6 часов назад
Senior Information Security Specialist (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Information Security Specialist (Cybersecurity): Assessing technology projects, architectures, and solution designs for security risks with an accent on threat-risk assessments, control frameworks, and practical remediation recommendations. Focus on building security into project lifecycles, coordinating penetration testing, developing threat models, and communicating cyber risks to business and executive stakeholders.
Location: Hybrid in Toronto, Canada, with 1–3 days per week on-site and remaining days remote.
Company
is a relationship-oriented bank developing modern banking services and supporting technology and business stakeholders through information security and risk management.
What you will do
- Review requirements documentation, architecture diagrams, solution designs, and TRA questionnaires to assess project feasibility and security risks.
- Provide practical, risk-based recommendations and coordinate action plans under the Control and Deficiency Management Policy.
- Build security into project lifecycles and complete security assessments before production go-live.
- Conduct threat-risk and information security assessments, threat modeling, vulnerability assessments, and penetration-testing coordination.
- Present security risks and recommendations to executive management and collaborate with business, technology, cybersecurity, architecture, and control teams.
- Develop control integration plans, recommend new controls, and support external partner security requests.
Requirements
- Experience in information security, threat-risk assessments, vulnerability and penetration testing, and application security development projects.
- Familiarity with banking environments and cloud computing technologies.
- Knowledge of cybersecurity controls, control frameworks, risk management, and security assessment processes.
- Ability to investigate complex problems, communicate detailed information clearly, and make practical risk-based recommendations.
- Must be legally eligible to work in Canada at the specified location and hold a valid work or study permit where applicable.
- Successful completion of security checks, including a criminal record check, is required before starting.
Nice to have
- Experience with Agile development processes.
- CISSP, Offensive Security, CEH, CASE-E-Council, or CSSLP certification.
Culture & Benefits
- Hybrid work arrangement with flexibility to manage work activities.
- Competitive salary, incentive pay, banking benefits, and a benefits program.
- Defined benefit pension plan, employee share purchase plan, vacation, and wellbeing support.
- Professional growth opportunities, including a paid Purpose Day for personal development.
- Inclusive workplace with accessible candidate and employee support.
Hiring process
- Some candidates may complete an attribute-based assessment or skills tests, including simulations, coding, or French proficiency assessments.
- Artificial intelligence tools may be used during recruitment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
4 дня назад
Cyber Security Risk Director (Cybersecurity)
5 дней назад
Information Security Advisor
65 000 - 105 000CAD
9 часов назад
Sr. Analytics and Automation Engineer (Cybersecurity)
100 000 - 143 000CAD
3 дня назад
Sr Security Platform Engineer
100 000 - 143 000CAD
6 дней назад
Security Platform Engineer (EDR)
65 000 - 105 000CAD
3 дня назад
Senior Principal Security Architect (Cybersecurity)
120 000 - 130 000CAD