Principal Security Engineer leading cyber security efforts and providing technical direction at Intact. Focusing on risk mitigation and mentoring security teams in a hybrid environment.
Responsibilities
Provide technology direction on the architecture and design of security-related technology initiatives.
Serve as a trusted advisor to security specialists, leveraging expertise to ensure high judgement decisions are made on complex and ambiguous security problems across all security domains, either by acting as decision-maker or by helping other specialists with the decision-making process.
Act as a force multiplier: Leverage your extensive expertise to enhance the effectiveness and efficiency of the entire engineering team.
Foster a culture of innovation and excellence by mentoring colleagues, enhancing mechanisms, introducing best practices, and driving architectural improvements that enable the team to implement strong security risk mitigations.
Promote cross-team collaboration and drive technical direction across teams, functions, and products, ensuring decisions support overall business, technology and security strategy.
Collaborate closely with senior leadership and principals to develop and implement strategic initiatives that contribute to a durable and resilient security control environment.
Continually identify opportunities for improvement and act as an agent of change by championing innovative ideas and initiatives to improve mechanisms.
Monitor and assess the impact of industry trends, emerging technologies, and changes in threat actor tactics and techniques; recommend strategies to evolve security countermeasures in response.
Serve as an active member of the tech community and promote technology within and outside the organization as a thought leader and contributing to advance IFC’s interests.
Requirements
Bachelor’s or master’s degree in computer science, Engineering or related field.
10+ years of experience in cyber security and/or software development, with at least 3+ years in technical leadership role.
Deep expertise in multiple cyber security domains, including application security, data security, endpoint security, network security, identity and access management, detection engineering, threat intelligence, incident response, and third-party risk management.
Strong understanding of software architecture principles and modern system design patterns.
Strong understanding of cloud service provider platforms and strategies for securing cloud-based technology assets.
Proven ability to design and operate scalable, resilient systems in production environments.
Excellent problem-solving skills and the ability to navigate ambiguity.
Excellent communication and stakeholder management skills to bridge the gap between cyber security teams and business leaders.
Proven leadership in mentoring security specialists and building technical communities.
For candidates located in Quebec, bilingualism is required considering the necessity to interact on a regular basis with English-speaking colleagues across the country.
No Canadian work experience required however must be eligible to work in Canada.
Benefits
Flexible work arrangements and a hybrid work model
Possibility to purchase up to 5 extra days off per year
Multiple benefits offered to support physical and mental wellbeing, including telemedicine, Wellness account and much more
Share plan & other savings: up to 12% of salary or even more (ask how you could earn guaranteed income for life)
Managing Consultant in Cybersecurity and NERC Compliance at Guidehouse. Leading client management and project workstreams within the electric utility sector in Canada.
Security Guard responsible for protecting people and property in Amherst, Nova Scotia. Conducting patrols and monitoring security systems to ensure safety.
Security Lead responsible for driving security function and strategy at Newton, a crypto trading platform. Ensuring CIRO and SOC 2 alignment while embedding security practices across all systems and applications.
Senior Cybersecurity Engineer at Vervent focused on security solution design and incident response. Join a growing team to implement and strengthen enterprise security operations.
Conseiller juridique stratégique au sein des Services juridiques pour la protection des renseignements personnels au Canada. Fournissant des conseils stratégiques en matière de cybersécurité et réglementaire.
Manager, Information Security at Manulife will assess vendor IT risks and security controls. Conducting audits, guiding businesses in IT risk management under a hybrid working model.
Key role in operational security management of IT infrastructures at Xideral. Involves risk management, security architecture, and coordination with various stakeholders.
Industrial Security Lead managing facility security functions at L3Harris Technologies to support compliance with security policies. Engaging with internal and external security officials and overseeing security operations.
Responsable de la sécurité industrielle chez L3Harris Technologies, soutenant la sécurité des installations et la protection de la propriété intellectuelle. Interagir avec des clients internes et externes pour les tâches de sécurité tout en exécutant les fonctions de sécurité.