Information Security Officer specializing in application and product security for the Government of Alberta. Safeguarding digital services through collaboration and compliance with cybersecurity policies.
Responsibilities
Development, maintenance, advocacy, and compliance for security architecture and DevSecOps framework and policy instruments such as directives, frameworks, policies, standards, and guidelines.
Security architecture subject matter expertise in the one or more following domains: Secure application development processes and tools.
Secure business architecture. Secure data architecture. Secure application architecture. Secure technology architecture.
Consultation, evaluation, and delivery of digital service products throughout the solution development life cycle (SDLC) for conformance to IMT cybersecurity policy instruments including formulation of options and recommendations.
Conduct security review, consult, and advise on secure coding, secrets management, on-premises, Amazon Web Services (AWS), Azure, Google Cloud Platform (GCP), and third-party hosted solutions with verbal and written report.
Provide security advice to business and technical stakeholders, including senior executives.
Participate in projects as an information security subject matter expert with a focus on security architecture and security capabilities within a DevSecOps framework to protect digital service development and operations.
Participate in the identification of information security requirements, as well as the development of strategies and solutions to meet these requirements across the organization.
Facilitate or perform identification, assessment, and treatment of information and technology security threats and risks.
Requirements
A university degree in Computer Science, Information Technology, or a related field.
Minimum of 4 years of related experience in:
Secure solution delivery life cycle, Secure application development.
Securing continuous integration and continuous deployment (CI/CD), DevSecOps, testing, and security architecture.
Equivalencies: A related two-year diploma from a recognized post-secondary institution and a minimum of six (6) years related experience; or A related one-year certificate from a recognized post-secondary institution and a minimum of seven (7) years related experience.
Security certification (CISSP, CISM, CISA, CEH, GPEN, or equivalent) or working toward certification is expected.
Information Security Officer at Vecima Networks responsible for ISMS maintenance and ISO compliance. Supporting governance activities, supplier security, and incident response during maternity leave coverage.
Senior Security Engineer focusing on Application Security and Vulnerability Management for cybersecurity firm. Collaborating with teams on security operations, incident response, and compliance initiatives.
Security Analyst I supporting security operations and security engineering initiatives at Varicent. Collaborating across teams to strengthen security posture through operational excellence and risk - based decision - making.
Expert in application cybersecurity analyzing web components and supporting secure development practices within a dynamic team. Collaborate on cloud application security based in Quebec, Canada.