Information Security Officer

5 days ago


Toronto, Canada ThoughtStorm Inc Full time

**Job Description and Responsibilities**:
Assist Chief Risk Officer in acting second line of defense of Cyber Security Risk Management:

- To be responsible for maintaining and improving Information Security risk management framework in terms of bank’s risk management framework.
- To be responsible for manage and mitigate risks related to cyber security, data, information, privacy, outsourcing, and information technology compliance.
- Independently identifies, assesses, and aggregates cyber, technology and resilience risks related to internal and external events through direction, training and influencing the behavior of bank employees.
- Oversight the adoption and implementation of information security policies, technology, mitigation programs and related procedures to comply with regulatory guidance and Parent Bank guidance.

**Work with Head of IT in leading the information security governance team:**
- Identify, define and substantiate the key threats to information assets, internally and externally
- Optimize of information security policies and procedures, threat prevention, threat detection and an incident response strategy, including an incident response process, escalating security incidents, coordinating and leading investigations, and managing the recovery from attacks
- Develop control program that proactively identifies threats to the bank and guides the acquisition of advanced security controls
- Coordinate internally and externally, responses to security incidents, providing timely reports during the incident and remediation, as well as proposing solutions to anticipate, prevent, or mitigate future incidents.
- Identify the information security risks of engaging vendors and other third parties who access the Branch systems. Review and assess mitigating control as well.
- Manage Cyber Security improvement projects, mitigation programs and related procedures to comply with regulatory guidance and Parent Bank guidance.
- Manage a targeted information security awareness training program for all employees and contractors and establish metrics to measure the effectiveness of this security training programRequired Skills and Personal Attributes:

- Strong knowledge of information security best practices, standards, and frameworks, such as ISO/IEC 27000, NIST 800-53, and PCI DSS.
- Knowledge of technical infrastructure, networks, databases, and systems in relation to Information Technology Security and Risk Management.
- Proven track record and experience in developing information security strategy, policies and procedures.
- Independent worker, accountable and skilled in exercising sound judgment, planning, organizational skills, team

leadership, and decisiveness under pressure.
- Strong interpersonal partnering and organizational communication skills.
- Great command of spoken and written English.
- Able to communicate with partner IT teams in both English and Chinese with work proficiency.

**Qualifications**:

- BS in Computer Science, Information Technology, Network Engineer, or Cyber Security. Advanced degree is preferred.
- At least 5 years of related experience in financial services: including knowledge of regulatory rules such as information security, cyber security, and IT.
- Prior experience in risk, information security management, operations, audit, or management consulting, preferably in a financial institution environment.
- Prior experience at a foreign financial institution is preferred.
- Professional security management certification such as CISA, CISM, CRISC, and/or other CISSP required.

**Job Type**: Fixed term contract

**Salary**: From $40.00 per hour

Expected hours: 40 per week

**Benefits**:

- Dental care
- Extended health care
- Paid time off

Schedule:

- Monday to Friday

**Experience**:

- Information security: 8 years (required)
- Cybersecurity: 8 years (required)

Ability to Commute:

- Toronto, ON M5C 1N7 (required)

Ability to Relocate:

- Toronto, ON M5C 1N7: Relocate before starting work (required)

Work Location: In person



  • Toronto, Canada Equifax Full time

    **Synopsis of the role**: The Business Information Security Officer provides advice and oversight to ensure that Information Security policy is complied with for processes and systems used by Equifax Canada. The Business Information Security Officer assists in improving the information security posture with respect to delivering services to customers and...


  • Toronto, Canada Streamline Security Full time

    At Streamline Security we focus on hiring the best of the best, we aim to hire highly talented individuals that represent our ideas and core values. Our mission statement is “_At Streamline Security, our mission is to afford our clients the peace of mind by providing the upper echelon of security personnel. We do this by consistently hiring, training and...


  • Toronto, Canada Greater Toronto Airports Authority Full time

    **Your way forward: Lead the Digital Revolution at Canada’s Busiest Airport** Are you ready to redefine the future of global air travel? Join Toronto Pearson as our next Chief Information Security Officer (CISO) and take airport cybersecurity to new heights. **Transform Toronto Pearson into the Airport of Tomorrow** We are on a relentless mission to...


  • Toronto, Canada Bank of America Full time

    At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day. One of the keys to driving Responsible Growth is being a great place to work for our teammates...

  • Security Officer

    3 days ago


    Toronto, Canada SS Security Services Full time

    **Overview** **Responsibilities** - Monitor and patrol assigned areas to ensure safety and security. - Operate and maintain CCTV systems to oversee activities within the facility. - Respond promptly to alarms, incidents, or emergencies, ensuring appropriate action is taken. - Conduct regular inspections of buildings and grounds to identify potential...


  • Toronto, Ontario, Canada Docebo Full time US$60,000 - US$120,000 per year

    Artificial Intelligence. Actual Impact.At Docebo, AI isn't just a buzzword — it's how we help teams move faster, perform better, and focus on the work that actually matters. Our learning platform is built with smart, time-saving tools that personalize training, cut the busywork, and make learning feel like less of a chore (and more of a superpower).We're...


  • Toronto, Ontario, Canada Docebo Full time $100,000 - $150,000 per year

    Artificial Intelligence. Actual Impact.At Docebo, AI isn't just a buzzword — it's how we help teams move faster, perform better, and focus on the work that actually matters. Our learning platform is built with smart, time-saving tools that personalize training, cut the busywork, and make learning feel like less of a chore (and more of a superpower).We're...


  • Toronto, Ontario, Canada Marsh McLennan Full time US$227,400 - US$341,100

    Company:MMC CorporateDescription:We are seeking a talented individual to join our Information and Security team at Mercer. This role can be based in New York, Boston, Dallas, Denver, Houston, Louisville, Morristown, Phoenix, Urbandale in the US, as well as Toronto, Canada, London, and Dublin, Ireland. This is a hybrid role that has a requirement of working...

  • IT Security Officer

    2 weeks ago


    Toronto, Canada Centre for Addiction and Mental Health Full time

    **Through its core values of**_Courage, Respect and Excellence_**, CAMH is implementing its Strategic Plan**:_Connected CAMH,_** to transform lives, ignite innovation and discovery, revolutionize education and drive social change. CAMH is more than a hospital, it is a cause. CAMH is on a mission to change the way society thinks about and responds to mental...


  • Toronto, Canada MMC Corporate Full time

    We are seeking a talented individual to join our Information and Security team at Mercer. This role can be based in New York, Boston, Dallas, Denver, Houston, Louisville, Morristown, Phoenix, Urbandale in the US, as well as Toronto, Canada, London, and Dublin, Ireland. This is a hybrid role that has a requirement of working at least three days a week in the...