- Full-time
Description
What NAV CANADA offers you:
- Challenging, team-oriented work environment
- Competitive compensation and benefits
- Defined benefit pension plan
- Opportunities for growth and development
- Flexible work arrangements
- Diverse and inclusive workforce
Key Accountabilities
- Unify Enterprise Cyber Security technologies and architectural patterns by defining reference architectures, integration expectations, and guardrails that maximize interoperability, consistency, and enterprise-scale value.
- Define, maintain, and evolve cyber security architecture principles, patterns, and reference architectures aligned with enterprise strategy and risk tolerance.
- Apply a structured architecture model across IT, operational technology, and application environments using ISO/IEC 27001, IEC 62443, and ISO/IEC 27034.
- Identify and reduce architectural fragmentation by assessing overlaps, gaps, and inconsistencies across Enterprise Cyber Security capabilities and technologies.
- Ensure that security requirements are consistently addressed across reference architectures, solution designs, and platform implementations in alignment with recognized cybersecurity architecture workforce standards.
- Enable effective collaboration across Cyber Security Risk & Resilience, the Cyber Security Operations Centre, and Cyber Security Programs & Governance by establishing a shared architectural language and common security guardrails.
- Support the integration and adoption of Enterprise Cyber Security platforms and tools, emphasizing architectural coherence and broad interoperability over isolated implementations.
- Consume threat modelling outputs, threat intelligence, and risk context provided by specialized teams to inform architectural decision making.
- Design, recommend, or validate architectural controls and guardrails in response to identified threats, ensuring alignment with the enterprise cyber security architecture model.
- Review solution designs and architectural artifacts to ensure threat considerations are appropriately addressed through preventive, detective, and compensating controls.
- Apply operational technology-aware architectural principles informed by IEC 62443 when evaluating designs involving industrial or operational technology environments.
- Work with Enterprise Architecture to support formal architectural review processes by providing cyber security architecture input.
- Contribute to the development and maintenance of cyber security architecture standards, patterns, and supporting documentation.
- Monitor emerging technologies, threats, and industry practices to inform continuous improvement of Enterprise Cyber Security architecture.
- Demonstrate leadership through influence, collaboration, humility, and professional credibility rather than positional authority.
Job Requirements
Education:
- Degree from a recognized university or community college with specialization in computer science, systems engineering, information systems, or a related discipline; or an equivalent combination of education and experience.
Experience:
- A minimum of five years of experience in a cyber security architecture or enterprise architecture-related role.
- Experience applying security architecture principles within complex environments, including virtualization and platform technologies such as VMware or Nutanix, and hybrid cloud architectures.
- Experience participating in architectural review and design assurance processes.
- Experience working with dedicated threat modelling or risk teams and applying their outputs to architectural design and control selection.
- Demonstrated experience communicating complex technical concepts to diverse technical and non-technical audiences.
Knowledge:
- Strong knowledge of cyber security architecture frameworks and standards, including ISO/IEC 27001, IEC 62443, and ISO/IEC 27034.
- Knowledge of enterprise IT, operational technology, cloud, and application security considerations.
- Knowledge of secure system development lifecycles and modern delivery practices.
- Knowledge of cyber risk management and security governance models.
Abilities:
- Ability to analyze complex architectures and assess cyber security and risk implications.
- Ability to translate threat and risk context into clear architectural controls and guardrails.
- Ability to communicate clearly through written documentation and verbal presentations.
- Ability to influence outcomes across multiple stakeholder groups without direct authority.
- Ability to exercise sound judgment, flexibility, and humility when navigating competing priorities.
Personal Suitability:
- Demonstrated integrity, accountability, and professional judgment.
- Strong interpersonal, collaborative, and relationship-building skills.
- Strategic mindset and organizational awareness within a regulated, safety-critical environment.
Working conditions:
- Hybrid position with a minimum of three days per week on site.
- Travel may be required.
NAV CANADA is committed to building a skilled, diverse workforce reflective of Canadian society. If you do not believe that you match every job requirement listed on this job posting, we still encourage you to apply. NAV CANADA encourages a culture of learning and growth, and recognizes that although some technical skills are mandatory, many others can be taught.
Our Company strives to create an inclusive and barrier-free selection process and work environment. If you require accommodations during this competition process, please ensure that you inform the interview coordinator or hiring manager of any accommodation measures you may require. NAV CANADA will provide accommodations throughout the recruitment and selection process to applicants with disabilities as required.
The successful candidate must meet the security requirement of the position and be legally able to work in Canada.
We thank all applicants for their interest; only those selected for next steps will be contacted.
-