Information Security Specialist

4 days ago


Toronto, Ontario, Canada Float Financial Solutions Inc. Full time

About Float

">

Float Financial Solutions Inc. is a pioneering fintech company on a mission to simplify finance for Canadian businesses. Empowering them to eliminate complexity and unlock new opportunities, our innovative platform streamlines spending and optimizes cash flow, allowing businesses to focus on growth.

">

We're one of Canada's fastest growing companies and top-rated startups in 2024 and 2023, driven by a customer-obsessed, passionate, and entrepreneurial team that includes leaders from Uber, Shopify, Top Hat, Ritual, Ada, and more.

">

At Float, everyone is an owner, bringing their unique perspective to our team and product. Your voice is important, and we take having a culture based on feedback seriously. We openly share our thoughts and differing opinions so we can continue to improve. Our decision-making process is decentralized, ensuring all team members feel ownership in our success.

">

Our Product

">

Float's integrated suite of financial solutions rethinks how companies access capital, streamline spending, and manage growth. Our products include corporate cards, bill pay, reimbursements, and financial services, backed by world-class investors like Tiger Global, Golden Ventures, and Susa Ventures.

">

About the Information Security Specialist Role

">

In this role, you will be responsible for protecting Float's data and platforms from cyber threats, ensuring the security and integrity of our financial services platform. You will work closely with cross-functional teams, including engineering, product management, Infrastructure, and compliance, to design and implement robust security measures that align with industry best practices and regulatory requirements.

">

You will develop, implement, and maintain security policies, standards, and procedures to safeguard sensitive financial data. Conduct risk assessments and vulnerability assessments to identify security weaknesses and recommend remediation strategies. Collaborate with engineering teams to integrate security controls into the software development lifecycle (SDLC) and promote secure coding practices.

">

Key Responsibilities

">
  • Develop, implement, and maintain security policies, standards, and procedures to safeguard sensitive financial data.
  • Conduct risk assessments and vulnerability assessments to identify security weaknesses and recommend remediation strategies.
  • Collaborate with engineering teams to integrate security controls into the software development lifecycle (SDLC) and promote secure coding practices.
  • Monitor security systems and incident response tools to detect and respond to potential security breaches in real-time.
  • Perform regular security audits, penetration testing, and threat modeling to ensure the ongoing security posture of applications and infrastructure.
  • Stay up-to-date with the latest security trends, vulnerabilities, and regulatory requirements affecting the fintech industry.
  • Provide security awareness training and support to employees and stakeholders to promote a culture of security across the organization.
  • Assist in the development and execution of disaster recovery and business continuity plans to mitigate risks associated with data loss.
">

Requirements

">
  • Familiarity with integrating security practices into CI/CD pipelines, ideally using tools compatible with your existing setup (such as Buildkite).
  • Understanding of Infrastructure as Code (IaC) security, particularly with Terraform.
  • Knowledge of relevant compliance frameworks (e.g., SOC 2, ISO 27001).
  • Experience with risk assessment and management in cloud environments.
  • Experience with network monitoring and intrusion detection/prevention.
  • Experience with vulnerability scanning tools and methods for identifying, prioritizing, and remediating vulnerabilities (e.g. Wiz).
  • Understanding of common security vulnerabilities (e.g., OWASP Top Ten) and experience in security testing techniques.
    • You're an owner. You love a challenge, and take great satisfaction in tackling them head on. You love being a pioneer and taking on any task (big or small) and driving it through to completion.
    • You're able to explain complex problems in simple terms. As you'll be communicating your requirements to different stakeholders, your ability to present a solution in an understandable way is vital.
    • You have solid technical skills. Strong skills in Security, Authentication, Infrastructure, Cloud technologies, Development, Vulnerability Management, and Threat detection and remediation.
    • You understand the business context. You'll be more effective if you understand how your role supports the business and where you can influence the vision and strategy of Float.
    • You're comfortable with a fast-paced environment. Float is a dynamic environment and things can change quickly. You should be flexible and able to adapt to changes as they occur.
    • You have a strategic mindset. You act in the now but plan for the future. You see where our platform needs to go, put a plan in place, and proactively drive that change.
    • You can balance attention to detail and strategic thinking. While it's important to delve into the details of your data, it's equally important to keep the big picture in mind.
    • You ruthlessly prioritize. You will have multiple responsibilities and projects. Being able to effectively manage your workload and meet deadlines is crucial.
    • You're eager to continue your own learning. Scrappy and voracious, you want to know the 'why' behind every answer. You love to have healthy debates with fellow developers and colleagues about the product.
    ">

    This Role Won't Be a Fit If:

    ">
    • You're not extremely detail oriented.
    • You are not open to a hybrid role.
    • You aren't a self-starter and don't like to work independently.
    • You're not comfortable wearing multiple hats.
    • You don't like change and adapting to new ways of doing things.
    • You aren't comfortable with ambiguity.
    • You aren't able to translate technical jargon into simple language.
    • You lack patience for iterative work.
    • You want detailed to-dos for your tasks and projects.
    • You're not keen on learning new things.
    • You don't have strong stakeholder management skills.
    • You don't like regular feedback on your work.
    ">

    Don't Meet Every Single Requirement?

    ">

    If you're excited about this role, and you strongly align with our values but your past experience doesn't align perfectly, we encourage you to apply anyway. You may be the right candidate for this, or other future positions.

    ">

    Benefits & Perks

    ">

    We offer competitive compensation, flexible work hours, time off when you need to recharge, a small team with lots of autonomy to make an impact, opportunity to work with and learn from a world-class team, a personal Float card with a quarterly stipend, a dog-friendly office, and much more



  • Toronto, Ontario, Canada Randstad Full time

    Job OverviewWe are seeking an experienced Information Security Risk Specialist to join our team at Randstad. As a key member of our organization, you will play a vital role in ensuring the overall security and governance risk/control environment for critical production systems.


  • Toronto, Ontario, Canada EQ Bank | Equitable Bank Full time

    Job OverviewWe are seeking an experienced Information Security Risk Management Specialist to join our team at EQ Bank | Equitable Bank. This role is responsible for mitigating the risk of security attacks emanating from partners, vendors, and other related third-parties while enabling the business to grow efficiently and securely.


  • Toronto, Ontario, Ontario, Canada Hana Bank Canada Full time

    Hana Bank Canada is a subsidiary of Hana Financial Group, the largest global financial group in South Korea which operates a domestic and overseas network of over 750 branches in 25 countries. As a leading provider of financial solutions for the Korean community in Canada, our mission of "Growing Together, Sharing Happiness" keeps us focused and grounded as...


  • Toronto, Ontario, Ontario, Canada Insight Global Full time

    We are seeking a skilled Information Security Business Consultant to join a major bank in Toronto. The ideal candidate will possess strong communication and presentation skills, have experience in documentation of business requirements, investigation, and develop business strategy and be able to oversee the complete project lifecycle. This role also requires...


  • Toronto, Ontario, Canada National Consultants Professionals Ltd Full time

    At National Consultants Professionals Ltd, we are seeking an experienced IAM Security Specialist to join our team. Salary: $90,000 - $110,000 per annum.We are looking for a highly skilled individual to manage and maintain our identity and access management systems. As an IAM Security Specialist, you will be responsible for ensuring that employees,...


  • Toronto, Ontario, Canada HomeStead Land Holdings Limited Full time

    Founded in 1954, HomeStead Land Holdings Limited has established itself as a prominent player in Canada's multi-residential apartment building sector.The company's founding principles remain unchanged to this day, emphasizing the provision of affordable, secure housing with a high standard of care, reminiscent of treating one's own family members.HomeStead...


  • Toronto, Ontario, Canada CorGTA Full time

    At CorGTA, we are seeking a highly skilled Security Risk Specialist to join our team.About the Role:We are looking for a seasoned Security Analyst with 6+ years of experience in security analysis. The ideal candidate will have a strong background in security governance, policies, cybersecurity frameworks, security standards, and regulatory compliance.Key...


  • Toronto, Ontario, Canada CorGTA Full time $100

    We are seeking a seasoned Chief Information Security Strategist to join our team at CorGTA. This exciting opportunity will involve developing and maintaining the overall cybersecurity architecture for one of our clients, an architectural firm.About the Role:As a Chief Information Security Strategist, you will be responsible for designing and implementing...


  • Toronto, Ontario, Canada Mjolnir Security Full time

    Secure Your Future with Mjolnir SecurityMjolnir Security is a dynamic organization seeking dedicated professionals to join our team as Cyber Security Threat Analysts. We are committed to delivering top-notch security solutions, and we need talented individuals like you to help us achieve this goal.About the RoleThis exciting opportunity will see you working...


  • Toronto, Ontario, Canada Precision Technologies Full time

    Job Title: API Security SpecialistCompany Overview: Precision Technologies is a leading provider of innovative solutions, and we are seeking an experienced API Security Specialist to join our team.Estimated Salary: $120,000 - $180,000 per yearJob Description: As an API Security Specialist at Precision Technologies, you will be responsible for ensuring the...


  • Toronto, Ontario, Canada Disability Solutions Full time

    Job SummaryWe are seeking an experienced Information Security Compliance Officer to join our team as a Third-Party Security Risk Manager. The estimated annual salary for this role is $115,000. In this role, you will be responsible for ensuring the security and compliance of our third-party vendors.About the RoleYou will work closely with our technology teams...


  • Toronto, Ontario, Canada Patch Tech Staffing Full time

    **About the Role:**As a Senior Information Security Risk Consultant, you will be responsible for evaluating project security risks by analyzing requirement documents and architecture diagrams. You will work with our client's Security Engineering team to design, build, and implement critical Information Security solutions.**Key Responsibilities:**Evaluating...


  • Toronto, Ontario, Canada Intact Full time

    About the RoleWe are seeking a seasoned Chief Information Security Strategist to lead our technology architecture team. As a key player in our project teams, you will develop and implement strategic orientations to drive business objectives. Your responsibilities will include leading architectural design, ensuring governance, and collaborating with...


  • Toronto, Ontario, Ontario, Canada Astek Full time

    The Astek GroupFounded in France in 1988, Astek is a global player in engineering and technology consulting. With its expertise in various industrial and tertiary sectors, Astek supports its international clients in the intelligent deployment of their products and services, as well as in the implementation of their digital transformation.Since its inception,...


  • Toronto, Ontario, Canada Float Financial Solutions Inc. Full time

    We are seeking a talented Enterprise Security Specialist to join our team at Float Financial Solutions Inc.About the RoleThis is an exciting opportunity to be part of a dynamic and innovative company that empowers Canadian businesses with fast, flexible, and accessible financial solutions. As an Enterprise Security Specialist, you will play a key role in...


  • Toronto, Ontario, Canada Mackenzie Investments Full time

    Mackenzie Investments, a leading diversified wealth and asset management company in Canada, seeks an experienced IT Risk professional to fill the role of Chief Information Security Strategist. As a key member of the team, you will be responsible for implementing and managing information security strategies that align with the organization's overall risk...


  • Toronto, Ontario, Canada PortsToronto Full time

    At PortsToronto, we are seeking a highly skilled Airport Security Operations Specialist to join our team. This is a full-time opportunity that offers a competitive salary of $85,000 - $110,000 per year.About the RoleThe Airport Security Operations Specialist plays a critical role in ensuring the security and compliance of Billy Bishop Toronto City Airport....


  • Toronto, Ontario, Canada CorGuard Security Inc. Full time

    Job Title: Security Supervisor LeaderCompany OverviewCorGuard Security Inc. is a reputable security services provider committed to delivering exceptional results.SalaryThe estimated annual salary for this position is $55,000 - $65,000.Job DescriptionThis role entails overseeing the daily operations of our security team, ensuring seamless execution of tasks...


  • Toronto, Ontario, Ontario, Canada Insight Global Full time

    JOB DESCRIPTIONWe are seeking a skilled Information Security Business Consultant to join a major bank in Toronto. The ideal candidate will possess strong communication and presentation skills, have experience in documentation of business requirements, investigation, and develop business strategy and be able to oversee the complete project lifecycle. This...


  • Toronto, Ontario, Canada Magnum Protective Services Ltd.] Full time

    Job SummaryWe are seeking a highly motivated and reliable Security Protection Specialist to join our team at Magnum Protective Services Ltd. The successful candidate will be responsible for ensuring the safety and security of our clients and their properties.