Conseiller en gouvernance de la sécurité de l'information senior intervenant dans un projet client. Travail à Québec dans la ville du secteur public.
Responsibilities
Validate business cases and advise stakeholders on their development
Define, document, and communicate guiding principles for the design, implementation, deployment, and support of selected solutions
Follow up with division heads of the Digital Security and Cyberdefense Directorate (DSNC) when required, according to established processes
Plan, control, and support activities related to information security
Develop strategies and guidance for the evolution of information technologies
Conduct knowledge transfer to the teams of the Digital Security and Cyberdefense Directorate (DSNC) regarding work performed
Identify governance needs and directions for information security based on business requirements
Participate in designing and/or validating governance and information security solutions, ensuring their consistency and integration with reference standards
Participate in orientation studies, opportunity assessments, and preliminary analyses
Define security orientations for systems taking into account technological directions and business needs, and ensure their implementation
Perform risk analyses
Coordinate work
Support the project team regarding governance, security, and strategic directions
Requirements
University undergraduate degree (Bachelor's) in computer science, information technology, or a related field recognized by the Ministry of Education, or equivalent
Twelve (12) years of experience in information technology, accumulated over the last 15 years
Eight (8) years of relevant experience in information security governance during organizational and/or technological changes, accumulated over the last ten (10) years
Participation as an information security governance advisor on at least one (1) development, verification, or compliance project of information security processes, or managing exemptions, exceeding 1,000 person-days
Participation as an information security governance advisor on at least one (1) project developing an incident response strategy exceeding 1,000 person-days
At least one (1) year of hands-on experience in developing security strategies
One (1) year of experience in malware analysis in a client/server environment
One (1) year of experience with standards and frameworks such as NIST CSF, COBIT, and CIS Controls
Five (5) years of experience in risk analysis and risk appetite assessment in an environment comparable to the ministry
Expert in application cybersecurity analyzing web components and supporting secure development practices within a dynamic team. Collaborate on cloud application security based in Quebec, Canada.
Penetration Testing Consultant at BMO conducting extensive manual security assessments for critical financial applications. Collaborating with stakeholders to enhance security strategies and practices.
Information Security Consultant leading Risk Control Self Assessments and risk governance at Manulife. Collaborating on technology, data, and operational risk management while ensuring strong governance.
Software Specialist at Xona developing secure software for the Pulsar ecosystem. Collaborating with teams to integrate security features in partner hardware.
Cybersecurity Intern at FloSports assisting in identity, cloud, and endpoint security. Work in a hybrid setup at the Waterloo office focusing on real - world cybersecurity practices.
Senior Network Security Engineer leading complex troubleshooting and enhancing systems at SecureOps. Mentoring team members and improving architectural and operational processes.