Your professional transformation starts here
Are you full of great ideas? Do you dream of building a greener future as part of a company that values your skills and opinions?
Are you looking for a flexible employer that will give you the opportunity to grow within the company?
This job is for you!
Our benefits :
- Competitive salary and annual bonus
- Hybrid position with flexible hours after the training period
- Comprehensive benefits package (dental, medical, life insurance, disability insurance, etc.)
- Telemedicine
- Pension fund with employer contribution
- On-site gym
- Gym reimbursement and physical activities
The ideal candidate has a strong understanding of cybersecurity principles and best practices, as well as experience in security assessments.
Additionally, they will be able to adapt quickly to evolving requirements and work autonomously while managing multiple initiatives simultaneously.
Establishing a governance framework, a control framework, and cyber risk management will be at the core of your responsibilities.
Responsibilities :
- Participate in the development of policies and guidelines (ISO 27001 & CIS).
- Participate in internal audits and compliance testing.
- Document and implement internal processes.
- Monitor existing security mechanisms and ensure control over the protection of IT assets.
- Define security and compliance requirements, ensuring the technical viability of the solution. If necessary, define technical rules to guide the design, implementation, and deployment of the system.
- Assess risks and vulnerabilities during the execution of complex projects.
- Contribute to the evolution of IT security strategies, frameworks, objectives, and guidelines.
- Produce security deliverables and risk assessments in projects that may also use cloud services.
- Develop, coordinate, and lead projects to enhance and upgrade our security practices.
- Organize cybersecurity awareness and training campaigns for employees.
Profile / Requirements :
- Bachelor's degree in law, science, technology, engineering, or business administration.
- One of the following valid certifications : CISSP, CISA, CISM, CEH, CRISC, GIAC, GCIH, GPEN, ISO / IEC 27001 Lead Implementer, ISO / IEC 27001 Lead Auditor would be an asset.
- Knowledge of standards, regulations, and laws governing information security (ISO 27001, CIS, OCTAVE, ISO 27002, NIST, COBIT-19) would be an asset.
- At least 5 years of experience in cybersecurity / Governance, Risk and Compliance. (GRC)
- Experience working in a matrixed and decentralized environment.
- Experience in measuring the performance of cybersecurity programs.
- Good understanding of information security principles and technologies (authentication methods, access management, identity management, identity federation, encryption, security monitoring, etc.
This knowledge can apply to on-premises or cloud solutions.
- Excellent verbal and written communication skills, with the ability to effectively present to technical and non-technical audiences.
- Ability to interact with all levels of the organization.
- Demonstrated competence in managing cybersecurity solutions, platforms, and technologies.
Skills :
- Proficiency in French and English (written and verbal).
- Ability to work in a team, establish and maintain good interpersonal relationships.
- Demonstrated leadership attitudes.
- Ability to meet deliverables.
- Rigor and attention to quality.
- Ability to work autonomously.
- Focus on results and project success.
- Customer satisfaction orientation.
- Knowledge of Spanish would be an asset.
Give meaning to your career and help us make a difference : become a transformation champion!
Follow us on LinkedIn
Thank you for your interest in joining our team. Please note that we will only contact those whose applications are being considered.
At Sanimax, we see strength in diversity, and we are proud to be an equal opportunity employer