Roche Logo

Roche

Cybersecurity Analyst (Vulnerability Management)

Job Posted 23 Days Ago Posted 23 Days Ago
Mississauga, ON
Senior level
Mississauga, ON
Senior level
The Cybersecurity Analyst will assess and manage vulnerabilities in web applications, ensuring network and user safety while collaborating with various teams on security issues.
The summary above was generated by AI

Roche fosters diversity, equity and inclusion, representing the communities we serve. When dealing with healthcare on a global scale, diversity is an essential ingredient to success. We believe that inclusion is key to understanding people’s varied healthcare needs. Together, we embrace individuality and share a passion for exceptional care. Join Roche, where every voice matters.

The Position

Cybersecurity Analyst (Vulnerability Management)

Location: Roche Pharma Campus - Mississauga (Hybrid)

Candidates must be based in the GTA

A healthier future. It’s what drives us to innovate. To continuously advance science and ensure everyone has access to the healthcare they need today and for generations to come. Creating a world where we all have more time with the people we love. That’s what makes us Roche.

The Cybersecurity - Vulnerability Management Team is part of Roche Global Information Security. Our mission is to safeguard Roche systems and information by prioritizing the resolution of identified IT security risks. We assess the urgency of deploying security updates for infrastructure components through risk ratings and maintain constant vigilance over Roche IT assets for known vulnerabilities.

Our team is dedicated to developing and implementing robust security controls, defenses, and countermeasures to prevent both internal and external attacks on company email, data, e-commerce, and web-based systems. As part of our commitment to staying ahead, our Vulnerability Management Team actively monitors specialized sources for emerging vulnerabilities or weaknesses that could potentially impact Roche.

We are seeking a skilled and experienced Cybersecurity Analyst with expertise in vulnerability management and web application security assessments to join our cybersecurity team. In this role, you will be responsible for keeping our networks and users safe from constantly evolving threats. As a Vulnerability Management Security Analyst, you will help protect proprietary information, patient data, keep computer systems and web applications secure, and provide a safe information environment for our users.

The Opportunity

  • You are assessing company web applications using automated and manual tools.

  • You are evaluating and prioritizing security issues submitted via a bug-bounty program.

  • You are using enterprise vulnerability management tools to identify high-risk systems.

  • You are communicating risk and collaborating with system owners and other teams to address security vulnerabilities.

  • You are enhancing response capabilities for security vulnerabilities and incidents through tool building, scripting, and training.

  • You are actively involved in security monitoring for a global environment.

Who you are

  • You hold a Bachelor's degree (Information Technology and Information Security preferred) and you have + 5 years of experience in the information security field.

  • You demonstrate expertise in web application, network, and computer security, using Vulnerability Scanning tools (Tenable preferred), SIEM, Splunk SPL, and experience with scripting/automation.

  • You have experience in attack surface management and a proven ability to analyze, triage, and escalate security vulnerabilities.

  • You possess familiarity with various defensive and offensive security tool sets.

Preferred

  • You have experience with cloud platforms and understand security and controls.

  • You hold certifications such as OSCP or similar.

  • You have programming experience in scripting languages such as Python or PowerShell, and familiarity with JavaScript and mobile security.

  • You have experience with ServiceNow tool.

  • You have the ability to effectively communicate information security-related risks, concepts, and situations to a non-technical audience.

  • You have experience working in a large, global, and complex environment.

Relocation benefits are not offered for this position

Who we are

At Roche, more than 100,000 people across 100 countries are pushing back the frontiers of healthcare. Working together, we’ve become one of the world’s leading research-focused healthcare groups. Our success is built on innovation, curiosity and diversity.

Roche Pharma Canada has its office in Mississauga, Ontario and employs over 850 employees. The Mississauga facility is bright, vibrant, fosters collaboration and teamwork, and is reflective of Roche's truly innovative culture.

Roche is an Equal Opportunity Employer.

Top Skills

JavaScript
Powershell
Python
Servicenow
SIEM
Splunk Spl
Tenable
Vulnerability Scanning Tools

Similar Jobs

Yesterday
Remote
Hybrid
5 Locations
Senior level
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Conduct research on cloud and Linux security threats, develop advanced security models, collaborate cross-functionally, and share insights with the community.
Top Skills: AWSAzureDockerGCPGoKubernetesPodmanPythonShell Scripting
2 Days Ago
Hybrid
Toronto, ON, CAN
Mid level
Mid level
Cloud • Insurance • Professional Services • Analytics • Cybersecurity
The Risk Control Consultant conducts assessments and provides risk improvement recommendations while collaborating with internal partners and managing client relationships.
Top Skills: Microsoft Office Suite
2 Days Ago
Hybrid
Aurora, ON, CAN
Senior level
Senior level
Automotive • Hardware • Robotics • Software • Transportation • Manufacturing
The Senior Manager of OT Cybersecurity oversees cybersecurity measures for operational technology, leading a team to assess risks, implement strategies, and ensure secure operations across production environments.
Top Skills: Cloud EnvironmentsCybersecurityIndustrial Control SystemsIpLinuxWindowsPlcsProgrammingScriptingSiem TechnologiesTcp/Ip

What you need to know about the Calgary Tech Scene

Employees can spend up to one-third of their life at work, so choosing the right company is crucial, not just for the job itself but for the company culture as well. While startups often offer dynamic culture and growth opportunities, large corporations provide benefits like career development and networking, especially appealing to recent graduates. Fortunately, Calgary stands out as a hub for both, recognized as one of Startup Genome's Top 100 Emerging Ecosystems, while also playing host to a number of multinational enterprises. In Calgary, job seekers can find a wide range of opportunities.
By clicking Apply you agree to share your profile information with the hiring company.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account