IT Senior Analyst, Cybersecurity
Applying for this one?
We write the CV against this exact posting — its wording, its requirements — not a template with your name in it.
$25, one-time. No subscription.
At Saputo, we bring good to the table by making high-quality products, investing in our people, and supporting communities around the world . As a top 10 global dairy processor, we value contributions that matter and strive to foster an inclusive, growth-driven work environment. Ready to bring your best?
Overview of the role:
Saputo offers a rewarding and safe work environment with opportunities and challenges that will help grow your skills. We are seeking talent to fill the position of Security Senior Analyst at our locations in Montreal, QC, or Georgetown, ON.
The selected candidate will report to the Senior Manager of Cybersecurity and will be part of a highly dynamic team where leaders and members are encouraged to exceed expectations.
The Cybersecurity Senior Analyst supports Saputo’s vulnerability and exposure management program across enterprise IT environments and manufacturing sites. This role focuses on vulnerability assessment, security tooling deployment, remediation tracking, cybersecurity control monitoring, and coordination with IT, infrastructure, manufacturing, and OT stakeholders. While deep OT engineering expertise is not required, the candidate should understand the operational constraints of manufacturing environments and apply cybersecurity practices in a way that supports business continuity, production availability, and risk reduction.
How you will make contributions that matter:
Vulnerability Management & Exposure Management
- Support the deployment, adoption, and ongoing improvement of enterprise vulnerability management and monitoring tools across IT environments and manufacturing sites.
- Manage and track the end-to-end vulnerability lifecycle, including assessment, prioritization, ownership assignment, mitigation planning, remediation follow-up, exception handling, and closure validation.
- Conduct vulnerability and risk assessments across servers, endpoints, network devices, applications, cloud services, and manufacturing-related assets where applicable.
- Utilize cybersecurity tools, technologies, and methodologies to perform security assessments and provide actionable recommendations.
- Establish and maintain vulnerability baselines to measure exposure, remediation progress, and overall cybersecurity posture.
- Work with IT, infrastructure, application, manufacturing, and OT teams to support mitigation and remediation activities while considering operational constraints and change windows.
Asset Visibility & Security Monitoring
- Maintain visibility of IT and manufacturing-related assets, supporting accurate inventory, classification, ownership, and security monitoring coverage.
- Analyze cybersecurity alerts, trends, and threat intelligence to identify emerging threats.
- Implement proactive and reactive measures to reduce cyber risk and production disruption.
- Stay informed about emerging cyber threats affecting enterprise IT, infrastructure, and manufacturing environments.
Governance & Compliance
- Contribute to cybersecurity policies, standards and procedures.
- Participate in cybersecurity audits and assessments and track remediation activities.
- Develop cybersecurity metrics and executive dashboards.
- Report risk posture and remediation status to management.
Threat Intelligence & Continuous Improvement
- Leverage threat intelligence and industry trends to assess potential impacts on manufacturing operations and recommend preventive measures.
- Identify opportunities to improve cybersecurity processes, technologies, and operational effectiveness.
Incident Response
- Support cybersecurity incident investigations, root cause analysis, containment, recovery, and lessons learned activities for IT and OT environments.
- Contribute to the cybersecurity incident response lifecycle, including preparation, detection, containment, eradication, recovery, and lessons learned.
- Support initiatives that improve operational resilience and reduce the cybersecurity impact on production operations.
Cybersecurity Advisory & Program Delivery
- Coordinate vulnerability management, cybersecurity control tracking, and remediation activities across IT teams, infrastructure teams, manufacturing stakeholders, and OT contacts.
- Provide cybersecurity expertise and advisory support for IT projects, infrastructure initiatives, and manufacturing-related security activities.
- Collaborate with site personnel, engineering teams, infrastructure teams, vendors, and internal stakeholders to support cybersecurity initiatives.
- Contribute to the successful delivery of cybersecurity projects and operational objectives.
- Assess and validate the effectiveness of cybersecurity controls implemented across IT networks, systems, and manufacturing-related environments.
You are best suited for the role if you have the following qualifications:
- University degree in information systems, computer science, engineering, or a related field. A master’s degree in information security is preferred.
- Minimum of 4 years of cybersecurity experience, preferably with hands-on involvement in vulnerability management, vulnerability assessment, security tooling deployment, remediation tracking, and cybersecurity control monitoring across IT environments.
- Certifications such as CISSP or GICSP are an asset.
- Experience supporting vulnerability and patch management processes, including end-to-end tracking of mitigation, remediation, exceptions, and closure activities.
- Hands-on experience with cybersecurity platforms supporting vulnerability scanning, exposure management, asset discovery, configuration assessment, patch prioritization, remediation tracking, or security monitoring.
- Exposure to manufacturing, industrial, or OT environments is considered an asset; deep OT engineering expertise is not required.
- Experience in conducting cyber incident investigations.
- Knowledge of information security frameworks and standards (NIST CSF, NIST 800-53, NIST 800-82, IEC 62443, ITIL).
- Technical familiarity with technologies used for security event monitoring, endpoint detection and response, log analysis, threat detection, alert triage, and incident investigation is an asset.
- Strong understanding of networking and infrastructure concepts, including TCP/IP, switches, routers, firewalls, segmentation, secure remote access, Windows/Linux systems, and enterprise services; familiarity with the Purdue model is an asset.
As part of their duties, the position holder will be required to communicate and collaborate in English and French, both orally and in writing, with colleagues or other stakeholders located in Québec, elsewhere in Canada, or across North America.
We support and take care of our employees and their families by offering:
- Generous and complete benefit coverage with group insurance
- Group retirement plan with employer contribution
- Telemedicine and assistance program for employees and their families
- Employee Share Ownership Plan with an employer match
- Paid Parental Leave program
- Paid time off: Sick days, floater days and volunteer day off
- Opportunity to contribute to a collective RRSP & TFSA
- Training and development programs
- Saputo Flex Program, flexible work environment (schedule/location/time off) according to department needs
- Organized activities for employees and their families
- Advantageous discounts on Saputo products
Salary: $88,140 to $115,685
*Salary offers will vary commensurate with experience, education, skills, and training.
________________________________________________________________________________________
STATEMENT ON AI
All applications are carefully considered by our Talent Acquisition team.
Artificial Intelligence tools may be used in screening applications.
Artificial Intelligence is not used to assess or select applications.
In Canada, Saputo is a leading cheese manufacturer and fluid milk and cream processor, with a portfolio of well-loved brands such as Dairyland, Armstrong, Neilson, Alexis de Portneuf, and many more. Whether your expertise lies in manufacturing, operations, supply chain management, sales, quality assurance, or in any other function, your role is integral to our success. You will make contributions that matter, all while working alongside colleagues who genuinely care about your success and who will roll up their sleeves to help.
The material contained herein is provided for informational purposes only. All open jobs offered by Saputo Inc. and all companies, corporations, partnerships, limited partnerships and other entities controlled by Saputo Inc. (collectively, “Saputo”) on Saputo's web site are subject to specific job skill requirements. The job skill requirements, qualifications, and preferred experience are determined by a Saputo subsidiary, office or department, and all positions are subject to local prevailing employment laws and restrictions. This would include immigration laws pertaining to work authorization requirements and any other applicable government permissions or compliance. The materials on this site are provided without warranties of any kind, either expressed or implied, including but not limited to warranties regarding the accuracy or completeness of the information contained on this site or in any referenced links. While Saputo attempts to update this site on a timely basis, the information is effective only as of the time and date of posting. Strict confidentiality will be observed at all times. Saputo is an equal opportunity employer. The information on this site is for information purposes only and is not intended to be relied upon with legal consequence.
We support employment equity. Saputo strives to embed diversity and inclusion in its operations and invites candidates from all horizons to join its family. Saputo welcomes and encourages applications from people with disabilities. Accommodations up to the point of undue hardships, are available on request for candidates taking part in all aspects of the selection process.
Seen 12 hours ago · Saputo USA postings close after a median of 30 days.
Original posting on Saputo USA's site ↗
Posting text belongs to the employer. Removal requests: contact us.
Nearby
Live postings like this one
Same employer first, then the same role elsewhere.
- 12h ago
- 12h ago
- 19h ago
- 19h ago
- 19h ago
- 19h ago
- 19h ago
- 1d ago
One job at a time
One posting. One CV. $25.
Pick the job you actually want and we write for it.