Cyber Security Risk Advisor providing analysis and reporting to support BMO's information security efforts. Involves stakeholder engagement and data analysis for decision-making.
Responsibilities
Provides analysis and reporting services in support of businesses/groups and BMO overall
Builds relationships and liaises with stakeholders to understand problems and opportunities
Recommends solutions to enable the organization to meet its goals
Analyzes data and creates documents and plans in service of informing, advising, or updating internal stakeholders
Ensures that requirements map to a real business need, are approved by all relevant stakeholders, and meet essential quality standards
Participates or conducts user acceptance testing to ensure that changes made are in alignment with business requirements
Provides great customer service in support of the information security processes, applications, and infrastructure
Understands and can explain to others the core processes, risks and mitigation techniques for designated areas
Anticipates and reduces complexity for others
Develops innovative approaches to resolve problems and significant issues
Prepares and delivers presentations for senior leaders
Leads the preparation of end user reference materials and prepares end-user training materials
Gathers requirements and documents these requirements for use in various audits, reports, & projects
Works with vendors to troubleshoot issues, as required
Assesses the quality of reports submitted and provides related coaching and support
Looks for coaching opportunities with other team members
Troubleshoots information security issues within designated business group
Identifies opportunities to strengthen the capability of the information security organization
Requirements
Typically between 4 - 7 years of relevant experience
Post-secondary degree in Information Security, Computer Science, Engineering, Information Systems, Business or related field
At least one certification in a related field, preferably in Information Security
Experience in information security, technology, business requirements gathering and reporting in a financial services setting
Knowledge of Information Security processes, procedures, and controls
Understanding of Information Security risk and regulatory requirements
Familiar with industry standards and frameworks e.g. NIST Cyber Security Framework (CSF), ISO 27001 and 27002, Payment Card Industry (PCI) Data Security Standard (DSS)
Consultant cybersécurité hybride à Montréal chez I - TRACING, pure - player indépendant en sécurité informatique. Conception, déploiement et support de solutions IAM, réseau, systèmes et applications.
Desjardins property technician supporting fire prevention, building safety, management, and build - out projects. Providing technical support, process coordination, user training, and operational guidance.
Ingénieur sécurité principal protégeant l'infrastructure, les produits et les données de Shakepay, plateforme canadienne de services financiers bitcoin. Automatisation, IA, détection et réponse aux incidents.
Senior Application Security Researcher advancing AI - driven application security from prompt to production. Building detection systems and autonomous agentic penetration - testing capabilities.
Regional Health & Safety Manager leading health, safety, and regulatory compliance for GFL’s environmental services operations in Quebec. Conducting audits, incident management, training oversight, and regional site visits.
Information Security Student supporting vulnerability management and cloud security at Nasdaq Verafin. Assisting with remediation, security posture enforcement, and cloud environment protection.
Senior Principal Security Architect shaping enterprise security architecture for Invesco, a global investment - management firm. Leading cloud, identity, network, data - protection, and risk initiatives.