Jobs
>
Old Toronto

    Director, Information Security - Old Toronto, Canada - AutoTrader

    AutoTrader
    AutoTrader Old Toronto, Canada

    2 weeks ago

    Default job background
    Description

    TRADER Corporation is a trusted Canadian leader in online media, dealer and lender services. The company is comprised of , AutoSync and Dealertrack Canada. in Quebec) offers the largest inventory of new cars and used cars in Canada, receiving over 25 million monthly visits to its marketplace. With over 3,500 subscribers and counting, AutoSync is the largest and fastest growing dealer and OEM software provider in Canada. The platform's suite of connected automotive software solutions brings advertising, conversion and operational support together, synchronizing the entire retail process. AutoSync's diverse range of offerings includes: vAuto, EasyDeal, xtime, Motoinsight, Activix, TAdvantage and TRFFK. Dealertrack is Canada's largest automotive financing portal, enhancing efficiency and profitability for all major segments of the automotive, marine, recreational vehicle, motorcycle and powersport retail industries. Over 6.5 million credit applications are submitted via the Dealertrack Canada portal each year. Visit to learn more..

    Responsible for overseeing the Cybersecurity function, leading identification, assessment, monitoring, remediation, and reporting of operational risk efforts within TRADER Corporation.

    The Director of Information Security establishes and administers the strategies and procedures for the information security function. Develops and implements information security and disaster recovery programs driving the improvement of organizational information security standards. Proactively evaluates overall information and technological and environmental risks in an effective and consistent manner, promoting information security awareness within the TRADER organization.

    This individual has the ability to create and execute functional strategies and specific objectives of the organization. This individual will also have experience in developing and managing budgets, policies, and procedures for the area of responsibility. The successful candidate also can positively influence the organization at all levels to increase the relevancy of security within the TRADER organization.

    The ideal candidate is a collaborative leader of people who provides mentoring and coaching to their team of security professionals to ensure they perform optimally and are able to achieve their professional goals; a collaborating partner who is not afraid to roll up their sleeves and lead by example.

    Requires a bachelor's degree in information technology or equivalent experience and 8-12 years of direct experience managing people in a combination of risk management, information security risk, compliance, and cloud environments.

    What you'll do:

    · Responsible for the operational leadership of the information security program

    · Communicate with executives across departments to ensure security systems work smoothly to reduce operational risks in the face of a security attack.

    · Work directly with the business and IT units to facilitate cyber risk assessment and cyber risk management processes.

    · Partner with business stakeholders across the organization to raise awareness of risk management concerns.

    · Mature the organization's business continuity management program to ensure business resiliency.

    · Lead and provide oversight for security operations activities, including real-time analysis of immediate threats, security operations and challenges in the current and future state of business operations.

    · Evaluate IT threat landscape, devising cyber security policy and corresponding controls to reduce risk.

    · Establish annual and long-range security and compliance goals, define security strategies, metrics, reporting mechanisms and program services;

    · Develop cyber resiliency to effectively recover from hacking, security incidents, or infringements rapidly.

    · Develop processes to maintain records of up-to-date security threats, helping understand security problems that might arise.

    · Oversee data loss and fraud prevention, ensuring internal staff does not misuse data.

    · Ensure the data privacy is secured and maintained as part of the privacy program, leading electronic discovery and forensic investigations and enhancing the information security management system.

    · Oversee information security architecture, including the planning, buying, and rolling out security solutions, and ensuring IT and network infrastructure is designed with best information security practices in mind.

    · Represent and lead the discussions around the overall business technology planning, providing current knowledge and future vision of technology and systems to enable the organization's digital transformation plan securely

    · Integrate the oversight of physical security with cyber security for convergence

    · Provide in-depth knowledge of cyber security operations and functions to make effective business decisions.

    · Mentor the Information Security team members and implement professional development plans for all team members.

    · Accountability: Governance, Risk and Compliance (GRC) Management

    · Manage organization-wide information security governance processes, chair the Information Security Steering Committee and lead and security project priorities internally and with security vendors and third-party businesses (as and when required).

    · Leading auditing and compliance initiatives, ensuring adaptability to evolving compliance regulations.

    · Leading and contributing to a variety of security policy domains associated with compliance, governance, risk management, incident management, HR management, and additional domains.

    · Program onboarding—weighing business opportunities against security risks that can potentially compromise your organization's long-term financial rewards.

    · Understand and interact with related disciplines through committees to ensure the consistent application of policies and standards across all technology projects, systems and services.

    · Lead the procurement process for the selection and purchase of security solutions from vendors, ensuring that the company is in regulatory compliance with the rules for relevant bodies and enforcing adherence to security practices.

    · Establish a system that reduces human error and its impact on security posture.

    · Accountability: Security Training and Awareness

    · Develop a comprehensive plan to attract, train and retain professionals with the requisite skills and interest in pursuing a cybersecurity career.

    · Prepare employees with the tools, skills, resources, relationships, and capabilities to protect against information security risks.

    · Develop, implement and monitor a strategic, comprehensive enterprise information security and IT risk management program.

    · Lead the employee security awareness training program, develop secure business and communication practices, and identify security objectives and metrics.

    What you'll need:

    · Knowledge of common information security management frameworks, such as SOC2, ISO/IEC 27001, and NIST

    · Experience with contract and vendor negotiations and management, including managed services

    · Specific experience in software development or other best-in-class development practices

    · Experience with Cloud computing across virtualized environments

    · Excellent written and verbal communication skills and a high level of personal integrity

    · Innovative thinking and leadership with an ability to lead and motivate cross-functional, interdisciplinary teams

    · Experience in risk reduction, resilience and/or critical infrastructure protection in a collaborative setting

    One or more relevant security certifications:

    · Certified Information Systems Security Professional (CISSP) - (ISC)2

    · Certified Cloud Security Professional (CCSP) – Associate of (ISC)2 designation

    · Systems Security Certified Practitioner (SSCP) – Associate of (ISC)2 designation

    · Cybersecurity Analyst Certification, CySA+ (CompTIA)

    What's in it for you...

    -We understand that there is life at work and life outside of work. Here are a few benefits we all benefit from that support us to be our creative best.

    Fitness and wellness

    -We provide discounts to nation-wide gyms, onsite gyms (when we're in the office), an Employee and Family Assistance Program, as well as a virtual wellness program.

    Benefits from Day 1

    -Local in-office free gyms

    -Employee and Family Assistance program

    -Weekly virtual wellness events

    -In addition to in-house training, we provide an annual lifestyle allowance of $1500 so you can grow your skills.

    -Regular internal training programs

    -Let us help you invest in your future with 3% matching towards your pension and multiple forms of income protection.

    #J-18808-Ljbffr


  • CIBC Toronto, Canada Temps plein

    Nous bâtissons une banque axée sur les relations pour un monde moderne. Nous recrutons des professionnels talentueux et passionnés qui ont à cœur de faire ce qu'il faut pour nos clients. · À la Banque CIBC, nous misons sur vos forces et vos ambitions pour vous donner le pouvoir ...


  • Esri Canada Toronto, ON, Canada

    Esri Canada has an exceptional opportunity for an Information Security Analyst, in our Technology Infrastructure team. Reporting to the Manager, Technology Infrastructure, The Information Security Analyst will primarily protect Esri Canada's computer systems, networks and sensiti ...


  • Igbo Union of Canada Old Toronto, Canada

    Aviator Spribe играть на телефоне казино · And so too happens:) · Добро пожаловать в захватывающий мир авиаторов Aviator – это увлекательная игра, которая позволит вам окунуться в атмосферу боевых действий на небе. Необычные графика и захватывающий сюжет сделают ваше путешествие ...


  • LZ Security & Service GmbH Old Toronto, Canada

    Plan, coordinate, and direct all information security tasks within the area of responsibility to meet the global and local security goals. Support all security Incidents of the location with alignment to the incident management process. Works with the Procurement and Legal depart ...


  • BMO Financial Group Old Toronto, Canada

    Date limite pour présenter sa candidature : · 06/29/2024Adresse : · 100 King Street WestGroupe de famille d'emploi : · TechnologieÉpauler le leader du secteur d'activité ou du groupe d'exploitation dans la mise en œuvre, la mise à jour et l'administration efficaces des programmes ...


  • Manulife Financial Corporation Old Toronto, Canada

    We are a leading financial services provider committed to making decisions easier and lives better for our customers and colleagues around the world. From our environmental initiatives to our community investments, we lead with values throughout our business. To help us stand out ...


  • Finance Professionals Inc. Old Toronto, Canada

    JOB DESCRIPTION · Location: Hybrid (Scarborough, ON) · Duration: Until September 30, 2024 · Our client a leading financial institution in Scarborough, ON is looking for an Information Security Analyst - SailPoint IIQ to to be involved in many different initiatives to further buil ...


  • Delpath Old Toronto, Canada

    Typical Day in Role: · • Assess and analyze low complexity data protection exceptions to ensure bank standards are adhered to and risks are mitigated accordingly. · • Work with the Data Protection Advisors when assessing high complexity data protection exceptions and participatin ...


  • TouchBistro Old Toronto, Canada

    TouchBistro is looking for an Information Security Analyst I to join our security team AtTouchBistro, safeguarding the confidentiality, integrity, and availability of our services and data is paramount. That's why we're on the lookout for an Information Security Analyst who share ...


  • Alterna Sa Old Toronto, Canada

    The VP, Information Security is responsible for the organization's strategies, objectives, policies, plans, budget and operations for the area of IT Security and Cyber Security. Works collaboratively with the senior management team to provide support to meet operational requireme ...


  • Alterna Savings Toronto, Canada Full time

    Location: Toronto or Ottawa · Scope of Position · The VP, Information Security is responsible for the organization's strategies, objectives, policies, plans, budget and operations for the area of IT Security and Cyber Security. Works collaboratively with the senior management t ...


  • Security Bank & Trust Co. Old Toronto, Canada

    Plan, coordinate, and direct all information security tasks within the area of responsibility to meet the global and local security goals. · Support all security Incidents of the location with alignment to the incident management process. · Works with the Procurement and Legal de ...


  • Manulife Toronto, Canada Full time

    Job Description · The Opportunity · The leader of our Information Security Risk Management efforts is responsible for the overall delivery of the enterprise Information Security oversight and challenge, approach across Manulife. The incumbent will serve as a Subject Matter Expe ...


  • Toyota North America Toronto, Canada Full time

    Description · Information Security Analyst · About Toyota Financial Services · Toyota Financial Services (TFS) provides retail, leasing and wholesale financial services to Toyota and Lexus dealerships and customers across Canada. TFS is a member of Toyota Financial Services Cor ...


  • CB Canada Toronto, Canada

    Information Security Analyst · On behalf of our client in the Banking Sector, PROCOM is looking for an Information Security Analyst. · Information Security Analyst – Job Description · Manage assigned security platforms, following clients' procedures if required, which includes ...


  • Finance Professionals Inc. Toronto, Canada

    JOB DESCRIPTION · Location: Hybrid (Scarborough, ON) · Duration: Until September 30, 2024 · Our client a leading financial institution in Scarborough, ON is looking for an Information Security Analyst - SailPoint IIQ to to be involved in many different initiatives to further buil ...


  • Infotek Consulting Services Inc. Toronto, Canada

    Infotek Consulting is searching for a seasoned IAM Architect to work on a hybrid contract assignment based in Toronto. · The team is seeking a IAM Architect to Support the next phase of deploying the BioCatch RBA solution within Canadian Banking web and mobile applications. Niche ...


  • First National Toronto, Canada Full time

    We are hiring an Application Security Analyst, Information Security · The Role: · We're seeking an Application Security Analyst well-versed in risk analysis, vulnerability assessment methodologies, and information security concepts. Your role involves supporting security risk a ...


  • BMO Financial Group Toronto, ON, Canada $81,600 - $151,200

    Date limite pour présenter sa candidature : · 06/29/2024 Adresse : · 100 King Street West Groupe de famille d'emploi : · Technologie Épauler le leader du secteur d'activité ou du groupe d'exploitation dans la mise en œuvre, la mise à jour et l'administration efficaces des pr ...


  • CanDeal Toronto, Canada Full time

    JOB PURPOSE · Reporting to the Information Security Officer, the Information Security Analyst will possess a strong background in managing infrastructure, coupled with significant experience and expertise in cybersecurity. This role will involve analyzing threats, implementing se ...