Security Analyst

BenevityToronto, ON
CA$98,600 - CA$132,000Hybrid

About The Position

Benevity is seeking a Security Analyst to join their Information Security team. This is a generalist role that will cover security operations, application security, and security enablement. The analyst will be responsible for triaging and investigating security alerts, collaborating with engineering teams to resolve vulnerabilities, and developing resources to enhance the company's security posture. The role involves independent daily operations with collaboration with senior analysts, utilizing AI tools to improve efficiency, and assessing risks associated with AI products. Benevity is looking for a candidate who is curious, analytical, a continuous learner, enjoys problem-solving, and is motivated to contribute to a safer digital environment.

Requirements

  • 3+ years of experience in security operations, information security, or a closely related technical role
  • Hands-on experience with security tooling across categories such as EDR, SIEM, CSPM, WAF, cloud-native logging, and SAST or SCA
  • Solid working knowledge of networking, operating systems, and cloud fundamentals
  • Practical experience using AI tooling in a technical context with a thoughtful view on its strengths and limitations
  • Scripting proficiency in Python, PowerShell, or Bash, paired with an interest in automating repetitive tasks
  • Familiarity with security frameworks such as MITRE ATT&CK and NIST CSF
  • Strong analytical and problem-solving skills with a puzzle-solving mindset and a drive for verifiable answers
  • Clear, inclusive written and verbal communication skills, capable of translating technical concepts for non-specialists
  • A curious, continuous-learning approach and a collaborative desire to support teammates

Nice To Haves

  • Experience in SaaS, cloud-native, containerized, or API-driven environments
  • Relevant certifications (e.g., Security+, CySA+, GCIH)

Responsibilities

  • Triage, validate, and investigate alerts across core security tooling (EDR, SIEM, IDS/IPS, CSPM, MDR) to establish scope and determine escalation
  • Maintain clear documentation, write incident response playbooks, and participate in an on-call rotation
  • Conduct threat intelligence research and contribute to post-incident reviews to drive preventive control improvements
  • Analyze SAST, SCA, and DAST findings, providing engineering teams with actionable exploitation context for remediation
  • Assist with threat modeling and architectural reviews to catch security risks early in product design
  • Leverage AI tools for faster triage and investigation while practicing safe data handling and validating outputs
  • Identify AI-specific product risks, including prompt injection, insecure tool use, and third-party model exposure
  • Track vulnerability remediation lifecycles, monitor SLA compliance, and report on recurring security patterns
  • Partner with engineering and fraud teams on joint investigations, security enablement content, and self-serve resources
  • Track and report on key security metrics, trends, and process developments

Benefits

  • Innovative work
  • Growth opportunities
  • Caring co-workers
  • A chance to do work that fills us with a sense of purpose
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service