Cybersecurity Control
2 weeks ago
CONTRACTOR - IT & Cybersecurity Control Testing Auditor (Senior)
-
(25000MT8)
Missions
The candidate will report to an experienced testing manger and will be responsible for leading reviews as part of the Annual Control Plan focused speficically on Information Technology, Infosec and Cyber risks. The candidate will be responsible to:
· Conduct business process and control walkthroughs and gather information to understand the context, risks and intended control operation to be tested.
· Scope, plan and execute technology and compliance control audits with the following focus areas:
- Design and execute tests to validate application system controls, which may require data analysis, code inspection and re-performance of system processes.
- Analyse the design of controls around the underlying system architecture in the context of information technology controls such as security, availability and performance and their impact on business-aligned technology groups.
- Analyse the business and technology processes to evaluate the effectiveness of the relevant technology controls.
- Validate that system features meet business, technology and regulatory requirements.
· Identify issues through testing, ensuring that appropriate action plans are being developed by the business to correct the deficiencies noted.
· Discuss results and findings with relevant stakeholders including the business or function being tested.
· Document review work and develop final testing reports to document and formally communicate testing results to stakeholders.
· Validate that the business has completed the agreed upon action plans by the due date.
· Maintain regular engagement and provide feedback to key stakeholders within Compliance, Risk and Business units.
· Assist the audit manager with development of the annual risk based Testing Plan.
Profile
LANGUAGE:
Ability to communicate in English, both orally and in writing, is a requirement as the person in this position will need to collaborate regularly with colleagues and partners in the United States.
Competencies:
· Understand and apply Audit methodology and various techniques to perform controls based audits.
· Apply knowledge and experience in auditing general and application controls across a variety of technologies and platform using IS industry standards and best practices
· Apply a broad and comprehensive understanding of high-risk IS/cyber areas including identity and access management, data protection, encryption, firewall security, instruction detection and prevention systems and insider threat.
· Audit non-technical areas including IT governance, project management and systems development.
· Audit experience covering cloud-based infrastructure is a plus, but not required
· Synthesize data and observations into findings and effectively present and communicate conclusions in writing and orally.
· Analyze complex sets of data using Excel, Access, VBA and other advanced scripting and analytical tools that help operate and visualize data.
· Undsertand Investment Banking and Broker Dealer related risks and regulations
· Apply strong analytical, problem-solving and organizational skills, handle multiple, simultaneous, and various ad-hoc requests.
· Exercise strong attention to detail; ability to work independently; prioritize and work in a dynamic, deadline-focused environment.
· Work collaboratively within a complex organization, across multiple cultures, geographies and disciplines; strong interpersonal and written/verbal communication skills.
Technical Skills & Knowledge:
· Experience and application of industry standard technology frameworks and regulations such as NIST, FFIEC, ISO, GDPR, NYSDFS, FISMA etc.
· Experience with various data analytics and data management tools
o Scripting tools: Python, VBA
o Relational data tools: T-SQL, PL/SQL
o Data Visualization tools: PowerBI, Microstrategy, Spotfire
· Expertise with Microsoft Word, Excel, and PowerPoint
· Excellent writing skills
· Securities licenses a plus
Prior work experience:
· 7-11 years of working experience within the Financial Services industry or equivalent environment
· 3-5 years performing audits of systems, physical, logical, or cyber security in a technical environment using generally accepted auditing standards consistent with internal control frameworks.
· General knowledge of applicable regulatory requirements and expectations related to investment banking and broker–dealer activities.
· AML experience a plus.
-
Senior Cybersecurity Specialist
5 days ago
Montreal, Quebec, Canada Transat AT Full time $80,000 - $120,000 per yearCompany Description Be part of the journeyOur mission is to be the preferred airline of our customers and our team.Open-mindedness, concern for others, intelligence at work and, above all, a healthy dose of fun enable us to achieve great things every day. Our dedication has earned us the title of the world's best leisure airline multiple times, and we're...
-
Senior Cybersecurity Specialist
3 hours ago
Montreal, Quebec, Canada Air Transat Full time $90,000 - $120,000 per yearBe part of the journeyOur mission is to be the preferred airline of our customers and our team.Open-mindedness, concern for others, intelligence at work and, above all, a healthy dose of fun enable us to achieve great things every day. Our dedication has earned us the title of the world's best leisure airline multiple times, and we're just getting...
-
Project and Operations Manager – CyberSecurity
2 weeks ago
Montreal, Quebec, Canada Stingray Full time $80,000 - $120,000 per yearDepartment ITLocation MontrealAt Stingray, creativity, collaboration, and innovative technology are the pillars of our DNA. Are you ready to rock your career by joining a growing company, a team of music enthusiasts in a stimulating and fun work environment?We are currently looking for a Project and Operations Manager – CyberSecurity to join our...
-
cybersecurity analyst
2 weeks ago
Montreal, Quebec, Canada Boutique La Vie En Rose Full time $90,000 - $120,000 per yearJoin a diverse and talented team For years now, we've been designing lingerie and swimwear for everyday living. Why do we do what we do? Because we want women around the world to look and feel their best Join our dynamic team to start a stimulating professional career in a committed and constantly evolving environment. We're a proudly local company...
-
Cybersecurity Analyst
7 days ago
Montreal, Quebec, Canada Recochem Full time $90,000 - $120,000 per yearAbout PFXWe engineer leading fluid solutions that keep the world moving and we're building a better future while we do it. As a vertically integrated global powerhouse, we operate 17 manufacturing facilities and 4 R&D centers across the world, delivering performance from lab to road in over 40 countries.PFX Group brings together a family of trusted companies...
-
Cybersecurity Specialist
2 weeks ago
Montreal, Quebec, Canada Wepoint Full time $90,000 - $120,000 per yearAbout OnepointOnepoint is a key architect behind the major transformations of businesses and public sector organizations.We support our clients from strategy through to technological implementation—always aiming to think beyond the obvious. We are committed to principles of Economic, Social, Environmental, and Technological Responsibility (RESET), with the...
-
Cybersecurity Specialist
7 days ago
Montreal, Quebec, Canada Onepoint Full time $80,000 - $120,000 per yearDescription de l'entreprise Wepoint est l'architecte des grandes transformations des entreprises et des acteurs publics. Nous accompagnons nos clients de la stratégie à la mise en œuvre technologique, en nous attachant toujours à penser au-delà des évidences et à s'inscrire dans des logiques de Responsabilité Économique, Sociale, Environnementale...
-
Montreal, Quebec, Canada State Street Full time US$120,000 - US$180,000 per yearJob DescriptionWho we are looking forWho We Are Looking ForGlobal Technology is transforming the controls function to enhance control rationalization and incorporate robust system integrations and automations. The position will support this transformation to drive increased efficiency and effectiveness across State Street's cybersecurity and technology risk...
-
Senior Project Controls Engineer/Specialist
6 days ago
Montreal, Quebec, Canada Parsons Corporation Full time $80,000 - $120,000 per yearIn a world of possibilities, pursue one with endless opportunities. Imagine NextWhen it comes to what you want in your career, if you can imagine it, you can do it at Parsons. Imagine a career working with intelligent, diverse people sharing a common quest. Imagine a workplace where you can be yourself. Where you can thrive. Where you can find your next,...
-
Sr Operational Risk Officer
3 days ago
Montreal, Quebec, Canada RISQ Full time $90,000 - $120,000 per yearMust Have\: · Bachelor and or master's degree in computer science, Engineering or relevant technical field· Understanding of financial services specifically within cyber and data privacy related laws, regulations, frameworks and guidelines (NYSDFS - 23NYCRR500, ECB, GDPR, GLBA, Regulation S-P, etc.) · Experience in assessing...