CYBER SECURITY AND INFORMATION TECHNOLOGY RISK SPECIALIST
Full-time
Business Development Bank of Canada
Job Responsibility:
We are banking at another level. Choosing BDC as your employer means working in a healthy, inclusive, and skilled workplace that puts forward the best conditions to bring together unique teams where employees are empowered to act. It also means being at the centre of ambitious economic and financial projects to see further and to do things differently, to fuel the success of Canadian entrepreneurs. Choosing BDC as your employer also means: - Flexible and competitive benefits, including an Employee Savings and Investment Plan where BDC matches part of your voluntary contributions, a Defined Benefit Pension Plan, a $750 wellness and health care spending account, to name a few
- In addition to paid vacation each year, five personal days, sick days as necessary, and our offices are closed from December 25 to January 1
- A hybrid work model that truly balances work and personal life
- Opportunities for learning, training and development, and much more...
POSITION OVERVIEW The Operational Risk Management (ORM) team oversees the effectiveness of multiple operational risk management programs and is responsible for supporting and challenging the business in the management of risks.BDC and the financial services industry are rapidly evolving introducing more interconnected operational risks. The ORM team deploys an array of programs to support the first line of defence to better manage risk as BDC undergoes its digital and strategic transformation. The ORM team is comprised of individuals who are passionate about risk management and improving BDC operations. We are looking for a Cyber Security and Information Technology Risk Specialist, who will become a key member of the ORM team. They will be positioned as an InfoSec/IT and ORM expert responsible to review the first line of defense in the identification and management of InfoSec and IT risks across the ORM Framework. They will have the opportunity to work with individuals across the entire organization and contribute to many initiatives and projects. They will play a key role in the design, deployment, and evolution of the ORM Framework and methodologies. CHALLENGES TO BE MET - Support first and second-line stakeholders executing ORM Programs including: Risk and Control Self Assessments, Key Risk Indicators, Operational Risk Events, Business Continuity Management, Risk Appetite, and new product and business initiative risk assessments for products, projects and other changes.
- Effectively challenge and critically review first and second line InfoSec/IT risk assessments and risk events
- Monitoring and oversight of remediation activities and action plans
- Recommend new technology risk assessment methodologies and tools.
- Ensure the strength of ORM work methods and their evolution in line with BDC operational realities and industry best practices
- Manage and improve ORM program reporting including program reporting, data collection and analysis, risk reporting, action plans, and committee presentations
- Develop and maintain ORM stakeholder relationships including first line leadership, second line risk functions, and communication with senior leaders
- Develop, enhance, and document ORM Governance and procedures
- Coaching and sharing knowledge with more junior members of the team improving functions overall capability
WHAT WE ARE LOOKING FOR - Bachelor's degree in Information Technology, Communications, Business Administration, Social Sciences-related discipline
- Master's degree or other equivalent combination of education and work experience preferred
- Recognized technology and/or Risk certification preferred (CRISC, CISM, CISA, Open FAIR, CISSP, COBIT, etc.)
- Five years of experience working in Technology Risk, Technology Resilience, Technology Audit or related field
- Subject matter expertise in IT Operations, Data, Digital, Emerging Technology and/or Information Security
- Experience with understanding and translating complex business requirements in a fast-paced banking sector preferred
- Strong business acumen, analytical qualitative and quantitative skills (advanced MS Excel, Power BI an asset)
- Excellent French and English written and verbal communication skills, including for the development and delivery of presentations
- Excellent understanding of modern governance, risk and control frameworks, including the three lines of defense
- Comfortable dealing with and challenging senior stakeholders
- Responsive, agile approach to manage changing priorities
- Continuous improvement/learning mindset, challenging the status quo and seeking self improvement
- Acuity for perceiving and understanding client/stakeholder needs
- Strong planning, coordinating, organizing, training and implementation skills
- Proven record in applying judgment in creating and sustaining a sense of urgency in anticipating and/or preventing impacts to business operations
- Ability to prioritize, meet tight deadlines, escalate when necessary, and work in a multicultural, bilingual and dynamic environment
- Proficiency with MS Office Suite (Word, PowerPoint, Visio)
Proudly one of Canada's Top 100 Employers and one of Canada's Best Diversity Employers, we are committed to fostering a diverse, equitable, inclusive and accessible environment where all employees can thrive and feel empowered to bring their whole selves to work. If you require an accommodation to complete your application, please do not hesitate to contact us at View email address on ca.edajobs.com . While we appreciate all applications, we advise that only the candidates selected to participate in the recruitment process will be contacted.
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the CYBER SECURITY AND INFORMATION TECHNOLOGY RISK SPECIALIST in Montréal, QC vacancy
$47k - $78k per year
...Support Services team within Deloitte Technology – Canada organization, the successful candidate... ...with fellow technicians and with the Information Technology Services support teams who... ...conferencing and collaboration technologies, such as Microsoft Teams, Zoom, and in...SuggestedPermanent employmentWork at officeRemote workFlexible hoursWeekend work- ...industry leaders to transform their supply chains through technology. If you thrive on tackling interesting challenges... ...fit for you! About the Role We are seeking a Security Governance, Risk and Compliance specialist who will be involved in defining how security can enable...SuggestedPermanent employmentFull timeRemote work
- ...why we equip our teams with cutting-edge technology, AI tools, and a collaborative... ...areas such as IoT, Mobility/5G, Cloud, Cyber Security, Voice, Collaboration & Contact Centre... ...positions in Quebec. Additional Information: Position Type: Management Job...SuggestedFull timeWork at office3 days per week
- ...Directeur(rice) Technologies de l’information Poste attaché au bureau de Montréal Vous recherchez un défi à votre mesure? Vous rêvez de servir... ...objectifs d’affaires, tout en assurant la stabilité, la sécurité et l’évolution des systèmes. Plus spécifiquement, ce leader...SuggestedWork at officeLocal areaFlexible hours
- ...someone to join our team as an Information Governance/Data Lifecycle... ...Governance & AI Non-Financial Risk team to support the Information... ...with cutting edge technology and innovation. The multi-faceted... ...engineering, cybersecurity and digital technologies. Morgan Stanley has been...SuggestedFull timeWork at officeRemote work
- ...expert-conseil en innovation et veille technologique. Sans être exhaustifs, voici les services... ...de concepts pour évaluer de nouvelles technologies et processus; Évaluer et documenter... ...technologiques (performance, sécurité, scalabilité, disponibilité). Requirements...Hourly payContract workApprenticeshipWork at officeRemote workFlexible hours
- ...à une entreprise à la fine pointe de la technologie en croissance constante. C’est aussi se... ...poste Vous avez une base solide en sécurité des TI? Vous aimez résoudre des problèmes... ...? L’équipe de sécurité de l’information veut vous rencontrer. L’Analyste en sécurité...Full timeSeasonal workWork at office
- ...nous à créer l’inconnu! Description du poste En tant que chef·fe de projets en technologies de l’information à Ubisoft Montréal, vous soutiendrez des initiatives de sécurité à l’échelle de l’entreprise au sein de l’équipe Sécurité et gestion des risques. Vous planifierez...Full time
- ...présentement à la recherche d ’un(e) analyste d’affaires TI pour accompagner les directions dans la définition de leurs besoins technologiques et dans l’évolution des systèmes applicatifs d’un organisme public de Montréal. La personne participera à des projets de transformation...Hourly payContract workApprenticeshipRemote workFlexible hours
- ...SSENSE est une plateforme technologique montréalaise à portée internationale... ...dirigez les opérations de sécurité en gérant notre... ...Informatique, Sécurité de l'Information, Cybersécurité ou domaine connexe... ...technical Lead Cyber Security Specialist to join our Technology & Engineering...
- ...someone to join our team as a Lead Web Proxy / AI Gateway Specialist in Cyber Security to help scale enterprise GenAI safely. In this role, you’ll... ..., and keep performance fast and reliable. In the Technology division, we leverage innovation to build the connections...Full timeWork at officeRemote work
- ...why we equip our teams with cutting-edge technology, AI tools, and a collaborative... ...executive – 8-15 years • IS Networking specialist Public Sector • Deep understanding... ...positions in Quebec. Additional Information: Position Type: Management Job...Full timeWork at office3 days per week
- ...Gestion des Vulnérabilités est membre de l’équipe Cyber Threat Defense (CTD) au sein du département AMER Data and Cyber Security (ISR) et reporte au Directeur du CTD. Ce poste... ...les dommages potentiels des failles de sécurité et aider à la mise en œuvre des actions correctives...Daily paid
- ...you will support enterprise wide and cross functional security initiatives as part of the Security and Risk Management team. You will plan, coordinate, and... ...communication and data literacy skills, translating complex information into actionable insights. Experience supporting...Full time
$114.6k - $151.8k per year
...Opportunity Build the Future with Us As an IT Vendor Manager, Technology and Security Vendors; you will play a key role in shaping and managing... ..., compliance, performance management, dispute resolution, risk management, and continuous improvement across service delivery...Full timeContract workWork at officeLocal areaRemote workFlexible hours- ...build a better working world. Technology is changing the way... ...with these opportunities come risks, our clients seek independent... ...their internal controls, the security of their business critical systems... ...assist clients in employing information systems, resources, and controls...Flexible hoursWeekend work
- ...leadership de l’écosystème de l’IA à travers le transfert technologique et finalement, de promouvoir l’utilisation éthique et socialement... ...Vous appliquez vos compétences en tant qu’analyste en sécurité de l’information au sein de l’équipe technologie de l’information de Mila...Daily paidContract workApprenticeshipRemote workFlexible hoursDay shift
- ...re seeking someone to join our team as a Technology Risk & Controls Program Support. Positioned... ...Execution (SPE) is a Super Department in Cyber, Data, Risk and Resilience (CDRR). This... ...the job family responsible for providing specialist data analysis and expertise that drive decision...Full timeWork at officeRemote work
- ...We're seeking someone to join our team as a Senior Security Architecture Specialist in Cyber to be responsible for the security design tooling standards... ...toolchain that makes those standards real. In the Technology division, we leverage innovation to build the connections...Full timeWork at officeRemote work
$80k - $138k per year
...Daily activities vary for our Cyber Strategy practitioners, depending... ...roadmaps, as well as supporting security programs or acting as a Subject... ...and privacy experts. Our Cyber Risk Services help organizations with the management of information and technology risks by delivering...Permanent employmentFlexible hours- ...make a difference. The Senior Specialist acts as the orchestrator for requests, resources, and Risk & Compliance workflows for the... ...updated and consistent key information in Engage (structures, contacts... ...communication supports or technology aids, are tailored to individual...Full timeContract workInternship
- ...by highly qualified individuals who perform high quality risk-based reviews of the Business, providing assurance, and... ...and continuous monitoring activities as they relate to Information Technology, Information Security, and Data Management controls, ensuring business objectives...Bank staffWork at officeRemote workFlexible hours
$90k per year
...detect threats, respond to incidents, and strengthen the company’s security posture? Join a global proprietary trading firm that combines... ...research, advanced algorithms, and high-performance technology infrastructure to operate across financial markets worldwide. The...Permanent employmentWorldwide- ...présentement à la recherche d’un(e) analyste d'affaires, Technologie de l'information ayant d’excellentes aptitudes techniques, d’excellentes connaissances... ...Détenir un BAC en informatique, en administration (option technologies de l'information) ou tout autre programme d’études...Hourly payFull timeContract workApprenticeshipRemote workFlexible hours
- ...placing people at the heart of technology. The world is how we shape it. For more information, visit us at . Are you ready... ...Sopra Steria Infrastructure & Security Services (I2S) is a subsidiary of... ...Job Description The Cyber Incident Response Commander plays...Long term contractInternship
$60k - $115k per year
Spécialiste Réseau et Sécurité Sénior Description de poste... ...équivalente en sécurité de l’information Qualités requises pour réussir... ...en informatique, technologies de l’information ou ingénierie... ...monde. Network Security Specialist (Senior) Position Description...$75k - $85k per year
...projets TI qui pilotera des initiatives technologiques clés et contribuera à la... ...Garantir le respect des normes de sécurité et des standards technologiques.... ...réseautique ou en tout autre domaine issu des technologies de l'information. Avoir cinq (5) années d’expérience...Permanent employment$80k - $90k per year
...combler les besoins d’affaires. Veiller à ce que l’architecture technologique proposée soit robuste, flexible et pérenne. Alignement... ...disposé à embaucher des travailleurs expérimentés. Pour plus d'information : Travailleurs expérimentés sur le marché du travail | Gouvernement...Permanent employmentFlexible hours- Envie de coder sous la neige (ou au chaud, en télétravail) ? Le Québec t’accueille dans un écosystème tech en pleine croissance, où l’équilibre vie pro / vie perso est une réalité. Rejoins une équipe dynamique à Montréal et participe à des projets innovants dans un cadre...Remote workFlexible hours
- ...la recherche d’un(e) conseiller(ère) en gouvernance de la sécurité de l'information senior Sans être exhaustifs, voici les services et livrables... ...universitaire de 1er cycle (BAC) en informatique, en technologies de l’information, ou encore dans un domaine connexe reconnu...Hourly payFull timeContract workApprenticeshipRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to CYBER SECURITY AND INFORMATION TECHNOLOGY RISK SPECIALIST. Be the first to apply!
Related searches
- risk management consultant Montréal, QC
- market risk analyst Montréal, QC
- risk analyst Montréal, QC
- risk management analyst Montréal, QC
- country risk analyst Montréal, QC
- credit risk Montréal, QC
- risk and insurance manager Montréal, QC
- no experience cyber security Montréal, QC
- sécurité informatique Montréal, QC
- spécialiste en sécurité informatique Montréal, QC

