from the job description. Confirm important requirements above.

  • Vulnerability Management
  • Compliance Evidence Collection
  • OT Cybersecurity
  • Network Monitoring
  • Risk Assessment
  • Incident Investigation
  • Firewall Policy Management
  • ITSM
  • CMDB
  • Automation Scripting
  • NIST CSF
  • CIS Controls
  • SOC 2
  • PCI-DSS
  • Networking Fundamentals
  • Endpoint Protection

Job areas

  • Security & Safety
  • Technology
  • Engineering
  • Finance & Accounting
  • Data & Analytics

Additional details

Minimum education
Bachelor’s degree
Minimum experience
0+ years
Apply by
Oct 7, 2026
Posting language
English
Working hours
40 hours per week
Office presence
4 days per week
Seniority
Internship