Security Analyst
benevity · Toronto, Ontario
About The Role
Meet BenevityBenevity is the way the world does good, providing companies (and their employees) with technology to take social action on the issues they care about. Through giving, volunteering, grantmaking, employee resource groups and micro-actions, we help most of the Fortune 100 brands build better cultures and use their power for good. We’re also one of the first B Corporations in Canada, meaning we’re as committed to purpose as we are to profits. We have people working all over the world, including Canada, Spain, Switzerland, the United Kingdom, the United States and more!Benevity is looking for a Security Analyst to join our Information Security team in a generalist role spanning security operations, application security, and security enablement. In this position, you will own the triage and investigation of security alerts, partner with engineering teams to fix vulnerabilities, and help build resources that strengthen our overall defense. Working independently on day-to-day operations while collaborating with senior analysts, you will leverage AI tools to accelerate workflows while exploring AI-related product risks. We are seeking a curious, analytical, and continuous learner who thrives on solving puzzles and empowering others to build a safer digital world.What you’ll doTriage, validate, and investigate alerts across core security tooling (EDR, SIEM, IDS/IPS, CSPM, MDR) to establish scope and determine escalationMaintain clear documentation, write incident response playbooks, and participate in an on-call rotationConduct threat intelligence research and contribute to post-incident reviews to drive preventive control improvementsAnalyze SAST, SCA, and DAST findings, providing engineering teams with actionable exploitation context for remediationAssist with threat modeling and architectural reviews to catch security risks early in product designLeverage AI tools for faster triage and investigation while practicing safe data handling and validating outputsIdentify AI-specific product risks, including prompt injection, insecure tool use, and third-party model exposureTrack vulnerability remediation lifecycles, monitor SLA compliance, and report on recurring security patternsPartner with engineering and fraud teams on joint investigations, security enablement content, and self-serve resourcesTrack and report on key security metrics, trends, and process developmentsWhat you’ll bring3+ years of experience in security operations, information security, or a closely related technical roleHands-on experience with security tooling across categories such as EDR, SIEM, CSPM, WAF, cloud-native logging, and SAST or SCASolid working knowledge of networking, operating systems, and cloud fundamentalsPractical experience using AI tooling in a technical context with a thoughtful view on its strengths and limitationsScripting proficiency in Python, PowerShell, or Bash, paired with an interest in automating repetitive tasksFamiliarity with security frameworks such as MITRE ATT&CK and NIST CSFStrong analytical and problem-solving skills with a puzzle-solving mindset and a drive for verifiable answersClear, inclusive written and verbal communication skills, capable of translating technical concepts for non-specialistsA curious, continuous-learning approach and a collaborative desire to support teammatesExperience in SaaS, cloud-native, containerized, or API-driven environments, or relevant certifications (e.g., Security+, CySA+, GCIH)Discover your purpose at workWe’re not employees, we’re Benevity-ites. From all locations, backgrounds and walks of life, who deserve more …Innovative work. Growth opportunities. Caring co-workers. And a chance to do work that fills us with a sense of purpose.If the idea of working on tech that helps people do good in the world lights you up ... If you want a career where you’re valued for who you are and challenged to see who you can become …It’s time to join Benevity. We’re so excited to meet you.Where We WorkAt Benevity, we embrace a flexible hybrid approach to where we work that empowers our people in a way that supports great work, strong relationships, and personal well-being. For those located near one of our offices, while there’s no set requirement for in-office time, we do value the moments when coming together in person helps us build connection and collaboration. Whether it’s for onboarding, project work, or a chance to align and bond as a team, we trust our people to make thoughtful decisions about when showing up in person matters most.Join a company where DEIB isn’t a buzzwordDiversity, equity, inclusion and belonging are part of Benevity’s DNA. You’ll see the impact of our massive investment in DEIB daily — from our well-supported employee resources groups to the exceptional diversity on our leadership and tech teams.We know that diverse backgrounds, experiences, skills and passions are what move our business and our people forward, so we're committed to creating a culture of belonging with equal opportunities for everyone to shine.That starts with a fair and accessible hiring process. If you want to feel seen, heard and celebrated, you belong at Benevity.Candidates with disabilities who may require accommodations throughout the hiring or assessment process are encouraged to reach out to <[email hidden]>.
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
