Information Security Officer specializing in application and product security for the Government of Alberta. Safeguarding digital services through collaboration and compliance with cybersecurity policies.
Responsibilities
Development, maintenance, advocacy, and compliance for security architecture and DevSecOps framework and policy instruments such as directives, frameworks, policies, standards, and guidelines.
Security architecture subject matter expertise in the one or more following domains: Secure application development processes and tools.
Secure business architecture. Secure data architecture. Secure application architecture. Secure technology architecture.
Consultation, evaluation, and delivery of digital service products throughout the solution development life cycle (SDLC) for conformance to IMT cybersecurity policy instruments including formulation of options and recommendations.
Conduct security review, consult, and advise on secure coding, secrets management, on-premises, Amazon Web Services (AWS), Azure, Google Cloud Platform (GCP), and third-party hosted solutions with verbal and written report.
Provide security advice to business and technical stakeholders, including senior executives.
Participate in projects as an information security subject matter expert with a focus on security architecture and security capabilities within a DevSecOps framework to protect digital service development and operations.
Participate in the identification of information security requirements, as well as the development of strategies and solutions to meet these requirements across the organization.
Facilitate or perform identification, assessment, and treatment of information and technology security threats and risks.
Requirements
A university degree in Computer Science, Information Technology, or a related field.
Minimum of 4 years of related experience in:
Secure solution delivery life cycle, Secure application development.
Securing continuous integration and continuous deployment (CI/CD), DevSecOps, testing, and security architecture.
Equivalencies: A related two-year diploma from a recognized post-secondary institution and a minimum of six (6) years related experience; or A related one-year certificate from a recognized post-secondary institution and a minimum of seven (7) years related experience.
Security certification (CISSP, CISM, CISA, CEH, GPEN, or equivalent) or working toward certification is expected.
Regional Health & Safety Manager leading health, safety, and regulatory compliance for GFL’s environmental services operations in Quebec. Conducting audits, incident management, training oversight, and regional site visits.
Information Security Student supporting vulnerability management and cloud security at Nasdaq Verafin. Assisting with remediation, security posture enforcement, and cloud environment protection.
Senior Principal Security Architect shaping enterprise security architecture for Invesco, a global investment - management firm. Leading cloud, identity, network, data - protection, and risk initiatives.
Principal Security Architect securing Menlo Security’s browser and AI - agent protection platform. Leading cryptography, cloud, vulnerability, and product security architecture.
BDC banking manager overseeing commercial loan security and disbursements across Western Canada. Coordinating due diligence, risk evaluation, lending partners and compliant loan funding.
Cybersecurity new graduate rotating through Intact’s 24 - month tech development program. Supporting threat detection, incident response, infrastructure security, and AI - enhanced security insights.