Information Security Governance Analyst

4 weeks ago


Waterloo, Canada MCAP Full time

The Role

Reporting to the Director, Information Security & Privacy Governance, this role will contribute to governance, risk and control activities within MCAP’s Information Security & Privacy programs.

This position will be accountable for the creation, maintenance and distribution of enterprise level policies, procedures and standards within the information security and privacy domains. Ensure the information security & privacy programs accomplish its objectives by bringing a systematic approach to improve the overall effectiveness of these programs. Facilitate and/or lead corporate level incident response preparedness through testing, reporting and actions and will participate in incident response. Create training courses, training presentations, programs, and develop new training materials that drive continuous awareness for information security & privacy.

Training and Education

Develop a roadmap for MCAP’s awareness training as it relates to information security & privacy that enables greater awareness, compliance and education materials Create and maintain an effective and measurable awareness training program. Create, execute, monitor and report on simulated security exercises to increase the awareness of the importance of security and privacy protocols (. phishing campaigns, tailgating, vishing, mystery customer) Drive awareness and compliance to information security & privacy best practices

Governance & Operations

Develop and implement effective and reasonable policies, procedures and standards to secure MCAP assets. Participate and/or lead security assessments, audits, tabletops and penetration tests Provide support to all stakeholders on information security & privacy standards. Facilitate incident response preparedness through testing, develop plans to close gaps and updating response plans. Contribute to the identification and maintenance of an information security risk registry. Prepare and support security due diligence questionnaires and assessments. Research and maintain an awareness of industry information security challenges, changes or opportunities that would improve MCAP’s information security & privacy posture Support and assist annual reviews of enterprise information security & privacy policies, procedures and standards. Collaborate with the technical information security team to identify gaps in policy, procedures, or standards and recommendations for improvements Perform analysis of third-party vendor due diligence responses to identify gaps, escalate risks as required and make recommendations to improve the process

Program Measurement/Monitoring

Create measurements of compliance to corporate level policy and procedures (. Access reviews, DLP, PIA) Develop and maintain an information security & privacy program scorecard/dashboard that demonstrates our current (real time) posture and opportunities for improvement Develop a process to report on the remediation of issues that arise from external assessments or audits Internally assess, evaluate, and bring forward recommendations to management regarding the information security & privacy program controls.

What You Bring To The Team 

3-6 years in information security & privacy governance Proven experience in the development of policies, procedures & standards Strong knowledge of information security governance frameworks (. CIS, NIST, ISO) General knowledge with security tools and technology (. firewalls, IDS, IPS, encryption, EDR, DLP, NAC, CASB, DKIM, DMARC, email protection) Advanced interpersonal skills and the abilities to interface with all business units in the organization Ability to work effectively and efficiently Ability to multi-task in a fast-paced environment General knowledge of security tools and technology General knowledge of systems, network and cloud architectures General knowledge with risk analysis, penetration testing, and vulnerability management Demonstrated ability to create and maintain enterprise level security policy, procedures, etc. Excellent writing and verbal communication skills, interpersonal and presentation skills and proven ability to influence and communicate effectively with all levels of staff. Carries out duties with integrity and takes responsibility for actions Handles critical and sensitive information with the strictest confidentiality and privacy Excellent problem-solving and conflict resolution skills Ability to lead change initiatives and to foster a positive employee relations environment A degree or diploma in a relevant area of study with preference for information security or computer science/engineering Formal IT & security accreditations such as (. ITIL, COBIT) Security certifications in (. CISM, CISA, CISSP)

  • Waterloo, Canada Sun Life Full time

    You are as unique as your background, experience and point of view. Here, you’ll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll...


  • Waterloo, Canada eSentire Full time

    About eSentire Founded in 2001, the company’s mission is to hunt, investigate and stop cyber threats before they become business-disrupting events. Combining cutting-edge machine learning XDR technology, 24/7 Threat Hunting, and proven security operations leadership, eSentire mitigates business risk and enables security at scale. The Team eSentire...


  • Waterloo, Canada Hamilton Barnes Associates Limited Full time

    A leading Canadian financial organisation is seeking an experienced Information Security Consultant to contribute to the day-to-day delivery and improvement of the information security program, security operations and security compliance.The company has a significant cyber security budget and will see you working with leading cyber technologies and a highly...


  • Waterloo, Canada Hamilton Barnes Associates Limited Full time

    A leading Canadian financial organisation is seeking an experienced Information Security Consultant to contribute to the day-to-day delivery and improvement of the information security program, security operations and security compliance.The company has a significant cyber security budget and will see you working with leading cyber technologies and a highly...


  • Waterloo, Canada Hamilton Barnes Associates Limited Full time

    A leading Canadian financial organisation is seeking an experienced Information Security Consultant to contribute to the day-to-day delivery and improvement of the information security program, security operations and security compliance.The company has a significant cyber security budget and will see you working with leading cyber technologies and a highly...


  • Waterloo, Canada Hamilton Barnes Associates Limited Full time

    A leading Canadian financial organisation is seeking an experienced Information Security Engineer to lead the internal security operations, and vulnerability management and assist with governance activities.The ideal candidate will have extensive experience with various security tools including SIEM, EDR, Firewalls, IDS, IPS, SAST/DAST, IAM and more.This is...


  • Waterloo, Canada Hamilton Barnes Associates Limited Full time

    A leading Canadian financial organisation is seeking an experienced Information Security Engineer to lead the internal security operations, and vulnerability management and assist with governance activities.The ideal candidate will have extensive experience with various security tools including SIEM, EDR, Firewalls, IDS, IPS, SAST/DAST, IAM and more.This is...


  • Waterloo, Canada Hamilton Barnes Associates Limited Full time

    A leading Canadian financial organisation is seeking an experienced Information Security Engineer to lead the internal security operations, and vulnerability management and assist with governance activities.The ideal candidate will have extensive experience with various security tools including SIEM, EDR, Firewalls, IDS, IPS, SAST/DAST, IAM and more.This is...


  • Waterloo, Canada Wilfrid Laurier University Full time

    **Date**:Jun 13, 2023 **Location**: Waterloo, CA **Company**:Wilfrid Laurier University **Department**: Advancement and External Relations **Job Type**: Continuing **Full-time/Part-time**: Full Time (>=1249 hrs/year) **Campus**: Waterloo **Reports to**:Associate Director: Prospect Management, Research & Records **Employee Group**:...


  • Waterloo, Canada Erb Fischer Veterinary Corporation Full time

    Work Term: PermanentWork Language: EnglishHours: 35 to 40 hours per weekEducation: Bachelor's degreeExperience: 3 years to less than 5 yearsWork settingHospital/health care establishment/health institutionPrivate company, corporation or industryTasksRespond to users experiencing difficulties with computerConsult user guides, technical manuals and other...


  • Waterloo, Canada Erb Fischer Veterinary Corporation Full time

    Durée de l'emploi: PermanentLangue de travail: AnglaisHeures de travail: 35 to 40 hours per weekEducation: Expérience: EducationBachelor's degreeWork settingHospital/health care establishment/health institutionPrivate company, corporation or industryTasksRespond to users experiencing difficulties with computerConsult user guides, technical manuals and...


  • Waterloo, Canada Equitable Life of Canada Full time

    Senior Technology Specialist, Information Security Waterloo, ON, Canada Req #2257 Monday, May 6, 2024 At Equitable, we realize that your work life is not just about performing a job; it's about being part of a workplace that helps you grow and reach your full potential. Within our friendly and collaborative work environment, we recognize that the key...


  • Waterloo, Canada Equitable Life of Canada Full time

    At Equitable, we realize that your work life is not just about performing a job; it's about being part of a workplace that helps you grow and reach your full potential. Within our friendly and collaborative work environment, we recognize that the key to our growth and success is a dedicated, motivated and client-responsive staff. Join Equitable today. ...


  • Waterloo, Canada Equitable Life of Canada Full time

    At Equitable, we realize that your work life is not just about performing a job; it's about being part of a workplace that helps you grow and reach your full potential. Within our friendly and collaborative work environment, we recognize that the key to our growth and success is a dedicated, motivated and client-responsive staff. Join Equitable today. ...


  • Waterloo, Canada Equitable Life of Canada Full time

    At Equitable, we realize that your work life is not just about performing a job; it's about being part of a workplace that helps you grow and reach your full potential. Within our friendly and collaborative work environment, we recognize that the key to our growth and success is a dedicated, motivated and client-responsive staff. Join Equitable today. ...


  • Waterloo, Canada University of Waterloo Full time

    Overview: The Business Systems Analyst (Analyst) provides functional business analysis and project leadership in systems development related to student information systems and integrations of the University, while supporting major, more complex business processes. There are several critical aspects of support including provision of accurate and timely data...

  • Governance Officer

    1 month ago


    Waterloo, Canada University of Waterloo Full time

    Overview: Reporting to the University Secretary (US) the Governance Officer acts as a neutral and objective resource providing procedural advice and support to three functional areas within the Secretariat: - the Board of Governors and its committees; - the Senate and its committees and councils; and - policy development, renewal and administration,...


  • Waterloo, Canada Equitable Life of Canada Full time

    Data Governance and Quality Specialist Waterloo, ON, Canada Req #2168 Monday, March 11, 2024 At Equitable, we realize that your work life is not just about performing a job; it's about being part of a workplace that helps you grow and reach your full potential. Within our friendly and collaborative work environment, we recognize that the key to our...


  • Waterloo, Canada Equitable Life of Canada Full time

    Lead Technology Architect, Data Security Waterloo, ON, Canada Req #2241 Monday, April 29, 2024 At Equitable, we realize that your work life is not just about performing a job; it's about being part of a workplace that helps you grow and reach your full potential. Within our friendly and collaborative work environment, we recognize that the key to our...


  • Waterloo, Canada Sun Life Full time

    You are as unique as your background, experience and point of view. Here, you’ll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll...