Principal Security Engineer leading cyber security efforts and providing technical direction at Intact. Focusing on risk mitigation and mentoring security teams in a hybrid environment.
Responsibilities
Provide technology direction on the architecture and design of security-related technology initiatives.
Serve as a trusted advisor to security specialists, leveraging expertise to ensure high judgement decisions are made on complex and ambiguous security problems across all security domains, either by acting as decision-maker or by helping other specialists with the decision-making process.
Act as a force multiplier: Leverage your extensive expertise to enhance the effectiveness and efficiency of the entire engineering team.
Foster a culture of innovation and excellence by mentoring colleagues, enhancing mechanisms, introducing best practices, and driving architectural improvements that enable the team to implement strong security risk mitigations.
Promote cross-team collaboration and drive technical direction across teams, functions, and products, ensuring decisions support overall business, technology and security strategy.
Collaborate closely with senior leadership and principals to develop and implement strategic initiatives that contribute to a durable and resilient security control environment.
Continually identify opportunities for improvement and act as an agent of change by championing innovative ideas and initiatives to improve mechanisms.
Monitor and assess the impact of industry trends, emerging technologies, and changes in threat actor tactics and techniques; recommend strategies to evolve security countermeasures in response.
Serve as an active member of the tech community and promote technology within and outside the organization as a thought leader and contributing to advance IFC’s interests.
Requirements
Bachelor’s or master’s degree in computer science, Engineering or related field.
10+ years of experience in cyber security and/or software development, with at least 3+ years in technical leadership role.
Deep expertise in multiple cyber security domains, including application security, data security, endpoint security, network security, identity and access management, detection engineering, threat intelligence, incident response, and third-party risk management.
Strong understanding of software architecture principles and modern system design patterns.
Strong understanding of cloud service provider platforms and strategies for securing cloud-based technology assets.
Proven ability to design and operate scalable, resilient systems in production environments.
Excellent problem-solving skills and the ability to navigate ambiguity.
Excellent communication and stakeholder management skills to bridge the gap between cyber security teams and business leaders.
Proven leadership in mentoring security specialists and building technical communities.
For candidates located in Quebec, bilingualism is required considering the necessity to interact on a regular basis with English-speaking colleagues across the country.
No Canadian work experience required however must be eligible to work in Canada.
Benefits
Flexible work arrangements and a hybrid work model
Possibility to purchase up to 5 extra days off per year
Multiple benefits offered to support physical and mental wellbeing, including telemedicine, Wellness account and much more
Share plan & other savings: up to 12% of salary or even more (ask how you could earn guaranteed income for life)
Senior Manager of IT overseeing operational security services for Xcel Energy. Leading teams to ensure compliance and effective risk management across enterprise security operations.
IT Security Administrator managing access control and audit evidence across systems at Xcel Energy. Involves training security staff and handling incident investigations.
Senior ML Security Engineer developing security tools and frameworks for ML workflows. Ensuring proactive vulnerability detection and compliance with ML security standards at NXP.
Lead a multidisciplinary team at NXP focused on the proactive identification and analysis of security vulnerabilities in semiconductor products. Drive innovative approaches to security testing and team management.
Security Architect designing security architectures for embedded products at NXP. Collaborating with teams on threat assessments and managing security requirements in IoT/Automotive domains.
Security Software Engineer at Pinterest developing IAM infrastructure and tools for identity and authorization. Collaborating on mission - critical features in a team - focused environment.
Senior Network and Security Information Analyst defining and implementing network and information security at Airbus. Managing security assets and compliance across the organization while documenting and reporting vulnerabilities.
Associate Consultant for Microsoft Security focused on supporting the delivery of security solutions. Collaborate with experienced consultants and learn in a remote - first environment with occasional onsite work.
Software Engineering Intern at Red Hat working on the security of software production pipelines. Contributing to projects involving AI tools and secure development practices in Brno, Czech Republic.
Technical support intern assisting clients and monitoring backup systems. Involves client interaction, system maintenance, and adherence to legal standards.