Do you have 10+ years experience in Red Team Tactics and Techniques? Do you have 10+ years experience in Network and Application Security? If so, this would be a great opportunity for you!
Our client is looking for a Senior Security Specialist Threat Risk Assessment for a 6 month contract in Toronto.
This is a hybrid role.
...
Advantages
• Earn a competitive rate within the industry
• Location: 1 days in office per week at minimum – either at GHQ (777 Memorial, Orillia) or Queens Park Detachment (56 Wellesley Street W, Toronto)
Responsibilities
• Conducts Threat Risk Assessments (TRA) and other relevant for OPP software, systems and solutions.
• Collaborates with project/development teams, project managers, security architects, testing and compliance teams to document risks, mitigation plans and compile them into formal risk assessment reports directed towards a diverse set of audience, which includes developers, project managers, operations analysts, senior management & OPP leadership.
• Assesses internal and external threats and vulnerabilities of information systems and resources and the likelihood of these threats and resulting impacts. Where possible, reduce risks through system or organizational design.
• Implement security measures to prevent or mitigate, detect and respond to security threats and vulnerabilities to information systems and resources at the program and enterprise levels. Periodically review security measures to ascertain that the security measures are still sufficient and continue to operate as expected. Such reviews must also be performed whenever security incidents occur or business processes change.
• Defines, evaluates, and assesses security architecture requirements for systems environments and IT projects.
• Ensures the incorporation of IT security and contingency measures in the development of systems
• Advises on the identification, analysis, and resolution of specific security factors, risks, vulnerabilities; protection of personal privacy issues; and appropriate industry and international security standards.
• Carry out information and information technology (I&IT) security projects and tasks in the Ontario Service as assigned by Corporate Security or cluster I&IT management
Qualifications
Must Haves:
• 10+ years experience Network Threat Hunting
• 10+ years experience Red Team Tactics and Techniques
• 10+ years experience Network and Application Security
• Public Sector Experience: Nice to Have
General Skills:
Strong understanding and expertise in security architecture, governance, risk management and compliance.
Experience in the application of cyber security methodology and tools to define scope, critical business processes and functions, identify critical assets and dependencies in reports to clients (TRA or other security assessments).
Experience and ability to plan and facilitate Threat Risk Assessment and/or other workshops with business clients.
Experience and ability to apply the RCMP Harmonized Threat Risk Assessment (HTRA) or equivalent risk assessment methodology.
Knowledge of techniques to secure information assets and the planning, design, and implementation of security technologies.
Proven techniques to discover gaps or weaknesses in security architecture to identify and mitigate known security threats or inherent weaknesses.
Knowledge and understanding of relevant legislation and corporate directives related to the security and confidentiality of information (e.g. Freedom of Information and Protection of Privacy Act) in order to identify and assess areas of concern and risk
Solid knowledge of current security and contingency technology and techniques (e.g. digital signature, encryption, access controls, firewalls, authentication, virus protection, etc.); and a proven working knowledge of security audit procedures and protocols.
Experience in establishing secure environments at a network, operating system or application level
Experience with implementing security on complex and distributed systems.
Experience in conducting in depth analysis and provide recommendations with all required sign-off in the prescribed timelines as given (TRA reports or other security assessment reports)
Experience and knowledge to provide security requirements for procurement documents and participate in security evaluations as part of the procurement process
Ability to assess Information Security Risk, Business Continuity Planning and Business Impact Analysis technical issues for any of the technical environments and delivery channels across the Ontario Provincial.
Awareness of emerging IT trends and directions, especially as related to security, privacy and risk management.
Excellent analytical, problem-solving, and decision-making skills; written and verbal communication skills; interpersonal and negotiation skills
A team player with a track record for meeting deadlines, managing competing priorities and client relationship management experience
Desirable Skills:
Experience in performing threat and risk assessment.
Knowledge and understanding of Information Management principles, concepts, policies and practices.
Experience in business recovery and disaster recovery planning.
Experience in key infrastructure development and operation.
Experience in security design as part of systems development projects, using major development tools, techniques and methodologies.
Experience in vulnerability analysis and penetration testing.
Experience in network monitoring.
Experience in developing and delivering security education.
Summary
If you are interested in the Senior Security Specialist Threat Risk Assessment role in Toronto, please apply online at www.randstad.ca. Qualified candidates will be contacted.
Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.
Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
show more
Do you have 10+ years experience in Red Team Tactics and Techniques? Do you have 10+ years experience in Network and Application Security? If so, this would be a great opportunity for you!
Our client is looking for a Senior Security Specialist Threat Risk Assessment for a 6 month contract in Toronto.
This is a hybrid role.
Advantages
• Earn a competitive rate within the industry
• Location: 1 days in office per week at minimum – either at GHQ (777 Memorial, Orillia) or Queens Park Detachment (56 Wellesley Street W, Toronto)
Responsibilities
• Conducts Threat Risk Assessments (TRA) and other relevant for OPP software, systems and solutions.
• Collaborates with project/development teams, project managers, security architects, testing and compliance teams to document risks, mitigation plans and compile them into formal risk assessment reports directed towards a diverse set of audience, which includes developers, project managers, operations analysts, senior management & OPP leadership.
• Assesses internal and external threats and vulnerabilities of information systems and resources and the likelihood of these threats and resulting impacts. Where possible, reduce risks through system or organizational design.
...
• Implement security measures to prevent or mitigate, detect and respond to security threats and vulnerabilities to information systems and resources at the program and enterprise levels. Periodically review security measures to ascertain that the security measures are still sufficient and continue to operate as expected. Such reviews must also be performed whenever security incidents occur or business processes change.
• Defines, evaluates, and assesses security architecture requirements for systems environments and IT projects.
• Ensures the incorporation of IT security and contingency measures in the development of systems
• Advises on the identification, analysis, and resolution of specific security factors, risks, vulnerabilities; protection of personal privacy issues; and appropriate industry and international security standards.
• Carry out information and information technology (I&IT) security projects and tasks in the Ontario Service as assigned by Corporate Security or cluster I&IT management
Qualifications
Must Haves:
• 10+ years experience Network Threat Hunting
• 10+ years experience Red Team Tactics and Techniques
• 10+ years experience Network and Application Security
• Public Sector Experience: Nice to Have
General Skills:
Strong understanding and expertise in security architecture, governance, risk management and compliance.
Experience in the application of cyber security methodology and tools to define scope, critical business processes and functions, identify critical assets and dependencies in reports to clients (TRA or other security assessments).
Experience and ability to plan and facilitate Threat Risk Assessment and/or other workshops with business clients.
Experience and ability to apply the RCMP Harmonized Threat Risk Assessment (HTRA) or equivalent risk assessment methodology.
Knowledge of techniques to secure information assets and the planning, design, and implementation of security technologies.
Proven techniques to discover gaps or weaknesses in security architecture to identify and mitigate known security threats or inherent weaknesses.
Knowledge and understanding of relevant legislation and corporate directives related to the security and confidentiality of information (e.g. Freedom of Information and Protection of Privacy Act) in order to identify and assess areas of concern and risk
Solid knowledge of current security and contingency technology and techniques (e.g. digital signature, encryption, access controls, firewalls, authentication, virus protection, etc.); and a proven working knowledge of security audit procedures and protocols.
Experience in establishing secure environments at a network, operating system or application level
Experience with implementing security on complex and distributed systems.
Experience in conducting in depth analysis and provide recommendations with all required sign-off in the prescribed timelines as given (TRA reports or other security assessment reports)
Experience and knowledge to provide security requirements for procurement documents and participate in security evaluations as part of the procurement process
Ability to assess Information Security Risk, Business Continuity Planning and Business Impact Analysis technical issues for any of the technical environments and delivery channels across the Ontario Provincial.
Awareness of emerging IT trends and directions, especially as related to security, privacy and risk management.
Excellent analytical, problem-solving, and decision-making skills; written and verbal communication skills; interpersonal and negotiation skills
A team player with a track record for meeting deadlines, managing competing priorities and client relationship management experience
Desirable Skills:
Experience in performing threat and risk assessment.
Knowledge and understanding of Information Management principles, concepts, policies and practices.
Experience in business recovery and disaster recovery planning.
Experience in key infrastructure development and operation.
Experience in security design as part of systems development projects, using major development tools, techniques and methodologies.
Experience in vulnerability analysis and penetration testing.
Experience in network monitoring.
Experience in developing and delivering security education.
Summary
If you are interested in the Senior Security Specialist Threat Risk Assessment role in Toronto, please apply online at www.randstad.ca. Qualified candidates will be contacted.
Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.
Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
show more