Head Information Security
2 weeks ago
Job Requisition ID: 10721
Position Status: Permanent Full Time
Position Type: Hybrid
Office Location: Ottawa (ON) preferred, Montreal (QC) and Toronto (ON) will be considered
Travel Requirement: Travel not required
Language Designation: Bilingual
Language Skill Levels (Read/Write/Speak): CBC
Security Requirement: Secret
Salary: Our salaries generally range from $196,189.50 to $235,427.40 and are based on qualifications and experience.
About CMHC
The work you do and the work we do together matters. We come to work every day with a common purpose: to contribute to a well-functioning housing system.
At CMHC, we hold ourselves accountable for our results and support our colleagues in their achievements. We thrive on collaboration, connecting across CMHC and involving the right people to get our work done. We have flexibility, in how, when, and where we work, within the boundaries of the business needs and the nature of your role. Our leadership style is guided by trust, where our leaders favour an adaptive approach based on the needs of their teams.
Join us and be part of a team that's committed to making a real difference and be part of something meaningful.
What’s in it for you
- Annual paid vacation.
- Annual individual performance incentive.
- Defined benefit pension plan.
- Comprehensive group insurance plan to support your well-being from day one.
- Support towards your personal and professional growth with training, mentorship and more.
- An inclusive workplace culture and environment.
- While positions at CMHC require some in-office presence, alternative work arrangements may be considered for Indigenous candidates.
About the role
Reporting to the SVP Technology and Business Transformation, the Head Information Security (CISO) is a critical role in providing strategic leadership and oversight for CMHC's global security posture. This position oversees the protection of the organization’s information assets, physical and virtual infrastructure, and operations against an evolving threat landscape. The incumbent is responsible to develop and implement a security strategy, governance framework, and operational plan that align with CMHC's vision, mission, and values and risk appetite. The Head, Information Security (CISO) also manages security risks, ensures compliance with security standards and regulations, communicates, and promotes a security culture, and fosters strategic partnerships with internal and external stakeholders.
What you’ll do:
- Strategy and governance: Create, manage and maintain CMHC’s information security strategy and governance framework (including cybersecurity) to be a unified, flexible and risk-based approach aligned with CMHC’s overall business objectives, ensure it continues to evolve and remain compliant with global laws, standards and regulations compliance requirements and in adoption of the cybersecurity framework (ISO) 2700X, ITIL, National Institute of Standards and Technology (NIST) Cybersecurity Framework.
- Lead and develop objectives, priorities, operational business plans, policies and standards to reflect industry security leading best practices and oversees the audits and assessments to maintain the standards of CMHC’s security governance.
- Facilitate a cybersecurity governance structure governed by a cybersecurity steering committee/advisory board to manage and contain cybersecurity incidents/events to protect corporate IT assets, intellectual property, regulated data, and the company's reputation.
- Develop and provide regular reporting on the current status of the cybersecurity program to enterprise risk teams, senior business leaders and the board of directors as part of a strategic enterprise risk management program, thus supporting business outcomes.
- Security, emergency, risk management and incident response: Leads the strategic security and emergency planning prioritizing defence initiatives and providing oversight to the security and emergency management functions while monitoring the external threat environment for emerging threats.
- Identify, assess and mitigate information security risks across the organization and lead the response to security incidents by ensuring minimal business impact and that lessons learned are shared and implemented across teams.
- Oversees the analysis, design and deployment of the infrastructure security procedures and practices that enhance the integrity and privacy of the organization’s IT.
- Security Partnerships and Visibility: Build and maintain strategic relationships with external partners, industry groups, and regulatory bodies, law enforcement and other advisory bodies to enhance CMHC’s visibility, security posture and is kept abreast of the relevant threats.
- Security First Culture: Champion a security-first culture across the organization. Promote a comprehensive security training programs for employees, partners, and stakeholders. Ensure comprehensive security management trainings and communications to elevate security awareness.
What you should have:
- An undergraduate degree in management information systems, information security, information technology, information systems management. An equivalent combination of education and/or experience can be considered.
- Thirteen (13) years of a combination of experience in information technology or information security roles, with at least 5 years in a senior leadership role.
- Experience with the framework of the financial regulations and guidelines of the Office of the Superintendent of Financial Institutions (OSFI), the compliance and integration of these standards into the organization’s security and risk management frameworks.
- Demonstrated experience identifying cyber vulnerabilities and devising solutions for risk improvement.
- The knowledge of current trends and best practices in threat risk assessment, vulnerability assessment, redundancy and disaster recovery practices.
- The knowledge of common information security management frameworks, such as ISO/IEC 27001, ITIL, COBIT as well as those from NIST, including 800-53 and Cybersecurity Framework.
- Sound knowledge of business management and a working knowledge of cybersecurity risk management and cybersecurity technologies.
- Superior written and oral communication skills (French and English). Ability to deliver a persuasive, clear presentation of ideas that will convince others and gain acceptance of proposals in a variety of settings and styles to a variety of stakeholders (senior management in particular).
It would be great if you also had:
- One of the following certifications: Global Information Assurance Certification (GIAC), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Privacy Professional (CIPP), Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Auditor (CISA) or System Administration, Networking and Security (SANS).
- Experience with contract and vendor negotiations and working with outsourcing partners.
Posting closing date: Note, the competition will remain active until filled.
Our commitment to diversity, equity, and inclusion
We’re committed to employment equity and encourage women, Indigenous Peoples, persons with disabilities, veterans and persons of all races, ethnicities, religions, abilities, sexual orientations, and gender identities and expressions to apply. We also welcome applications from non-Canadians who are eligible to work in Canada.
CMHC is an inclusive workplace where diversity of thought – and of people – are recognized, valued, and considered essential to achieving our mission.
Learn more about our commitment to diversity and inclusion
What happens after you apply
We know that applying for a new job can be both exciting and daunting, and we appreciate your effort. Learn more about our hiring process. If you are selected for an interview or testing, please advise us if you require an accommodation.
If you applied before and you were not successful don’t worry – we're always posting new positions, so don’t hesitate to give it another shot. We’re excited to see what you bring to the table this time around
#J-18808-Ljbffr-
Head Information Security
3 weeks ago
Ottawa, Canada CMHC Full time**Job Requisition ID**: 10721 **Position Status**: Permanent Full Time **Position Type**:Hybrid **Office Location**:Ottawa (ON) preferred, Montreal (QC) and Toronto (ON) will be considered **Travel Requirement**: Travel not required **Language Designation**: Bilingual **Language Skill Levels (Read/Write/Speak)**: CBC **Security Requirement**:...
-
Security Professional
4 months ago
Ottawa, Canada 3D Security & Response Services Full time**Security Professional** Are you looking to join a **team** of dedicated security professionals? At 3DSERS, we believe in equipping our team with the **education and training** necessary to excel in every assignment. Our mandate is to provide top-tier security services by ensuring each team member is fully trained, motivated, and ready to meet challenges...
-
Head Information Security
2 weeks ago
Ottawa, Canada Canada Mortgage and Housing Corporation Full timeJob Requisition ID: 10721Position Status: Permanent Full TimePosition Type: HybridOffice Location: Ottawa (ON) preferred, Montreal (QC) and Toronto (ON) will be consideredTravel Requirement: Travel not requiredLanguage Skill Levels (Read/Write/Speak): CBCSecurity Requirement: SecretSalary: Our salaries generally range from $196,189.50 to $235,427.40 and are...
-
Director, Information Security
23 hours ago
Ottawa, Ontario, Canada Scotiabank Full timeRequisition ID: 135586 Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. In Technology at Scotia, we're questioning everything about how we bank today to come up with the right solutions for our...
-
Ottawa Airport
3 days ago
Ottawa, Canada Paladin Security Full timeOttawa Airport - Security Supervisor **Site**: The Ottawa/Macdonald-Cartier International Airport **City**: Ottawa **Status**: Full Time **Pay Rate**: $21.14 **Hours**: Continental Rotation - 0600-1800/1800-0600 **Site Description**: If you are looking for a dynamic and challenging work environment, then our Airport division is for you! We are looking...
-
Information Security Consultant
2 days ago
Ottawa, Canada RCGT Consulting Full timeRCGT Consulting is seeking several permanent full time information security consultants to join the IT risk and advisory practice. AT RCGT, we specialize in conducting reviews, audits, and advisory engagements that cover the following information security domains. - Security and Risk Management - Asset Security - Security Architecture and Engineering -...
-
Information Security Manager
4 months ago
Ottawa, Canada Carleton University Full time**Duties and Responsibilities**: - Lead the development and implementation of the IAM program to follow industry best practices while meeting the needs of a diverse university community. - Undertake project management on assigned projects, coordinate RFPs, review and evaluate bid submissions, track progress and costs, provide status reports, complete...
-
Information Security Specialist
2 weeks ago
Ottawa, Ontario, Canada Intello Technologies Inc. Full timeJob OverviewWe are seeking an experienced Information Security Specialist to join our team at Intello Technologies Inc. in Toronto, ON, or Montréal, QC.This is a full-time position with a regular schedule and opportunities for growth and professional development.Key ResponsibilitiesMonitor and respond to security incidents in a fast-paced environment using...
-
Security Guard
2 days ago
Ottawa, Canada Advance Security Services Full timeAdvance Security Services Co. is offering Full Time to Part Time work available in many locations throughout the Province of Ontario. We provide 24-hour coverage, 7 days per week to various types of clients such as retail, construction sites, residential properties, institutional sites and municipalities. Our dispatch team deploys security team members...
-
Security Guard
6 months ago
Ottawa, Canada Advance Security Services Full timeAdvance Security Services Co. is offering Full Time to Part Time work available in many locations throughout the Province of Ontario. We provide 24-hour coverage, 7 days per week to various types of clients such as retail, construction sites, residential properties, institutional sites and municipalities. Our dispatch team deploys security team members...
-
Security Guard
7 hours ago
Ottawa, Canada Advance Security Services Full timeAdvance Security Services Co. is offering Full Time to Part Time work available in many locations throughout the Province of Ontario. We provide 24-hour coverage, 7 days per week to various types of clients such as retail, construction sites, residential properties, institutional sites and municipalities. Our dispatch team deploys security team members...
-
Information Security Specialist
4 months ago
Ottawa, Canada SHOEBOX Audiometry Full time*** **Job Location: Ottawa, ON** At SHOEBOX, we are the leaders in audiometric innovative solutions, have a shared passion for positive impact, and always go above and beyond as a team! **Key Responsibilities**: As the Information Security Specialist, you will work closely with the Chief Security Officer to maintain and improve SHOEBOX’s ISO 27001...
-
Security Specialist
6 months ago
Ottawa, Canada Ericsson Full time**Join our Team**: **Job Summary**: We are looking for an Information and Communication Technology (ICT) Security Analyst. In this role, you will ensure proper protection of information assets, accessed through the Ericsson R&D environment. You will be a key player by providing Information and IT security advisory to all units in BNEW SAN SAL and support...
-
Information Security Specialist
4 months ago
Ottawa, Canada SHOEBOX Ltd. Full timeAt SHOEBOX, we are the leaders in audiometric innovative solutions, have a shared passion for positive impact, and always go above and beyond as a team!Key Responsibilities:As the Information Security Specialist, you will work closely with the Chief Security Officer to maintain and improve SHOEBOX’s ISO 27001 certified Information Security Management...
-
Information Security Specialist
4 months ago
Ottawa, Canada SHOEBOX Ltd. Full timeAt SHOEBOX, we are the leaders in audiometric innovative solutions, have a shared passion for positive impact, and always go above and beyond as a team!Key Responsibilities:As the Information Security Specialist, you will work closely with the Chief Security Officer to maintain and improve SHOEBOX’s ISO 27001 certified Information Security Management...
-
Head of Technology and Information Security Risk
4 weeks ago
Ottawa, ON, Canada Intellibus Full timeOur Platform Engineering Team is working to solve the Multiplicity Problem. We are trusted by some of the most reputable and established FinTech Firms. We are looking for a Highly driven CTO who will be responsible for overseeing application SRE (Site Reliability Engineering), Testing Frameworks & Automation, DevOps & Cloud Enablement, Standard Platforms,...
-
Security Guard
7 months ago
Ottawa, Canada Paladin Security Full timeSecurity Guard - Carlingwood Mall **Position**: | Full-Time Security Guard **Site**: | Carlingwood Mall - 2121 Carling Ave **Hours**: | Mon - Wed 1400-2200 & Sat - 1000-1800 **Payrate**: | $18.25 - Patrol assigned area on foot or in a motor vehicle, as assigned, to ensure personal, building, and equipment security. - Ensure staff and visitors adhere to...
-
Security Team Lead
4 weeks ago
Ottawa, Ontario, Canada Condor Security Full timeAbout Condor SecurityWe are a leading security agency dedicated to providing exceptional services to our clients.Job Title: Security Guard SupervisorSalary Range: $60,000 - $80,000 per annumJob Description:We are seeking an experienced Security Guard Supervisor to join our team at Condor Security. The successful candidate will oversee the day-to-day...
-
Associate Security Tester
4 days ago
Ottawa, Canada Lightship Security Full timeLightship Security is a market leader in IT security standards-based conformance testing and test automation. We work with leading-edge security technology vendors from around the world to perform conformance testing to various IT security standards such as Common Criteria and FIPS 140. We are committed to creating real-world value through continued...
-
Security Agent
3 months ago
Ottawa, Canada Signal Security Full timePost Location: Variarble locations Schedule: Casual / On call ( There will be the Casual shifts avaiable and employee can pick those up as per their availablity ) Pay Rate: $16.55Requirements:Ontario Security Guard LicenceVehicle for realiable transportation preffered or able to commutte at siteBenefits: •Paid training•Flexible schedule•Career...