Int. Security Architect to define, evaluate, and asses security architecture requirements for compliance (PCI DSS, NIST) and risk assessment (NIST / ISF IRAM) projects - RQ
Location : Toronto (Hybrid - 2 days per week on-site)
Duration : 6 months (possibility of extension)
Must Haves :
- 6-8 years’ experience working in a security architect or similar role.
- Knowledge of regulatory and assurance compliance requirements including ISF SOGP, NIST, SSAE16 / 18 (SOC 1,2 3), PCI DSS 3.2+, and Data Privacy.
- Experience with risk assessment methodology (ISF IRAM, NIST)
- Experience in reviewing system security measures and able to recommend / design / architect missing security controls.
- Experience in implementing zero trust architecture
- Experience in building strategy and roadmaps for information, and security initiatives (IT and OT)
- Experience in designing security controls for SaaS, PaaS and IaaS
Responsibilities :
- Defines, evaluates, and assesses security architecture requirements for systems environments and IT projects.
- Develops technical architecture, framework and strategies to meet the business and application requirements.
- Ensures the incorporation of IT security and contingency measures in the development of systems.
- Advises on the identification, analysis, and resolution of specific security factors, risks, vulnerabilities; protection of personal privacy issues;
and appropriate industry and international security standards.
- Review application and program design or technical infrastructure design to ensure adherence to standards and to recommend performance improvements.
- Analyze and evaluate alternative technology solutions to meet business problems.
30+ days ago