Security Advisor, Risk and Audit

2 weeks ago


Montreal, Quebec, Canada GIRO Full time
Company Description

Our specialty is to optimize And we are proud of our expertise. We use our collective intelligence to impact people's lives by improving the efficiency of urban mobility.


Our innovative software solutions and expert services in the areas of public transit and postal operations are recognized around the world.


Job Description:

Reporting directly to the Director of Security (CSO), your duties are as follows:

  • Carry out security threat and risk assessments (STRA) for the IT, software development, project management, and corporate services teams
  • Update the security risk register and follow up on mitigation measures
  • Participate in defining the security internal control framework
  • Keep track of internal security audits for the SOC 2 and ISO 27001 certifications
  • Contribute to writing procedures, manuals, and other security documentation
  • Assist the Director of Security (CSO) in supporting the teams for implementing security controls
  • Collaborate closely with the operational security team to ensure that security requirements are met
  • Support the legal services team by validating security requirements in service proposals

Qualifications:

  • University degree or relevant technical certification
  • CISA, CRISC, CISSP, or equivalent certification
  • More than 5 years of experience as an expert in security risk analysis and compliance
  • Experience in the softwaredevelopment industry, an asset
  • Very good knowledge of security standards such as the ISO 27001 series, SOC 2 and CSA STAR
  • Good knowledge of recognized methodologies for assessing risks and threats
  • Good knowledge of GRC tools (Archer, ServiceNow, or others)
  • Skills for analysis and problem solving
  • Sense of initiative and autonomy
  • Interest in collaboration and teamwork
  • Be thorough, curious and listening to the organization's needs
  • Ability to write documentation in both French and English
Additional Information


At GIRO, you will be integrated quicky and called upon to make a concrete contribution The well-being and satisfaction of our employees is a value that we hold dear.


Therefore, we offer a range of benefits, including:

  • Flexible work schedule, including telecommuting
  • A warm welcome and a progressive learning program
  • Many recognition and teambuilding activities, including team breakfast, yoga or aerobic classes, Christmas party, sports activities, etc.
  • A GIRO Day, where employees are encouraged to take part in outdoor activities
  • A basic group insurance plan with premiums paid 100% by GIRO
  • A health and physicalactivity account of $600.00 per year
  • Reimbursement of OPUS card or parking space
  • Paid days off between Christmas and New Year's Day.
Looking forward to meeting you

  • Montreal, Quebec, Canada Business Development Bank of Canada Full time

    SENIOR IT ADVISOR, INTERNAL AUDIT page is loaded SENIOR IT ADVISOR, INTERNAL AUDIT Apply locations Montreal time type Full time posted on Posted Yesterday job requisition id R-5502 We are banking at another level.Choosing BDC as your employer means working in a healthy, inclusive, and skilled workplace that puts forward the best conditions to bring together...


  • Montreal, Quebec, Canada The Nugget Group Full time

    Job DetailsCyber Security Advisor OPOR, 5/13/2024Job ID#: 7800Job Category: TechnologySalary: to $100.00As the Cyber Security Lead, your primary role is to ensure our organization's safety against cyber threats. Here's what you'll be doing:Implementing Security Practices: Put into action the best practices recommended by the Department of Cyber Security &...

  • Senior Risk Advisor

    2 weeks ago


    Montreal, Quebec, Canada Banque Nationale du Canada Full time

    Area of Interest: Information technology As a Senior Cybersecurity Advisor at the National Bank of Canada, you demonstrate pragmatism and agility in approaching opportunities, technologies, and processes from a cybersecurity perspective. In addition to assessing and continuously improving the cybersecurity risk posture of your assigned application...


  • Montreal, Quebec, Canada Desjardins Full time

    At Desjardins, we believe in equity, diversity and inclusion. We're committed to welcoming, respecting and valuing people for who they are as individuals, learning from their differences, embracing their uniqueness, and providing a positive workplace for all. At Desjardins, we have zero tolerance for discrimination of any kind. We believe our teams should...


  • Montreal, Quebec, Canada PSP Investments Full time

    ABOUT USWe're one of Canada's largest pension investment managers, with CAD$243.7 billion of net assets as at March 31, 2023.We invest funds for the pension plans of the federal public service, the Canadian Forces, the Royal Canadian Mounted Police and the Reserve Force. Headquartered in Ottawa, PSP Investments has its principal business office in Montréal...

  • Security Risk Expert

    2 weeks ago


    Montreal, Quebec, Canada The Nugget Group Full time

    Cyber Security Advisor OPOR , : 5/13/2024 Job ID#: 7800 As the Cyber Security Lead, your main job is to make sure that our organization stays safe from cyber threatsImplementing Security Practices: You'll put into action the best practices recommended by our client, the Department of Cyber Security & Digital Solutions. This involves meeting with different...


  • Montreal, Quebec, Canada Intact Full time

    Our employees are at the heart of what we do best: helping people, businesses and society prosper in good times and be resilient in bad times. When you join our team, you're bringing this purpose to life alongside a passionate community of experts. Feel empowered to learn and grow while being valued for who you are– here, diversity is a strength. You have...


  • Montreal, Quebec, Canada CGI Full time

    Position Description: Join us and put your career in IT-security into high-gear *This role can be situated within proximity to a CGI office. * Must hold an Active Secret Clearance from Canadian Federal Government The CGI Cybersecurity team is growing We are looking for a Security Advisor to join us on engaging, and professionally rewarding...


  • Montreal, Quebec, Canada Alteo Full time

    Alteo is looking for a Risk, Compliance and Security Manager for a permanent position based in Montreal.Your main role will be to define the strategic axes and objectives in terms of information security, operational risks and compliance. You will implement the ISMS, as well as the risk control system, and will be responsible for ensuring platform compliance...


  • Montreal, Quebec, Canada Scrapmetal Full time

    American Iron & Metal (AIM) is a family-owned company and recognized global leader in the metal recycling industry with more than 125 sites and 4000 employees worldwide. We have continued to prosper for the last eight decades thanks to the dedication of our employees and the ongoing trust and support of our customers. Become part of team AIM, a growing team...


  • Montreal, Quebec, Canada Alteo Inc. Full time

    Risk, Compliance and Security Manager [#4598] Job Title Risk, Compliance and Security Manager [#4598] Field IT Job Description Alteo is looking for a Risk, Compliance and Security Manager for a permanent position based in Montreal.Your main role will be to define the strategic axes and objectives in terms of information security, operational risks and...


  • Montreal, Quebec, Canada Desjardins Full time

    At Desjardins, we believe in equity, diversity and inclusion. We're committed to welcoming, respecting and valuing people for who they are as individuals, learning from their differences, embracing their uniqueness, and providing a positive workplace for all. At Desjardins, we have zero tolerance for discrimination of any kind. We believe our teams should...


  • Montreal, Quebec, Canada CN Full time

    At CN, we work together to move our company—and North America—forward. Be part of our Information & Technology (I&T) team, a critical piece of the engine that keeps us in motion. From enterprise architecture to operational technology, our teams use the agile methodology to automate and digitize our railroad ensuring our operations run optimally and...


  • Montreal, Quebec, Canada Desjardins Full time

    At Desjardins, we believe in equity, diversity and inclusion. We're committed to welcoming, respecting and valuing people for who they are as individuals, learning from their differences, embracing their uniqueness, and providing a positive workplace for all. At Desjardins, we have zero tolerance for discrimination of any kind. We believe our teams should...


  • Montreal, Quebec, Canada Desjardins Group Full time

    Advisor, IT Asset Management, SAM page is loaded Advisor, IT Asset Management, SAM Apply remote type The work arrangement for the position is hybrid work locations Montréal time type Full time posted on Posted 2 Days Ago job requisition id R As Senior Advisor, IT Asset Management, SAM, you develop software asset management practices by implementing and...


  • Montreal, Quebec, Canada Desjardins Full time

    As an operational risk advisor, you help prevent, analyze and develop guidelines for suspicious and fraudulent transactions. You also assist with compliance, internal controls, crisis management and the security of personal information and property. You advise and assist clients and partners as part of intervention and development initiatives. You recommend...


  • Montreal, Quebec, Canada Laurentian Bank Full time

    Seeing beyond numbers™At Laurentian Bank, we are determined to revolutionize the banking industry for the better. Established in Montreal back in 1846, Laurentian Bank plays a vital role in enhancing the lives of families, businesses, and communities. With a cohesive team of over 2,800 employees dedicated to providing a wide array of financial services and...


  • Montreal, Quebec, Canada PSP Investments Full time

    EXPERIENCE THE EDGEAt PSP, we encourage our employees to grow, forge powerful relationships, contribute and fuel inspired investment launchpads. We are committed to a culture that fosters collaboration and allows us to think beyond, in an interconnected way. We advocate for our employees to speak-up, learn, experiment, share, and be part of an where...


  • Montreal, Quebec, Canada VIA Rail Full time

    Description : Reporting to the Director, Risk Management, the Senior Advisor, Operational Risk Management will be responsible for overseeing, managing, and continuously improving the operational risk management program within the organization. As an expert, he/she will develop and implement frameworks and strategies to identify, assess, monitor, and...


  • Montreal, Quebec, Canada Desjardins Full time

    At Desjardins, we believe in equity, diversity and inclusion. We're committed to welcoming, respecting and valuing people for who they are as individuals, learning from their differences, embracing their uniqueness, and providing a positive workplace for all. At Desjardins, we have zero tolerance for discrimination of any kind. We believe our teams should...