Focus Systems is seeking an experienced Security Analyst (1896) to support cybersecurity operations, incident response, network security, and risk management within a government environment.
If you have strong hands-on enterprise cybersecurity operations experience, including incident response, network security monitoring, ServiceNow, firewall and ACL reviews, traffic analysis, vulnerability remediation, and stakeholder communication, this is an exciting opportunity to contribute to a high-impact cybersecurity operations role supporting critical public-sector technology services in Saskatchewan.
Key Details
Location: Regina, Saskatchewan (Fully Onsite)
Contract: Initial 2-Year Term; candidate must be available to start as early as August 24, 2026 (with potential extension up to 1 additional year)
Industry: Government / Information Technology / Cybersecurity
Work Arrangement: 100% Onsite; onsite attendance is mandatory from contract start
Role Overview
The Security Analyst (1896) will support the government's cybersecurity operations by monitoring, investigating, and responding to security events while strengthening network security controls and operational processes.
The successful candidate will work closely with cybersecurity, infrastructure, networking, architecture, and business stakeholders to manage security queues, respond to incidents, review controls, analyze traffic, coordinate remediation, and support awareness and reporting activities.
Key Responsibilities
- Monitor, triage, investigate, and respond to security events and incidents
- Manage security requests and incident queues in ServiceNow
- Review firewall rules, ACLs, and network security controls
- Monitor IDS/IPS, firewalls, proxies, and network security tooling
- Perform network traffic analysis to identify threats, anomalies, and operational issues
- Coordinate vulnerability and risk remediation with technical and business teams
- Support phishing simulation programs and security awareness activities
- Review and support PAM requests and privileged access processes
- Prepare security reports, documentation, and status updates
- Coordinate with infrastructure, networking, architecture, and business stakeholders
- Support continuous improvement of cybersecurity operational processes
Mandatory Qualifications
- Relevant post-secondary education in Computer Science, Information Technology, Cybersecurity, or equivalent
- Experience with security incident response
- Experience with network security monitoring, including IDS/IPS, firewalls, and proxies
- Experience using ServiceNow
- Experience with firewall rule reviews and ACL management
- Experience with network traffic analysis
- Experience coordinating vulnerability and risk remediation
- Strong stakeholder communication skills
- Ability to work 100% onsite in Regina, Saskatchewan from contract start
Preferred Experience & Assets
- Degree in Cybersecurity, Computer Science, or Information Security
- CISSP, GIAC, Security+, CySA+, CEH, Microsoft Security, Fortinet, Palo Alto, or equivalent certifications
- PAM administration experience
- Threat hunting experience
- Experience supporting phishing simulation programs and security awareness activities
- Government or public sector experience
- Experience with SIEM and enterprise security tooling
Application Deadline
Please complete your initial application by August 2, 2026, at 11:00 PM CST. Only candidates selected to proceed to the next stage will be contacted and invited to complete their application package.