Specialist, IT Vulnerability & Management

CMHC - SCHLMontreal, QC
Hybrid

About The Position

Join the IT Security Team, in the Specialist, IT Vulnerability Management position. The successful candidate will apply specialized expertise to operationalize vulnerability management standards, risk methodologies, and threat intelligence to ensure vulnerabilities across infrastructure, applications, and cloud environments are consistently identified, assessed, prioritized, tracked, and escalated within established frameworks. It is accountable for maintaining process integrity and high‑quality vulnerability data, exercising guided judgment in non‑standard scenarios, and enabling timely remediation, directly contributing to reduced technology risk and effective risk oversight.

Requirements

  • A bachelor’s degree in Information Technology, Cybersecurity, or a related field, or equivalent experience.
  • A security certification is required or in progress (e.g., Security+, CEH, or equivalent).
  • A minimum of 5 years of experience in information security, vulnerability management, or IT operations.
  • Demonstrated experience operating vulnerability scanning tools and managing remediation workflows.
  • A strong understanding of vulnerability management lifecycle (scan → assess → prioritize → remediate → validate).
  • The ability to apply risk methodologies and exercise judgment within defined frameworks.
  • An understanding of security control concepts (patching, configuration hardening, compensating controls).
  • The ability to identify patterns and escalate systemic issues appropriately.

Responsibilities

  • Interpret vulnerability scan results across infrastructure, applications, and cloud environments to identify, validate, and assess security risks.
  • Perform risk analysis to eliminate false positives, determine exploitability, and prioritize vulnerabilities using approved risk rating methodologies and threat intelligence.
  • Maintain authoritative vulnerability records, including risk ratings, evidence, remediation requirements, and audit traceability.
  • Coordinate with IT and application teams to drive timely remediation in line with defined service level targets.
  • Track remediation progress, validate closure or risk acceptance, and escalate overdue or high‑risk vulnerabilities as required.
  • Produce accurate operational reports and dashboards to support management visibility, compliance, and assurance activities.
  • Identify recurring vulnerability trends and recommend processes, tooling, and workflow improvements to enhance control maturity.
  • Exercise sound operational judgment, effective escalation, and strong interpersonal skills to influence stakeholders and ensure consistent vulnerability management outcomes.

Benefits

  • Annual Paid vacation.
  • Annual individual performance incentive.
  • Defined benefit pension plan.
  • Comprehensive group insurance plan to support your well-being from day one.
  • Support towards your personal and professional growth with training, mentorship and more.
  • An inclusive workplace culture and environment.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service