Information Security Advisor ensuring risk assessment and compliance for Sun Life business groups. Conducting risk assessments and advising on information security best practices.
Responsibilities
Provide support to Sun Life Business Group through conducting information security risk assessments, reviewing contracts to ensure inclusion of security requirements, performing supplier/third-party risk assessments, and advising on security best practices
Assess initiatives/projects to ensure implementation controls aligns with Sun Life Information Security policies and directive requirements
Provide security consulting to ensure appropriate security controls are in place to safeguard and protect Sun Life confidential information from intentional or accidental disclosure, modification, or destruction, and improve overall security
Provide with reporting to management team on status of information security risk assessments, identified risks, and current work activities
Track and manage open information security risks to ensure corresponding risk remediation plans and target dates are in place
Requirements
Minimum of at least 3+ years experience in Information Security and Information Technology (IT)
In-depth knowledge of information security and IT principles, protocols, practices, and industry standards
Experience conducting information security risk assessments, including of cloud-based (SaaS) technologies, e.g. AWS and Azure
Strong understanding of existing and emerging information security technologies
Excellent report writing skills
Familiarity with contract wording and interpretation of security clauses
University degree or college diploma in Computer Science, Engineering, Information Technology, Information Security and Risk Management or comparable professional education/training in a field relevant to IT Security management
Professional designation relating to Information Security preferred. (e.g., CISSP, CCSP, CISM, CISA)
Benefits
Wellness programs that support the three pillars of your health – mental, physical, and financial
Opportunity to move along a variety of career paths with amazing networking potential
Flexible work arrangements as a hybrid organization
Systems Administrator managing IT support and compliance activities in a tech - oriented company. Leading infrastructure design and security measures while collaborating with managed service providers.
Cyber Security Expert supporting project teams with structured risk assessments and compliance documentation at Nordex wind farms. Collaborating closely with Information Security to ensure secure operations.
OT Cybersecurity Engineer enhancing cybersecurity in industrial environments. Ensuring compliance with cybersecurity standards and collaborating across engineering, IT, and product teams.
Information Security Analyst implementing security solutions at one of Brazil's largest banks. Focus on information security and compliance with internal policies and best practices.
Security Intern collaborating with security teams to ensure compliance and develop secure processes in fintech environment. Engaging in hands - on experience with application security and risk management.
Senior Manager of Cybersecurity application and cloud security at Medtronic. Leading teams to enhance security in cloud - native environments and software development.
Security Engineer designing and implementing secure architecture solutions for Disney's global technology ecosystem. Collaborating with teams to assess threats and secure AI/ML implementations and technologies.
Head of Information Security at Thndr, leading security strategy and governance across Egypt, UAE, and KSA. Responsible for managing risk and building trusted security function.
Security Lead responsible for security across product, cloud infrastructure, and internal systems. Aiming to enhance security measures and practices within a SaaS environment.