IT Security Specialist

2 weeks ago


Waterloo, Ontario, Canada The Descartes Full time
Descartes Unites the People and Technology that Move the World

The need for efficient, secure, and agile supply chains and logistics operations has become ever more critical and complex. By combining innovative technology, powerful trade intelligence, and the reach of our network, Descartes helps get goods, information, transportation assets, and people where they're needed, when they're needed.

We're one of the most broadly deployed logistics and supply chain technology companies in the world. More than 26,000 customers around the globe use our cloud-based solutions to transform the way they move inventory and information to enhance productivity, better serve customers, thrive competitively, keep pace with evolving regulations, and respond to rapidly changing market conditions.

Descartes is publicly traded (Nasdaq:DSGX, TSX:DSG) with headquarters in Waterloo, Ontario, Canada, and offices and partners around the world. With record financial performance for more than 16 years, we lead the industry in innovation investment. Every day, logistics service providers, manufacturers, retailers, distributors, and other logistics-intensive businesses of all sizes rely on our scale, stability, and comprehensive solution footprint to move what's most important to them.

Job Summary

We're seeking an Information Security Compliance Analyst to join our team. This individual will be responsible for leading the development, implementation, and maintenance of a global-level information security management system, supporting policy framework and related Governance Risk and Compliance (GRC) activities.

Key Responsibilities
  • Lead the development, implementation, and maintenance of a global-level information security management system.
  • Support policy framework and related Governance Risk and Compliance (GRC) activities.
  • Coordinate, prepare, and internal audit for ISO27001, SOC1, HIPAA, PCI, SOC2 Programs and alignment of program to NIST Cyber Security framework.
  • Experience in creating Policy Documentation and Metrics to measure compliance with Policy.
  • Risk Register Management and Security Exception Management.
  • Participate in Education and Awareness around the area of Compliance and GRC, Security Awareness, and other education campaigns related to Cyber Security.
  • Develop and maintain compliance automation tools including on-line GRC systems, automated compliance checks, and other methods to scale and reduce overhead of compliance.
  • Participation in Data Privacy initiatives including Data Privacy Impact Analysis.
  • Coordination with global IT Pillars to achieve Security and Compliance goals.
  • Threat Modeling new and existing processes and projects.
  • Cultivate core relationships between internal stakeholders and external partners and other third-party entities that support security requirements for handling sensitive data.
  • Participation in creation and maintenance of security collateral and whitepapers and RFP/RFI response support.
  • Establish and maintain compliance within the Public Cloud and utilization of automation technologies such as Cloud Security Posture Management.
  • Maintain a Security and Compliance roadmap and integration checkpoints for new acquisitions.
Qualifications and Key Attributes

We are seeking an assertive, adaptable individual with excellent analytical skills, and who will thrive as both a team player and as an individual contributor.

  • A college diploma is required.
  • Knowledge of information security best practices, risks, and countermeasures.
  • Some experience in a compliance-related environment including but not limited to PCI Compliance, ISO27001, SOC2, GDPR.
  • The ability to weigh business risks and enforce appropriate information security measures.
  • Outstanding interpersonal, verbal, and written communication skills to interface with management, staff, vendors, and customer prospects.
  • A high degree of integrity and trust, along with the ability to work independently or as part of a team.
  • Strong time management skills.
  • Excellent documentation and analytical skills.
  • Any information security certifications are an asset, including but not limited to CISM, CISSP, CISA, CRISC.
  • Understanding of complex technical environments including Traditional Datacenter, Public Cloud, and Hybrid.
  • Some experience in compliance in complex web applications including SDLC, Threat Modeling, Defense in Depth.
  • Certification in ISO27001 Auditing is a plus.
Salary Range

$90,000 to $100,000 CAD. Compensation information provided is a good faith estimate for this position only. Factors that may be used to determine your actual salary may include your specific skills as well as the years of experience you have. Similar positions located in different geographic regions will not necessarily receive the same compensation.

Location

This is a remote opportunity, open to applicants authorized to work in Canada.



  • Waterloo, Ontario, Canada Carta Full time

    About CartaCarta is a leading provider of software solutions for private markets, empowering companies to manage their cap tables, valuations, taxes, equity programs, compensation, and more.The RoleWe are seeking a skilled Application Security Specialist to join our Product Security team. As a key member of our organization, you will be responsible for...


  • Waterloo, Ontario, Canada Carta Full time

    About CartaCarta is a leading provider of software solutions for private markets, empowering companies to manage their cap tables, valuations, taxes, equity programs, compensation, and more.The RoleWe are seeking a skilled Application Security Specialist to join our Product Security team. As a key member of our organization, you will be responsible for...


  • Waterloo, Ontario, Canada NavitsPartners Full time

    Network Integration and Security SpecialistNavitsPartners is seeking a highly skilled Network Integration and Security Specialist to join our team.Key Responsibilities:Design and implement secure network architectures, including VLANs, VPCs, and WAN connectivity.Administer and troubleshoot network systems using Ethernet, Wi-Fi, and serial technologies.Deploy...


  • Waterloo, Ontario, Canada NavitsPartners Full time

    Network Integration and Security SpecialistNavitsPartners is seeking a highly skilled Network Integration and Security Specialist to join our team.Key Responsibilities:Design and implement secure network architectures, including VLANs, VPCs, and WAN connectivity.Administer and troubleshoot network systems using Ethernet, Wi-Fi, and serial technologies.Deploy...

  • Security Specialist

    2 weeks ago


    Waterloo, Ontario, Canada OpenText Full time

    Security and Safety ExpertJoin OpenText, a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the world, tackle complex issues, and contribute to projects that...

  • Security Specialist

    1 week ago


    Waterloo, Ontario, Canada OpenText Full time

    Security and Safety ExpertJoin OpenText, a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the world, tackle complex issues, and contribute to projects that...


  • Waterloo, Ontario, Canada Carta Full time

    About CartaCarta is a leading provider of software solutions for private markets. Our platform supports nearly 7,000 funds and SPVs, representing nearly $130B in assets under management in venture capital and private equity.We help private businesses in over 160 countries manage their cap tables, valuations, taxes, equity programs, compensation, and more....


  • Waterloo, Ontario, Canada Carta Full time

    About CartaCarta is a leading provider of software solutions for private markets. Our platform supports nearly 7,000 funds and SPVs, representing nearly $130B in assets under management in venture capital and private equity.We help private businesses in over 160 countries manage their cap tables, valuations, taxes, equity programs, compensation, and more....


  • Waterloo, Ontario, Canada Descartes Systems Group Full time

    Descartes Systems Group: A Leader in Logistics and Supply Chain TechnologyWe are a globally recognized company that provides innovative solutions to transform the way businesses move inventory and information. Our cloud-based solutions are used by over 26,000 customers worldwide, and we are committed to helping our clients thrive in a rapidly changing...


  • Waterloo, Ontario, Canada Descartes Systems Group Full time

    Descartes Systems Group: A Leader in Logistics and Supply Chain TechnologyWe are a globally recognized company that provides innovative solutions to transform the way businesses move inventory and information. Our cloud-based solutions are used by over 26,000 customers worldwide, and we are committed to helping our clients thrive in a rapidly changing...

  • Security Specialist

    1 week ago


    Waterloo, Ontario, Canada CB Canada Full time

    Job Title: Security Engineer – SIEM LogRhythmCB Canada is seeking a skilled Security Engineer to maintain the health, performance, and capacity planning of the client's SIEM platform, including the management and operation of the SIEM infrastructure.Key Responsibilities:Provide subject matter expertise for all LogRhythm components and designImplement,...

  • Security Specialist

    1 week ago


    Waterloo, Ontario, Canada CB Canada Full time

    Job Title: Security Engineer – SIEM LogRhythmCB Canada is seeking a skilled Security Engineer to maintain the health, performance, and capacity planning of the client's SIEM platform, including the management and operation of the SIEM infrastructure.Key Responsibilities:Provide subject matter expertise for all LogRhythm components and designImplement,...


  • Waterloo, Ontario, Canada Tbwa ChiatDay Inc Full time

    {"h1": "Senior Application Security Engineer", "p": "At Carta, we're revolutionizing the way people manage equity, build businesses, and invest in the companies of tomorrow. As a Senior Application Security Engineer, you'll play a critical role in ensuring the security and integrity of our products and services. Your responsibilities will include: *...


  • Waterloo, Ontario, Canada Tbwa ChiatDay Inc Full time

    {"h1": "Senior Application Security Engineer", "p": "At Carta, we're revolutionizing the way people manage equity, build businesses, and invest in the companies of tomorrow. As a Senior Application Security Engineer, you'll play a critical role in ensuring the security and integrity of our products and services. Your responsibilities will include: *...


  • Waterloo, Ontario, Canada Tbwa ChiatDay Inc Full time

    {"h1": "Senior Application Security Engineer", "p": "At Carta, we're revolutionizing the way people manage equity, build businesses, and invest in the companies of tomorrow. As a Senior Application Security Engineer, you'll play a critical role in ensuring the security and integrity of our products and services. Your responsibilities will include: *...


  • Waterloo, Ontario, Canada Tbwa ChiatDay Inc Full time

    {"h1": "Senior Application Security Engineer", "p": "At Carta, we're revolutionizing the way people manage equity, build businesses, and invest in the companies of tomorrow. As a Senior Application Security Engineer, you'll play a critical role in ensuring the security and integrity of our products and services. Your responsibilities will include: *...


  • Waterloo, Ontario, Canada OpenText Full time

    About OpenTextOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the world, tackle complex issues, and contribute to projects that shape the future of...


  • Waterloo, Ontario, Canada OpenText Full time

    About OpenTextOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the world, tackle complex issues, and contribute to projects that shape the future of...


  • Waterloo, Ontario, Canada OpenText Full time

    About OpenTextOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the world, tackle complex issues, and contribute to projects that shape the future of...


  • Waterloo, Ontario, Canada OpenText Full time

    About OpenTextOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the world, tackle complex issues, and contribute to projects that shape the future of...