Business Information Security Officer – Corporate

2 weeks ago


Montreal, Canada WSP Full time
Position Summary

WSP’s Information Security Office (ISO) is responsible for the deployment of the information security framework in to both the IT organization and wider business community. This includes the Governance mechanisms, policies and processes, tools and technologies, and employee training required to protect WSP information and that of our clients. 

The role of Business Information Security Officer – Corporate works directly with WSP’s Global IT organization and with our other Corporate Services such as HR, Finance and Health and Safety. It is a primarily internally facing role, though it may involve some interaction with clients and third parties. The role has a dual reporting relationship to the CISO and to the CIO. 

This position requires a senior management professional with relevant experience and a strong working knowledge of IT security, risk management, regulatory compliance, information and public cloud service technology, IT operations management principles, and third-party security management.

Responsibilities:

  • Working directly with business leadership at all levels of the organisation to deliver an effective, world class information security program. 
  • Establish and maintain the Information Security Governance framework; including running the Information Security Committee; coordinating IS risk management, executive reporting and participate in other forums where information security input and approval is required based on documented policies and processes.
  • Implementing and Operating the ISO270001 aligned Data and Information Security Management System.
  • Enhancing the security culture within Global IT and Corporate Services, driving business change initiatives and owning security e-learning.
  • Developing and maintaining an understanding of IS requirements, including regulatory/legal requirements. Working with key stakeholders, including the Head of Legal and Corporate leads to provide input and security assurance for new bids and acquisitions.
  • Working with the corporate IT teams and providing security guidance for new IT projects (working with the Security Architect function where needed)
  • Liaise with the relevant functions – Risk Management, Commercial, HR, Legal, Compliance, Procurement, Facilities / Physical Security - to ensure IS coordination and risk management. 
  • The management and co-ordination of any security incident response. 
  • Provide SME and guidance on any security needs or requirements. Act as an advisor to the Corporate Services leads on all information security related matters.
  • Work with the CISO and ISO on the Global Information Security Framework; contributing to the development of new processes, identifying and resolving risks and providing regular reports on security matters and metrics. 

Leadership and People Responsibilities:

  • Displays leadership and independence in performing their role, with an ability to make complex decisions with limited input and review from senior staff.  
  • High level of personal integrity, and the ability to professionally handle confidential matters and exude the appropriate level of judgment and maturity.
  • Assist in the training, and coaching of new and existing staff, and provide coaching to staff executing all aspects of information security and risk assessment and support. 
  • Develop positive working relationships with other team members and business partners and partner across teams to align with WSP internal and external client demands.
  • Capable of rapidly assimilating and internalizing complex business, technology, and risk management concepts and dependencies.
  • Capable of clearly defining, presenting and selling recommended strategies to senior management teams.
  • Critical thinker with strong problem-solving skills, project management skills; financial/budget management, scheduling and resource management. 
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate between specialized groups of business unit and IT professionals.
  • Accommodation of schedule for international conference calls.

Finance/Budgetary Responsibilities: 

  • Support the CISO in developing the budget projections based on objectives

Requirements:

Required

  • 8+ years related senior level experience in Information Security, IT risk, IT Audit or a similar position involving IT and business change
  • Graduate of a four-year college or university, preferably with a degree in computer science or information management, or Professional certification in one or more of the following disciplines — IT governance (e.g., CGEIT), security (e.g., CISSP, CISM), internal audit (CISA) or Payment Card Industry (PCI)
  • Working (not necessarily technical) knowledge of security technologies (encryption, data protection, network intrusion prevention, host intrusion prevention, firewalls, privilege access, etc.)
  • Working (not necessarily technical) knowledge of enterprise IT security concerns and technologies, including but not limited to VPNs, network security, encryption, authentication, application-level network protocols, PKI, IPSec, Firewall, SSH, SSL, DES, LAN/WAN, and TCP/IP
  • Knowledge of security best practices (applications, network and client setups)
  • Experience with IT Governance frameworks such as COBIT, ITIL and ISO 2700x
  • Experience with governance, compliance and audit within IT environments
  • Experience of risk management, including risk analysis, mitigation and monitoring
  • Knowledge of information security regulations applicable to WSP 

Preferred

  • Master's degree in IT, Computer Science, Engineering or related field
#J-18808-Ljbffr
  • Business Information Security Officer

    Found in: Talent CA C2 - 2 weeks ago


    Montreal, Canada WSP Full time

    Description About WSP At WSP, we are driven by inspiring future-ready pioneers to innovate. We’re looking to grow our teams with people who are ready to collaborate in building communities and expanding our skylines. To do this, we hire candidates of all experiences, skillsets, backgrounds and walks of life. We actively foster a work environment and...

  • Head of Information Security

    Found in: Whatjobs CA C2 - 2 days ago


    Montreal, Canada WSP Full time

    Position Summary WSP’s Information Security Office (ISO) is responsible for the deployment of the information security framework in to both the IT organization and wider business community. This includes the Governance mechanisms, policies and processes, tools and technologies, and employee training required to protect WSP information and that of our...


  • Montreal, Canada WSP Full time

    Head of Information Security / VP of Information Security [OneIT]WSP’s Information Security Office (ISO) is responsible for the deployment of the information security framework in to both the IT organization and wider business community. This includes the Governance mechanisms, policies and processes, tools and technologies, and employee training required...


  • Montreal, Canada WSP Full time

    Head of Information Security / VP of Information Security [OneIT]WSP’s Information Security Office (ISO) is responsible for the deployment of the information security framework in to both the IT organization and wider business community. This includes the Governance mechanisms, policies and processes, tools and technologies, and employee training required...


  • Montreal, Canada WSP Full time

    Head of Information Security / VP of Information Security [OneIT]WSP’s Information Security Office (ISO) is responsible for the deployment of the information security framework in to both the IT organization and wider business community. This includes the Governance mechanisms, policies and processes, tools and technologies, and employee training required...

  • Security and Fraud Management Officer

    Found in: Talent CA C2 - 2 weeks ago


    Montreal, Canada CGI Full time

    Position Description: CGI is looking for a leader in the field of information security and fraud prevention, to take charge of corporate cybersecurity governance for one of its entities. As a Security Officer reporting to the Payroll Service Center management, you will be responsible for the security team whose mission is to protect CGI and its...


  • Montreal, Canada Barclay Simpson Full time

    Senior Information Security Manager required for a market-leading bank. The role will be focused on supporting the information security function with the management of 2 analysts. Responsibilities Adherence to the Information Security Standards by control owners Training and Awareness Programme Phishing Tests of staff, reporting and training Actionable...


  • Montreal, Canada Barclay Simpson Full time

    Senior Information Security Manager required for a market-leading bank. The role will be focused on supporting the information security function with the management of 2 analysts. Responsibilities Adherence to the Information Security Standards by control owners Training and Awareness Programme Phishing Tests of staff, reporting and training Actionable...


  • Montreal, Canada Barclay Simpson Full time

    Senior Information Security Manager required for a market-leading bank. The role will be focused on supporting the information security function with the management of 2 analysts. Responsibilities Adherence to the Information Security Standards by control owners Training and Awareness Programme Phishing Tests of staff, reporting and training Actionable...

  • Expert, Information Security Third Party Risk Management

    Found in: Talent CA C2 - 2 weeks ago


    Montreal, Canada CN Full time

    Job Summary The purpose of this role is to maintain and grow an industry leading Information Security Third Party Risk Management (TPRM) practice to support the mission of empowering the business by building resilience against evolving cyber threats. This will include program governance, policy and guideline development, risk assessments, information...

  • information technology

    Found in: Talent CA 2 C2 - 5 days ago


    Montreal, Canada ilir inc Full time

    Durée de l'emploi: PermanentLangue de travail: FrançaisHeures de travail: 40 hours per weekEducation: Expérience: EducationBachelor's degreeInformation technology or equivalent experienceWork settingConsulting firmTasksConfer with clients to identify requirementsDocument technical requirements to ensure that products, processes and solutions meet business...

  • information technology

    Found in: Talent CA 2 C2 - 6 days ago


    Montreal, Canada ilir inc Full time

    Work Term: PermanentWork Language: FrenchHours: 40 hours per weekEducation: Bachelor's degreeExperience: 5 years or moreInformation technology or equivalent experienceWork settingConsulting firmTasksConfer with clients to identify requirementsDocument technical requirements to ensure that products, processes and solutions meet business requirementsPrepare...

  • security guard supervisor

    Found in: Talent CA 2 C2 - 3 weeks ago


    Montreal, Canada I.G.S. security Full time

    Education: Secondary (high) school graduation certificateExperience: 7 months to less than 1 year or equivalent experienceTasksBe the point of contact when in need to handle emergency situationsEstablish work schedules and proceduresResolve work problems, provide technical advice and recommend measures to improve productivity and product qualitySupervise,...

  • security guard supervisor

    Found in: Talent CA 2 C2 - 1 week ago


    Montreal, Canada I.G.S. security Full time

    Education: Expérience: EducationSecondary (high) school graduation certificate or equivalent experienceTasksBe the point of contact when in need to handle emergency situationsEstablish work schedules and proceduresResolve work problems, provide technical advice and recommend measures to improve productivity and product qualitySupervise, co-ordinate and...

  • Information Security Engineer III

    Found in: Talent CA C2 - 4 days ago


    Montreal, Canada US Tech Solutions Full time

    JOB DESCRIPTION: Cyber Security Specialist Months Montreal, QC Hybrid The position at a glance We are currently seeking an IT Infra & Cyber Security Specialist with expertise in Vulnerability Management to be located in our Montreal site. This position will report to the Production Security Vulnerability Management head. In detail •...


  • Montreal, Canada Coveo Solutions inc. Full time

    Shape the future of our IT strategy and infrastructureAs a VP of IT at Coveo, you will be responsible for overseeing all aspects of our information technology, ensuring they align with and accelerate our business objectives. With a strong emphasis on accountability, collaboration, and prioritization, you will be expected to lead by example, demonstrating a...


  • Montreal, Canada Bennett Jones Full time

    Bennett Jones is a leading full-service international law firm with offices in Calgary, Toronto, Edmonton, Ottawa, Vancouver, Montreal and New York . We are proud that Bennett Jones was named one of Canada’s Best Employers in in Kincentric’s “Best Employers in Canada” survey. The firm was also recognized in as one of Alberta’s Top 75 Employers...

  • Security Systems Analyst

    Found in: Talent CA C2 - 2 weeks ago


    Montreal, Canada Coveo Full time

    Interested in technology, SaaS products, cloud security and AI solutions? We have it all!  Your responsibility as a SecuritySystems Analyst on Coveo’s Systems Administration team will be to work in close collaboration with all departments to ensure that all our systems are configured correctly and securely. You’ll be the main point of contact...


  • Montreal, Canada Davies Ward Phlips Vneberg LLP Full time

    Davies is a top-tier Canadian law firm focused on high-stakes matters. With offices in Montréal, Toronto and New York, we are consistently at the heart of the most challenging deals and cases in Canada and abroad.A position at Davies is more than just a job. When you join the firm, you will be welcomed by a team that places as much emphasis on supporting...


  • Montreal, Canada Davies Ward Phlips Vneberg LLP Full time

    Davies is a top-tier Canadian law firm focused on high-stakes matters. With offices in Montréal, Toronto and New York, we are consistently at the heart of the most challenging deals and cases in Canada and abroad.A position at Davies is more than just a job. When you join the firm, you will be welcomed by a team that places as much emphasis on supporting...