Director of Cybersecurity

Permanent
Montréal
Posted 4 days ago

On behalf of our client in Montreal, a large biotech firm, Progression3 is in search of a Director, Cyber Security for a full-time permanent role.

Reporting to the CIO/CTO, the Director of Cybersecurity will operate across the IT organization and interact with all Business Units focusing on constantly improving our Cybersecurity posture and operational excellence.

Main responsibilities

  • Lead and mentor the activities of our Cybersecurity team located across different time zones globally.
  • Work with our internal team and external IT partners in developing the Company Cybersecurity Roadmap as well as prioritizing and overseeing the implementation of its key strategic initiatives.
  • Work with our external Security Partner in assessing the security posture of mission critical applications and services as well as leading the remediation and improvement plans.
  • Work with our different Business Units in developing, maintaining, and evolving their Business Continuity Strategy and Incident Response plans.
  • Lead and execute Cybersecurity Major Incident simulations with the different IT groups and Business Units.
  • Work with our teams providing security guidance for new IT & business projects
  • Manage our continuous threat intelligence Program
  • Planning and oversee solution deployments.
  • Oversee Cybersecurity employee training and Phishing campaigns.
  • Produce and present monthly Cybersecurity updates to the CIO/CTO.
  • Continuously assess Company’s Global Cybersecurity posture and track progress of the risk mitigation and improvement initiatives.
  • Liaise with our Cybersecurity Insurance broker and assure compliance and continuously improve our posture.
  • Manage Partner/Supplier relationships and contracts.
  • Manage the Cybersecurity Budget
  • Assure that Company stays up to date on compliance requirements (GDPR, PCI etc)

 

QUALIFICATIONS

Required

  • Great with lateral thinking and motivation to work independently, as well as the ability to work directly with teams across multiple territories and time zones.
  • Dedication, teamwork, and professionalism.
  • A minimum of 10 years of experience in the field of information security (or similar area), including increasing responsibilities, to include at least two of the following:
  1. A position involving direct responsibility for information security audits, whether acting as an auditor or as a third-party security professional where the candidate has been audited through internal audits, clients, regulators or third parties.
  2. A position involving a responsibility to represent the company’s security program externally to customers, particularly in situations related to sales or audits performed by third parties.
  3. A position involving operational security responsibilities, such as conducting risk assessments and controls, working as a security architect or engineer, responding to security incidents, or in a security operations center.
  • Professional grade English and French, both written and spoken. As part of your duties, you will be responsible for reviewing contracts with customers, negotiating and providing feedback to customers on the terms of security contracts.
  • A bachelor’s degree (or similar) in computer science, management information systems or a related security field.

 

An asset

  • Security certifications
  • Experience working within a global enterprise
  • Experience in environments consisting of complex supply Chains; and/or Factory Plants; and/or Distribution Centers; and/or Warehouses
  • Experience as a technology security specialist is relevant and desirable, whether related to networks, servers, databases, software development or another technical discipline.
  • Proficiency in Microsoft Cloud platforms

 

PERSONAL ABILITIES

Required

  • Displays leadership and independence in performing their role, with an ability to make complex decisions with limited input and review from senior staff.
  • High level of personal integrity, and the ability to professionally handle confidential matters and exude the appropriate level of judgment and maturity.
  • Assist in the training, and coaching of new and existing staff, and provide coaching to staff executing all aspects of information security and risk assessment and support.
  • Develop positive working relationships with other team members and business partners and partners across teams to align with internal and external client demands
  • Capable of rapidly assimilating and internalizing complex business, technology, and risk management concepts and dependencies
  • Capable of clearly defining, presenting and selling recommended strategies to senior management teams
  • Critical thinker with strong problem-solving skills, project management skills; financial/budget management, scheduling and resource management.
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate between specialized groups of business Units and IT professionals
  • Accommodation of schedule for international conference calls

 

GENERAL CRITERIA

Required

  • Willing to travel to our offices around the world for projects and meetings. Valid passport & vaccine required.

Apply Online

A valid phone number is required.
A valid email address is required.