- Company Name
- ALFACONSEIL.CA
- Job Title
- Conseiller·ère en Cybersécurité – Évaluation des Risques et Conformité
- Job Description
-
Job Title: Cybersecurity Advisor – Risk Assessment & Compliance
Role Summary: Evaluate and enhance the cybersecurity posture of application portfolios, ensuring alignment with Canadian and international regulations. Provide tactical and strategic guidance to development and delivery teams, and deliver clear metrics to stakeholders.
Expactations: Deliver timely risk assessments, recommend and implement mitigation measures, maintain compliance with regulatory frameworks, and communicate findings effectively to technical and non‑technical audiences.
Key Responsibilities:
- Assess application portfolio security posture and quantify associated risks.
- Verify compliance of solutions against Canadian and global standards (NIST, ISO, PCI, Loi 25, PIPEDA, GDPR).
- Embed security best practices throughout the software development lifecycle.
- Support delivery teams in deploying secure technologies and configurations.
- Recommend tailored protection controls for applications and infrastructures.
- Produce and disseminate key performance, progress, and risk indicators to stakeholders.
- Identify vulnerabilities, facilitate risk evaluations, and support remediation efforts.
- Provide tactical and strategic security direction to improve overall posture.
Required Skills:
- Expertise in application architectures, authentication, cryptography, and access control.
- Proven risk management and vulnerability analysis experience.
- Proficiency with cloud and virtualization environments (AWS, Azure, VMware).
- Familiarity with security tools and platforms (Check Point, Cisco, Jenkins, GitHub, Datadog, Splunk).
- Strong communication, teamwork, and ability to translate complex technical concepts for diverse audiences.
Required Education & Certifications:
- Bachelor’s degree in Information Technology, Cybersecurity, or related field.
- Minimum 5 years of experience in cybersecurity, risk assessment, or compliance.
- Certifications: CISSP, CISM, CISA, CEH (or equivalents).
- Preferred: Cloud certifications (CCSP, AWS Security, Azure Security Engineer).