Information Security Engineer III

Axelon Services Corporation
Montreal, QC
88.2K $-100.7K $ / an (estimé)
Temps plein

Job Tittle : Information Security Engineer III

Location : Montreal, QC

MAIN RESPONSIBILITIES

Responsibilities include but are not limited to :

  • Understands and advises on enterprise policies and technical standards with specific regard to vulnerability management and secure configuration.
  • Able to successfully partner with other security and IT infrastructure professionals to assess potential impact from vulnerabilities specific to BNP’s environment and determine appropriate mitigating controls.
  • Identify and recommend appropriate measures to manage and remediate vulnerabilities with the focus on reducing potential impacts on information resources to an acceptable level based upon BNP’s policies and standards.
  • Build strong partnerships with technical teams to promote best practices for managing vulnerabilities in an agile manner;

across traditional infrastructure and in cloud environments.

  • Ability to fully understand business requirements and work with business partners to define appropriate solutions; meeting both security mandates and business needs.
  • Review and / or escalate exception requests submitted to the VM team
  • Using a risk based approach, analyze BNP’s vulnerability data against open / closed information sources to best prioritize vulnerability hygiene activities.
  • Develop and improve KPIs, metrics, and trend analysis for vulnerability management functions.
  • Assist the team to maintain appropriate documentation that defines the Threat & Vulnerability Management Program, policies, and procedures.

REQUIREMENTS TRAINING AND OCCUPATIONAL EXPERIENCE

  • in Computer Science or equivalent field
  • CISSP, CISM or similar industry certification
  • years of experience in Vulnerability Management or related field

ESSENTIAL SPECIFIC REQUIREMENTS

  • Expertise knowledge of the Vulnerability Management process including vulnerability identification, false negative / positives identification & elimination
  • Strong knowledge of Qualys, Nexpose or Nessus including configuration and maintenance, scan execution, agent deployment and oversight
  • Experience of industry standards relating to Vulnerability Management including Common Vulnerabilities and Exposures (CVE), Common Vulnerability Scoring System (CVSS) and Open Web Application Security Project (OWASP).
  • Experience Security Standards / Controls specified under various IT governance and compliance models (NIST, HIPAA, PCI, GDPR, ISO &).
  • Experience of technology and security topics including operating systems, network security, protocols, application security, infrastructure hardening and security baselines.
  • Previous experience working in large-scale environments with diverse technologies is a must.
  • Knowledge of scripting languages desired

SKILLS AND BEHAVIOURS

  • Analytical skills
  • Strategic vision
  • Rigor & Accuracy
  • Flexibility
  • Communication skills
  • Collaboration
  • Self-driven
  • Team player
  • Il y a plus de 30 jours
Emplois reliés
Axelon Services Corporation
Montréal, Québec

Job Tittle: Information Security Engineer III. Experience of technology and security topics including operating systems, network security, protocols, application security, infrastructure hardening and security baselines. Able to successfully partner with other security and IT infrastructure professi...

HireTalent
Montréal, Québec

Act as an Operations Support Engineer for Voice, Video and Capture Platforms, focusing on administration, production system health checks and monitoring, technical support, and regular testing of the voice and capture infrastructure. Bachelor’s degree in computer science, information technology, or ...

Axelon Services Corporation
Montréal, Québec

Job Tittle: Information Security Engineer III. Experience of technology and security topics including operating systems, network security, protocols, application security, infrastructure hardening and security baselines. Able to successfully partner with other security and IT infrastructure professi...

eTeam
Montréal, Québec

Job title:- Cisco Voice Level engineer. At least years’ experience as a level engineer in the above-mentioned products. ...

Offre sponsorisée
QUANTEAM (Groupe RAINBOW PARTNERS)
Montréal, Québec

The Operational Security Specialist will play a key role in maintaining and enhancing network security operations, governance, and architecture. This includes managing security tools, approving and reviewing network flows, and ensuring adherence to security guidelines. Network Security Operations & ...

Offre sponsorisée
Hitachi Cyber
Blainville, Québec

Sous la supervision du chef d'équipe dans le SOC, tu joueras un rôle clé dans la protection de nos clients contre les cyberattaques car les analystes sont les premiers à voir les alertes de sécurité et les premiers à répondre aux incidents de cybersécurité. Rejoins l'équipe dynamique et innovante de...

Offre sponsorisée
Accelerant
Canada

As a DevOps Engineer at Accelerant, you will be instrumental in helping us design, build, and run a highly reliable and scalable platform. Implement and drive adoption of site reliability engineering best practices for observability, scalability, availability, compliance and resilience. Design and b...

Offre sponsorisée
Myticas Consulting
Canada

As a Network Engineer, you will be responsible for verifying data integrity, supporting hardware and software upgrades, and ensuring the seamless integration of network equipment, primarily the 7750, 7705, 7250, and IXR series. Troubleshoot software issues, resolve faults, and upgrade network equipm...

Offre sponsorisée
Intuitive.Cloud
Canada

The Senior Cybersecurity Specialist will be responsible for developing and implementing comprehensive cybersecurity strategies and solutions, with a focus on Security Cloud Architecture and Risk Assessment. Leverage in-depth knowledge of Cloud Security, DevOps Security, Network Security, and Busines...

Offre sponsorisée
LanceSoft, Inc.
Montréal, Québec

Candidate needs to be familiar with external scan findings from third party cyber security ratings agencies and comfortable escalating vulnerabilities and initiating requests for immediate remediation. The candidate will be joining the Vulnerability Management team within the Firm’s Cyber Data Risk ...