Security Analyst / Analyste securite
Ville Saint-Laurent, Quebec, CA
EXFO develops smarter network test, monitoring, and analytics solutions for the world’s leading telecommunications service providers, network equipment manufacturers, and web-scale enterprises — and we love what we do!
With nearly 1,900 employees in more than 25 countries, EXFO is the global #1 leader in fiber optic test solutions and has the largest active assurance deployment in the industry. Our broad portfolio of intelligent hardware and software solutions enables our customers’ network transformations related to fiber, 5G, virtualization, and big data analytics.
We are always looking for top talent to help us lead the way in a thriving industry with unlimited opportunities.
Position Summary
As a Security Analyst, you will play a key role in ensuring that our products and services comply with the highest standards and regulations related to information security, personal data protection, and quality. You will actively contribute to meeting our customers’ compliance requirements while supporting the evolution of our Information Security Management System (ISMS) based on ISO 27001.
You will work closely with development, security, legal, and sales teams to identify, document, and communicate compliance requirements applicable to our products and services.
Technical Responsibilities
-
Analyze applicable standards and regulations (ISO 27001, SOC 2, FedRAMP, CMMC, etc.)
-
Assess the compliance level of products and services and identify gaps and potential risks
-
Propose and implement action plans to improve compliance
-
Draft, maintain, and update compliance documentation (policies, procedures, reports, attestations)
-
Participate in the preparation and follow-up of internal and external audits
-
Respond to compliance-related requests from customers, partners, and suppliers
-
Monitor regulatory developments and anticipate their impact on products and services
-
Contribute to employee awareness and training on compliance and security topics
Required Skills
-
Strong knowledge of ISO 27001, SOC 2, FedRAMP, CMMC
-
Ability to analyze, synthesize, and clearly communicate complex technical information
-
Strong collaboration skills and customer-service mindset
-
High level of organization, rigor, and ability to manage priorities
-
Autonomy, initiative, and adaptability
Requirements
-
Bachelor’s degree in computer science, management, law, or a related field
-
Minimum of 3 years of experience in a role related to information security, compliance, data protection, or quality
-
Excellent written and verbal communication skills in French and English