File Integrity Monitoring Analyst (FIM)

79042
Toronto, Ontario
Contract
3 days ago

Role: Qualys File Integrity Monitoring (FIM) Specialist


Job Description:
The Qualys File Integrity Monitoring (FIM) Specialist will be responsible for managing the deployment, configuration, and ongoing operations of the Qualys FIM solution across production environments. This role ensures continuous monitoring of critical file and registry changes to support compliance, security, and operational objectives. The specialist will collaborate with internal stakeholders and external vendors to drive integration, automation, and incident management while maintaining system performance and optimizing resource usage.
The role requires a solid background in security monitoring tools, IT operations, and compliance standards, ensuring the Qualys FIM solution aligns with the organization’s compliance requirements and security best practices.


Key Accountabilities:
1. FIM Solution Deployment and Management

  • Manage the configuration and activation of Qualys FIM agents across relevant Windows and Linux IT assets.
  • Develop and maintain monitoring profiles, ensuring alignment with compliance and operational needs.
  • Administer FIM modules in the cloud agent platform, including asset tagging and profile assignments.

2. Incident Monitoring and Reporting

  • Monitor Qualys FIM dashboards for real-time alerts and unauthorized changes to critical files, directories, and registries.
  • Integrate FIM alerts with ServiceNow to automate incident ticket creation and ensure timely response.
  • Prepare reports and dashboards to provide insights into FIM incidents, trends, and compliance coverage.

3. Compliance and Governance Support

  • Align monitoring activities with industry standards such as PCI-DSS, SOX, GDPR, and other relevant frameworks.
  • Collaborate with security and compliance teams to maintain policies and ensure FIM rules meet regulatory requirements.
  • Track and report compliance status, offering recommendations for remediation when necessary.

4. System Optimization and Performance Management

  • Monitor agent and system performance, ensuring optimal use of CPU, memory, and network bandwidth as per best practices.
  • Tune configuration profiles to minimize performance impact on production environments.
  • Investigate and resolve system performance issues related to the FIM module.

5. Integration and Automation

  • Lead the integration of Qualys FIM with ServiceNow to automate workflows and alert handling.
  • Leverage APIs to automate FIM operations and streamline processes where applicable.
  • Maintain communication with Qualys support to resolve technical issues and ensure the platform operates effectively.

6. Agent Lifecycle Management

  • Oversee the entire lifecycle of FIM agents, from installation to upgrades and eventual decommissioning.
  • Develop procedures for seamless handover from legacy solutions (e.g., Ansible FIM jobs) to Qualys FIM.
  • Ensure all monitored assets remain up-to-date with appropriate FIM profiles and tags.

7. Stakeholder Collaboration and Communication

  • Act as the primary point of contact for internal teams and vendors concerning FIM operations.
  • Provide training and documentation to stakeholders on FIM usage, incident response, and report interpretation.
  • Offer regular updates on the status of the FIM solution, including incident metrics and compliance trends.

8. Continuous Improvement and Change Management

  • Analyze FIM data to identify trends and opportunities for improving monitoring profiles and operations.
  • Collaborate with DevOps and infrastructure teams to integrate new applications and systems into the monitoring framework.
  • Drive continuous improvement initiatives to enhance system security and operational efficiency.

Qualifications:

  • 3+ years of experience in IT operations or engineering, security monitoring, or compliance management.
  • Strong knowledge of file integrity monitoring solutions, preferably with Qualys FIM.
  • Experience with ServiceNow or similar IT service management platforms.
  • Familiarity with compliance frameworks (PCI-DSS, SOX, GDPR) and security best practices.
  • Proven ability to manage system performance and optimize resource usage in complex IT environments.
  • Strong collaboration, communication, and problem-solving skills.
  • Experience with automation and API-based integrations is a plus.
  • Cybersecurity certification (such as Security+) is a plus.
  • Bachelor’s degree in Information Technology, Computer Science, or a related field (or equivalent experience).

 


Core Competencies:

  • Analytical Skills: Ability to analyze large datasets, identify trends, and develop actionable insights.
  • Communication: Excellent verbal and written communication skills to engage with stakeholders at all levels.
  • Collaboration: Demonstrated ability to work across functional teams and manage vendor relationships.
  • Adaptability: Flexibility to respond to changing requirements and evolving technologies.
  • Technical Expertise: In-depth knowledge of security tools, system monitoring, and compliance processes.

The pay range that the employer reasonably expects to pay for this position is between CA$20.00 and CA$28.83

Our voluntary benefits offering includes medical, dental, vision and retirement benefits.

Applications will be accepted on an ongoing basis.

Tundra Technical Solutions would like to thank you for the interest you have demonstrated in this opportunity. However, only candidates with the required skills will be contacted.

Tundra Technical Solutions is an Equal Opportunity/Affirmative Action Employer. We welcome and encourage diversity in our workplace.

Not interested in this position, but know somebody who might be? Check out our Referral Reward Program, referrals are a big secret behind our success. As always, we’re on the lookout for great people. And we know that you know great people!

Tundra Technical Solutions is among North America’s leading providers of Information Technology and Engineering staffing and consulting services. Our success and our clients’ success are built on a foundation of service excellence. Rather than continually trying to sell to new clients and companies and simply filling databases with candidates, we focus on developing stronger relationships and deeper knowledge of our existing clients’ challenges and opportunities.

Open ears. Open minds. Open futures