About Us
At StorageVault Canada (SVI), we’re a dynamic and growth-oriented organisation dedicated to enabling secure digital transformation across our company.
StorageVault is a nationally distributed operation with about 900 employees, owning and managing 250+ self-storage locations, portable and document storage and logistics businesses (Access Storage, Sentinel, Cubeit, RecordXpress, FlexSpace).
We have a solid foundation of modern security controls and leadership that treats cybersecurity as a strategic enabler. The opportunity now is to mature our practices, strengthen governance, and drive consistent, practical security across our environments.
Role Overview
As Senior Cybersecurity Analyst / Security Specialist, you will be a key subject-matter expert in our cybersecurity programme. You’ll work closely with the Cybersecurity Lead, IT teams, and our MSP to turn strategy into action, helping to assess risk, manage vulnerabilities, support incident response, and improve our policies, standards, and controls over time.
This role is ideal for an experienced practitioner who enjoys a mix of hands-on security operations and governance, and who wants the potential to grow into future leadership responsibilities.
Key Responsibilities
- Support security operations across internal and MSP-supported environments
Conduct and co-ordinate risk assessments, vulnerability scans, penetration test follow-up, incident handling activities, and remediation tracking to ensure our risk profile is understood and addressed.
- Maintain and improve security policies, procedures, and standards
Help align, document, and evolve security policies, procedures, standards and controls (e.g., NIST CSF, PCI, cloud security) across infrastructure, applications, and cloud environments, ensuring consistent practices for internal teams and MSP-supported teams.
- Vulnerability and risk management
Analyse vulnerability reports, validate and prioritise findings, assign owners, and track remediation progress. Provide clear, risk-based recommendations to technology and business stakeholders.
- Incident response and monitoring support
Work with internal teams and our SIEM/MDR providers to review alerts, investigate suspicious activity, document incidents, and ensure actions and lessons learned are captured.
- Governance, reporting, and third-party risk
Contribute to security reporting for leadership and audit/risk stakeholders, including metrics, trends, and risk registers. Assist in assessing and governing third-party and supply-chain risk, including vendors and the current MSP.
- Security awareness and culture
Support security awareness initiatives, help prepare training materials, and act as a go-to contact for teams seeking practical security guidance in projects and day-to-day operations.
Qualifications & Skills
Essential:
- 5–8+ years of experience in cybersecurity roles (operations, GRC, or hybrid).
- Strong experience with security operations, incident response, vulnerability management, IAM, and network or cloud security.
- Familiarity with regulatory and industry frameworks.
- Experience working with or alongside MSPs and external security vendors.
- Excellent communication skills, with the ability to explain technical risks in business-friendly terms.
- Strong analytical and problem-solving skills, with a practical, risk-based mindset.
Desirable:
- Experience in hybrid or cloud-first environments (e.g., Microsoft 365, Azure).
- Background in security maturity initiatives, governance structures, or metrics and dashboards.
- Exposure to vendor evaluation and cost–benefit considerations of security solutions.
- Familiarity with privacy programmes and data protection impact assessments.
- Professional certifications or equivalent experience.
What We Offer
- A senior individual contributor role within a dynamic and growing organisation where security is a strategic priority.
- The opportunity to help mature an established control environment and influence how security is embedded across the business.
- Competitive compensation and benefits package, flexible work arrangements.
- Comprehensive benefits including health and dental coverage and life and disability insurance.
- A collaborative, innovative, and inclusive culture that values continuous learning and practical outcomes.
How to Apply
Please submit your résumé and a brief cover letter describing:
- Your experience in security operations and/or GRC, and
- An example of how you have helped improve a security control or process.
We thank all applicants for their interest; however, only those selected for an interview will be contacted. We are an equal-opportunity employer committed to diversity in our workforce.
Job Type: Fixed term contract
Contract length: 12 months
Pay: $85,000.00-$125,000.00 per year
Experience:
- Cybersecurity: 5 years (required)
- Microsoft 365: 2 years (preferred)
- Azure: 2 years (preferred)
Work Location: Hybrid remote in Gloucester, ON K1B 3N9