Talent.com
Information Security Risk Manager
Information Security Risk ManagerPantheon Systems • Toronto, Ontario, Canada
Les candidatures ne sont plus acceptées
Information Security Risk Manager

Information Security Risk Manager

Pantheon Systems • Toronto, Ontario, Canada
Il y a plus de 30 jours
Type de contrat
  • Temps plein
Description de poste

About Pantheon

Pantheon WebOps Platform powers the open web running more than 300000 sites in the cloud for customers including Google Princeton Salesloft and Doctors Without Borders. Every day thousands of developers and marketers create iterate and scale WordPress and Drupal sites to reach billions of people globally. Pantheons multitenant container-based platform enables organizations to manage all of their websites from a single dashboard. Organizations including Clorox and the United Nations drive results through accelerated development and real-time publishing using Pantheons collaborative workflows.

The Role

Drive technical risk excellence across Pantheon as a key member of our Governance Risk and Compliance (GRC) team. Youll collaborate with teams throughout the organization to transform security risk initiatives into sustainable programs that support our business growth compliance requirements and security objectives. By combining your risk expertise with program management skills youll help shape the future of Pantheons GRC strategy while solving complex challenges critical to Pantheons continued growth and success.

About The Team

Our GRC team serves as the second line of defense and works closely with Information Security IT Product Engineering Legal and other departments to ensure comprehensive risk management across Pantheon. We create and maintain processes that identify assess and mitigate risk. The GRC team plays a vital role in supporting Pantheons commitment to delivering a secure reliable and available platform for our customers.

Remote Canada-based

We are only considering candidates based in Canada for this position with a preference for those located in Vancouver BC or Toronto ON

What You Need to Succeed :

  • Define the Risk Management Methodology : The Risk Manager is responsible for creating and documenting Pantheons overall approach to risk. This includes defining the criteria for what constitutes an acceptable level of risk (risk appetite) how to score the likelihood and impact of a risk and how to ultimately treat those risks. This ensures everyone in the organization is on the same page and using a consistent process.
  • Lead the Risk Assessment Process : This is the most crucial part. The Risk Manager orchestrates and guides the process of identifying analyzing and evaluating all information security risks. This individual ensures that all assetsfrom data and software to physical devices and intellectual propertyare considered. The Risk Manager works with different departments to identify potential threats and vulnerabilities.
  • Develop the Risk Treatment Plan (RTP) : Once risks are identified and assessed the Risk Manager develops the formal plan for how to address each one. ISO 27001 gives four main options for risk treatment :
  • Modify : Implementing controls to reduce the risk. This is the most common option.
  • Retain : Accepting the risk because it falls within the acceptable risk appetite.
  • Avoid : Stopping the activity that causes the risk.
  • Transfer : Shifting the risk to a third party for example through cyber insurance or outsourcing.

The Risk Manager documents these treatment option decisions and ensures each risk has a designated risk owner who is accountable for its treatment.

  • Create the Statement of Applicability (SoA) : This is a critical document for ISO 27001 certification. The Risk Manager is responsible for compiling the SoA which details all the controls from ISO 27002 that Pantheon has selected to mitigate its identified risks. The SoA also includes justifications for any controls that were deemed unnecessary and not included.
  • Monitor and Report : The Risk Manager continuously monitors the effectiveness of the implemented controls and the overall risk environment. The individual provides regular reports to the Director of GRC on Pantheons risk posture any new or emerging threats and the status of the risk treatment plan. This ensures that the ISO 27001 Information Security Management System (ISMS) is always evolving to meet new challenges.
  • Maintain Risk-Related Documentation : A significant part of the Risk Managers job is maintaining all the necessary documentation including the risk register the risk treatment plan and the statement of applicability. This is essential for a smooth audit process.
  • What You Bring to the Table

  • Risk Management Expertise : 6 years of a strong background in formal risk management frameworks such as ISO 27001 NIST SP 800-53 or FedRAMP
  • RIsk Registers Experience : Experienced in implementing and maintaining comprehensive risk registers and control inventories.
  • Communication & Collaboration : The ability to effectively and proactively work across teams (Information Security IT Product Engineering Legal etc.) to gather information and ensure buy-in.
  • Analytical Skills : The ability to analyze data and make informed decisions about risk prioritization and treatment.
  • GRCs Role : An understanding of GRCs role within broader security and risk management contexts.
  • GRC Tool Proficiency : Experience with GRC platforms (especially Vanta or OneTrust) can be a huge plus as they can streamline documentation evidence collection and reporting.
  • Certifications : Certifications like CRISC (Certified in Risk and Information Systems Control) or ISO 27001 Lead Implementer are highly valuable as they demonstrate a proven understanding of the domain.
  • What We Offer

    We have all the usual perks and benefits but what we can really offer you is a fantastic work environment powered by an amazing team.

  • Industry competitive compensation and equity plan
  • Paid Time Off (PTO) Paid Sick Leave (PSL) and 11 Paid Company Holidays
  • Full medical coverage (Extended health care dental vision)
  • In-office workspace (Vancouver)
  • Top-of-line equipment
  • Monthly allowance for wellness reading and access to LinkedIn Learning for continued development
  • Events and activities both team-based and company wide that inspire educate and cultivate
  • The Canadian base salary range for this position is between 00 CAD per year. This position also offers a performance bonus dependent on company performance. Our salary ranges are determined by role level and location.

    Pantheon is an equal opportunity / affirmative action employer and we welcome applications from all backgrounds regardless of race color religion sex national origin ancestry age marital status sexual orientation gender identity veteran status disability or any other classification protected by law. Pantheon complies with federal and local disability laws and makes reasonable accommodations for applicants and employees with disabilities. If you need a reasonable accommodation due to a disability for any part of the interview process please contact Pursuant to local and federal regulations Pantheon will consider qualified applicants with arrest and conviction records for employment.

    To review the Employee and Applicants Privacy Policy click here .

    Required Experience :

    Manager

    Key Skills

    International Development,EMC,JavaScript,Import & Export,Airlines,Asp.Net MVC

    Employment Type : Full Time

    Experience : years

    Vacancy : 1

    Créer une alerte emploi pour cette recherche

    Manager Information Security • Toronto, Ontario, Canada

    Offres similaires
    Senior Manager, Internal Controls

    Senior Manager, Internal Controls

    Vaco by Highspring • Aurora, Ontario, Canada
    Permanent
    Our client is a leading global financial services company.They are looking for a Senior Manager, Internal Controls to join their team!. Opportunity to join a high-performing team.Position will lead ...Voir plus
    Dernière mise à jour : il y a 18 heures • Offre sponsorisée • Nouvelle offre
    F&I Manager

    F&I Manager

    Markham Honda • Unionville, ON, Canada
    Temps plein
    WANT TO WORK for one of Canada’s Best Managed Companies?.Dilawri Group is now actively searching for a.Finance & Insurance Manager. Apply to this position if you : .Want to work in an ever-c...Voir plus
    Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
    Senior Business Analyst Cybersecurity (Remote) - markham

    Senior Business Analyst Cybersecurity (Remote) - markham

    Amaris Consulting • markham, on, ca
    Télétravail
    Temps plein
    Le candidat idéal aura une solide connaissance des écosystèmes AWS, des concepts de cybersécurité et des meilleures pratiques de l’industrie, avec une expérience dans le secteur des assurances en t...Voir plus
    Dernière mise à jour : il y a 5 jours • Offre sponsorisée
    Principal Engineer - Information Security

    Principal Engineer - Information Security

    Tucows Inc. • Toronto, ON, Canada
    Temps plein
    Wavelo is a SaaS business on a mission to make telecoms a breeze.We provide flexible software that modernizes how communication service providers (CSPs) do business, helping them drive more value, ...Voir plus
    Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
    Security Analyst

    Security Analyst

    Hire DigITalent • Aurora, ON, Canada
    Temps plein
    Security Monitoring & Incident Response.Partner closely with a managed security service / SOC provider to oversee threat monitoring, investigations, incident response activities, and security rep...Voir plus
    Dernière mise à jour : il y a 7 jours • Offre sponsorisée
    Information Cybersecurity Manager

    Information Cybersecurity Manager

    Jefferson Capital Systems, LLC • Toronto, Canada
    Temps plein
    Information Cybersecurity Manager • | • | • | • Information Cybersecurity Manager • •Employment Type : • •Full Time • •Work Hours : • •8am-5pm## Qualifications • 5 plus years' experience in IT, Information Cybers...Voir plus
    Dernière mise à jour : il y a 18 heures • Offre sponsorisée • Nouvelle offre
    Manager, Cyber Risk Management

    Manager, Cyber Risk Management

    McCain Foods • Toronto, ON, Canada
    Temps plein
    Manager, Cyber Risk Management.Manager, Cyber Risk Management.At McCain, we believe in meaningful technology – using digital technology not just for innovation, but to make a difference globally.Jo...Voir plus
    Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
    Risk Manager - iGaming

    Risk Manager - iGaming

    Alpha Talent Solutions • Toronto, ON, Canada
    Temps plein
    Quick Apply
    Our client, an international leader in the online entertainment sector, is expanding its Canadian operations and is seeking to recruit a highly skilled Risk Manager to join its dynamic team in Toro...Voir plus
    Dernière mise à jour : il y a 22 heures • Nouvelle offre
    Information Technology Private Tutoring Jobs Newmarket

    Information Technology Private Tutoring Jobs Newmarket

    Superprof • Newmarket, Canada
    Temps plein +1
    Superprof is Canada's #1 tutoring platform, and we're actively recruiting passionate tutors! Whether you're a student, a professional, or simply someone who loves teaching, join the largest communi...Voir plus
    Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
    Risk & Compliance Manager - Management Consulting & Strategy

    Risk & Compliance Manager - Management Consulting & Strategy

    SIA • Toronto, ON, Canada
    Temps plein
    Sia is a next-generation, global management consulting group.Founded in 1999, we were born digital.Today our strategy and management capabilities are augmented by data science, enhanced by creativi...Voir plus
    Dernière mise à jour : il y a 19 heures • Offre sponsorisée • Nouvelle offre
    Manager, Technology Risk Management

    Manager, Technology Risk Management

    KPMG LLP Canada • Toronto, ON, Canada
    Temps plein
    At KPMG, you’ll join a team of diverse and dedicated problem solvers, connected by a common cause : turning insight into opportunity for clients and communities around the world.Our Technology Risk ...Voir plus
    Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
    Principal Engineer - Information Security

    Principal Engineer - Information Security

    Tucows • Toronto, ON, Canada
    Temps plein
    Wavelo is a SaaS business on a mission to make telecoms a breeze.We provide flexible software that modernizes how communication service providers (CSPs) do business, helping them drive more value, ...Voir plus
    Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
    DW_Account Executive - Integrated Security Solutions

    DW_Account Executive - Integrated Security Solutions

    Just Sales Jobs • Markham, ON, Canada
    Temps plein
    As an Account Executive, you will be providing Security Solutions to Property Management Companies and Real Estate Developers across the Greater Toronto and surrounding areas.This role focuses main...Voir plus
    Dernière mise à jour : il y a 25 jours • Offre sponsorisée
    Manager, Enterprise Risk Management

    Manager, Enterprise Risk Management

    Teranet Inc. • toronto, on, ca
    Temps plein
    Manager, Enterprise Risk Management.Teranet is Canada’s leader in the delivery and transformation of statutory registry services with extensive expertise in land and commercial registries.We also m...Voir plus
    Dernière mise à jour : il y a 4 jours • Offre sponsorisée
    Risk Manager

    Risk Manager

    Entuitive • Toronto, ON, Canada
    Temps plein
    The ideal candidate will possess a strong background in risk management principles and practices, an understanding of engineering design practices, and a passion for delivering projects that meet b...Voir plus
    Dernière mise à jour : il y a 9 jours • Offre sponsorisée
    Risk Management Specialist

    Risk Management Specialist

    The Talent Company • Markham, ON, Canada
    Temps plein
    Why You Will Love This Organization.Our client is a long-established Canadian subsidiary of a global organization, recognized as a leader in heating, cooling, and ventilation technologies as well a...Voir plus
    Dernière mise à jour : il y a 7 jours • Offre sponsorisée
    Security Concierge Supervisor

    Security Concierge Supervisor

    FirstService Residential • Markham, ON, Canada
    Temps plein
    As a Security Concierge Supervisor, you’ll be responsible for assisting residents by providing information and services as needed. This role requires someone that is self-motivated, outgoing, ...Voir plus
    Dernière mise à jour : il y a 7 jours • Offre sponsorisée
    Health and Safety Advisor

    Health and Safety Advisor

    Ramudden • Gormley, ON, Canada
    Temps plein
    Through a network of various brands and businesses, we offer a wide range of services designed to enhance road safety, streamline traffic management, and support critical infrastructure projects.Fr...Voir plus
    Dernière mise à jour : il y a 1 jour • Offre sponsorisée