Sr. Information Security Governance Analyst

3 weeks ago


Waterloo, Canada MCAP Full time

The Role

Reporting to the Director, Information Security & Privacy Governance, this role will be responsible for the coordination and execution of governance, risk and control activities within MCAP’s Information Security & Privacy programs.

This position will be accountable for the creation, maintenance and distribution of enterprise level policies, procedures and standards within the information security and privacy domains. Ensure the information security & privacy programs accomplish its objectives by bringing a systematic approach to improve the overall effectiveness of these programs. Coordinate and/or lead corporate level incident response preparedness through testing, reporting and actions and will participate in incident response. Propose, create and maintain training courses, training presentations, programs, and develop new training materials that drive continuous awareness for information security & privacy.

Training and Education

Develop a roadmap for MCAP’s awareness training as it relates to information security & privacy that enables greater awareness, compliance and education materials Create and maintain an effective and measurable awareness training program. Create, execute, monitor and report on simulated security exercises to increase the awareness of the importance of security and privacy protocols (. phishing campaigns, tailgating, vishing, mystery customer) Drive awareness and compliance to information security & privacy best practices.

Governance & Operations

Develop and implement effective and reasonable policies, procedures and standards to secure MCAP assets. Propose, create and maintain privacy and security corporate level programs (. DLP administration, access reviews, PIA’s) Coordinate and/or lead security assessments, audits, tabletops and penetration tests Provide support to all stakeholders on information security & privacy standards. Facilitate incident response preparedness through testing, develop plans to close gaps and updating response plans. Contribute to the identification and maintenance of an information security risk registry. Prepare and support security due diligence questionnaires and assessments. Research, maintain an awareness and make recommendations of industry information security challenges, changes or opportunities that would improve MCAP’s information security & privacy posture Perform annual reviews of enterprise information security & privacy policies, procedures and standards. Collaborate with management and with the technical information security team to identify gaps in policy, procedures, or standards and recommendations for improvements Perform analysis of third-party vendor due diligence responses to identify gaps, escalate risks as required and make recommendations to improve the process

Program Measurement/Monitoring

Create measurements of compliance to corporate level policy and procedures (. Access reviews, DLP, PIA) Develop and maintain an information security & privacy program scorecard/dashboard that demonstrates our current (real time) posture and opportunities for improvement Develop a process to report on the remediation of issues that arise from external assessments or audits Internally assess, evaluate, and bring forward recommendations to management regarding the information security & privacy program controls

What You Bring To The Team 

Minimum 6-9 years in information security & privacy governance Broad experience in the development of policies, procedures & standards Strong knowledge of information security governance frameworks (. CIS, NIST, ISO) Solid understanding and knowledge with security tools and technology (. firewalls, IDS, IPS, encryption, EDR, DLP, NAC, CASB, DKIM, DMARC, email protection) Advanced interpersonal skills and the abilities to interface with all business units in the organization Ability to work effectively and efficiently Ability to multi-task in a fast-paced environment Ability to develop and deliver awareness, education and coach. Strong knowledge of security tools and technology Strong knowledge of systems, network and cloud architectures Strong knowledge with risk analysis, penetration testing, and vulnerability management Demonstrated ability to create and maintain enterprise level security policy, procedures, etc… Excellent writing and verbal communication skills, interpersonal and presentation skills and proven ability to influence and communicate effectively with all levels of staff. Carries out duties with integrity and takes responsibility for actions Handles critical and sensitive information with the strictest confidentiality and privacy Excellent problem-solving and conflict resolution skills Ability to lead change initiatives and to foster a positive employee relations environment Very strong presentation and negotiation skills Formal IT & security accreditations such as (. ITIL, COBIT) Security certifications in (. CISM, CISA, CISSP) A degree or diploma in a relevant area of study with preference for information security or computer science/engineering

  • Waterloo, Canada OpenText Full time

    OPENTEXT OpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the world, tackle complex issues, and contribute to projects that shape the future of...


  • Waterloo, Canada opentext Full time

      OPENTEXT OpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the world, tackle complex issues, and contribute to projects that shape the future...


  • Waterloo, Canada opentext Full time

    **OPENTEXT** OpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the world, tackle complex issues, and contribute to projects that shape the future of...


  • Waterloo, Canada Hamilton Barnes Associates Limited Full time

    A leading Canadian financial organisation is seeking an experienced Information Security Consultant to contribute to the day-to-day delivery and improvement of the information security program, security operations and security compliance.The company has a significant cyber security budget and will see you working with leading cyber technologies and a highly...


  • Waterloo, Canada Hamilton Barnes Associates Limited Full time

    A leading Canadian financial organisation is seeking an experienced Information Security Consultant to contribute to the day-to-day delivery and improvement of the information security program, security operations and security compliance.The company has a significant cyber security budget and will see you working with leading cyber technologies and a highly...


  • Waterloo, Canada Hamilton Barnes Associates Limited Full time

    A leading Canadian financial organisation is seeking an experienced Information Security Consultant to contribute to the day-to-day delivery and improvement of the information security program, security operations and security compliance.The company has a significant cyber security budget and will see you working with leading cyber technologies and a highly...


  • Waterloo, Canada Sun Life Full time

    You are as unique as your background, experience and point of view. Here, you’ll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll...


  • Waterloo, Canada BlackBerry Full time

    Worker Sub-Type: Regular **Job Description**: SUMMARY: As a member of the Cyber Security team, the Cyber Security Analyst will be responsible for ensuring that BlackBerry systems are designed and implemented securely. The primary focus will be reviewing architecture and design from a security and compliance standpoint ensuring deployments meet or exceed...


  • Waterloo, Canada Hamilton Barnes Associates Limited Full time

    A leading Canadian financial organisation is seeking an experienced Information Security Engineer to lead the internal security operations, and vulnerability management and assist with governance activities.The ideal candidate will have extensive experience with various security tools including SIEM, EDR, Firewalls, IDS, IPS, SAST/DAST, IAM and more.This is...


  • Waterloo, Canada Hamilton Barnes Associates Limited Full time

    A leading Canadian financial organisation is seeking an experienced Information Security Engineer to lead the internal security operations, and vulnerability management and assist with governance activities.The ideal candidate will have extensive experience with various security tools including SIEM, EDR, Firewalls, IDS, IPS, SAST/DAST, IAM and more.This is...


  • Waterloo, Canada Hamilton Barnes Associates Limited Full time

    A leading Canadian financial organisation is seeking an experienced Information Security Engineer to lead the internal security operations, and vulnerability management and assist with governance activities.The ideal candidate will have extensive experience with various security tools including SIEM, EDR, Firewalls, IDS, IPS, SAST/DAST, IAM and more.This is...


  • Waterloo, Canada BlackBerry Full time

    Worker Sub-Type: Regular **Job Description**: Security Response Analyst II BlackBerry® AI-Driven Cybersecurity protects organizations with a modern unified endpoint security solution. Our end-to-end approach to cybersecurity is deeply rooted in Cylance AI and machine learning, providing enhanced visibility and protection against current and future...


  • Waterloo, ON, Canada Hamilton Barnes Associates Limited Full time

    A leading Canadian financial organisation is seeking an experienced Information Security Consultant to contribute to the day-to-day delivery and improvement of the information security program, security operations and security compliance. The company has a significant cyber security budget and will see you working with leading cyber technologies and a...


  • Waterloo, Canada Wilfrid Laurier University Full time

    **Date**:Jun 13, 2023 **Location**: Waterloo, CA **Company**:Wilfrid Laurier University **Department**: Advancement and External Relations **Job Type**: Continuing **Full-time/Part-time**: Full Time (>=1249 hrs/year) **Campus**: Waterloo **Reports to**:Associate Director: Prospect Management, Research & Records **Employee Group**:...


  • Waterloo, Canada Equitable Life of Canada Full time

    Senior Technology Specialist, Information Security Waterloo, ON, Canada Req #2257 Monday, May 6, 2024 At Equitable, we realize that your work life is not just about performing a job; it's about being part of a workplace that helps you grow and reach your full potential. Within our friendly and collaborative work environment, we recognize that the key...

  • HR Analyst

    5 days ago


    Waterloo, Canada Equitable Life of Canada Full time

    At Equitable Life of Canada, we realize that your work life is not just about performing a job; it's about being part of a workplace that helps you grow and reach your full potential. Within our friendly and collaborative work environment, we recognize that the key to our growth and success is a dedicated, motivated and customer-responsive staff. Join...


  • Waterloo, Canada Equitable Life of Canada Full time

    At Equitable, we realize that your work life is not just about performing a job; it's about being part of a workplace that helps you grow and reach your full potential. Within our friendly and collaborative work environment, we recognize that the key to our growth and success is a dedicated, motivated and client-responsive staff. Join Equitable today. ...


  • Waterloo, Canada Equitable Life of Canada Full time

    At Equitable, we realize that your work life is not just about performing a job; it's about being part of a workplace that helps you grow and reach your full potential. Within our friendly and collaborative work environment, we recognize that the key to our growth and success is a dedicated, motivated and client-responsive staff. Join Equitable today. ...


  • Waterloo, Canada Equitable Life of Canada Full time

    At Equitable, we realize that your work life is not just about performing a job; it's about being part of a workplace that helps you grow and reach your full potential. Within our friendly and collaborative work environment, we recognize that the key to our growth and success is a dedicated, motivated and client-responsive staff. Join Equitable today. ...


  • Waterloo, Canada Bouygues Energies & Services UK Full time

    **Information Systems Project Analyst**: Bouygues Energies & Services Solutions - Waterloo - Becket House We currently have an exciting opportunity for an IS Project Analyst to join our team in Becket House on a 12 month fixed term contract. This role will offer the post holder an opportunity to oversee the delivery of new systems set to be rolled out in...