Information Security Analyst - II/Senior

Date: Apr 23, 2026

Location: Winnipeg, MB (Hybrid), CA Hybrid - Canada, CA Kitchener, ON (Hybrid), CA Calgary, AB (Hybrid), CA North York - Toronto, ON (Hybr, CA Edmonton, AB (Hybrid), CA Moncton, NB (Hybrid), CA Vancouver, BC (Hybrid), CA Ottawa, ON (Hybrid), CA Dartmouth, NS (Hybrid), CA Montreal, QC (Hybrid), CA

Company: Wawanesa Insurance

 

Job ID: 9998 


Employment Type:
Existing Role 


Working Business Language: English. This role is considered a head-office role and will be required to communicate with internal and external stakeholders across Canada where the primary business language for this role is English. As such, the successful candidate must be fully proficient in English.  
 

Salary: At Wawanesa, salary is only one component of a holistic, comprehensive and competitive offering that we provide to our employees. In addition to salary, full-time and part-time permanent employees are eligible for an annual bonus plan, leave of absence top-up programs and provided with generous vacation time, personal days, premium free benefits and pension plan. 
 

The salary offered for this role is determined with consideration to various factors, including but not limited to: your work location, local labour market conditions, external market salary data, internal pay equity and the knowledge, skills, experience and anticipated proficiency in the role. The salary offered is estimated to be within the following range: $80,000 - $115,000. Candidates with salary expectations outside of the range are still encouraged to apply. 

 

About Us
At Wawanesa, we offer a hybrid work environment that offers flexibility to our employees in balancing in-office (2 days per week OR 15 hours per week in a Wawanesa office) and remote work. You may work from any of the following locations: Winnipeg, MB; Wawanesa, MB; Vancouver, BC; Calgary, AB; Edmonton, AB; Lethbridge, AB; Toronto (North York), ON; Kitchener, ON; Ottawa, ON; Montreal, QC; Quebec City, QC, Moncton, NB; Dartmouth; NS. 
 

The Wawanesa Mutual Insurance Company (“Wawanesa Mutual”), founded in 1896, is one of Canada’s largest mutual insurers, with over $3.5 billion in annual revenue and assets of $10 billion (CAD). Wawanesa Mutual, with its National Headquarters in Winnipeg, is the parent company of Wawanesa Life, which provides life insurance products and services throughout Canada, and Western Financial Group, which distributes personal and business insurance across Canada. Wawanesa proudly serves more than 1.7 million members in Canada, and we are home to more than 3,300 employees distributed across the Canadian regions and communities where we operate. We give back to organizations that strengthen communities, donating more than $3.5 million annually to charitable organizations, including over $2 million annually in support of people on the front lines of climate change. We are also proud to be recognized as one of Manitoba’s Top Employers. To learn more visit wawanesa.com. 


We are currently looking for dedicated, driven, and enthusiastic individuals who thrive in an environment that welcomes change and are looking for an opportunity for diverse experience and advancement on a growing team.
 

Job Overview

This is an exciting time to join Wawanesa's Information Security team! We are hiring for our Incident Response team.
Wawanesa's Cyber Threat Management team are our cyber-attack first-responders. We monitor, urgently investigate, and contain cyber threats. Our mission is to provide verifiably timely, consistent, accurate, and thorough detection and response to cyber threats. 
Our team is a collaborative group of analysts responsible for threat monitoring, incident response, digital forensics, and cyber threat intelligence.
Within that team, the Information Security Analyst is responsible for monitoring and responding to cyber threats, and for the continued improvement of that capability. You will work with many different data sources and threat detection systems to keep our company safe.
To thrive in this team, you are curious, friendly, respectful, and supportive. You have an investigator's mindset: looking for clues and following evidence to verify whether our systems are under threat and acting to protect them.
You will work with minimal supervision, but together with others in both Cyber Threat Management and other teams to achieve our shared goals.

Job Responsibilities

  • Monitor security telemetry and threat intelligence feeds to identify suspicious activity across the environment
  • Triage and validate detections from SIEM, EDR, and other security tools; determine scope, severity, and business impact
  • Investigate suspected incidents end-to-end, correlating host, network, and cloud evidence to confirm, contain, and remediate threats
  • Rapidly contain active threats by executing response actions (e.g., isolating endpoints, disabling accounts, blocking IOCs) in accordance with approved playbooks
  • Conduct digital forensics and sensitive investigations in collaboration with Legal/Privacy and other partners, maintaining chain of custody and appropriate documentation
  • Identify, capture, and operationalize indicators of compromise (IOCs) and attacker tactics, techniques, and procedures (TTPs); contribute to threat intelligence and detection improvements
  • Produce clear incident documentation, timelines, and post-incident reports; provide actionable recommendations to reduce recurrence and strengthen controls
  • Collaborate with IT operations, infrastructure, application teams, and other cybersecurity functions to coordinate response activities and drive remediation to completion
  • Develop, refine, and maintain incident response procedures, playbooks, and detection content to improve response speed and consistency
  • Act as an escalation resource and mentor for other analysts, supporting knowledge sharing and continuous improvement
  • Participate in the incident response on-call rotation and support after-hours response as requiredhors des heures normales

Qualifications

  • Completion of post-secondary education from an accredited institution in Cyber Security, Information Technology, or a related field
  • At least 5 years of Information Technology experience, with at least 3 years of experience in cybersecurity operations, threat detection, or incident response
  • Knowledge of cybersecurity, incident response, and threat modelling frameworks
  • Experience with one or more of the following:
    • Practical experience with SPL, CQL, KQL, SQL, regex and/or other search and pattern matching languages
    • SIEM, EDR, NGFW, CASB, DRPS, TIP, Email Protection, NGAV, CSPM, AIDR
    • Splunk Enterprise Security, Crowdstrike Falcon, Proofpoint Email Protection
    • Copilot, Github Copilot, Copilot for Security, or other AI-based tools
    • AWS or Azure Cloud Security
  • Identity management, client/server applications, authentication systems, IDS/IPS
  • Ability to take initiative and respond with an appropriate sense of urgency
  • Ability to build and maintain high credibility with all business partners
  • Ability to adjust priorities and manage time in an environment of change
  • Strong analytical and problem resolution skills
  • Strong verbal, written communications, and task management skills
  • Ability to document and explain technical concepts and details clearly and concisely to a variety of audiences (e.g., technical, business, auditors, etc.)
  • Self-motivated and willing to accept additional responsibilities as the position expands
  • Possess or actively work to obtain a professional cybersecurity certification (CISM, CISSP, or equivalent)
  • Technical certifications in cybersecurity defense or forensics (e.g., GIAC) are considered an asset
  • Project management knowledge and experience considered an asset


Diversity Equity, Inclusion & Belonging

At Wawanesa, we are committed to Diversity, Equity, Inclusion and Belonging (DEIB) and believe that our strength lies in the diversity of our people – this is supported by having a representative workforce.

We welcome applications from all qualified candidates, including racialized persons, women, Indigenous Peoples, persons with disabilities, members of the 2SLGBTQIA+ community, gender-diverse and neurodiverse individuals, and anyone who can contribute to the further diversification of thought and ideas. 
 

We aim to ensure our recruitment process is accessible to all candidates. If you require accommodations during any stage of the recruitment process, please reach out in confidence to jobs@wawanesa.com.
 

All Wawanesa job applicants are subject to Wawanesa's Privacy Policy.

Please note that the recruitment process for this position may involve the use of AI tools to screen, assess, or select applicants. All final decisions are taken or reviewed by human recruiters and human hiring leaders in compliance with all applicable legislation.