Current jobs related to Information Security Supply Chain, Governance and Compliance Manager - Montreal - International Air Transport Association


  • Montreal, Canada International Air Transport Association (IATA) Full time

    Information Security Supply Chain, Governance and Compliance Manager Be among the first 25 applicants. Why you will love working here at IATA, we represent over 350 airlines worldwide, striving to make aviation safer, smarter, more sustainable, and inclusive. Benefits Our Values are not just words on a page - they are the energy behind everything we do: ONE...


  • Montreal, Canada International Air Transport Association (IATA) Full time

    Information Security Supply Chain, Governance and Compliance Manager Be among the first 25 applicants. Why you will love working here at IATA, we represent over 350 airlines worldwide, striving to make aviation safer, smarter, more sustainable, and inclusive. Benefits Our Values are not just words on a page - they are the energy behind everything we do: ONE...


  • Montreal, Canada IATA Consulting Full time

    Why you will love working here At IATA, we represent over 350 airlines worldwide, striving to make aviation safer, smarter, more sustainable, and inclusive. Our Values are not just words on a page - they are the energy behind everything we do: ONE IATA - We collaborate across teams, TRUSTED - We do the right thing, INNOVATIVE - We make tomorrow better,...


  • Montreal, Canada IATA Consulting Full time

    Why you will love working here At IATA, we represent over 350 airlines worldwide, striving to make aviation safer, smarter, more sustainable, and inclusive. - Our Values are not just words on a page - they are the energy behind everything we do: ONE IATA - We collaborate across teams, TRUSTED - We do the right thing, INNOVATIVE - We make tomorrow better,...


  • Montreal, Canada IATA Consulting Full time

    Why you will love working here At IATA, we represent over 350 airlines worldwide, striving to make aviation safer, smarter, more sustainable, and inclusive. Our Values are not just words on a page - they are the energy behind everything we do: ONE IATA - We collaborate across teams, TRUSTED - We do the right thing, INNOVATIVE - We make tomorrow better,...


  • Montreal (administrative region), Canada IATA Consulting Full time

    Why you will love working here At IATA, we represent over 350 airlines worldwide, striving to make aviation safer, smarter, more sustainable, and inclusive. Our Values are not just words on a page - they are the energy behind everything we do: ONE IATA - We collaborate across teams, TRUSTED - We do the right thing, INNOVATIVE - We make tomorrow better,...


  • Montreal, Canada Tecsys Inc. Full time

    Security Governance, Risk and Compliance SpecialistHaving recognized the advantages of remote work, such as improved employee morale, increased productivity, and positive impacts on both employee wellbeing and the environment, we are proud to be a digital-first company. Our digital-first work environment, combined with our conveniently located offices and...


  • Montreal, Canada IATA Consulting Full time

    A global aviation consulting firm based in Montreal is seeking an experienced cybersecurity professional to manage their supply chain security program. The position requires a minimum of 7 years in information security with international exposure, focusing on third-party risk management. Ideal candidates will have strong communication skills and knowledge of...


  • Montreal, Canada IATA Consulting Full time

    A global aviation consulting firm based in Montreal is seeking an experienced cybersecurity professional to manage their supply chain security program. The position requires a minimum of 7 years in information security with international exposure, focusing on third-party risk management. Ideal candidates will have strong communication skills and knowledge of...


  • Montreal, Canada IATA Consulting Full time

    A global aviation consulting firm based in Montreal is seeking an experienced cybersecurity professional to manage their supply chain security program. The position requires a minimum of 7 years in information security with international exposure, focusing on third-party risk management. Ideal candidates will have strong communication skills and knowledge of...

Information Security Supply Chain, Governance and Compliance Manager

22 hours ago


Montreal, Canada International Air Transport Association Full time

Employment Type: PermanentContract Duration:Why you will love working hereAt IATA, we represent over 350 airlines worldwide, striving to make aviation safer, smarter, more sustainable, and inclusive.Our Values are not just words on a page - they are the energy behind everything we do: ONE IATA - We collaborate across teams, TRUSTED - We do the right thing, INNOVATIVE - We make tomorrow better, INCLUSIVE - We embrace diverse perspectives.With over 30,000 courses available, we believe in continuous learning and support your growth in an ever-changing industry.Diversity, equity, and inclusion are our priorities. We are certified by the Equal Salary Foundation, offering equal pay and family-friendly policies.We encourage community involvement through volunteering and strive to make tomorrow better for aviation and our communities. We offer time off so you can support causes important to you.We promote work-life balance with flexible work options, including remote and hybrid work, a generous 'work from abroad' policy, and you get your birthday offAbout the team you are joiningYou will be joining the Information Security team in the Information and Data (I&D) Division.You will be responsible for managing and maintaining IATA’s supply chain security program, work within multiple time zones, conduct security assessments in allocated time, complete supply chain questionnaires from vendors, collaborate with international vendors, internal business, procurement, engineering, technology, and legal divisions. Provide recommendations, scores, and risks for vendors. Manage and maintain a database of vendors, write minutes, procedures, enhancement requests, policies, and standard operating procedures. Work with the security team to identify and remediate any vulnerabilities, end of life components, and other security control requirements for vendors of IATA current and future business.You will be responsible for safeguarding the IATA’s supply chain ecosystem against cybersecurity risks. This role will be establishing and maintaining IATA’s supply chain security program, designing, implementing, and monitoring security controls and assurance programs across third-party vendors, providers, and strategic partners. The position plays a critical role in ensuring that all suppliers meet the IATA’s information security standards and regulatory requirements.What your day would be likeEstablishing and maintaining IATA’s supply chain security program aligned with organizational risk posture and business objectivesDevelop and maintain internal processes and policies for supply chain and vendor managementServe as the primary point of contact for supply chain security of critical vendor matters across the organizationProvide complete security assessments for RFPs, RFQs, RFIs, and any other required business objective software for products and servicesMaintain a register of critical suppliers and their risk profiles; coordinate periodic reviews and auditsMaintain, manage, and configure with the help of a customer relations manager a risk platform for vendor assessments, analysis, and reportingCollaborate with Legal, Procurement, and other business functions to define and enforce supplier security requirementsDevelop metrics and dashboards to measure supply chain security posture and maturity as well as produce executive level summaries for management committee and C SuitesProduce summaries, after action reports, and minutes of meetings, discussions, and eventsSupport due diligence and contractual security clauses during procurement and onboardingSupport developing incident response plans for supply chain-related security eventsCoordinate investigations and remediation activities when third-party incidents occurDrive continuous process improvements and automation for supplier risk managementStay current on emerging threats, technologies, and regulatory changes impacting supply chain cybersecurityWe would love to hear from you ifMinimum of 7 years of experience with international exposure in cybersecurity/ information security with at least 3 years in third-party risk, supply chain security management or security governance risk and controlsStrong knowledge of risk assessment methodologies, vendor due diligence, security assurance practices and experience in managing security assessments, audits, and corrective action plans with suppliersFamiliarity with regulatory and standards frameworks such as ISO 27001, NIST 800-161, NIST CSF, SOC 2, GDPR, CMM and best cybersecurity practicesExcellent written and verbal communication skills, with the ability to present technical findings to non-technical stakeholders as well as negotiation and stakeholder management skillsProficiency in English is required; additional language skills are a plusProfessional certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Auditor, CISA, or equivalent is an advantageTravel Required: 10%Learn more about IATA’s role in the industry, our benefits, and the team at iata/careers/. We are looking forward to hearing from you #J-18808-Ljbffr