Security Specialist for Nöord Technologies reinforcing cybersecurity measures and compliance to aid clients. Remote role requiring experience with security procedures and risk assessments.
Responsibilities
Threat monitoring
Proactively monitor and analyze security data to detect advanced threats and vulnerabilities.
Produce key indicators (risk and performance) and actionable intelligence to strengthen the organization’s security posture.
Manage security incidents, from initial analysis through full resolution.
Conduct post-incident reviews and recommend preventive measures.
Independently perform in-depth security assessments to identify vulnerabilities and recommend remediation strategies.
Maintain the information security risk register, oversee audits, and assess vendor security practices.
Develop information security awareness materials.
Act as a subject-matter advisor to support cybersecurity program objectives and compliance initiatives.
Draft, update, and maintain information security policies, procedures, and standards (access management, passwords, network security, PAP, etc.).
Ensure documentation aligns with best practices (NIST, ISO 27001, etc.).
Coordinate SOC 2 (Type 1 and Type 2) compliance activities, including audit readiness.
Document and implement required security controls.
Respond to security questionnaires from clients or partners (cybersecurity, privacy, business continuity, etc.).
Collaborate with internal teams to obtain relevant technical or organizational responses.
Participate in defining and implementing technical and organizational controls (access management, logging, backups, etc.).
Establish repeatable and well-documented processes.
Requirements
Solid knowledge of SOC 2, ISO 27001, NIST, and CIS Controls
Experience in drafting policies and security documentation
Ability to understand technical concepts and communicate them to non-technical audiences
Knowledge of cloud environments (AWS, Azure, GCP) is an asset
Certifications such as CCSP, CISM, ISO 27001 Lead Implementer
Degree in information security, information technology, or a related field
Minimum of three to five years of experience in a similar IT security or governance role
Fluent in French and English
Proven ability to manage multiple projects concurrently with rigor and autonomy
Experience with governance, risk, and compliance (GRC) tools
Experience with the GRC tool DRATA is an asset
Benefits
At Nöord Technologies, we value diversity and inclusion as drivers of innovation and growth.
We are committed to building inclusive teams and a fair workplace where employees can be authentic at work.
We also strive to provide an accessible application experience for candidates with different abilities. Please let us know if you require an accommodation during the recruitment process.
Buildings, development and security Analyst supporting fire prevention, facility safety, and building management at Desjardins. Analyzing risks, developing safety plans, and implementing physical security systems.
BMO banking associate providing bilingual credit and lending sales and service remotely in Quebec. Handling customer contacts, credit decisions, compliance, and suspicious - activity reporting.
Principal Information Security Engineer defining scalable security strategy, architecture, automation, cloud, identity, and AI controls. Helping Arctic Wolf protect organizations worldwide and end cyber risk.
Consultant cybersécurité hybride à Montréal chez I - TRACING, pure - player indépendant en sécurité informatique. Conception, déploiement et support de solutions IAM, réseau, systèmes et applications.
Desjardins property technician supporting fire prevention, building safety, management, and build - out projects. Providing technical support, process coordination, user training, and operational guidance.