Talent.com
Maarut
RQ00716 Security Specialist SeniorMaarut • Toronto, Ontario, Canada
RQ00716 Security Specialist Senior

RQ00716 Security Specialist Senior

Maarut • Toronto, Ontario, Canada
22 days ago
Job type
  • Full-time
Job description

The Sr. Security Specialist will support and deliver on multiple initiatives related to Security Governance Risk and Compliance and Cyber Defense Operations. This includes leading multiple initiatives related to security strategy security audit and compliance requirements and findings security governance including policies standards and processes development and security risk management procedures.

Must haves:

  • Experience in risk management models for assessing and mitigating various aspects of risk exposure.
  • Experience with risk assessment methodologies such as HTRA and NIST CSF and frameworks such as ISO 27001/2.
  • Experience with security governance including developing policies standards processes and procedures.
  • Hands on experience with IPC (Information Privacy Commissioner) triennial audits.
  • Demonstrated experience in working with various compliance and audit frameworks including PHIPA SOC 2 Type II OAGO
  • An adept team player who is action oriented with a record of accomplishment of motivating other team members to achieve higher goals.

Desired Skills:

  • 10 years experience in various security domains including third-party risk management IT audits and/or Security Governance Risk and Compliance (GRC)
  • Bachelors or Masters degree in Computer Science Information Technology Cyber Security Systems or other related field or equivalent work experience.
  • Professional certifications in information/cyber security (e.g. CISSP CCSP CISA CISM CRISC) is required.
  • Knowledge of prevalent industry standards (ISO 27001/27002 NIST CIS COBIT)

Required Skills:

  • An understanding of risk assessment methodologies such as HTRA and CSF and frameworks such as NIST and ISO 27001/2.
  • Knowledge and experience developing and working with security architecture and IT management frameworks such as SABSA and CoBIT.
  • Strong knowledge and demonstrated experience working with compliance and audit frameworks including PHIPA SOC 2 TII OAGO audits.
  • Hands on experience with IPC triennial audits
  • Technical writing expertise and demonstrated knowledge and experience in developing Information security policies and standards in alignment with PHIPA IPC requirements and industry standards.
  • Strong understanding and ability to interpret and communicate risk management concepts.
  • Good experience & knowledge of TRA methodologies and other risk assessment methodologies and tools and familiarity with related security tests and test methodologies
  • Deep understanding of typical security threats vulnerabilities and safeguards relevant to IT systems.
  • Experience in writing and presenting subject matter information that is both comprehensive and easy to understand.
  • Excellent communication and reporting abilities to effectively present findings and risk mitigation strategies to both technical teams and executive stakeholders.
  • Experience and working knowledge of risk management lifecycle processes and concepts.
  • Strong analytical skills to assess potential impacts and likelihoods of various threat scenarios.

Evaluation Criteria:

  • Minimum 5 years extensive experience in conducting comprehensive security Threat and Risk Assessment (TRA) using frameworks such as NIST CSF HTRA and ISO 27001. Risk Assessment mitigation recommendations and management with a strong focus on identifying vulnerabilities analyzing potential impacts and delivering actionable risk mitigation to stakeholders. 25 points
  • Minimum 5 years of extensive experience with Information security governance developing policies and standards with a strong ability to identify gaps between the current security posture and industry standards best practices and regulatory requirements. 25 points
  • Minimum 8 years of hands-on experience with IPC and OAGO audits. 30 points
  • 5 years of experience authoring executive-level reports developing cyber security program and risk registers and delivering presentations to stakeholders and senior leadership. 20 points


Requirements

Deliverables include but are not limited to:

  • Development of security policies standards procedures processes.
  • Development of frameworks and models for select security capabilities
  • Support implementation of new enterprise governance risk and compliance tool.
  • Support development of a cyber security strategy and key aspects of program development including program performance reporting.
  • Support on completion of security assessment using tools based on NIST CSF.
  • Review of Threat Risk Assessment VA scan report Penetration Test report and other security documents.

Must Haves:

  • Minimum 8 years of hands-on experience with IPC (very strong) and OAGO audits.
  • Minimum 5 years extensive experience in conducting comprehensive security Threat and Risk Assessment (TRA) using frameworks such as NIST CSF HTRA and ISO 27001. Risk Assessment mitigation recommendations and management with a strong focus on identifying vulnerabilities analyzing potential impacts and delivering actionable risk mitigation to stakeholders. 25 points
  • Minimum 5 years of extensive experience with Information security governance developing policies and standards with a strong ability to identify gaps between the current security posture and industry standards best practices and regulatory requirements. 25 points
  • 5 years of experience authoring executive-level reports developing cyber security program and risk registers and delivering presentations to stakeholders and senior leadership.



Employment Type : Full Time
Experience: years
Vacancy: 1
Monthly Salary Salary: 101 - 101
Create a job alert for this search

RQ00716 Security Specialist Senior • Toronto, Ontario, Canada

Similar jobs

Rq00671 - 2 X Sr. Security Specialist

Source CodeToronto, Canada
Full-time

Security Specialist2 openings - 2 submissions10-month contracts (195 business days)ONSITE 5 days - 525 University AvenueMust Haves:In-depth knowledge of risk management frameworks (e.ISO 31000, NIS... Show more

 • Promoted

RQ08753 - Security Specialist - Senior

Rubicon PathToronto, Ontario, Canada
Full-time

About the job RQ08753 - Security Specialist - Senior.Responsibilities: Defines, evaluates, and assesses security architecture requirements for systems environments and IT projects.Ensures the incor... Show more

 • Promoted

Senior Security Specialist – Vulnerability & Mss Lead - $42 - $59 An Hour

IT solutions providerEast York, Canada
Full-time

Seeking a Senior Security Specialist for Managed Security Services in Toronto, providing 2nd level support, mentoring, and managing technical issues.Requires degree or IT experience and security ce... Show more

 • Promoted

Security Specialist - Senior_10+yrs

Maarut IncToronto
Full-time

The Cyber Security Centre of Excellence (COE) is seeking one (1) Senior Cyber Security Specialist to support in strengthening Ontario’s cyber security infrastructure as the province collectively mo... Show more

 • Promoted

Senior Application Security Specialist

AIR MILES Reward ProgramToronto
Full-time

The AIR MILES Reward Program is one of Canada’s most recognized loyalty programs, with over 10 million active collector accounts, representing more than half of all Canadian households.AIR MILES co... Show more

 • Promoted

Rq00650 - Sr. Security Specialist

Source CodeToronto, Canada
Full-time

Security Specialist1+ year contract (260 business days) - possible extensionONSITE 5 days -200 Front St WestNOTEProvide after‐hours support as required for security events or high‐priority operatio... Show more

 • Promoted

Enterprise Security Specialist

Cprvisionwhitchurch stouffville, on, Canada
Full-time

Enterprise Security Specialist.Location: Stouffville, ON • Department: R&D • Reports to: Chief Technology Officer (CTO) • Salary: $120,000 - $135,000 • Openings: 1.Lead the development, implementat... Show more

 • Promoted

Intact Senior Security Specialist

IntactToronto, ON, CA
Full-time

Join Intact as a Senior Security Advisor, focusing on Vault management and security architecture.Utilize your expertise in AWS and GCP to drive security strategies.You will manage the deployment an... Show more

 • Promoted

Senior Security Specialist – Vulnerability & Mss Lead - $42 - $59 An Hour

CDW CanadaToronto County, Canada
Full-time

Senior Security Specialist needed to provide technical support, mentor staff and manage complex technical issues. Show more

 • Promoted

Senior Specialist Application Security - $122,305 - $163,639 A Year

ipss inc.East York, Canada
Full-time

This role provides strategic and operational guidance for application security, enhancing cloud-native security and integrating DevSecOps. Show more

 • Promoted

Senior Security Engineer

CohereToronto, Canada
Full-time

Who are we?Our mission is to scale intelligence to serve humanity.We're training and deploying frontier models for developers and enterprises who are building AI systems to power magical experi... Show more

 • Promoted

Lead - Vulnerability Perimeter Protection Security Specialist

Covenant HRToronto, ON, CA
Full-time

Our esteemed client is a leading financial services organization operating in the banking sector, recognized for its commitment to innovation, cybersecurity excellence, and enterprise-scale technol... Show more

 • Promoted

Sr. Specialist Risk Assessment - C$123,833 - C$170,184 A Year

CityNorth York, Canada
Full-time

Responsible for supporting the CISO in executing cyber vision, strategy, and goals, focusing on advising and delivering technical expertise related to cloud security initiatives across the City&#39... Show more

 • Promoted

Offensive Security Senior Engineer Role

PheedLoopToronto, Ontario, Canada
Full-time

Join PheedLoop as a Senior Security Engineer focusing on offensive security and vulnerability management.This role is vital for safeguarding high-stakes events.In this position, you will lead red-t... Show more

 • Promoted

Senior Security Engineer

RootlyToronto
Full-time

About Rootly: At Rootly, we are on a mission to be the go-to way companies respond when things go wrong, helping every organization be more reliable.We do this by building an industry-leading incid... Show more

 • Promoted

Palo Alto Security SME - Implementation

Tech Talent Internationaltoronto, on, Canada
Full-time

About the job Palo Alto Security SME - Implementation.Fortune 100/500/1000 and other companies in Canada/US.We are currently hiring for a Palo Alto Security SME - Implementation for our IT infrastr... Show more

 • Promoted

Security Specialist - $95,500 - $119,400 A Year

Beem Credit UnionToronto County, Canada
Full-time

Security Specialist to enhance threat detection, incident response, and cloud security using Microsoft Azure technologies, SIEM, and automation.Responsible for SOC capabilities and MSSP oversight. Show more

 • Promoted

Senior Radiation Risk Management Expert

Arcadismarkham, on, Canada
Full-time

Elevate your career as a Senior Nuclear Practice Leader at Arcadis, leading innovative radiological projects and mentoring professionals in the Radiation Risk Management sector.Arcadis seeks a Seni... Show more

 • Promoted

Security Specialist -- Siem Technologies - $33.3 - $46.5 An Hour

CdwToronto County, Canada
Full-time

Provide second-level cybersecurity incident response and client support specializing in Microsoft Sentinel and Defender.Responsibilities include monitoring, investigation, remediation, and service ... Show more

 • Promoted

Senior Cyber Security Specialist - $100,200 - $137,700 A Year

AtkinsRéalisToronto County, Canada
Full-time

Seeking a Cyber Security Specialist to advise on security and risk for critical infrastructure, focusing on OT/ICS environments.Responsibilities include risk assessment, compliance, and client mana... Show more