What’s in it for you as an employee of QFG?
-
Wellbeing resources and programs
-
Work-life balance
-
Career growth and development opportunities
-
Opportunities to contribute to community causes
-
Work with diverse team members in an inclusive and collaborative environment
We’re looking for our next Cybersecurity Specialist. Could It Be You?
Your contribution delivering sustainable and measurable results in the following areas will be very important:
The Cybersecurity Specialist role is a pivotal position within the CISO function, reporting to the Senior Manager, Cybersecurity Strategy & Risk. This role is dedicated to supporting the design, implementation and maturation of Questrade’s modern security frameworks, with a primary focus on driving the organization’s Zero Trust journey.
Need more details? Keep reading…
You will be:
-
Executing Strategic Security Controls: Supporting the design and implementation of ZTNA, Data Loss Prevention (DLP) and Application Control rules across endpoint, network, datacenter, cloud and SaaS environments to ensure comprehensive protection of enterprise systems and data.
-
Strengthening Network Defenses: Supporting the implementation and optimization of CASB profiles to enhance visibility into the security posture of SaaS environments.
-
Identifying and Mitigating Emerging Risks: Supporting the implementation of advanced capabilities to proactively prevent endpoint software supply-chain risks and the unauthorized use of applications, extensions, plugins, and AI Agents, ensuring these do not compromise the enterprise security posture.
-
Driving Continuous Improvement: Identifying existing and emerging risks; Researching and implementing innovative security tools and methodologies to enhance Questrade’s overall security maturity and resilience against a dynamic threat landscape.
-
Collaborative Implementation: Working closely with cross-functional IT and business teams to embed security-by-design principles and operationalize security capabilities across the organization.
So are YOU our next Cybersecurity Specialist? You are if you have…
-
Experience: a minimum of 2 years of experience in Cybersecurity, Network Engineering, or a related technical role within a complex enterprise environment. Experience in a regulated financial services environment is a plus.
-
Network Security & Infrastructure: Strong understanding of networking fundamentals, Routing protocols, next-gen firewalls, DNS and Windows/Linux OS, and the ability to troubleshoot complex connectivity issues. Experience or good knowledge of firewall administration, and rules management is a plus.
-
Identity & Access: Understanding of Identity & Access Management (IAM) lifecycles and the principle of least privilege. Foundational knowledge of Authentication protocols (SAML, OIDC, Kerberos, Multi-Factor Authentication) and their role in a modern perimeter.
-
Web & Cloud Security: Understanding of secure web gateways and cloud-native security architectures. Experience operating Zscaler is considered a strong asset.
-
Data Protection: Strong conceptual understanding of Data Loss Prevention (DLP) strategies across endpoints, networks, and cloud applications.
-
Modern Security Frameworks: Knowledge of Zero Trust Network Access (ZTNA) principles and how they differ from traditional VPN-based architectures.
-
SaaS Security: Familiarity with Cloud Access Security Broker (CASB) concepts, including API-based protection and forward-proxy modes.
-
Automation & Scripting: Proficiency in Python for automating security tasks, parsing logs, or integrating security tools via APIs and experience with "Vibe Coding" or using AI-assisted development tools (e.g., Cursor, GitHub Copilot, Claude Code, and Gemini LLMs) to rapidly prototype security solutions, dashboards, and scripts.
-
Technical Visualization: Support the creation of professional architectural diagrams and data-flow visualizations to document ZTNA environments and security control implementations.
-
Strong verbal and written communication skills in English
- Education: University degree or College diploma in Computer Science, Cybersecurity, Information Technology, or a related field or relevant experience.
-
Certifications (Preferred): Progress towards or achievement of relevant certifications such as CompTIA Security+, CCNA, or vendor-specific cloud security certifications.
Sounds like you? Click below to apply!
#LI-Hybrid #LI-MM1