Start Date
Immediate
Expiry Date
29 Nov, 26
Salary
0.0
Posted On
31 Aug, 26
Experience
0 year(s) or above
Remote Job
Yes
Telecommute
Yes
Sponsor Visa
Yes
Skills
Industry
Information Technology & Services
Leading the development, implementation, and ongoing operation of CNL’s Cyber Security Program (based on NIST 800-53 and ISO27001)
Coordinating and conducting audits of IT systems and infrastructure (hardware/software compliance, user accounts, application access, etc.), ensuring action items are identified, defined, and monitored for completion
Providing support to external auditors who are conducting audits and assessments against CNL systems and information
Participating and assisting in the design and execution of vulnerability assessments, penetration tests and security testing exercises
Monitoring the IT security toolset and enforcing IT security policies and procedures (e.g. password policy compliance, approval of external users, ensuring server configuration compliance, etc.)
Providing 2nd level Operational Support in assisting our customers and supporting teams in the response, assessment and containment of security-related activities
Creating reports on activities such as Internet usage, Email usage, and Malware/Virus Alerts; may be engaged in highly sensitive investigations and audits
Researching emerging threats, products, services, protocols, and standards in support of CNL’s Cyber Security Program (e.g. assess need for any security reconfigurations [minor to moderate]) and working with appropriate groups to implement changes to services (e.g. wireless, remote computing, encryption, etc.)
Making formal and informal recommendations to IT Leadership on long-term direction of the Cyber Security tools, infrastructure and Program
Participating in resolving identified Cyber Security Incidents and accurately documenting and reporting the details of Cyber Security Incidents, including participation in an on-call rotation for IT Incident Response
Recommending hardware/software security patches and any other security measures required in the event of a security breach
Providing input to Cyber Security Requirements for new projects, ensuring adequate Cyber Security engagement throughout the life of the project
Contributing to and reviewing project proposals and solutions, conducting risk assessments to ensure risk levels are managed, and compliance with Cyber Security Program, Privacy, and Protection of Information requirements
Working collaboratively with other departments within CNL IT and our business partners (Security, HR, Legal, etc.) to deliver on CNL’s APWB commitments and interacting with external agencies on IT security issues (e.g AECL, TBS, PWGSC, RCMP, CSIS, etc.)