Cyber Threat Analyst
Payments CanadaAbout the role
Payments Canada is at the forefront of the Canadian payment ecosystem. Our purpose is to make payments easier, smarter and safer for all Canadians. Every day we are working diligently to ensure your payments are cleared and settled. In 2024 alone, our systems cleared approximately $107 trillion or $424 billion each business day! If you are passionate about payments and want to help ensure that these financial transactions in Canada are carried out safely and securely, working with us is for you!
| Who we are
We are a public purpose, non-profit organization situated at the center of Canada’s payment ecosystem. We own and operate payment systems that process hundreds of billions of dollars’ worth of payment transactions every business day. We convene ecosystem participants to discuss their multiple and diverse interests and ideas and to navigate industry-level challenges. We adhere to a set of values that are our north star:
Inspire trust, build community and enable change.
Payments Canada — where our country connects: Payments Canada — Who we are
| Our culture
With our people in mind, we have created a culture that fosters authenticity, collaboration, innovation and development. We empower one another, make meaningful contributions that not only impact the organization, but our country! We develop and nurture meaningful connections that drive innovation in our ecosystem. We are Payments Canada!
Do you want to make payments easier, smarter and safer for Canada? Join us today!
You need to work here if
• You love working with passionate, ambitious and collaborative colleagues.
• You want to be challenged and lead unique initiatives.
• You want to grow, develop and become a subject matter expert in your field.
• You want your work to make an impact in your community and country.
Come and join us — where payments meet purpose!
| What we are looking for
Reporting to the Director, Cybersecurity and Operations, the Cyber Threat Analyst supports Payments Canada’s proactive defense against cyber threats. The main goal is to collect, research and analyze cyber threat data, assist in threat modeling and support proactive threat hunting operations to detect potential intrusions.
Working closely with the Lead, CTI and Threat Hunting and other security teams to deliver high-quality intelligence products, contribute to ongoing investigations and support organizational security priorities. This role focuses on hands-on analysis, data collection and execution of tasks, with guidance and mentorship from senior team members.
| A day in the life
Responsibilities of the Cyber Threat Analyst includes but is not limited to:
Cyber Threat Intelligence
• Collect, review and analyze threat data from internal and external sources.
• Assist in monitoring and tracking threat groups, including their activities and TTPs.
Threat Modeling
• Assist senior team members in developing threat models for systems under development.
• Participate in threat modeling workshops as a supporting team member.
Threat Hunting
• Participate in proactive threat hunting operations under the guidance of senior team members.
• Investigate anomalies, alerts, or suspicious behaviors using SIEM/EDR data.
| What you need to be successful
• Post-secondary education in Cybersecurity, Computer Science, Information Security, or related field; OR equivalent practical experience.
• Minimum three (3) years of experience in cyber threat intelligence, SOC operations, or incident response.
• Familiarity with MITRE ATT&CK framework or other threat modeling methodologies.
• Experience using SIEM or EDR platforms for analysis and investigations.
• Knowledge of adversary TTPs, intrusion sets, and threat analysis techniques.
• Ability to analyze data from multiple sources (logs, alerts, endpoint data).
• Strong written and verbal communication skills.
• Curious, detail-oriented, and motivated to learn advanced CTI and hunting practices.
• Eligibility to successfully complete background checks that will be carried out by Payments Canada, including criminal, credit, identity, employment, and education checks.
• Ability to work outside of regular working hours based on operational requirements.
• Willing to travel periodically to meet with external partners or attend industry events and conferences.
| You will really stand out with
• Industry certification (e.g., Security+, GCTI, CTIA, CEH) is considered an asset.
• Familiarity with scripting or automation (Python, PowerShell) is considered an asset.
| Salary range
• Based on qualifications and experience: $73,500 to $122,500.
Please submit your application by June 26, 2026.
| What's in it for you?
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s