Specialist , Cybersecurity Assurance

4 weeks ago


Canada Air Canada Full time
Specialist , Cybersecurity Assurance - 33260

Location:DORVAL,QC,Canada
Posting Start Date: May 30, 2023
Posting End Date: Ongoing

Being part of Air Canada is to become part of an iconic Canadian symbol, recently ranked the best Airline in North America. Let your career take flight by joining our diverse and vibrant team at the leading edge of passenger aviation.

The Specialist, Cyber Security will be working in a fast paced and innovative environment supporting the overall security posture of Air Canada’s technology environment. Air Canada’s cyber security systems are foundational to protecting the data and systems that allow its customers to fly safely.


The Specialist, Cyber Security acts as a cyber security subject matter expert and provides guidance concerning the cyber security assurance program, cyber risks and compliance for Air Canada and its affiliates. He/she will evaluate Air Canada’s existing security systems to determine potential cybersecurity risks, provide inputs on security requirements for personal, commercial and financial data as well as the operation of Air Canada IT networks and infrastructure. Cyber security threats continue to evolve, and the Cyber Security team will evolve with it.


This position will be reporting to the Manager, Cyber Security, Assurance

Functional Accountabilities 

Leads the execution of cyber assurance activities including but not limited to penetration tests, application security testing, tabletop exercises.

Collaborates with Strategic Procurement for the sourcing exercise and on-boarding of the third-parties for the execution of cyber assurance activities.

Collaborate with different internal stakeholders (such as Advisory, DevOps, Architecture, Project team) to prepare and execute cyber assurance activities.

Review, interpret and recommend remediations based on cybersecurity testing reports (such as SAST, DAST and penetration test).

Validates the results of cyber assurance activities with the internal and external stakeholders.

Leads the execution of third-party cyber risk assessments (pre and post contacting, and ongoing monitoring) to ensure compliance with internal information security policies and procedures, as well as external requirements.

Ensures that cybersecurity clauses are embedded in the agreements with third parties.

Manage cybersecurity risks, vulnerabilities, and defects from identification to remediation.

Performs risk assessments, documents them and support the implementation of mitigating controls consistent with company strategy.

Generate reports to demonstrate cyber assurance metrics and KPI.

Identify Cyber risks, communicate and develop “best practice” solutions, and recommend mitigating controls consistent with company strategy.

Introduce new processes, initiatives to improve cyber assurance practice.

Represent the organization and take an active participation on different IT business or security airline specific forums.

Supporting the leadership team on strategic initiatives specific to the respective portfolio.

Qualifications

A relevant University degree/technical certification, and/or relevant experience commensurate to the role

6-8 years of IT technology, operations, and people leadership experience in a large company, with a minimum of 4 years of experience in a cyber security and/or risk & compliance role.

Extensive application security, SDLC and integration understanding.

Thorough understanding of Application Security Testing, Penetration Test, Tabletop Exercises.

Current information security certification (CISSP, CISM or equivalent) is an asset.

Strong knowledge and understanding of cyber security concepts, protocols, industry best practices, strategies, frameworks and regulations such as SOX, PCI DSS, ISO, CoBIT, NIST, PIPEDA, GDPR.

Exceptional analytical, organizational and communication skills.

Self-motivated and independent worker.

Possess investigative nature and be self-motivated.

Results oriented with proactive and methodical approach to problem solving.

Able to multi-task and work under pressure against tight deadlines and changing priorities.

Must be a team player with ability to work closely with diverse groups and working styles.

Ability to establish and maintain effective business relationships.

Flexibility and willingness to work extended hours, when required.

Conditions of Employment:

Candidates must be eligible to work in the country of interest, at the time any offer of employment is made and seeking any required work permits/visas or other authorizations which may be required is the sole responsibility of the candidates applying for this position.

Linguistic Requirements

Based on equal qualifications, preference will be given to bilingual candidates.



Diversity and Inclusion

Air Canada is strongly committed to Diversity and Inclusion and aims to create a healthy, accessible and rewarding work environment which highlights employees’ unique contributions to our company’s success.

As an equal opportunity employer, we welcome applications from all to help us build a diverse workforce which reflects the diversity of our customers, and communities, in which we live and serve.

Air Canada thanks all candidates for their interest; however only those selected to continue in the process will be contacted.

Indicates an external site which may not meet accessibility guidelines.

#J-18808-Ljbffr

  • Canada Air Canada Full time

    Description Being part of Air Canada is to become part of an iconic Canadian symbol, recently ranked the best Airline in North America. Let your career take flight by joining our diverse and vibrant team at the leading edge of passenger aviation. The Specialist, Cybersecurity will be working in a fast paced and innovative environment supporting the...


  • Canada BBA Consultants Full time

    Senior Industrial Control Systems (ICS) Cybersecurity Specialist Join BBA to be part of a team of talented individuals who are passionate about success and driven to exceed expectations in delivering the best to our clients. You’ll also have the opportunity to work on challenging and rewarding projects, guiding and supporting colleagues who share a...


  • Canada BBA Consultants Full time

    Senior Industrial Control Systems (ICS) Cybersecurity Specialist You’ll also have the opportunity to work on challenging and rewarding projects, guiding and supporting colleagues who share a commitment to learning and pushing boundaries. Coordination of technical teams to ensure project success Use of the professional network to generate business...


  • Canada M87 Cyber Security Inc. Full time

    We are always on the lookout for amazingtalent who can contribute to our growth and deliver results! M87 Cybersecurityis seeking a Cybersecurity Operations Specialist responsible for developing athorough understanding of our security systems and programs to secure ourinfrastructure. If you love technology and are eager to join our team — wewould love to...


  • Canada Payshepherd Full time

    Job Title: QA Specialist Join Our Remote Team & Shape the Future of Procurement Are you a design enthusiast ready to leave your mark on the tech industry? Welcome to PayShepherd, a trailblazer in the world of procurement. We're using cutting-edge technology to save heavy industries worldwide from losing trillions of dollars each year due to inefficient...


  • Canada Laces Group Inc. Full time

    QUALITY ASSURANCE SPECIALIST IMPORTER INC. - Montréal, QC Based in Montreal, Quebec with offices in New York, NY and New Castle, DE, Laces Group Inc. ("Laces" or the "Company") is a leading designer, marketer, manufacturer and distributor of everyday bath and home products. The Company sells its products to over 500 customers and over 35,000 storefronts in...


  • Canada M87 Cyber Security Inc. Full time

    M87 Cybersecurityis seeking a Cybersecurity Operations Specialist responsible for developing athorough understanding of our security systems and programs to secure ourinfrastructure. As a Security Operations Specialist, you will play a pivotal role in strengthening our clients' securityposture. Expertly utilizing forensic tools tolocate the root cause of...


  • Canada Autodesk, Inc. Full time

    Software Quality Assurance Specialist page is loaded Software Quality Assurance Specialist Apply locations Toronto, ON, CAN time type Full time posted on Posted 2 Days Ago job requisition id 24WD77647 Job Requisition ID # 24WD77647 Position Overview Fusion is the first 3D CAD, CAM, CAE, and PCB tool of its kind, unifying design, engineering,...

  • Technical Specialist

    3 weeks ago


    Canada Thales e-Security, Inc. Full time

    Technical Specialist - Safety Assurance page is loaded Technical Specialist - Safety Assurance Apply remote type Remote locations Remote Canada time type Full time posted on Posted Yesterday job requisition id R1004997 Location: Remote Canada, CanadaChez Thales, nos collaborateurs créent des solutions pour 85 millions de trajets quotidiens sur des lignes...


  • Canada Webhorse Technologies Full time

    Webhorse is seeking an SEO/Online Marketing Specialist. Use your skills to optimize our online presence, drive web traffic, and elevate our brand in the digital space of the Arctic region. Welcome to Webhorse Technologies, the leading managed service provider operating in the Canadian Arctic. We specialize in designing and implementing comprehensive IT...


  • Canada NexGedia Enterprise Full time

    1 month ago Be among the first 25 applicants Title: MS D365 F&O specialist. Location: Montreal, Hybrid. Start date: As soon as possible. Language: Bilingual (French & English). Duration: permanent fulltime. Our client designs and implements Microsoft Dynamics 365 solutions to multiple industries. A leader in delivering state-of-the art Enterprise...


  • Canada Payshepherd Full time

    Job Title: QA Specialist Join Our Remote Team & Shape the Future of Procurement Are you a design enthusiast ready to leave your mark on the tech industry? Do you want to work from the comfort of your home while making a real impact? If so, we've got the perfect opportunity for you. Welcome to PayShepherd, a trailblazer in the world of procurement....


  • Canada Elastify Full time

    Elastify is looking for a Senior Cybersecurity Specialist for a remote 6 month contract with a client in Vancouver. The role can be done from anywhere in Canada (PST hours). Please apply for more details.Looking for a generalist security engineer. Someone who has a good mixture of Cloud, Network and operations securityYou will help in setting and securing...


  • Canada Symbiotic Group Full time

    DND-DSEF Quality Assurance Specialists (Multiple Positions) Contract | Symbiotic Digital | Canada Posted On 06/12/2023 Job Description Position: DND-DSEF Quality Assurance Specialist (Multiple Roles – Jr.,Int,Sr) Job ID#: Start Date: July 2023 Duration: Contract:12 months (Extendable) / or Permanent Security Clearance Required: Secret Clearance...


  • Canada NCC Group Full time

    Technical Implementation Specialist page is loaded Technical Implementation Specialist Apply locations Delft time type Full time posted on Posted 8 Days Ago job requisition id R6366 Jouw rol als Technical Implementation Specialist Vanuit de afdeling Managed Services implementeer jij onze Splunk en/of Carbon Black Cloud cyber security dienst bij onze...


  • Canada Elastify Full time

    Elastify is looking for a Senior Cybersecurity Specialist for a remote 6 month contract with a client in Vancouver. The role can be done from anywhere in Canada (PST hours). Please apply for more details.Looking for a generalist security engineer. Someone who has a good mixture of Cloud, Network and operations securityYou will help in setting and securing...


  • Canada Elastify Full time

    Elastify is looking for a Senior Cybersecurity Specialist for a remote 6 month contract with a client in Vancouver. The role can be done from anywhere in Canada (PST hours). Please apply for more details. Looking for a generalist security engineer. Someone who has a good mixture of Cloud, Network and operations security You will help in setting and securing...


  • Canada Lastpass Full time

    Our mission within the GRC team is to foster a unified environment that promotes effective and efficient risk management. This not only builds customer trust but also encourages innovation and seamlessly integrates governance into business workflows. You will work with all areas of the organization in the context of processing security requests internally,...


  • Canada Lastpass Full time

    LastPass is looking for an Associate GRC Analyst: You will be apart of the LastPass Security and Privacy GRC Team. This position is pivotal for stakeholder engagement, decision support, and assurance activities across both product and enterprise functions. Our mission within the GRC team is to foster a unified environment that promotes effective and...


  • Canada, CA DM Lyons Consulting Full time

    IT Support Specialist Salary 60-70KPosition Overview:Our client is seeking an experienced and knowledgeable IT Technician to join their team. The ideal candidate will possess a deep understanding of IT systems and infrastructure, with a focus on providing technical support, managing network operations, and implementing IT solutions. The IT Technician will...