Job Description
About the position
At Manulife / John Hancock, we are seeking a highly skilled and forward-thinking Security Analyst to join our cybersecurity team. This role focuses on vulnerability management, threat prioritization, and risk-based decision-making to protect our digital assets and infrastructure. The ideal candidate will have hands-on experience with tools such as Avalor, Qualys, Tenable, Tanium but more importantly, will possess the ability to analyze, contextualize, and elevate findings into actionable intelligence that aligns with business priorities.
- Responsibilities
- Lead the CTEM lifecycle, including identification, assessment, prioritization, and help inform remediation tracking and reporting.
- Utilize tools like Avalor to perform scans and interpret results beyond surface-level findings.
- Inform and help maintain risk-based prioritization frameworks to ensure the most critical threats are addressed first.
- Translate technical vulnerabilities into business risk language for executive and stakeholder reporting.
- Experience working with API’s and multiple data sources and ingesting and deconflicting those data sources into a singular view.
- Platform orchestration and automation experience is also highly desirable in this role.
- Monitor threat intelligence feeds and correlate with internal vulnerabilities to assess potential impact.
- Contribute to the development of metrics and dashboards to track vulnerability trends, configuration weakness trends, along with remediation effectiveness.
- Act as the bridge between the CTEM program at Manulife and the cyber security teams and infrastructure management teams.
- Stay current with emerging threats, vulnerabilities, and regulatory requirements.
- Requirements
- At least 7 years IT industry experience
- 3–5+ years of experience in cybersecurity, with a focus on vulnerability management and threat analysis.
- Exposure and experience with the Avalor product line from Zscaler is highly desirable for this position.
- Experience with Qualys or similar vulnerability scanning platforms.
- Demonstrated ability to think strategically and prioritize risks in complex environments.
- Familiarity with CVSS scoring, MITRE ATT&CK, and risk management frameworks.
- Excellent communication skills, with the ability to convey technical concepts to non-technical audiences.
- Nice-to-haves
- Experience with SIEM, threat intelligence platforms, and asset management tools is a plus.
- Platform orchestration and automation experience is also highly desirable in this role.
- Benefits
- We’ll empower you to learn and grow the career you want.
- We’ll recognize and support you in a flexible environment where well-being and inclusion are more than just words.
- As part of our global team, we’ll support you in shaping the future you want to see.
- Manulife offers eligible employees a wide array of customizable benefits, including health, dental, mental health, vision, short- and long-term disability, life and AD&D insurance coverage, adoption/surrogacy and wellness benefits, and employee/family assistance plans.
- We also offer eligible employees various retirement savings plans (including pension and a global share ownership plan with employer matching contributions) and financial education and counseling resources.
- Our generous paid time off program in Canada includes holidays, vacation, personal, and sick days, and we offer the full range of statutory leaves of absence.
Apply Now
Apply Now