April 1, 2026
Electric Energy Jobs

Cyber Security Specialist

Organization:
Ontario Power Generation
Region:
Canada, Ontario, Osha
End of contest:
December 9, 2025
  This job posting has expired
Type:
Full time
Category:
Information technology (it)
Description
Req ID:  53206

Status: Regular Full Time

Working Conditions: Hybrid

Education Level: 4 years of University in an appropriate field such as computer science or Software Engineering plus 1 year of further concentrated study in cybersecurity programs

Base Location: OshawaON

Shifts(s): Days

Travel: 10%

Deadline to Apply: December 9, 2025

Salary Range: $1,704.68 - $2,924.93 Per Week

Electrify your career and help build a brighter tomorrow.

Every generation has a challenge that defines them. At OPG, we are calling on all innovators, disruptors, thought leaders and change-makers. Join us as we work to electrify life in one generation and build a sustainable future powered by our electricity, our ideas, and our people. Join OPG and make history.

Whether you work in the skilled trades or are a business professional, a career at OPG is an opportunity to electrify your life on -- and off -- the job.

JOB OVERVIEW

Ontario Power Generation (OPG) is looking for a dynamic, strategic and results-driven professional to join our team in the role of Cyber Security Specialist.   

Reporting to the Manager, Cyber Security IT/OT, this position is responsible to lead and continuously improve the end-to-end vulnerability management program including scanning, prioritization, remediation coordination, reporting, and process optimization by leveraging tools like Qualys, Rapid 7, and Service Hub, integrating threat intelligence, and collaborating with cross-functional teams to ensure comprehensive risk mitigation and alignment with organizational objectives and compliance requirements.

KEY ACCOUNTABILITIES 

  • Lead the configuration and management of Qualys VMDR for internal and external vulnerability scans, including deployment and maintenance of scanner appliances.
  • Design and optimize scanning strategies by creating advanced scan profiles, option profiles, and authentication records in Qualys.
  • Oversee Qualys Web Application Scanning (WAS), including authentication setup, advanced scan options, and OWASP Top 10 compliance assessments.
  • Implement and govern Qualys EASM for continuous discovery and monitoring of internet-facing assets, ensuring integration with VMDR workflows.
  • Develop and present executive-level dashboards and reports on vulnerability posture, remediation progress, backlog aging, and SLA compliance.
  • Administer and optimize Qualys platform and enterprise integrations (Service Hub, SIEM, CMDB), ensuring accurate data flow and automated workflows.
  • Drive automation and efficiency through scripting (Python, PowerShell, Bash) for scanning, reporting, and vulnerability lifecycle management.
  • Act as a subject matter expert, providing guidance during audits, risk assessments, and incident response, and communicating risk context to senior leadership.

QUALIFICATIONS 

  • 4 years Bachelor's degree in Computer Science, Software Engineering, or related field, plus advanced cybersecurity specialization.
  • 6+ years of progressive experience in vulnerability management operations, with at least 3+ years in a lead or senior role focused on Qualys configuration and enterprise integrations.
  • Proven ability to architect and manage Qualys VMDR, WAS, and EASM solutions end-to-end, including scanner deployment, authentication, and advanced configuration.
  • Expertise in vulnerability assessment methodologies, CVSS scoring, risk analysis, and remediation best practices across large-scale IT environments.
  • Demonstrated experience integrating threat intelligence feeds to drive vulnerability prioritization and incident response strategies.
  • Strong background in workflow automation, dashboard development, and reporting for vulnerability tracking and SLA compliance.
  • Exceptional leadership, collaboration, and communication skills, with experience presenting security metrics and risk posture updates to executive stakeholders.
  • Solid understanding of enterprise vulnerability management, remediation processes, and threat intelligence, with hands-on experience managing Qualys and ServiceNow in complex corporate environments.

Read the full posting.

Contact

Ontario Power Generation

700 University Ave

Toronto

Ontario Canada

www.opg.com


 From the same category : information technology (it)