Cyber Vendor Assurance Consultant at TELUS Agriculture managing global supplier cybersecurity assessments and ensuring information security compliance and risk management.
Responsibilities
Manage and own a diverse worldwide portfolio of vendor assessments
Undertake Information Security reviews using a defined methodology
Support key elements involved in Cyber Vendor Assurance program
Provide guidance to both internal and external stakeholders
Maintain and produce detailed reporting
Advise on risk articulation, materiality and required actions
Requirements
CISM, CRISC, IS027001 LA, CISA
4 + years of applied and practical Cyber Vendor Assurance experience
Strong understanding of Security frameworks (ISO 27001 / 27036)
Adept at reviewing Vendor Security policies and standards
Clear understanding of information security principles
Strong stakeholder management and interpersonal skills
Security director at Intact, an insurer, protecting customer and broker digital channels and third - party risk platforms. Leading technical teams, governance, strategy, and security operations.
Information Security Advisor conducting cyber - risk assessments and contract reviews for Sun Life, a global financial - services company. Advising business and technology teams on security controls, compliance, and risk remediation.
Enterprise Security Architect securing technology for Vancity, a member - owned Canadian credit union. Designing enterprise application security frameworks, controls, and risk - based cybersecurity solutions.
Director leading IT and cybersecurity operations for the Azrieli Foundation, a Canadian philanthropic organization. Assessing technology risks, overseeing infrastructure, vendors, incident response and executive technology strategy.
Data Security Specialist protecting Sun Life’s financial - services data through DLP, CASB and insider - threat programs. Investigating cyber risks and advancing enterprise data protection.
Senior SaaS Security Manager protecting RBC’s banking platform from third - party cloud risks. Leading controls, vulnerability management, compliance, and security transformation initiatives.
Développeur.euse sécurité cloud protégeant l’infrastructure de nesto, plateforme de financement hypothécaire canadienne. Conception de contrôles cloud, automatisation DevSecOps et réponse aux incidents.