Head Cyber Resilience and Operations
1 week ago
Why you will love working here At IATA, we represent over 350 airlines worldwide, striving to make aviation safer, smarter, more sustainable, and inclusive. - Our Values are not just words on a page - they are the energy behind everything we do: ONE IATA - We collaborate across teams, TRUSTED - We do the right thing, INNOVATIVE - We make tomorrow better, INCLUSIVE - We embrace diverse perspectives. - With over 30,000 courses available, we believe in continuous learning and support your growth in an ever-changing industry. - Diversity, equity, and inclusion are our priorities. We are certified by the Equal Salary Foundation, offering equal pay and family-friendly policies. - We encourage community involvement through volunteering and strive to make tomorrow better for aviation and our communities. We offer time off so you can support causes important to you. - We promote work-life balance with flexible work options, including remote and hybrid work, a generous "work from abroad" policy, and you get your birthday off About the team you are joining You will be joining the Information Security team in the Information and Data Division (I&D), reporting to the Chief Information Security Officer (CISO). You will be responsible for defining, implementing, and overseeing the cyber resilience and operations strategy and ensuring IATA’s ability to prevent, detect, respond to, and recover from cyber threats and operational disruptions. This role leads cyber security operations, incident response, resilience planning, data security and continuous improvement of security capabilities to protect critical systems, data, and services. In addition, the role acts as a senior aviation cyber security advocate, actively supporting aviation cyber resilience through regulatory engagement, industry collaboration, and leadership. What your day would be like Your key responsibilities include: - Cyber Resilience & Strategy - Define and implement the IATA’s Cyber Resilience strategy and roadmap aligned with Information Security strategy and business objectives - Develop and implement cyber resilience framework to ensure business continuity and rapid recovery from cyber incidents - Design, implement, and oversee proactive cyber defense measures to detect, prevent, and respond to advanced threats and attacks - Integrate cyber resilience into business continuity and disaster recovery (BC/DR) planning - Act as the senior authority on cybersecurity risk, posture, and incident readiness - Ensure cyber recovery, backup, and restoration capabilities are tested and effective - Maintain alignment with relevant cybersecurity laws, regulations, and industry standards related to resilience and operations - Security Operations - Oversee security operations including monitoring, threat hunting, and incident response - Ensure effective vulnerability management and remediation activities - Lead response to major cyber incidents, breaches, and investigations - Lead and coordinate post-incident reviews and lessons learned - Oversee endpoint security, network security, data security and cloud security - Oversee deployment, tuning, and effectiveness of security monitoring tools, SIEM, SOAR, and other operational technologies - Incident Management & Crisis Leadership - Act as senior incident commander for major cyber incidents - Coordinate cross-functional response involving IT, legal, communications, risk, and business teams - Provide clear executive-level updates during incidents, including impact and remediation status - Support regulatory, legal, and customer communications as required - Leadership & People Management - Lead, and develop high-performing cyber operations and resilience teams as well as and associated third-party partners - Define skills, training, and succession plans to strengthen capability and maturity - Foster a culture of accountability, continuous improvement, and collaboration - Reporting, Metrics & BI - Oversee defining KPIs, SLIs, and maturity metrics for cyber resilience and operations - Develop executive and regulatory dashboards - Provide clear insight into compliance, risk trends, and resilience posture - Industry Support and Partnership - Act as the cybersecurity advocate to aviation regulators, authorities, and oversight bodies - Lead the organization’s participation in cybersecurity working groups, contributing to the defining cyber resilience strategies - Build and sustain strong relationships with regulatory authorities, industry partners, and aviation organizations to foster collaboration - Represent the organization at international conferences, summits, and panels on aviation cybersecurity - Publish white papers, position statements, and reports to advance thought leadership in aviation cybersecurity - Support cross-industry cyber exercises and sector-wide resilience initiatives We would love to hear from you if you have A minimum of 10 years of experience in information security, cybersecurity roles, including at least 5 years in a senior leadership role in multicultural and international environments (aviation industry or client facing experience is a plus). Proven experience in defining information security governance frameworks risk management (cybersecurity certification, such as CISSP, CISM or the like is a plus). Strong understanding of emerging technologies, digital infrastructure, and the evolving cyber threat landscape. Proven ability to engage internal and external clients, partners, and regulators in a professional advisory capacity. Fluent in English with superior written and verbal communication skills; additional language proficiency is a plus. Travel Required: 10 Learn more about IATA’s role in the industry, our benefits, and the team at iata/careers/. We are looking forward to hearing from you #J-18808-Ljbffr
-
Head Cyber Resilience and Operations
5 hours ago
Montreal, Canada The International Air Transport Association Full timeEmployment Type: PermanentContract Duration: Why you will love working hereAt IATA, we represent over 350 airlines worldwide, striving to makeaviation safer, smarter, more sustainable, and inclusive.• Our Values are not just words on a page - they are the energy behind everything we do: ONE IATA - We collaborate across teams, TRUSTED - We do the...
-
Chief Cyber Resilience
1 week ago
Montreal (administrative region), Canada IATA Consulting Full timeA leading aviation consultancy in Montreal seeks a Senior Cyber Resilience Leader to oversee cybersecurity operations and strategies. This role demands over 10 years of experience in information security, with a focus on leading teams and managing cyber threats. Key responsibilities include defining resilience strategies, ensuring effective security...
-
Hybrid Cyber Defense
2 weeks ago
Montreal (administrative region), Canada Queer Tech Full timeA technology company in Montreal is hiring a Manager for Cyber Defense & Strategy to enhance cyber resilience and lead a skilled team focused on architecture, data protection, and strategic security initiatives. The role includes flexible work arrangements and the potential for extra days off. Ideal candidates will have experience in managing cyber defense...
-
Manager, Cyber Defense
2 weeks ago
Montreal (administrative region), Canada Queer Tech Full time* **Flexible** work arrangements and a **hybrid** work model* Possibility to purchase up to **5 extra days off** per year* Multiple benefits offered to support **physical and mental** wellbeing, including telemedicine, Wellness account and much more* Share plan & other savings: up to **12%** of salary or even more (ask how you could earn guaranteed income...
-
Senior Cyber Defense
2 weeks ago
Montreal (administrative region), Canada Intact Financial Corporation Full timeA leading financial services provider in Montreal is seeking a Manager for Cyber Defense & Strategy. This role involves defining cybersecurity vision and strategy, managing a team, and ensuring robust security across various platforms. The ideal candidate should possess extensive experience in information security, strong analytical skills, and be bilingual...
-
IT Resilience Product Owner
2 weeks ago
Montreal (administrative region), Canada Desjardins Group Full timeAs an IT resilience product owner (ransomware component), you’re responsible for the 나오 vision for ransomware attacks and for developing and enhancing capabilities related to preparing and recovering from them, including relationships with teams responsible for detecting and responding to them. You guide the entire “IT service continuity” product,...
-
Sr. Cyber Security Lead
4 weeks ago
Montreal (administrative region), Canada Rogers Communications, Inc. Full timeSelect how often (in days) to receive an alert: Sr. Cyber Security Lead - AI Our Technology team wakes up every day with one goal in mind - connecting Canadians to the people and things that matter most. Together, we are proud to support 30 million Canadians each month through managing a robust portfolio that champions leading-edge technology. We drive...
-
Sr. Cyber Security Lead
4 weeks ago
Montreal (administrative region), Canada Rogers Communications, Inc. Full timeSelect how often (in days) to receive an alert: Sr. Cyber Security Lead - AI Our Technology team wakes up every day with one goal in mind - connecting Canadians to the people and things that matter most. Together, we are proud to support 30 million Canadians each month through managing a robust portfolio that champions leading-edge technology. We drive...
-
Manager, Cyber Security
3 weeks ago
Montreal (administrative region), Canada Innocap Inc. Full timeAbout InnocapInnocap is the world’s leading firm of managed account platform services. With over US$89 billion in assets under management, over 500 employees and offices in five countries, we are shaping the future of alternative investments for institutional owners and allocators. Our mission is to revolutionize the asset management industry and to...
-
Manager, Cyber Security
3 weeks ago
Montreal (administrative region), Canada Innocap Inc. Full timeAbout Innocap Innocap is the world’s leading firm of managed account platform services. With over US$89 billion in assets under management, over 500 employees and offices in five countries, we are shaping the future of alternative investments for institutional owners and allocators. Our mission is to revolutionize the asset management industry and to...