Senior Manager/Manager

3 weeks ago


Brossard QC, Canada CIBC Full time

Bank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered. We’re building a relationship-oriented bank for the modern world. As a Senior Manager, Application Security you will join CIBC's Information Security department to continue our journey and evolve the enterprise wide Application Security programs, which strive to ensure that all applications and data across the enterprise have security & protection built into their life cycle, thereby enhancing CIBC’s overall security landscape and protecting Our Bank, Our Clients, and Our Employees.
You’ll have the flexibility to manage your work activities within a hybrid work arrangement where you’ll spend 1-3 days per week on-site, while other days will be remote
Service Governance - Manage and oversee the development and maintenance of strategic roadmaps for the domain of Application Security. Collaborate with various stakeholders on requirements, develop business cases and lead subsequent projects (including POCs) as product owner to support the strategy. Maintain a continuous improvement mindset, always looking for opportunities for efficiency and to enhance the security of the domain.
Communication – Build and present documentation to executive management aimed at communicating benefits of proposed security programs, as well as on current potential risks and providing recommendations. Provide awareness and training to the application developments teams of the benefits of web application layer protection services, data protection services, code scanning services, etc. Assess business needs against potential risks and provide your recommendations to enhance our information security landscape.
Advisory and Relationship Management - Working with the broader team, act as a trusted advisor to influence the application development, operational and infrastructure teams to build security into their design, development and scanning techniques, and to prioritize security vulnerabilities identified using a risk-based approach. Assist in the identification, assessment, reporting, and management of security risks and design flaws identified in key applications with practical and achievable recommendations. Manage the vendor relationship for security services and tools used within the domains of Application Security.
Secure Software Development Lifecycle - Manage API, DAST, Container Security, DevSecOps related service activities, including scheduling, consulting, onboarding, service governance and improvement. Measure the quality of the service protection and conduct threat update review, analysis of trends and usage reports. Drive improvement in the level of security protection for our enterprise applications.
You bring passion for industry web application security, vulnerability management and data security standards and best practices.
You have implemented methodologies to ensure the protection of web applications including exploit, vulnerability and attack detection signatures, security testing and penetration testing. You can demonstrate experience in in application security in a senior level role (i.e. managing SAST, DAST, SCA or similar security service).
DAST, SAST Penetration testing, web application firewalls, runtime protection, mobile application protection and other threat and vulnerability management capabilities. It is an asset if you have current accreditation and good standing CISSP, CISA, or CISM designation.
Your critical thinking & problem solving skills help to inform your decision making.
We work to recognize you in meaningful, personalized ways including a competitive salary , incentive pay, banking benefits, a benefits program*, defined benefit pension plan*, an employee share purchase plan, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program.
You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit.
Toronto-81 Bay, 14th Floor We’re building a relationship-oriented bank for the modern world. As a Senior Manager, Application Security you will join CIBC's Information Security department to continue our journey and evolve the enterprise wide Application Security programs, which strive to ensure that all applications and data across the enterprise have security & protection built into their life cycle, thereby enhancing CIBC’s overall security landscape and protecting Our Bank, Our Clients, and Our Employees.
You’ll have the flexibility to manage your work activities within a hybrid work arrangement where you’ll spend 1-3 days per week on-site, while other days will be remote
Service Governance - Manage and oversee the development and maintenance of strategic roadmaps for the domain of Application Security. Collaborate with various stakeholders on requirements, develop business cases and lead subsequent projects (including POCs) as product owner to support the strategy. Maintain a continuous improvement mindset, always looking for opportunities for efficiency and to enhance the security of the domain.
Communication – Build and present documentation to executive management aimed at communicating benefits of proposed security programs, as well as on current potential risks and providing recommendations. Provide awareness and training to the application developments teams of the benefits of web application layer protection services, data protection services, code scanning services, etc. Assess business needs against potential risks and provide your recommendations to enhance our information security landscape.
Advisory and Relationship Management - Working with the broader team, act as a trusted advisor to influence the application development, operational and infrastructure teams to build security into their design, development and scanning techniques, and to prioritize security vulnerabilities identified using a risk-based approach. Assist in the identification, assessment, reporting, and management of security risks and design flaws identified in key applications with practical and achievable recommendations. Manage the vendor relationship for security services and tools used within the domains of Application Security.
Secure Software Development Lifecycle - Manage API, DAST, Container Security, DevSecOps related service activities, including scheduling, consulting, onboarding, service governance and improvement. Measure the quality of the service protection and conduct threat update review, analysis of trends and usage reports. Drive improvement in the level of security protection for our enterprise applications.
You bring passion for industry web application security, vulnerability management and data security standards and best practices.
You have implemented methodologies to ensure the protection of web applications including exploit, vulnerability and attack detection signatures, security testing and penetration testing. You can demonstrate experience in in application security in a senior level role (i.e. managing SAST, DAST, SCA or similar security service).
DAST, SAST Penetration testing, web application firewalls, runtime protection, mobile application protection and other threat and vulnerability management capabilities. It is an asset if you have current accreditation and good standing CISSP, CISA, or CISM designation.
Your critical thinking & problem solving skills help to inform your decision making.
We work to recognize you in meaningful, personalized ways including a competitive salary , incentive pay, banking benefits, a benefits program*, defined benefit pension plan*, an employee share purchase plan, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program.
You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit.
Application Security, Dynamic Application Security Testing (DAST), Secure Software Development Lifecycle, Static Application Security Testing (SAST) Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
#



  • Brossard, QC, Canada CIBC Full time

    Bank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered. We’re building a relationship-oriented bank for the modern world. TheFusion Centre is responsible for protecting our clients and our bank by holistically combatting financial crime threats which crossmultipledomains including: the Corporate Security,...


  • Brossard, QC, Canada CIBC Full time

    CIBC Bank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered. View company page We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients. At CIBC, we embrace your strengths and your...

  • Responsable des Soins

    2 weeks ago


    Dollard-des-Ormeaux, QC, Canada Sunrise Senior Living Full time

    Chez Sunrise, notre responsable des soins soigne un petit groupe de résidents et crée des relations étroites avec chacun d'eux. ''We laugh with them, cry with them, sing and dance with them - we brighten their day. At Sunrise, our Care Manager is responsible for providing hands-on care to a small group of residents, building close relationships with...


  • Brossard, QC, Canada BlackBerry Full time

    BlackBerry QNX Senior Cybersecurity Manager BlackBerry QNX is a trusted supplier of safe and secure operating systems, hypervisors, frameworks and development tools, and provides expert support and services for building the world’s most critical embedded systems. We are the embedded experts. BlackBerry QNX was born in embedded, and provides time-tested...


  • Brossard, QC, Canada Vanguard Full time

    The Senior Manager, Technology Governance Leader, will manage a team which recommends, develops, implements, and monitors enterprise-wide information security policies, procedures, and operational guidelines. This is a newly created role that will help stand up enhancements to our enterprise governance function. **This hybrid role (in office Tues-Wed-Thurs)...


  • Montréal, QC, Canada EQ Bank | Equitable Bank Full time

    As part of a growing and dynamic Commercial Portfolio Management team, the Senior Commercial Account Manager is responsible for the day-to-day management of an assigned group of lending partners and associated portfolio of mortgages, from funding through maturity. The Senior Account Manager’s portfolio will be comprised of complex construction,...


  • Brossard, Canada CIBC Full time

    CIBC Bank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered. View company page We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.At CIBC, we embrace your strengths and your ambitions, so...


  • Brossard, Canada CIBC Full time

    CIBC Bank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered. View company page We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.At CIBC, we embrace your strengths and your ambitions, so...


  • Brossard, Canada CIBC Full time

    CIBC Bank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered. View company page We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.At CIBC, we embrace your strengths and your ambitions, so...


  • Brossard, Canada CIBC Full time

    CIBC Bank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered. View company page We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.At CIBC, we embrace your strengths and your ambitions, so...


  • Brossard, QC, Canada Vanguard Full time

    The Senior Manager, Technology Governance Leader, will manage a team which recommends, develops, implements, and monitors enterprise-wide information security policies, procedures, and operational guidelines. Sets departmental and team vision and develop strategies in alignment with overall security sub-division strategy. This is a newly created role that...


  • Montréal, QC, Canada Canadian Imperial Bank of Commerce Full time

    Senior Manager & Team Lead, Business Banking - Bilingual page is loaded Senior Manager & Team Lead, Business Banking - Bilingual Apply locations Montréal, QC time type Full time posted on Posted 2 Days Ago job requisition id 2405487 We’re building a relationship-oriented bank for the modern world. As th e Senior Manager & Team Lead , Business Banking...


  • Laval, QC, Canada Bausch Health Full time

    Senior Manager, IT Applications (11999) Requisition ID 11999 - Posted -  Canada  -  IT  -  CA - Laval  - City (1) Bausch Health Canada is the international head office of Bausch Health Companies, one of the fastest growing international pharmaceutical companies dedicated to bringing quality health and wellness products to all Canadians.  Our...


  • Montréal, QC, Canada EQ Bank | Equitable Bank Full time

    As part of a growing and dynamic Commercial Portfolio Management team, the Senior Commercial Account Manager is responsible for the day-to-day management of an assigned group of lending partners and associated portfolio of mortgages, from funding through maturity. The Senior Account Manager’s portfolio will be comprised of complex construction, renovation,...


  • Montréal, QC, Canada CIMA+ Full time

    Senior Manager, Talent & Operational Culture Services Full-time At CIMA+, you’ll find a place where you’ll have many opportunities to learn and develop while working on engaging projects. You will have the flexibility to manage your work on your own terms and define what work-life balance means to you. Are you enthusiastic about continuously...


  • Montréal, QC, Canada Optimum General Inc. Full time

    Optimum General Inc. / Montreal / Permanent / Full time Due to our continued growth and diversification strategies, we are looking to add a Senior Manager to the actuarial team at our head office in downtown Montreal. As a senior member of the actuarial team reporting to the Vice President, Actuarial Pricing, the SENIOR MANAGER will be responsible for...


  • Montréal, QC, Canada Harris Geospatial Solutions Full time

    The L3Harris MAPPS Global business is a leading global supplier of controls and simulation solutions for marine, power and space sectors. Headquartered in Montreal, Quebec, Canada, L3Harris MAPPS Inc. has businesses and sites in Canada, Germany, India, Malaysia, and the United Kingdom. L3Harris MAPPS Inc. is a subsidiary of L3Harris Technologies. ROLE &...


  • Montréal, QC, Canada Groom & Associates Full time

    Job Number: J0224-0406 Job Type: Full Time Job Category: Engineering Location: Montreal, Quebec Salary: Open Senior Engineering Project Manager JOB TYPE: Permanent full-time LOCATION: Montreal, QC TRAVEL REQUIREMENT: Approximately 35%-40% of travel is required. IMPORTANT: • Mobility is crucial for this role. Must be present at site and/or...


  • Granby, QC, Canada Jump! Recruteurs Full time

    This designer and manufacturer in business for over 50 years located in the Granby region, will allow you to leverage your purchasing expertise, your leadership and your experience in implementing integrated management systems. Manage the various activities relating to purchasing, inventory management and supply with your team of 2 people. Establish...


  • Brossard, Canada BlackBerry Full time

    BlackBerry QNX Senior Cybersecurity ManagerBlackBerry QNX is a trusted supplier of safe and secure operating systems, hypervisors, frameworks and development tools, and provides expert support and services for building the world’s most critical embedded systems. We are the embedded experts. BlackBerry QNX was born in embedded, and provides time-tested and...