Security Advisor Specialist - Threat Modelling
Intact
- Location
- Toronto Ontario CAN
- Work model
- On-Site
- Level
- Mid
- Posted
- Aug 25, 2026
Skills
About this role
Our employees are at the heart of everything we do. Together, we help people, businesses, and society prosper in good times and be resilient in bad times. Our employee promise represents Intact’s commitment to you in exchange for living our Values, striving to do your best work, being open to change and investing in your career. In return, we promise to provide support, opportunities and performance-led financial rewards at a workplace where you can shape the future, win as a team and grow with us. Pay at Intact is about much more than just salary. Flexible work arrangements and a hybrid work model Possibility to purchase up to 5 extra days off per year Multiple benefits offered to support physical and mental wellbeing, including telemedicine, Wellness account and much more Share plan & other savings: up to 12% of salary or even more (ask how you could earn guaranteed income for life) Salary range (but not limited to): 118,700 - 145,100 Annual bonus target, based on the base salary, with a potential payout of up to double the target (subject to personal and company performance): 15% As part of our commitment to Win As A Team , we share our success with employees through our annual bonus plan and Employee Share Purchase Plan (ESPP) – with Intact matching 50% of your net shares. Our pension offerings provide flexibility and long-term security for our employees beyond their careers. We are one of the few companies offering the opportunity to receive guaranteed income for life via our defined benefit pension plan. Salary for the candidate will be determined taking into consideration a number of factors including: experience, skills, qualifications, anticipated contribution to role, internal equity, etc. The salary range presented above is based on a 35-hour workweek and would represent a majority of different candidate profiles. However, we encourage candidates who may fall outside of this range to apply as well.
About the role
We’re looking for a Cybersecurity Threat Modeling Specialist to join our growing team! What you'll do here: Serve as the primary Security point of contact for technology initiatives, providing security guidance throughout the project lifecycle and formal sign-off before go-live. Lead threat modeling for new or materially changed applications, systems, services, architecture patterns, and AI use cases. Apply appropriate methodologies, including STRIDE, MITRE ATT&CK, Mitre Atlas, Maestro, attack chains, and misuse or abuse cases. Develop and validate threat-modeling supporting materials, such as: data flows, architecture diagrams, network diagrams and process flows. Identify critical assets, trust boundaries, entry points, and dependencies. Assess threats based on exploitability and potential impact; assign inherent and residual risk ratings; and translate findings into prioritized security requirements, control objectives, mitigations, and go-live acceptance criteria. Support the completion of critical security activities, including penetration testing, SAST, DAST, secure code reviews, third-party risk assessments, vulnerability assessments, and other assurance activities to support technology readiness. Collaborate with product, architecture, development, engineering, cloud, and risk teams to review designs and technical decisions, facilitate threat-modeling workshops, and embed security into DevSecOps and project governance processes. Manage Security Findings in platforms such as JIRA, including ownership, remediation, escalation, compensating controls, risk acceptance, and closure. Provide ad hoc security advice and document recommendations and follow-up actions. Use threat modeling to su pport the three lines of risk management by helping first-line teams manage security risks, informing second-line oversight, and supporting third-line system audits. Use post-incident lessons learned and threat intelligence to enhance threat modeling accuracy and recommendations. Lead improvement and scale the