Назад
Company hidden
6 часов назад

Senior Information Security Specialist (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Canada
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Information Security Specialist (Cybersecurity): Assessing technology projects, architectures, and solution designs for security risks with an accent on threat-risk assessments, control frameworks, and practical remediation recommendations. Focus on building security into project lifecycles, coordinating penetration testing, developing threat models, and communicating cyber risks to business and executive stakeholders.

Location: Hybrid in Toronto, Canada, with 1–3 days per week on-site and remaining days remote.

Company

hirify.global is a relationship-oriented bank developing modern banking services and supporting technology and business stakeholders through information security and risk management.

What you will do

  • Review requirements documentation, architecture diagrams, solution designs, and TRA questionnaires to assess project feasibility and security risks.
  • Provide practical, risk-based recommendations and coordinate action plans under the Control and Deficiency Management Policy.
  • Build security into project lifecycles and complete security assessments before production go-live.
  • Conduct threat-risk and information security assessments, threat modeling, vulnerability assessments, and penetration-testing coordination.
  • Present security risks and recommendations to executive management and collaborate with business, technology, cybersecurity, architecture, and control teams.
  • Develop control integration plans, recommend new controls, and support external partner security requests.

Requirements

  • Experience in information security, threat-risk assessments, vulnerability and penetration testing, and application security development projects.
  • Familiarity with banking environments and cloud computing technologies.
  • Knowledge of cybersecurity controls, control frameworks, risk management, and security assessment processes.
  • Ability to investigate complex problems, communicate detailed information clearly, and make practical risk-based recommendations.
  • Must be legally eligible to work in Canada at the specified location and hold a valid work or study permit where applicable.
  • Successful completion of security checks, including a criminal record check, is required before starting.

Nice to have

  • Experience with Agile development processes.
  • CISSP, Offensive Security, CEH, CASE-E-Council, or CSSLP certification.

Culture & Benefits

  • Hybrid work arrangement with flexibility to manage work activities.
  • Competitive salary, incentive pay, banking benefits, and a benefits program.
  • Defined benefit pension plan, employee share purchase plan, vacation, and wellbeing support.
  • Professional growth opportunities, including a paid Purpose Day for personal development.
  • Inclusive workplace with accessible candidate and employee support.

Hiring process

  • Some candidates may complete an attribute-based assessment or skills tests, including simulations, coding, or French proficiency assessments.
  • Artificial intelligence tools may be used during recruitment.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →