3 дня назад
Sr. Cyber Risk Consultant
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Sr. Cyber Risk Consultant (Cybersecurity): Advising business and technology teams on cyber risk by analyzing requirements, defining security controls, guiding implementation, and evaluating residual risk with an accent on information security risk management, threat-risk assessments, and security testing. Focus on interpreting architecture and solution designs, reporting risk insights to senior leaders, promoting security standards, and supporting incident response across a designated line of business.
Location: Toronto, ON, with a hybrid work arrangement requiring 1–3 days per week on-site and the remaining days remote
Company
A relationship-oriented bank providing banking services and technology-enabled financial solutions.
What you will do
- Analyze business requirements, architecture diagrams, and solution designs to assess cybersecurity risk.
- Define appropriate security controls, provide practical recommendations, and guide control implementation throughout project lifecycles.
- Evaluate residual risk and help business and technology teams make balanced decisions aligned with business objectives.
- Build trusted relationships with project teams, senior leaders, and partners across the CISO organization.
- Promote cybersecurity services, security policies, and standards across the designated line of business.
- Prepare cybersecurity reports and risk insights, identify improvement opportunities, and support responses to security incidents.
Requirements
- Experience in information security risk management and threat-risk assessments.
- Experience with vulnerability and penetration testing and application security development projects.
- Knowledge of cybersecurity risk assessment, security standards, threat modeling, software security, and security testing.
- Experience or familiarity with cloud computing technologies and Agile development processes.
- Strong analytical, written, oral communication, organization, leadership, collaboration, and stakeholder management skills.
- Must be legally eligible to work at the specified location and hold a valid work or study permit where applicable.
Nice to have
- Security certification such as CISSP, CCSP, CISM, or CRISC.
- Familiarity with emerging technologies.
Culture & Benefits
- Hybrid work environment with flexibility to manage work activities.
- Competitive salary, incentive pay, banking benefits, and a benefits program.
- Defined benefit pension plan, employee share purchase plan, vacation, and wellbeing support.
- Professional growth opportunities and a paid Purpose Day for personal development.
- Inclusive workplace with accessible candidate support and a culture centered on trust, teamwork, and accountability.
Hiring process
- May include an attribute-based assessment and additional skills tests, such as simulations, coding, or French proficiency assessments.
- Artificial intelligence tools may be used during recruitment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
3 дня назад
Senior Consultant, Exposure Platform (Cybersecurity)
4 дня назад
Technology Risk Manager (Cybersecurity)
139 000 - 158 000CAD
6 дней назад
Sr Mgr, Commercial Security and M&A (Cybersecurity)
6 дней назад
Information Security Advisor (Cybersecurity)
65 000 - 105 000CAD
4 дня назад
Security Customer Solutions Architect (Cybersecurity)
120 000 - 160 000$
3 дня назад