INFOSEC PRODUCT OWNER, GRC at Business Development Bank of Canada
Montréal, QC H3B 5E7, Canada -
Full Time


Start Date

Immediate

Expiry Date

15 Nov, 25

Salary

0.0

Posted On

15 Aug, 25

Experience

0 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Computer Science, Financial Performance, Information Security, Participation, Operating Models, Risk Frameworks, It Governance, Leadership

Industry

Financial Services

Description

We are banking at another level.
Choosing BDC as your employer means working in a healthy, inclusive, and skilled workplace that puts forward the best conditions to bring together unique teams where employees are empowered to act. It also means being at the centre of ambitious economic and financial projects to see further and to do things differently, to fuel the success of Canadian entrepreneurs.

Choosing BDC as your employer also means:

  • Flexible and competitive benefits, including an Employee Savings and Investment Plan where BDC matches part of your voluntary contributions, a Defined Benefit Pension Plan, a $750 wellness and health care spending account, to name a few
  • In addition to paid vacation each year, five personal days, sick days as necessary, and our offices are closed from December 25 to January 1
  • A hybrid work model that truly balances work and personal life
  • Opportunities for learning, training and development, and much more…
  • Please note that this role requires bilingualism in English and French.

POSITION OVERVIEW

We are seeking a dynamic and driven Product Owner (PO) to join our Cybersecurity Governance, Risk & Culture department within the squad Risk & Value Office. In this pivotal role, you will be at the heart of InfoSec, championing technology risk management, strategic planning, performance measurement, and executive-level reporting.
As a Product Owner, you will work closely with your squad to maximize the value delivered by the Product, ensuring strong alignment with both BDC’s and InfoSec’s strategic objectives. You will be responsible for prioritizing and supporting the Squad delivering both operational activities and product evolutions. Collaboration is key—you will engage with other InfoSec squads, IT teams, and the organization’s lines of defense to align roadmaps but also support robust risk management and informed strategic decision-making.
You’ll be joining the team during an exciting transformation, as IT adopts a shared agile operating model. Squads are empowered to make key decisions within their scope, including defining their ways of working, and determining how best to achieve their goals and developing a mindset of continuous improvement.
Key Focus

The Product that the PO will support is responsible for delivering the following key InfoSec capabilities:

  • Technology Risk Management: Establish and maintain a robust technology risk framework to identify, assess, and monitor key threats and risk scenarios.
  • Performance Measurement: Develop and manage tools and methodologies to track InfoSec control performance and threat exposure across squads.
  • Reporting: Ensure timely, accurate, and standardized InfoSec reporting to executive stakeholders and governance bodies.
  • Budget Management: Oversee InfoSec financial planning and procurement activities to support strategic and operational priorities.
  • Transformation Support: Drive and coordinate the execution of strategic transformation initiatives impacting InfoSec and enterprise-wide programs
  • Strategic Planning: Support InfoSec leadership with the definition of yearly InfoSec objectives and maintain a capabilities portfolio to guide annual planning and investment decisions.
  • Quarterly Prioritization: Support InfoSec leadership to prioritize InfoSec activities to ensure strategic focus and a risk-based approach during IT quarterly planning for effective cross-functional delivery.

In the role, the PO will be responsible for:

  • Define and communicate a clear Product vision and strategy, creating and maintaining a visible Product Roadmap that highlights delivery priorities and key functionalities.
  • Manage the Product backlog and set priorities based on squad capacity, ensuring alignment with InfoSec and BDC objectives.
  • Oversee governance processes, compliance, and security controls assigned to the Product,
  • Coordinating delivery cadence and quarterly squad events.
  • Promote frequent, incremental product improvements that drive organizational value.
  • Track value realization through Objectives and Key Results (OKRs)
  • Delivering, as a Squad member, high-quality outputs focused on Product users.
Responsibilities

The Product that the PO will support is responsible for delivering the following key InfoSec capabilities:

  • Technology Risk Management: Establish and maintain a robust technology risk framework to identify, assess, and monitor key threats and risk scenarios.
  • Performance Measurement: Develop and manage tools and methodologies to track InfoSec control performance and threat exposure across squads.
  • Reporting: Ensure timely, accurate, and standardized InfoSec reporting to executive stakeholders and governance bodies.
  • Budget Management: Oversee InfoSec financial planning and procurement activities to support strategic and operational priorities.
  • Transformation Support: Drive and coordinate the execution of strategic transformation initiatives impacting InfoSec and enterprise-wide programs
  • Strategic Planning: Support InfoSec leadership with the definition of yearly InfoSec objectives and maintain a capabilities portfolio to guide annual planning and investment decisions.
  • Quarterly Prioritization: Support InfoSec leadership to prioritize InfoSec activities to ensure strategic focus and a risk-based approach during IT quarterly planning for effective cross-functional delivery

In the role, the PO will be responsible for:

  • Define and communicate a clear Product vision and strategy, creating and maintaining a visible Product Roadmap that highlights delivery priorities and key functionalities.
  • Manage the Product backlog and set priorities based on squad capacity, ensuring alignment with InfoSec and BDC objectives.
  • Oversee governance processes, compliance, and security controls assigned to the Product,
  • Coordinating delivery cadence and quarterly squad events.
  • Promote frequent, incremental product improvements that drive organizational value.
  • Track value realization through Objectives and Key Results (OKRs)
  • Delivering, as a Squad member, high-quality outputs focused on Product users
Loading...