Talent.com
CMHC - SCHL
Specialist, IT Vulnerability & ManagementCMHC - SCHL • Ottawa
Specialist, IT Vulnerability & Management

Specialist, IT Vulnerability & Management

CMHC - SCHL • Ottawa
7 hours ago
Job type
  • Full-time
  • Permanent
Job description

Job Requisition ID: 12063

Position Status: Permanent Full Time

Position Type: Hybrid

Office Location: Montreal (QC); Ottawa (ON)

Travel Requirement: Limited

Language Designation: English Essential

Language Skill Levels (Read/Write/Speak): ZZZ

Security Requirement: Secret

Salary: Our salaries generally range from $ 86,816.59 to $ 108,520.74 and are based on qualifications and experience.

About CMHC

The work you do and the work we do together matters. We come to work every day with a common purpose: to contribute to a well-functioning housing system.

At CMHC, we hold ourselves accountable for our results and support our colleagues in their achievements. We thrive on collaboration, connecting across CMHC and involving the right people to get our work done. Our leadership style is guided by trust, where our leaders favour an adaptive approach based on the needs of their teams.

Join us and be part of a team that's committed to making a real difference and be part of something meaningful.

What’s in it for you

We’ve got the purpose, the people and the perks you need for a fulfilling career. Here’s the comprehensive and generous benefits you get when you’re a permanent employee:

  • Annual Paid vacation.
  • Annual individual performance incentive.
  • Defined benefit pension plan.
  • Comprehensive group insurance plan to support your well-being from day one.
  • Support towards your personal and professional growth with training, mentorship and more.
  • An inclusive workplace culture and environment.
  • While positions at CMHC require some in-office presence, alternative work arrangements may be considered for Indigenous candidates.

About the role

Join the IT Security Team, in the Specialist, IT Vulnerability Management position. The successful candidate will apply specialized expertise to operationalize vulnerability management standards, risk methodologies, and threat intelligence to ensure vulnerabilities across infrastructure, applications, and cloud environments are consistently identified, assessed, prioritized, tracked, and escalated within established frameworks. It is accountable for maintaining process integrity and high‑quality vulnerability data, exercising guided judgment in non‑standard scenarios, and enabling timely remediation, directly contributing to reduced technology risk and effective risk oversight.

What you’ll do:

  • Interpret vulnerability scan results across infrastructure, applications, and cloud environments to identify, validate, and assess security risks.
  • Perform risk analysis to eliminate false positives, determine exploitability, and prioritize vulnerabilities using approved risk rating methodologies and threat intelligence.
  • Maintain authoritative vulnerability records, including risk ratings, evidence, remediation requirements, and audit traceability.
  • Coordinate with IT and application teams to drive timely remediation in line with defined service level targets.
  • Track remediation progress, validate closure or risk acceptance, and escalate overdue or high‑risk vulnerabilities as required.
  • Produce accurate operational reports and dashboards to support management visibility, compliance, and assurance activities.
  • Identify recurring vulnerability trends and recommend processes, tooling, and workflow improvements to enhance control maturity.
  • Exercise sound operational judgment, effective escalation, and strong interpersonal skills to influence stakeholders and ensure consistent vulnerability management outcomes.

What you should have:

  • A bachelor’s degree in Information Technology, Cybersecurity, or a related field, or equivalent experience.
  • A security certification is required or in progress (e.g., Security+, CEH, or equivalent).
  • A minimum of 5 years of experience in information security, vulnerability management, or IT operations.
  • Demonstrated experience operating vulnerability scanning tools and managing remediation workflows.
  • A strong understanding of vulnerability management lifecycle (scan → assess → prioritize → remediate → validate).
  • The ability to apply risk methodologies and exercise judgment within defined frameworks.
  • An understanding of security control concepts (patching, configuration hardening, compensating controls).
  • The ability to identify patterns and escalate systemic issues appropriately.

Posting closing date: Note, the competition will remain active until filled.

Standby and Call Back duties are a requirement of this position and will be subject to CMHC policies, including the Standby and Call Back Pay Procedure.

Our commitment to diversity, equity, and inclusion

We’re committed to employment equity and encourage women, Indigenous Peoples, persons with disabilities, veterans and persons of all races, ethnicities, religions, abilities, sexual orientations, and gender identities and expressions to apply. We also welcome applications from non-Canadians who are eligible to work in Canada.

CMHC is an inclusive workplace where diversity of thought – and of people – are recognized, valued, and considered essential to achieving our mission.

Learn more about our commitment to diversity and inclusion

What happens after you apply

We know that applying for a new job can be both exciting and daunting, and we appreciate your effort. Learn more about our hiring process. If you are selected for an interview or testing, please advise us if you require an accommodation.

If you applied before and you were not successful don’t worry – we're always posting new positions, so don’t hesitate to give it another shot. We’re excited to see what you bring to the table this time around!

Create a job alert for this search

Specialist, IT Vulnerability & Management • Ottawa

Similar jobs

Remote Senior Vulnerability & Penetration Testing Lead

Phreesia, Inc.Ottawa, ON, CA
Remote
Full-time

A healthcare technology company is seeking a Senior Manager, Vulnerability Management to oversee and enhance their vulnerability management program.The role involves managing a team, conducting ris... Show more

 • Promoted

Customer Service Agent - 50k-60k/Year - Remote

Spade RecruitingNorth Grenville, Ontario
Remote
Full-time
Quick Apply

We’re looking for enthusiastic, self-driven, individuals to assist existing and prospective clients within our organization.This position will work with multiple clients throughout the day pr... Show more

 • Promoted

IT Implementation Specialist

L3Harris TechnologiesOttawa, ON, CA
Full-time

IT Implementation Specialist position at L3Harris Technologies.L3Harris is dedicated to recruiting and developing high‑performing talent passionate about what they do.Our employees share a unified ... Show more

 • Promoted

Director of Microsoft Cloud and Cloud Solution Provider (CSP )Operations - ottawa

Buchanan Technologiesottawa, on, ca
Full-time +1

Director of Microsoft Cloud & CSP Operations.Remote, anywhere in North America.The Director of Microsoft Cloud & CSP Operations is responsible for the day-to-day management and optimization of the ... Show more

 • Promoted

Professional Services Specialist (Enterprise Physical Security Systems) - SOLOSQUID

SOLOSQUIDgatineau, qc, ca
Full-time

Professional Services Specialist (Enterprise Security Systems).SoloSquid is a professional services firm that works with enterprise clients to deploy, optimize, and maintain advanced security syste... Show more

 • Promoted

IT Vulnerability Management Specialist at CMHC

Canada Mortgage and Housing CorporationOttawa, ON, CA
Full-time

Elevate your career with CMHC as a Senior Specialist in IT Vulnerability Management.This hybrid role focuses on enhancing the enterprise Vulnerability Management program to safeguard technology ass... Show more

 • Promoted

Senior Manager, Vulnerability Management

Phreesia, Inc.Ottawa, ON, CA
Full-time

Senior Manager, Vulnerability Management page is loaded## Senior Manager, Vulnerability Managementlocations: Remote Canadatime type: Full timeposted on: Posted 5 Days Agojob requisition id: ... Show more

 • Promoted

Principal Specialist in Site Reliability for Remote IT Operations

SherwebOttawa, ON, CA
Remote
Full-time

Elevate site reliability practices as a Principal Specialist within IT Operations.Drive system reliability and improve operational practices from the comfort of your home while making a significant... Show more

 • Promoted

Senior IT and security Administrator – Malware Protection Specialist

act digitalOttawa, ON, CA
Full-time

Senior IT and security Administrator – Malware Protection Specialist.ALTER SOLUTIONS is a consulting and technology expertise company founded in 2006.Our mission is to support our clients with thei... Show more

 • Promoted

Information Technology Private Tutoring Jobs Chelsea

SuperprofChelsea, Canada
Full-time +1

Superprof is Canada's #1 tutoring platform, and we're actively recruiting passionate tutors! Whether you're a student, a professional, or simply someone who loves teaching, join the largest communi... Show more

 • Promoted

Lead IT Operations at Rebel Ottawa

Rebel Ltd.Ottawa, ON, CA
Full-time

Elevate IT operations as a Lead Systems Administrator Team Lead with Rebel in Ottawa, ON.This hybrid role requires strong leadership and systems expertise across various platforms.In your role at R... Show more

 • Promoted

Organizational Wellbeing Advisor (E-Volunteer) - Spanish Required

Cuso InternationalNorth Grenville, Ontario
Permanent

Online placement (E-Volunteer).Please submit a Spanish Resume and Statement of Interest.Open to Canadian Citizens and Permanent Residents of Canada only.Cuso International is seeking a remote volun... Show more

 • Promoted

Information Technology Private Tutoring Jobs Cantley

SuperprofCantley, Canada
Full-time +1

Superprof is Canada's #1 tutoring platform, and we're actively recruiting passionate tutors! Whether you're a student, a professional, or simply someone who loves teaching, join the largest communi... Show more

 • Promoted

Ottawa Enterprise Storage & IT Infrastructure Specialist

AkkodisOttawa, ON, CA
Full-time

A technology consulting company is looking for an IT Infrastructure Specialist in Ottawa to lead a critical upgrade for Storage Services.Candidates must possess extensive experience in storage syst... Show more

 • Promoted

Partnership Development Advisor - Spanish Required

Cuso InternationalNorth Grenville, Ontario
Permanent

This Volunteer Placement is Located in:.Please submit a Spanish Resume and Statement of Interest.Open to Canadian Citizens and Permanent Residents of Canada only.Join Cuso International in an excit... Show more

 • Promoted

AWS IT Support Specialist (Secret Security Clearance) - ottawa

Orion Innovationottawa, on, ca
Full-time

We are seeking a Senior Infrastructure Engineer with a deep specialization in Security Design to lead the evolution of our cloud-native ecosystem.In this role, you will be responsible for architect... Show more

 • Promoted

Site Reliability Principal Specialist, IT Operations

Sherweb Inc.Ottawa, ON, CA
Full-time

Site Reliability Principal Specialist, IT Operations.Cloud and Systems Infrastructure.Location: Remote (from Canada).Here’s what we do and why we do it.We work to simplify the cloud for IT professi... Show more

 • Promoted

Senior Specialist, IT Vulnerability Management

Canada Mortgage and Housing CorporationToronto, Montreal (Administrative Region), Ottawa
Full-time +1

Select how often (in days) to receive an alert:.Senior Specialist, IT Vulnerability Management.Language Skill Levels (Read/Write/Speak):.Our salaries generally range from $104,180.The work you do a... Show more