Business Information Security Officer

3 weeks ago


Montréal QC, Canada WSP Full time

Position Summary

WSP’s Information Security Office (ISO) is responsible for the deployment of the information security framework in to both the IT organization and wider business community. This includes the Governance mechanisms, policies and processes, tools and technologies, and employee training required to protect WSP information and that of our clients. 

The role of Business Information Security Officer – Corporate works directly with WSP’s Global IT organization and with our other Corporate Services such as HR, Finance and Health and Safety. It is a primarily internally facing role, though it may involve some interaction with clients and third parties. The role has a dual  reporting relationship to the CISO and to the CIO.  

This position requires a senior management professional with relevant experience and a strong working knowledge of IT security, risk management, regulatory compliance, information and public cloud service technology, IT operations management principles, and third-party security management.

Responsibilities :

  • Working directly with business leadership at all levels of the organisation to deliver an effective, world class information security program. 
  • Establish and maintain the Information Security Governance framework; including running the Information Security Committee; coordinating IS risk management, executive reporting and participate in other forums where information security input and approval is required based on documented policies and processes.
  • Implementing and Operating the ISO270001 aligned Data and Information Security Management System.
  • Enhancing the security culture within Global IT and Corporate Services, driving business change initiatives and owning security e-learning.
  • Developing and maintaining an understanding of IS requirements, including regulatory/legal requirements. Working with key stakeholders, including the Head of Legal and Corporate leads to provide input and security assurance for new bids and acquisitions.
  • Working with the corporate IT teams and providing security guidance for new IT projects (working with the Security Architect function where needed)
  • Liaise with the relevant functions – Risk Management, Commercial, HR, Legal, Compliance, Procurement, Facilities / Physical Security - to ensure IS coordination and risk management. 
  • The management and co-ordination of any security incident response. 
  • Provide SME and guidance on any security needs or requirements. Act as an advisor to the Corporate Services leads on all information security related matters.
  • Work with the CISO and ISO on the Global Information Security Framework; contributing to the development of new processes, identifying and resolving risks and providing regular reports on security matters and metrics. 

Leadership and People Responsibilities:

  • Displays leadership and independence in performing their role, with an ability to make complex decisions with limited input and review from senior staff.
  • High level of personal integrity, and the ability to professionally handle confidential matters and exude the appropriate level of judgment and maturity.
  • Assist in the training, and coaching of new and existing staff, and provide coaching to staff executing all aspects of information security and risk assessment and support. 
  • Develop positive working relationships with other team members and business partners and partner across teams to align with WSP internal and external client demands.
  • Capable of rapidly assimilating and internalizing complex business, technology, and risk management concepts and dependencies.
  • Capable of clearly defining, presenting and selling recommended strategies to senior management teams.
  • Critical thinker with strong problem-solving skills, project management skills; financial/budget management, scheduling and resource management. 
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate between specialized groups of business unit and IT professionals.
  • Accommodation of schedule for international conference calls.

Finance/Budgetary Responsibilities: 

  • Support the CISO in developing the budget projections based on objectives

Requirements:

Required

  • 8+ years related senior level experience in Information Security, IT risk, IT Audit or a similar position involving IT and business change
  • Graduate of a four-year college or university, preferably with a degree in computer science or information management, or Professional certification in one or more of the following disciplines — IT governance (e.g., CGEIT), security (e.g., CISSP, CISM), internal audit (CISA) or Payment Card Industry (PCI)
  • Working (not necessarily technical) knowledge of security technologies (encryption, data protection, network intrusion prevention, host intrusion prevention, firewalls, privilege access, etc.)
  • Working (not necessarily technical) knowledge of enterprise IT security concerns and technologies, including but not limited to VPNs, network security, encryption, authentication, application-level network protocols, PKI, IPSec, Firewall, SSH, SSL, DES, LAN/WAN, and TCP/IP
  • Knowledge of security best practices (applications, network and client setups)
  • Experience with IT Governance frameworks such as COBIT, ITIL and ISO 2700x
  • Experience with governance, compliance and audit within IT environments
  • Experience of risk management, including risk analysis, mitigation and monitoring
  • Knowledge of information security regulations applicable to WSP 

Preferred

  • Master's degree in IT, Computer Science, Engineering or related field
#J-18808-Ljbffr

  • Montréal, Canada WSP Full time

    **Position Summary** WSP’s Information Security Office (ISO) is responsible for the deployment of the information security framework in to both the IT organization and wider business community. This includes the Governance mechanisms, policies and processes, tools and technologies, and employee training required to protect WSP information and that of our...


  • Montréal, Canada WSP Full time

    **Position Summary** WSP’s Information Security Office (ISO) is responsible for the deployment of the information security framework in to both the IT organization and wider business community. This includes the Governance mechanisms, policies and processes, tools and technologies, and employee training required to protect WSP information and that of our...


  • Montréal, Canada Business Development Bank of Canada Full time

    We are banking at another level. Choosing BDC as your employer means working in a healthy, inclusive, and skilled workplace that puts forward the best conditions to bring together unique teams where employees are empowered to act. It also means being at the centre of ambitious economic and financial projects to see further and to do things differently, to...


  • Brossard, QC, Canada Hydro One Full time

    Hydro One is proud to be the largest electricity transmission and distribution provider in Ontario, serving nearly 1.4millioncustomers. Since then, we have worked to grow and evolve to meet the changing needs of our customers and communities across Ontario. Today, we’re focused on providing exceptional customer service and ensuring we are building safe...


  • Brossard, QC, Canada Aviva Full time

    Aviva Our global corporate website for investors, shareholders, career hunters, the media and people interested in our social purpose. View company page Individually we are people, but together we are Aviva. Individually these are just words, but together they are our Values – Care, Commitment, Community, and Confidence. The Identity and Access...


  • Brossard, QC, Canada CIBC Full time

    CIBC Bank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered. View company page We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients. At CIBC, we embrace your strengths and your...


  • Brossard, QC, Canada Magna International Full time

    Analyst, Cyber Security & Information Governance Magna International Magna. Forward. For all. Explore how Magna´s advancements in mobility help build a better world for everyone and everything. View company page About us We see a future where everyone can live and move without limitations. That’s why we are developing technologies, systems and...


  • Brossard, QC, Canada CIBC Full time

    CIBC Bank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered. View company page We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients. At CIBC, we embrace your strengths and your...


  • Montréal, Canada Desjardins Full time

    At Desjardins, we believe in equity, diversity and inclusion. We're committed to welcoming, respecting and valuing people for who they are as individuals, learning from their differences, embracing their uniqueness, and providing a positive workplace for all. At Desjardins, we have zero tolerance for discrimination of any kind. We believe our teams should...


  • Montréal, Canada BLACKBIRD SECURITY INC. Full time

    **Prêt à faire la différence.** Êtes-vous déterminé à protéger votre communauté? Blackbird Security cherche à embaucher des **Fin de Semaine Agents de sécurité **à **Montreal, Québec **pour des sites de vente au détail haut de gamme. **Description de tâches** - Prévenir le vol à l'étalage en établissant une forte présence de...


  • Brossard, QC, Canada Horangi Cyber Security Full time

    Cloud Security Research Engineer, Philippines Horangi Cyber Security Leading cyber security firm in Asia, offering advanced cyber security products and services, including consulting. We specialize in equipping businesses with robust security solutions and expert guidance to navigate the digital landscape... View company page Horangi – A Bitdefender...


  • Montréal, QC, Canada Cyber Crime Full time

    Ubisoft Welcome to the official website for Ubisoft, creator of Assassin's Creed, Just Dance, Tom Clancy's video game series, Rayman, Far Cry, Watch Dogs and many others. Learn more about our breathtaking games here! View company page The incumbent will play a pivotal role in ensuring the safety and security of our Pan-Canadian Studios;...


  • Montréal, Canada BLACKBIRD SECURITY INC Full time

    **Ready to make a difference.** Are you committed to protecting your community? Blackbird Security is seeking to hire **Overnight Security Agents** in **Montreal, QC **for a variety of sites (retail, warehouses, residential) **What you will do** - Establish a strong security presence to deter crime and theft - Provide excellent customer service to our...

  • Cctv Monitoring

    3 days ago


    Montréal, Canada BLACKBIRD SECURITY INC. Full time

    Ready to make a difference. Are you committed to protecting your community? Do you want to prevent theft and create a safer environment? Blackbird Security is seeking to hire CCTV Monitoring - Loss Prevention Agents in **Montréal, QC** **What you will do** As a CCTV Monitoring guard you will be responsible for carefully monitoring customer sites...


  • Montréal, QC, Canada Noverka Conseil Full time

    At Noverka, our values illustrate who we are and define our convictions: Human, Transparent, Passionate. We are driven by innovation and success, both in our relationships and in our practices. Finding the right job for the right person is what we do best! Our client, an organization in the Insurance field is looking for a SECURITY ANALYST Network...


  • Brossard, QC, Canada City of Toronto Full time

    CATEGORY MANAGEMENT LEAD (Information Technology & Cyber Security Categories) Job Category: Finance, Accounting & Purchasing Work Location: City Hall,100 Queen Street West Job Type & Duration: Full-Time,PermanentVacancy Shift Information: Monday to Friday, 35 hours per week Affiliation: Non-Union Number of Positions Open: 1 Posting Period:02-Feb-2024to...


  • Montréal, QC, Canada Ubisoft Full time

    Welcome to the official website for Ubisoft, creator of Assassin's Creed, Just Dance, Tom Clancy's video game series, Rayman, Far Cry, Watch Dogs and many others. Learn more about our breathtaking games here! The incumbent will play a pivotal role in ensuring the safety and security of our Pan-Canadian Studios; employees, contractors, visitors, assets, and...


  • Montréal, Canada BLACKBIRD SECURITY INC. Full time

    **Ready to make a difference.** Are you committed to protecting your community? Blackbird Security is seeking to hire **On-Call / Casual Security Guards** in **Montreal, QC **for various sites. **What you will do** - Establish a strong security presence to deter crime and theft - Provide excellent customer service to our clients, customers and patrons -...


  • Montréal, Canada Universite Concordia Full time

    **Open Positions: PhD and MASc, Information Systems Security**: Last updated: April 17, 2024, 4:23 p.m. Multiple PhD and MASc student positions are available at Concordia University's Security Research Centre. The hired students will work on emerging topics of cybersecurity operations using artificial intelligence with the researchers from the Security...


  • Montréal, Canada Fivesky Full time

    Do you work with Global cybersecurity teams to assess, guide and rewrite policies and standards? Are you collaborating at all levels within your organization to enhance policies, ensure compliance, and support policy adoption efforts? If this sounds like you, you might be Fivesky's **_Information Security Policy Analyst!_** **Who you are**: - 5-7 + years...