Senior Security Specialist

2 weeks ago


Toronto, Canada CAAT Pension Plan Full time

Senior Security Specialist – Cyber Risk & Compliance We are seeking a Senior Security Specialist, Cyber Risk and Compliance, for our Technology & IT Services Management team. Reporting to the Senior Manager GRC, you will be responsible for executing and advancing CAAT’s cybersecurity and technology risk programs. The successful incumbent possesses technical depth with execution focused on managing cybersecurity risks to ensure CAAT remains secure, compliant, and resilient amid rapidly evolving threats, and ensures compliance with regulatory obligations and alignment with CAAT’s Enterprise Risk Management (ERM) and Cybersecurity framework. Core Responsibilities Perform technical Threat risk assessments (TRA) and conduct threat modeling assessments across key applications, infrastructure, and AI/ML systems. Maintain and update the cyber risk register, ensuring accurate documentation and tracking of risks and remediation activities. Assess risks associated with AI/ML integrations, GenAI platforms, emerging technologies, quantum readiness, and synthetic data use. Prepare dashboards, KPIs, KRIs, and security performance scorecards for governance reporting. Collaborate with DevSecOps, Engineering, Architecture, Legal, and Compliance teams to provide second‑line oversight and challenge. Produce detailed technical findings and recommendations for stakeholders, including auditors and governance committees. Operationalize AI‑driven platforms controls for compliance with ISO 27001, PCI‑DSS, NIST 800‑53, ISO/IEC 42001, NIST AI Risk Management Framework & other regulations. Perform vendor risk reviews for vendors, including emerging tech partnerships, LLM plugin providers, API suppliers, and federated data platforms. Support the Senior Manager in reporting on the performance of the Information Security Management System (ISMS) to the Information Security Advisory Board (ISAB). Support the Senior Manager in creating executive or board level presentations to provide a view on the Cyber and Technology risk profile. Qualifications & Experience At least 10+ years of experience in cybersecurity risk management, compliance, and governance, with strong hands‑on audit execution and control implementation. At least 8+ years of experience managing audit readiness (ISO 27001, SOC 2, PCI‑DSS, and NIST etc) and cyber risk in regulated industries (pension, financial services, insurance etc). CISSP or CISM, CISA, ISO 27001 Lead Implementer/Auditor certification required. Strong knowledge of frameworks such as ISO 27001/27005, NIST CSF, NIST 800‑53, NIST AI RMF, COBIT, COSO, CSA CCM, MITRE ATT&CK, MITRE ATLAS, and FAIR. Effective communication skills, with the ability to influence across levels and teams within the organization. Knowledge of the Pension Administration and/or Financial Services industry would be an asset. Benefits Opportunities to build a better you: endless learning and mastery of skills while cultivating new ones. Comprehensive & holistic care: Total Rewards program that prioritizes physical, mental, and financial wellness, flexible work arrangements, comprehensive benefits, wellness incentives, and a defined benefit pension plan. A place to collaborate and win: lively environment with creativity and open communication, recognized as one of Canada’s Most Admired Corporate Cultures. Work that truly matters: help Canadians secure better retirement income. Seniority Level Mid‑Senior level Employment Type Full‑time Job Function Other, Information Technology, and Management Apply Today If you believe that Canadians deserve a future where a secure lifetime retirement income contributes to their financial and overall well‑being, then CAAT could be the right fit for you. Apply now. DEIB Statement DEIB at CAAT means we respect and value the broadest range of experiences, geographies, gender, ethnicities, backgrounds, and perspectives as key elements of our culture. Our vision is to provide an environment where employees can bring their best, professional, authentic selves to work. EEO Statement CAAT Pension Plan is an equal opportunity employer, and we will accommodate any needs under the Accessibility for Ontarians with Disabilities Act and the Ontario Human Rights Code. Hiring processes will be modified to remove barriers to accommodate those with disabilities, if requested. Should any applicant require accommodation through the application processes, please contact us at hr@caatpension.ca or call Human Resources at 416-673-9000 for assistance. Contact Learn more about us by visiting www.caatpension.ca/careers. #J-18808-Ljbffr



  • Toronto, Canada A.S.P. Security Full time

    **_SECURITY SPECIALIST SITE SUPERVISOR (RESPITE SHELTERS)_** - Are you passionate about Safety & Security and seeking opportunity to join a team of Experienced Security Specialists?_ - A.S.P. Incorporated has provided security and customer service solutions for over 20 years to Canadian clients. We employ in excess of 2000 employees and are a subsidiary of...

  • Security Specialist

    2 weeks ago


    Toronto, Canada A.S.P. Security Full time

    **RESPITE SECURITY SPECIALIST** - Are you passionate about Safety & Security and seeking opportunity to join a team of Security Specialist?- A.S.P. Incorporated has provided security and customer service solutions for over 20 years to Canadian clients. We employ more than 2000 employees and are a subsidiary of ICTS EUROPE, which is operates in 22 countries...

  • Security Specialist

    7 days ago


    Greater Toronto Area, Canada Melcour Security Full time

    **About us** We are experienced, professional, and agile, and our goal is to Provide best in Class Security Solutions to all of our Customers. Our work environment includes: - Modern office setting - Growth opportunities Join our team as a Security Specialist and play a crucial role in providing our customers with reliable and quality installation while...

  • Security Specialist

    4 weeks ago


    Toronto, Canada LanceSoft Full time

    Overview Title: Security Specialist Location: Toronto, ON Duration: 12 Months Experience and Skill Set Requirements The Cyber Security Centre of Excellence (COE) is seeking one (1) Senior Cyber Security Specialists to support in strengthening Ontario’s cyber security infrastructure as the province collectively moves more government programs and services...


  • Toronto, Canada Rubicon Path Full time

    About the job RQ08753 - Security Specialist - Senior Description Responsibilities: Defines, evaluates, and assesses security architecture requirements for systems environments and IT projects. Ensures the incorporation of IT security and contingency measures in the development of systems. Advises on the identification, analysis, and resolution of specific...


  • Toronto, Canada Rubicon Path Full time

    About the job RQ08753 - Security Specialist - Senior Description Responsibilities: Defines, evaluates, and assesses security architecture requirements for systems environments and IT projects. Ensures the incorporation of IT security and contingency measures in the development of systems. Advises on the identification, analysis, and resolution of specific...


  • Toronto, Canada Regal Security Full time

    **Purpose** The purpose of the Executive Protection Security Specialist is to provide close personal protection of designated client representatives and their personal members (family, affiliates, etc.) on an as needed basis for long term or short term periods. The goal is to provide direct and immediate protection 24 hours a day for the duration of the...


  • Toronto, Canada Rubicon Path Full time

    About the job RQ08587 - Security Specialist - Senior Description Responsibilities: Defines, evaluates, and assesses security architecture requirements for systems environments and IT projects. Ensures the incorporation of IT security and contingency measures in the development of systems. Advises on the identification, analysis, and resolution of specific...


  • Toronto, Canada Rubicon Path Full time

    About the job RQ08587 - Security Specialist - SeniorDescriptionResponsibilities: Defines, evaluates, and assesses security architecture requirements for systems environments and IT projects. Ensures the incorporation of IT security and contingency measures in the development of systems. Advises on the identification, analysis, and resolution of specific...


  • Toronto, Canada AIR MILES Reward Program Full time

    The AIR MILES Reward Program is one of Canada’s most recognized loyalty programs, with over 10 million active collector accounts, representing more than half of all Canadian households. AIR MILES collectors earn Reward Miles at more than 300 leading Canadian, global and online brands and at thousands of retail and service locations across the country. AIR...