See more Collapse

Cybersecurity Policy Consultant

1 month ago


Montréal QC, Canada Hays Full time

Cybersecurity Analyst – Application Vulnerabilities
Client : Metal recycling industry
Role : Cybersecurity Analyst – Application Vulnerabilities
Type : Permanent, full time
Location : Montreal, Hybrid (3-4 days a week)

Our client is a leading global organization at the forefront of technology and innovation. With a strong commitment to cybersecurity, we empower our IT team to safeguard critical systems and data.

As a Cybersecurity Analyst, you’ll play a pivotal role in protecting the client’s digital assets, detecting threats, and ensuring a secure environment for their employees and customers. Join them in shaping the future of cybersecurity

Cybersecurity Solution Design and Implementation : Develop and deploy strategies and tools to secure the company's IT assets.
Application vulnerability analysis and management : Identify, analyze and manage vulnerabilities in the company's software applications using specialized tools (SonarQube, Invicti, Qualys, etc.), SDLC Support : Collaborate closely with development teams to integrate security measures (DevSecOps) from the earliest phases of software development (Security by design), ensuring that security is a priority at every stage of the cycle.
Application Security Policy Definition : Establish and maintain security procedures for application development, including codification of secure coding best practices.
Participate in SecOps activities : Improve security posture through continuous monitoring, incident management, and rapid response.
Technology Watch : Stay informed of the latest trends and technologies in cybersecurity to anticipate and defend against new threats.
Training and mentoring : Provide training and guidance to developers on application security best practices and the importance of security in the development lifecycle.
Education : Degree in computer science, information security, or related field.
Technical skills : Mastery of application vulnerability management tools, Cloud development and in-depth understanding of software development processes including the DevSecOps approach.
Connaissances techniques : Azure, AzureDevOps, AzurePipeline, Apps Security (dotnet prefered), OWASP, Qualys, SonarQube, SAST et DAST tool.
Certifications : Certifications like CISSP, CEH, or CompTIA Security+ are preferred, with a particular focus on those focused on application security, such as GWAPT or CSSLP.
Analytical skills : Ability to analyze complex data and make recommendations based on analytics.
Interpersonal skills : Excellent communication skills and ability in English and French to collaborate effectively with development and security teams.

Analyste en cybersécurité - Vulnérabilités Applicatives

Rôle : Analyste en cybersécurité – Vulnérabilités Applicatives
Type : Permanent, temps plein
Lieu : Montréal, hybride (3-4 jours par semaine)

Notre client est une entreprise mondiale renommée, à la pointe de la technologie et de l'innovation. En se concentrant sur la cybersécurité, ils offrent à leur équipe informatique les moyens de protéger les systèmes et les données critiques.

En tant qu'analyste en cybersécurité, votre rôle sera d'assurer la protection des actifs numériques du client, de repérer les menaces et de garantir un environnement sécurisé pour ses employés et ses clients. Rejoignez-les pour forger l'avenir de la cybersécurité

Conception et mise en œuvre de solutions de cybersécurité : Développer et déployer des stratégies et des outils pour sécuriser les actifs informatiques de l'entreprise.
Analyse et gestion des vulnérabilités applicatives : Identifier, analyser et gérer les vulnérabilités dans les applications logicielles de l'entreprise en utilisant des outils spécialisés (SonarQube, Invicti, Qualys, ...), effectuer des scans réguliers et prendre des mesures correctives en collaborant avec les équipes de développements pour accompagner la résolution.
Accompagnement du SDLC : Collaborer étroitement avec les équipes de développement pour intégrer des mesures de sécurité (DevSecOps) dès les premières phases du développement logiciel (Security by design), en s'assurant que la sécurité est une priorité à chaque étape du cycle.
Définition des politiques de sécurité applicative : Établir et maintenir des procédures de sécurité pour le développement d'applications, y compris la codification des meilleures pratiques de codage sécurisé.
Participation aux activités SecOps : Améliorer la posture de sécurité à travers la surveillance continue, la gestion des incidents et la réponse rapide.
Veille technologique : Se tenir informé des dernières tendances et technologies en matière de cybersécurité pour anticiper et défendre contre les nouvelles menaces.
Formation et mentorat : Fournir une formation et des conseils aux développeurs sur les meilleures pratiques de sécurité applicative et sur l'importance de la sécurité dans le cycle de développement.
Formation : Diplôme en informatique, sécurité de l'information, ou domaine connexe.
Compétences techniques : Maîtrise des outils de gestion des vulnérabilités applicatives, développement Cloud et compréhension approfondie des processus de développement logiciel incluant l'approche DevSecOps.
Connaissances techniques : Azure, AzureDevOps, AzurePipeline, Apps Security (dotnet prefered), OWASP, Qualys, SonarQube, SAST et DAST tool.
Certifications : Certifications comme CISSP, CEH, ou CompTIA Security+ sont préférées, avec un intérêt particulier pour celles axées sur la sécurité des applications, comme GWAPT ou CSSLP.
Compétences analytiques : Capacité à analyser des données complexes et à formuler des recommandations basées sur des analyses.
Compétences interpersonnelles : Excellentes compétences en communication et capacité en Anglais et Francais à collaborer efficacement avec les équipes de développement et de sécurité.


We have other current jobs related to this field that you can find below


  • Montréal, Canada CTConsultants Full time

    **CTC007566 - Cybersecurity Advisor**: **Secteur industriel: Infrastructure**: **Type d'emploi: Contract**: **Durée: Eleven months**: **Mode de travail: Remote**: **Description**: Duration: 300 hours Possibility of extension: Yes Flexible hourly rate Remote: Hybrid. 10% in-office and 90% remote. Offices are in Montreal, Ottawa or...

  • Cybersecurity Advisor

    3 weeks ago


    Montréal, Canada American Iron and Metal Full time

    **Company Description** American Iron & Metal (AIM) is a family-owned company and recognized global leader in the metal recycling industry with more than 125 sites and 4000 employees worldwide. We have continued to prosper for the last eight decades thanks to the dedication of our employees and the ongoing trust and support of our customers. Become part of...

  • Cybersecurity Advisor

    1 month ago


    Montréal-Est, Canada American Iron and Metal Full time

    Job DescriptionWe are looking for an experienced, dynamic and competent Cybersecurity Advisor to strengthen our security team. The selected candidate will be responsible for developing robust cybersecurity solutions, conducting detailed risk analyses, and designing robust security frameworks and ensuring the highest standards.Develop and implement...

  • Cybersecurity Advisor

    4 weeks ago


    Montréal-Est, Canada American Iron and Metal Full time

    Job DescriptionWe are looking for an experienced, dynamic and competent Cybersecurity Advisor to strengthen our security team. The selected candidate will be responsible for developing robust cybersecurity solutions, conducting detailed risk analyses, and designing robust security frameworks and ensuring the highest standards.Develop and implement...

  • Cybersecurity Advisor

    2 weeks ago


    Montréal-Est, Quebec, Canada American Iron & Metal Full time

    Company Description American Iron & Metal (AIM) is a family-owned company and recognized global leader in the metal recycling industry with more than 125 sites and 4000 employees worldwide. We have continued to prosper for the last eight decades thanks to the dedication of our employees and the ongoing trust and support of our customers. Become part of...


  • Montréal, Canada CTConsultants Full time

    **CTC007567 - Cybersecurity Analyst**: **Secteur industriel: Infrastructure**: **Type d'emploi: Contract**: **Durée: Eleven months**: **Mode de travail: Remote**: **Description**: Duration: 6000 hours Possibility of extension: Yes Flexible hourly rate Remote: Hybrid. 10% in-office and 90% remote. Offices are in Montreal, Ottawa or...


  • Montréal, Canada International Civil Aviation Organization - ICAO Full time

    Job Opening **Posting Title**: - Aviation Cybersecurity and Aviation Security Coordination Consultant**Department/Office**: - International Civil Aviation Organization**Duty Station**: - MONTREAL**Posting Period**: - 06 April 2023 - 21 April 2023**Job Opening Number**: - 23-International Civil Aviation Organization-206395-Consultant**Staffing...

  • Cybersecurity Analyst

    2 months ago


    Montréal, Canada CIMA+ Full time

    **Welcome to a place where people are at the heart of everything we do.** Welcome to people with an inspiring vision and who seek stimulating challenges. At CIMA+, you’ll find a place where you’ll have many opportunities to learn and develop while working on engaging projects. We are a firm 100% owned by its employees and we value a collaborative and...

  • Cybersecurity Analyst

    1 month ago


    Montréal, QC, Canada Hays Full time

    Cybersecurity Analyst – Application VulnerabilitiesClient: Metal recycling industryRole: Cybersecurity Analyst – Application VulnerabilitiesSalary: CompetitiveType: Permanent, full timeLocation: Montreal, Hybrid (3-4 days a week)Your new company:Our client is a leading global organization at the forefront of technology and innovation. With a strong...

  • Cybersecurity Analyst

    1 month ago


    Montréal, QC, Canada Hays Full time

    Cybersecurity Analyst – Application VulnerabilitiesClient: Metal recycling industryRole: Cybersecurity Analyst – Application VulnerabilitiesSalary: CompetitiveType: Permanent, full timeLocation: Montreal, Hybrid (3-4 days a week)Your new company:Our client is a leading global organization at the forefront of technology and innovation. With a strong...


  • Montréal, Canada BBA inc. Full time

    **Type of position**: Regular Looking to advance your career with us? Join BBA to be part of a team of talented individuals who are passionate about success and driven to exceed expectations in delivering the best to our clients. You'll also have the opportunity to work on challenging and rewarding projects, guiding and supporting colleagues who share a...


  • Montréal, Canada Transat AT Full time

    Company Description **Be part of the journey!** Come aboard a committed and human company that needs you! Why should you join our team? We offer the pride of working for a local company with an international reach, with professionals who are passionate about travel! You will evolve in a stimulating telecommuting environment where team cohesion is...


  • Montréal, Canada Fivesky Full time

    Do you work with Global cybersecurity teams to assess, guide and rewrite policies and standards? Are you collaborating at all levels within your organization to enhance policies, ensure compliance, and support policy adoption efforts? If this sounds like you, you might be Fivesky's **_Information Security Policy Analyst!_** **Who you are**: - 5-7 + years...


  • Montréal, Canada Fivesky Full time

    Do you work with Global cybersecurity teams to assess, guide and rewrite policies and standards? Are you collaborating at all levels within your organization to enhance policies, ensure compliance, and support policy adoption efforts? If this sounds like you, you might be Fivesky's **_Information Security Policy Analyst!_** **Who you are**: - 5-7 + years...


  • Montréal, Canada Fivesky Full time

    Do you work with Global cybersecurity teams to assess, guide and rewrite policies and standards? Are you collaborating at all levels within your organization to enhance policies, ensure compliance, and support policy adoption efforts? If this sounds like you, you might be Fivesky's **_Information Security Policy Analyst!_** **Who you are**: - 5-7 + years...


  • Montréal, Canada Eaton Corporation Full time

    Eaton’s EPG EAS Electrical Automation Solutions division is currently seeking a Cybersecurity Project Manager. **What you’ll do**: The Cybersecurity Project Manager will be leading all cybersecurity projects across Eaton Electrical Sector. **In this role you will**: - Coordinating with project stakeholders and cross-functional teams to document...


  • Montréal, Canada ALSTOM Full time

    Req ID:400799 Imagine playing a central role in reducing the carbon footprint of Canada’s busiest public transit system and doing so with a consistently ranked Top Employer with a global reach. As part of the ONxpress consortium, Alstom is proudly working to transform the collective mobility of the Greater Toronto and Hamilton areas (GTHA) through the...


  • Montréal, Canada ALSTOM Full time

    Req ID:400799 Imagine playing a central role in reducing the carbon footprint of Canada’s busiest public transit system and doing so with a consistently ranked Top Employer with a global reach. As part of the ONxpress consortium, Alstom is proudly working to transform the collective mobility of the Greater Toronto and Hamilton areas (GTHA) through the...


  • Montréal, Canada United Nations Full time

    Result of Service Work Location Montreal Expected duration 6 Month **Responsibilities**: Under the guidance of the DD/ADB HR, undertake the following functions: 1. Policy Review and Analysis: Assesses, reviews, analyzes and revises existing HR policies and procedures in order to identify best practices and business-critical gaps in HR policies, guidance...


  • Montréal, Canada National Bank Full time

    As a Senior Cybersecurity Advisor at the National Bank of Canada, you demonstrate pragmatism and agility in approaching opportunities, technologies, and processes from a cybersecurity perspective. In addition to assessing and continuously improving the cybersecurity risk posture of your assigned application portfolio, you foster a positive work environment...