Senior Advisor -CVH IT Common Services

Trillium Health PartnersMississauga, ON
CA$49 - CA$61Onsite

About The Position

Trillium Health Partners (THP) is seeking a Senior Cybersecurity Analyst specializing in AI Security and Microsoft 365 Security to join the Cyber Defense and Identity Access Management team. This role is crucial for securing the organization's adoption and use of Artificial Intelligence (AI) technologies, AI-enabled applications, and Microsoft 365 cloud services. The analyst will focus on identifying, assessing, and mitigating cybersecurity risks associated with Generative AI, Agentic AI, Large Language Models (LLMs), Copilot technologies, AI-powered business applications, and evolving AI-driven cyber threats. The successful candidate will collaborate with various stakeholders to establish security controls, governance frameworks, monitoring capabilities, and threat detection strategies to protect enterprise data, identities, and systems.

Requirements

  • Demonstrated extensive experience in information security.
  • Minimum of 5 years of work experience in information security working in a regulated industry, preferably healthcare, with responsibility in cloud security, identity security, security operations, or risk management.
  • Familiarity with government and industry regulations that involve information security.
  • A university degree in Information Security, Computer Science, Information Technology or related discipline is required.
  • Certified Information Systems Security Professional (CISSP) or equivalent industry certification is an advantage.
  • Hands-on experience securing Microsoft M365 and Microsoft Security Technologies.
  • Experience assessing cybersecurity risks associated with cloud services, SaaS platforms, and emerging technologies.
  • Experience with AI security, Generative AI governance, or AI risk management is highly desirable.
  • Strong knowledge of Microsoft 365 Security and Compliance capabilities, Microsoft Entra ID (Azure AD), Microsoft Defender Security Suite, Microsoft Purview, Microsoft Intune, Conditional Access and Identity Security, Data Loss Prevention (DLP), SIEM and XDR technologies, Cloud security principles and Zero Trust architecture.
  • Understanding of Generative AI platforms and LLM technologies, AI security risks and threat models, AI governance frameworks, Secure AI implementation practices, Threat intelligence and cyber threat analysis.
  • Familiarity with scripting and automation tools such as PowerShell, Python, or similar technologies.
  • Knowledge of Microsoft Certified: Cybersecurity Architect Expert, Microsoft Certified: Security Operations Analyst Associate, Microsoft Certified: Identity and Access Administrator Associate, CISSP (Certified Information Systems Security Professional), CCSP (Certified Cloud Security Professional).
  • Familiarity with AI security or cloud security certifications.
  • Knowledge of NIST Cybersecurity Framework (CSF), NIST AI Risk Management Framework (AI RMF), ISO 27001, ISO 42001, CIS Critical Security Controls, Zero Trust Security Principles, MITRE ATT&CK Framework, Microsoft Secure Future Initiative (SFI) principles, Privacy and data protection regulations.
  • Experience with secure adoption and governance of AI technologies across the enterprise.
  • Experience in reducing risk of data leakage and unauthorized access within Microsoft 365 and AI platforms.
  • Experience in effective detection and response to AI-enabled cyber threats.
  • Experience in improving Microsoft Secure Score and cloud security posture.
  • Experience in ensuring compliance with organizational, regulatory, and industry security requirements.
  • Experience in increasing employee awareness and secure use of AI-enabled business applications.

Nice To Haves

  • Certified Information Systems Security Professional (CISSP) or equivalent industry certification is an advantage.
  • Experience with AI security, Generative AI governance, or AI risk management is highly desirable.
  • AI security or cloud security certifications are considered an asset.

Responsibilities

  • Develop, implement, and maintain security policies, standards, and governance frameworks for the secure adoption of AI technologies and AI-enabled business applications, designing future systems for Trillium HealthWorks.
  • Conduct security assessments and risk analyses of Generative & Agentic AI platforms, Large Language Models (LLMs), AI-powered SaaS applications, and internally developed AI solutions.
  • Evaluate AI vendors and third-party AI services to ensure compliance with organizational security, privacy, and regulatory requirements.
  • Collaborate with Legal, Privacy, Compliance, and Risk Management teams to address AI-related security, privacy, intellectual property, and data protection risks.
  • Define and implement controls for secure use of AI technologies, including data classification, data loss prevention (DLP), access control, and information protection.
  • Research, analyze, and monitor emerging AI-driven cyber threats, attack techniques, and threat actor activities.
  • Assess & manage risks associated with prompt injection attacks, data poisoning, model manipulation, adversarial AI attacks, AI-generated phishing campaigns, deepfake and synthetic media attacks, AI-assisted malware development, and credential theft and social engineering enhanced by AI.
  • Develop detection and response use cases for AI-related threats within SIEM, XDR, and security monitoring platforms.
  • Collaborate with threat intelligence teams to identify indicators of compromise (IOCs) and emerging AI attack trends.
  • Recommend security controls and mitigation strategies to defend against AI-enabled attacks.
  • Monitor security alerts, events, and incidents related to AI platforms, Microsoft 365 environments, cloud services, and enterprise applications.
  • Investigate security incidents involving AI systems, Microsoft 365 services, user identities, and cloud resources.
  • Participate in incident response activities, root cause analysis, containment, eradication, and recovery efforts.
  • Develop incident response procedures and playbooks for AI-related security incidents.
  • Support vulnerability management and remediation activities across AI and cloud environments.
  • Participate in on-call rotation for Security Operation Support after hours.
  • Assess AI and Microsoft cloud solutions against cybersecurity frameworks and industry best practices.
  • Conduct security reviews, threat modeling, and architecture assessments for AI deployments and cloud services.
  • Validate security controls through configuration reviews, testing, and continuous monitoring.
  • Support implementation of Zero Trust security principles across Microsoft 365 and AI environments.
  • Provide guidance and training to employees on the secure use of AI tools, Microsoft Copilot, and cloud collaboration services.
  • Develop awareness materials addressing AI-related risks including data leakage, prompt security, phishing, and deepfake threats.
  • Promote secure and responsible AI usage across the organization.
  • Secure Microsoft 365 services including: Microsoft Entra ID (Azure AD), Microsoft Defender for Endpoint, Microsoft Purview, Microsoft Intune, Microsoft Teams, Exchange Online, SharePoint Online, OneDrive for Business, Microsoft Copilot.
  • Implement and maintain security controls including: Conditional Access, Multi-Factor Authentication (MFA), Identity Protection, Privileged Identity Management (PIM), Data Loss Prevention (DLP), Information Protection and Sensitivity Labels, Insider Risk Management, Compliance and retention policies.
  • Monitor Microsoft 365 security posture and recommend remediation actions to reduce risk.
  • Conduct security reviews of Microsoft Copilot deployments and AI-enabled M365 services.
  • Develop and apply Microsoft Copilot for Security to enable fast Cyber Security Incident detection, investigation and respond.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service