
Senior Security Engineer
- Canada
- Permanent
- Temps-plein
- Participate in implementing and managing the Information Security Program including security incident response, vulnerability management, data protection, and risk management
- Undertake and lead regulatory readiness assessments and development of appropriate compliance strategies (SOX, SOC2, ISO27001, FERPA, PCI, NIST, etc.)
- Documenting and maintaining security policies, standards, guidelines, processes and procedures, and other related documents, as requested, and representing the Security Team during internal and external audits
- Review contracts with Enterprise Customers and Partners to assure compliance with Information Security security and privacy requirements and provide input to Legal Team
- Working with Sales, lead the response to customer questionnaires dealing with our security and data protection policies. Plan and execute risk assessments of our products and services associated with cloud infrastructure.
- Establishing and coordinating remediation and mitigation for identified security risks. And manage company information security incident response
- Ensuring technical security controls are in place, maintained and audited on a periodic basis
- 7+ years' of hands-on experience in an Information Security and Compliance role
- Have solid knowledge of ISO 27001, NIST and other information security standards and have practical experience implementing these standards
- Solid foundation and good technical knowledge of security engineering, computer and network security, authentication, security protocols and cryptography
- Certifications like CISSP, CISA, CISM, CCSP, AWS Architect or Certified Security
- Previous experience reviewing/writing security documents