Vulnerability Management Lead

4 weeks ago


Montréal QC, Canada SGS Société Générale de Surveillance SA Full time

Responsibilities

ABOUT THE JOB:

The aim of Global Business Service Unit (GBSU) Canada is to deliver day-to-day services to Société Générale investment and corporate bank units and their clients to accelerate their transformation. GBSU differentiates itself from competitors with the pace of the agile transformation delivered, spreading the technology and data culture, shortening the decision-making process, and adopting a true industrial approach, leveraging on different teams either transversal or aligned to the different sub business units.

As the Vulnerability Management Lead, you will oversee the vulnerability management and configuration management program for the AMER region. This role demands excellent communication skills, both written and verbal, along with the ability to influence others effectively. The ideal candidate will demonstrate practical expertise in executing a robust vulnerability and/or configuration management program, including timely responses to emerging threats in the financial services sector. This position requires strong technical analysis capabilities and a knack for process improvement, coupled with the skill to present program status and enhancement proposals to senior management.

Preferred qualifications include a working knowledge of cybersecurity and risk assessment frameworks such as NIST, as well as familiarity with financial industry regulations like NYDFS 500, FINRA, and SEC. Reporting to the Director of Cyber Threat Defense (CTD) within the AMER Data and Cyber Security (DCS) department, the Vulnerability Management Lead collaborates closely with GBSU and GTS departments regionally and globally, in addition to engaging with SG CERT, DCS, and GTS teams.

What will be your DAY-TO-DAY?

Vulnerability & Configuration Management:

  • Lead AMER vulnerability & configuration programs, overseeing risk, patching, and remediation
  • Manage discovery, evaluation, and implementation of scanning, patching, and testing
  • Provide quarterly updates to senior management and align initiatives with InfoSec and business objectives
  • Conduct comprehensive vulnerability and patching reviews, reporting issues, and proposing solutions
  • Review and approve improvement recommendations and communicate emerging threats
  • Enhance reporting framework to provide regular metrics and statistics, reporting to key stakeholders
Profile required

Skills and Qualifications:

Knowledge and Experience:

  • 5-10 years of information security experience, with hands-on expertise in vulnerability management
  • Strong communication skills, capable of presenting to various levels, from technical to senior management
  • Proficiency in MS Office suite
  • Strong analytical, problem-solving, and process improvement skills
  • Familiarity with tools like Qualys, Windows Defender, or equivalent for vulnerability management preferred
  • Understanding of security best practices and risk assessment preferred

Education/Certifications:

  • Bachelor's degree in Cybersecurity, Computer Science, or Business Management, or equivalent experience
  • Preferred certifications: CISSP, CCSP, CISM, GSEC, CEH, or related security certifications

Languages: French and English

Ability to communicate in English, both orally and in writing, is a requirement as the person in this position will need to collaborate regularly with colleagues and partners in the United States .

Why join us

OUR BENEFITS:

WHAT WE DO DIFFERENTLY AT SOCIÉTÉ GÉNÉRALE

Competitive compensation & benefits offering, including but not limited to:

  • Minimum of 20 Vacation days+ 4personal days
    • Supportive Maternity, paternity, parental and adoption leave policy
    • Health spending($2,000/year) andpersonal spending($1,000/year)accountswith 75+ eligible reimbursement categories (health, training, electronics etc.)

Fully sponsored virtualhealthcare assistanceandEmployee Assistance Programto you and your immediate family

Various Employee Resource Groups(ERG) to engage withsuch as Pride and Allies, American Women Network, Black Leadership Network, One planet, etc.

  • Aculture of continuous developmentby encouraging our employees varioustraining programs(online training and coaching platform such as Coursera, GoFluent, Pluralsight, First Finance, and others)
Business insight

OUR CULTURE:
At Societe Generale, we live by our 4 core values of commitment, responsibility, team spirit and innovation. We are engaged and demonstrate consideration for others. We act ethically and with courage. We focus our talent and energy on collective success. We experiment and propose new ideas. This way, we maximize our ability to serve client needs and anticipate market changes. Societe Generale is committed to strengthening bonds with colleagues, communities, and the world in which we live, because relationships are at the heart of how we operate.
For more information about our Culture and Conduct initiatives, please visit this link (
D&I:
Our Diversity & Inclusion Mission: Recruit, develop, advance, and retain a diverse workforce that is united in our efforts to enhance our competitive position and deliver innovative solutions to our clients.

Our Diversity & Inclusion Vision:
• Engaged workforce that is demographically diverse in a way that reflects the communities in which we operate
• Inclusive culture and workplace that recognizes employees' unique needs and utilizes their diverse talents
• Engage our community and marketplace, and position the organization to meet the needs of all its clients

For more information about our D&I initiatives, please visit this link (

HYBRID WORK ENVIRONMENT:
Societe Generale offers a hybrid work arrangement that offers employees the flexibility to work remotely, as well as on-site, in order to promote interaction and collaboration with colleagues while adhering to all SG standard protocols. Hybrid work arrangements vary based on business area. The applicable Business lines will determine and communicate the work arrangements that best meet their business needs.

#J-18808-Ljbffr

  • Montréal, Canada Cogeco Communications Inc. Full time

    Our culture lifts you up—there is no ego in the way. Our common purpose? We all want to win for our customers. We aim to always be evolving, dynamic, and ambitious. We believe in the power of genuine connections. Each employee is a part of what makes us unique on the market: agile and dedicated. Time Type: Regular Job Description: SUMMARY OF...


  • Montréal, Canada Société Générale Full time

    **Responsibilities**: **ABOUT THE JOB**: The aim of Global Business Service Unit (GBSU) Canada is to deliver day-to-day services to Société Générale investment and corporate bank units and their clients to accelerate their transformation. GBSU differentiates itself from competitors with the pace of the agile transformation delivered, spreading the...


  • Montréal (St-Laurent ), Canada CAE Full time

    Role and Responsibilities Vulnerability Management AnalystIf you've taken a plane to any destination in the world, chances are, your pilot was trained by CAE. With its strong customer focus, the Digital Accelerator team is dedicated to elevating the training experience to make pilots the best they can be. Here are few reasons why folks love working at CAE ...


  • montréal, Canada QUANTEAM - North America (RAINBOW PARTNERS Group) Full time

    Vulnerability Management Specialist WHO WE ARE As the founding entity of RAINBOW PARTNERS, Quanteam is a consulting firm specializing in the fields of Banking, Finance, and Financial Services. Guided by our core values of closeness, teamwork, diversity, and excellence, our team of 1,000 expert


  • montréal, Canada QUANTEAM - North America (RAINBOW PARTNERS Group) Full time

    IT Infra & Cyber Security Specialist – Vulnerability Management WHO WE ARE As the founding entity of RAINBOW PARTNERS, Quanteam is a consulting firm specializing in Banking, Finance, and Financial Services. Guided by our core values of closeness, teamwork, diversity, and excellence, our team of 1,


  • Montréal, Canada WSP Full time

    **TEAM OVERVIEW** The M&A Operations team operates within the Global Security Operations and is comprised of engineers from various disciplines including server, storage, backup, network, and security, distributed in various countries throughout the world. The team is responsible for assessing and remediating the IT infrastructure of newly acquired...


  • Montréal, QC, Canada Tata Communications Full time

    Purpose - Broad objective of the role: Responsible for managing day to day network operations and maintenance, in the respective areas of Network/SDWAN/Cloud and security/Unified Collaboration/Mobility and IoT/other domains. This includes- customer change requests, platform uptime, incident management, problem management, CFT / OEM Interlock, and...


  • Montréal, QC, Canada Tata Communications Full time

    Purpose - Broad objective of the role: Responsible for managing day to day network operations and maintenance, in the respective areas of Network/SDWAN/Cloud and security/Unified Collaboration/Mobility and IoT/other domains. This includes- customer change requests, platform uptime, incident management, problem management, CFT / OEM Interlock, and...

  • Lead Consultant

    1 week ago


    Montréal, QC, Canada Genpact Full time

    Job Description:ResponsibilitiesThe main responsibilities include vulnerability remediation which would be the primary task.Should work on configuration, implementation, support of Sybase Database Production servers and technical guidance of junior team members.Understand business requirements and design solutions accordingly.Ensure quality standards in...

  • Lead Consultant

    1 week ago


    Montréal, QC, Canada Genpact Full time

    Job Description:ResponsibilitiesThe main responsibilities include vulnerability remediation which would be the primary task.Should work on configuration, implementation, support of Sybase Database Production servers and technical guidance of junior team members.Understand business requirements and design solutions accordingly.Ensure quality standards in...

  • Lead Consultant

    1 month ago


    Montréal, QC, Canada Genpact Full time

    Job Description: Responsibilities The main responsibilities include vulnerability remediation which would be the primary task. Should work on configuration, implementation, support of Sybase Database Production servers and technical guidance of junior team members. Understand business requirements and design solutions accordingly. Ensure quality...

  • Lead Consultant

    3 days ago


    Montréal, QC, Canada Genpact Full time

    With a startup spirit and 115,000 + curious and courageous minds, we have the expertise to go deep with the world’s biggest brands—and we have fun doing it! We dream in digital, dare in reality, and reinvent the ways companies work to make an impact far bigger than just our bottom line. We’re harnessing the power of technology and humanity to create...

  • Project Manager

    1 month ago


    Montréal, Canada Project Management Centre Full time

    PMC Project Managers report to a PMC Account Manager, and work directly with the client’s PMO and/or Project and Program Managers to deliver successful project outcomes. This position supports the management of a project or program and includes managing project teams in the completion of their deliverables, as well as being involved in the planning and...


  • Montréal, QC, Canada Aylo Careers Full time

    Established in 2004, we are a tech pioneer offering world-class adult entertainment and games on some of the internet’s safest and most popular platforms. With the support of an international team of dynamic and collaborative innovators, we are on a mission to enable safe user experiences and empower our communities by celebrating diversity, inclusion,...


  • Montréal, QC, Canada Z953 Full time

    At Stingray, creativity, collaboration, and innovative technology are the pillars of our DNA. Are you ready to rock your career by joining a growing company, a team of music enthusiasts in a stimulating and fun work environment? Become our AI Adoption Leader and drive Stingray’s transformation. Promote the adoption and integration of generative AI...


  • Montréal, QC, Canada Genpact Full time

    Genpact (NYSE: G) is a global professional services and solutions firm delivering outcomes that shape the future. Our 125,000+ people across 30+ countries are driven by our innate curiosity, entrepreneurial agility, and desire to create lasting value for clients. Powered by our purpose – the relentless pursuit of a world that works better for people – we...


  • Montréal, QC, Canada Genpact Full time

    With a startup spirit and 115,000 + curious and courageous minds, we have the expertise to go deep with the world’s biggest brands—and we have fun doing it! We dream in digital, dare in reality, and reinvent the ways companies work to make an impact far bigger than just our bottom line. We’re harnessing the power of technology and humanity to create...

  • Compliance Manager

    1 month ago


    Montréal, QC, Canada The Emerald Group Full time

    To support the Head of Compliance in ensuring that the Society and related entities conform with regulatory requirements and internal policies. Location: WFH Category: Compliance Type: Permanent Key duties (including, but not limited to): To support the Head of Compliance in ensuring that the Society has in place, and adheres to, appropriate systems...


  • Montréal, QC, Canada Genpact Full time

    With a startup spirit and 115,000 + curious and courageous minds, we have the expertise to go deep with the world’s biggest brands—and we have fun doing it! We dream in digital, dare in reality, and reinvent the ways companies work to make an impact far bigger than just our bottom line. We’re harnessing the power of technology and humanity to create...


  • Montréal, QC, Canada Genpact Full time

    Genpact (NYSE: G) is a global professional services and solutions firm delivering outcomes that shape the future. Our 125,000+ people across 30+ countries are driven by our innate curiosity, entrepreneurial agility, and desire to create lasting value for clients. Powered by our purpose – the relentless pursuit of a world that works better for people –...