Security Assurance, Lead
at Interac Corp
Toronto, ON, Canada -
Start Date | Expiry Date | Salary | Posted On | Experience | Skills | Telecommute | Sponsor Visa |
---|---|---|---|---|---|---|---|
Immediate | 24 Apr, 2025 | USD 140000 Annual | 25 Jan, 2025 | N/A | Good communication skills | No | No |
Required Visa Status:
Citizen | GC |
US Citizen | Student Visa |
H1B | CPT |
OPT | H4 Spouse of H1B |
GC Green Card |
Employment Type:
Full Time | Part Time |
Permanent | Independent - 1099 |
Contract – W2 | C2H Independent |
C2H W2 | Contract – Corp 2 Corp |
Contract to Hire – Corp 2 Corp |
Description:
SECURITY ASSURANCE, LEAD
At Interac, we design and deliver products and solutions that give Canadians control over their money so they can get more out of life. But that’s not all. Whether we’re leading real-time money movement, driving innovative commerce solutions like open payments for transit systems, or making advancements in new areas like verification and open banking, we are playing a key role in shaping the future of the digital economy in Canada.
Want to make a lasting impact amongst a community of creative thinkers, problem solvers, technical virtuosos, and high-performance application developers? We want to hear from you.
The Security Assurance Lead is a key resource to ensuring Interac Corp. “Security First” principles are embedded in all environments. The successful candidate will have expert knowledge of assurance principles in security policies and standards and modern practices and a good understanding of security aspects of the various technologies. As a member a dedicated Information Security team, the Security Assurance Lead works closely with senior leadership, team members and staff across Risk, Audit, Vendor Management, Legal, IT Operations, and Infrastructure teams to ensure the organization is operating securely.
In this role, you are working with the various teams to maintain security posture of the organization. You will design and manage a Security Assurance and Program to ensure that our organization’s people, process, and technology are secure and resilient against various threats. You want to know as much about the state of the environment as you can, and you can think outside the box when it comes to proposing solutions which will benefit the organization.
You’ll be responsible for:
- Implementation and ongoing management of a cyber security assurance testing program to ensure the effectiveness of security processes and procedures, compliance with organizational cyber security framework and industry best practices.
- Conducting continuous security control testing exercises at defined intervals, collect evidence, and collaborate with business units to identify areas for improvement and resolution.
- Developing a security requirements matrix mapped to organization’s policies and standards.
- Examining and interpreting project requirement documents and architecture diagrams to determine security risks and ensure security requirements are embedded into projects.
- Developing and maintaining security assurance KRI’s and KPI’s to report on and assess the effectiveness and adherence to security requirements and technical controls.
- Experience managing risk throughout the risk lifecycle and effectively managing risk within organizational risk appetite.
- Weighing business needs against security concerns to help guide the business to make practical and informed risk decisions to enhance the security posture of the organization products and services.
- Participating and supporting security related engagements and serve as a key interface with external and internal auditors for security compliance related activities.
- Expert knowledge of industry best practices, pertinent regulations and standards bodies such as ISO 27001/2, PCI DSS, CIS, and NIST Series.
How To Apply:
Incase you would like to apply to this job directly from the source, please click here
Responsibilities:
- Implementation and ongoing management of a cyber security assurance testing program to ensure the effectiveness of security processes and procedures, compliance with organizational cyber security framework and industry best practices.
- Conducting continuous security control testing exercises at defined intervals, collect evidence, and collaborate with business units to identify areas for improvement and resolution.
- Developing a security requirements matrix mapped to organization’s policies and standards.
- Examining and interpreting project requirement documents and architecture diagrams to determine security risks and ensure security requirements are embedded into projects.
- Developing and maintaining security assurance KRI’s and KPI’s to report on and assess the effectiveness and adherence to security requirements and technical controls.
- Experience managing risk throughout the risk lifecycle and effectively managing risk within organizational risk appetite.
- Weighing business needs against security concerns to help guide the business to make practical and informed risk decisions to enhance the security posture of the organization products and services.
- Participating and supporting security related engagements and serve as a key interface with external and internal auditors for security compliance related activities.
- Expert knowledge of industry best practices, pertinent regulations and standards bodies such as ISO 27001/2, PCI DSS, CIS, and NIST Series
REQUIREMENT SUMMARY
Min:N/AMax:5.0 year(s)
Information Technology/IT
IT Software - Network Administration / Security
Software Testing
Diploma
Excellent knowledge information security with degree or diploma in information technology and/or business or combined relevant field experience and certifications cissp cisa crisc cism.
Proficient
1
Toronto, ON, Canada