Security Engineer at Zensurance supporting information security management and collaborating with IT teams. Focus on policy compliance, risk management, and employee training in a leading InsurTech.
Responsibilities
Support and maintain the company-wide information security program, including policies, standards, and guidelines.
Facilitate IT risk assessments with business units and help define acceptable levels of residual risk.
Monitor the external threat environment and advise stakeholders on emerging risks.
Manage day-to-day threat and vulnerability management, including detection, response, and remediation.
Coordinate incident management and support disaster recovery and business continuity planning.
Liaise with engineering, IT, and enterprise architecture teams to embed security into system design and selection.
Produce regular reporting and metrics on program effectiveness for leadership and stakeholders.
Oversee security testing procedures and manage remediation of identified risks.
Ensure audit trails and system logs comply with policy and audit requirements.
Lead security awareness training across the organization.
Requirements
5+ years of experience in Information Security
Hands-on experience with information security frameworks: CIS Controls v8, NIST, ISO 27001, SOC 2, PIPEDA, or PCI
Experience writing cybersecurity policies and conducting security gap analyses
Experience translating business stakeholder needs into technical security requirements
Experience with cloud security controls (AWS or equivalent)
Familiarity with security platforms such as CrowdStrike and Mimecast
Experience working alongside legal, audit, and compliance teams
Strong written and verbal communication skills — able to engage technical and non-technical audiences
University degree or college diploma in Information Security, Cybersecurity, or a related field (or equivalent experience)
Benefits
Remote-first setup for added flexibility
Home office allowance to create a comfortable workspace
Top-tier tech: "Office in a box" with all necessary tech equipment
Half days before public holidays: Enjoy half days before long weekends
Flexible health and dental plans for families, including mental health support
Health & personal spending accounts to invest in wellness your way
Parental leave top-up, because family comes first
Education assistance reimbursement for courses, conferences, books, and memberships
Opportunities to learn from industry experts and grow your career
Weekly Friday huddles to share updates and connect across teams
Virtual & in-person team-building events to strengthen our culture
Regional Health & Safety Manager leading health, safety, and regulatory compliance for GFL’s environmental services operations in Quebec. Conducting audits, incident management, training oversight, and regional site visits.
Information Security Student supporting vulnerability management and cloud security at Nasdaq Verafin. Assisting with remediation, security posture enforcement, and cloud environment protection.
Senior Principal Security Architect shaping enterprise security architecture for Invesco, a global investment - management firm. Leading cloud, identity, network, data - protection, and risk initiatives.
Principal Security Architect securing Menlo Security’s browser and AI - agent protection platform. Leading cryptography, cloud, vulnerability, and product security architecture.
BDC banking manager overseeing commercial loan security and disbursements across Western Canada. Coordinating due diligence, risk evaluation, lending partners and compliant loan funding.
Cybersecurity new graduate rotating through Intact’s 24 - month tech development program. Supporting threat detection, incident response, infrastructure security, and AI - enhanced security insights.