Operational Information Security Specialist at Exposant 3 overseeing information security activities and implementing security controls. Collaborating on major projects within a human-centered and innovative firm.
Responsibilities
Responsible for supervising activities related to the operational security of information systems.
Responsibilities include conducting penetration tests, static and dynamic code analysis, and implementing application and infrastructure security controls to strengthen the protection of the client’s information assets.
Monitors potential threats and implements incident response plans to limit organizational impact.
In the event of a security breach, leads forensic investigations, including the collection and analysis of evidence necessary to support corrective actions.
Responsible for the maintenance and continuous optimization of security tools, such as firewalls and intrusion detection and prevention systems, ensuring they are regularly updated.
Collaborates with IT teams and other organizational units to ensure a consistent, proactive, and integrated approach to information security across the client’s environment.
Conduct penetration tests (infrastructure or application) according to the defined scope.
Document vulnerabilities discovered during penetration testing with supporting evidence and recommend corrective measures applicable to the client’s environment.
Conduct forensic investigations in the context of security incidents.
Support the security operations team in implementing security measures to enhance the robustness of controls needed to protect the client’s internet-facing systems and infrastructure.
Requirements
Hold a university degree in computer science, cybersecurity, or a related field, or an equivalency recognized by government standards.
Possess at least one of the following certifications: CISSP, CISA, CISM, CEH, CRISC, ISO/IEC 27001 Lead Implementer, ISO/IEC 27001 Lead Auditor, OSCP, CCSK, ISO 27005 Senior Lead Risk Manager, ISO 27032 Senior Lead Cybersecurity Manager.
Have at least 5 years of experience in operational information security.
Demonstrate hands-on experience implementing innovative security solutions and conducting infrastructure and application penetration tests, performing forensic investigations following security incidents, implementing application security controls such as WAF, CAPTCHA, MFA, and be proficient with cybersecurity tools.
Have participated in 2 large-scale projects involving the hardening of critical systems, involving complex environments with more than 500 users.
Demonstrate experience implementing protection measures for information assets, including the use of encryption solutions, firewalls, and intrusion detection systems.
Have experience operating security software such as SIEM or EDR solutions.
Have contributed to 2 projects in a cloud or hybrid environment as an Operational Security Specialist.
Benefits
A dynamic, supportive team culture based on trust and collaboration.
A flexible remote work environment.
The opportunity to contribute to large-scale projects in the technology sector.
Real opportunities for initiative, innovation, and professional development.
Senior offensive security advisor at Desjardins leading security initiatives and projects. Advising partners on strategic security and developing offensive methodologies to enhance cyber resilience.
Senior Product Manager overseeing ecobee’s Smart Security business and leading cross - functional teams. Responsible for product initiatives focused on customer experience and service growth.
Senior Consultant managing client security testing engagements as part of TELUS Cyber Security team. Proficient in penetration testing and security challenges with a focus on collaboration and communication.
Information Security Specialist at TD responsible for risk compliance and issue remediation within technology. Leading assessments and providing oversight on regulatory findings to enhance governance practices.
Security & Compliance Partner shaping security at PurposeMed's virtual healthcare platform. Collaborating across teams to ensure effective security measures and compliance as the company scales in Canada and the US.
Advisor in information security governance at Exposant 3, defining frameworks compliant with international standards and ensuring organizational security compliance. Collaborating on awareness and training efforts within a human - centered, innovative team.
Lead security strategy and ICS - guided emergency response programs at AltaGas. Shape a unified, risk - based framework to strengthen operational resilience and advance zero - harm commitment.
Cyber Threat Intelligence Specialist leveraging AI and machine learning for threat analysis at Intact Financial. Focused on creating predictive intelligence models to enhance security operations.
Security Advisor Specialist for the IAM team at Intact, developing SailPoint IIQ solutions and enhancing identity governance processes. Responsible for driving compliance and teaching best practices
Project Manager II focused on integrating new customers into TELUS' Internet and Security operations. Collaborating across teams to drive successful transition and enhance customer experiences.