This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
This Health Solutions company in Downtown Montreal is looking for an IT Project Manager - Cybersecurity. Contract: In consultation. Term: 12 months (Renewable). Start date: December 2025. Schedule: 37.5 hours/week. Hybrid (Downtown Montreal).
Job Responsibility:
Lead the deployment of critical cybersecurity initiatives, including Identity and Access Management (IAM) upgrades, Data Loss Prevention (DLP) implementation, and Endpoint Detection and Response (EDR) rollouts
Manage projects related to regulatory compliance (specifically Law 25 and ISO 27001 standards) to ensure patient data privacy and organizational adherence to Quebec and Canadian health data laws
Coordinate with the Security Operations Center (SOC) and engineering teams to track vulnerability assessments, penetration testing schedules, and remediation projects
Act as the bridge between technical security teams, the CISO, and non-technical business units
manage external security vendors and evaluate third-party risk
Oversee the scheduling and execution of Tabletop Exercises (TTX) and disaster recovery simulations to ensure business continuity readiness
Requirements:
Minimum 5-8 years of Project Management experience
At least 3 years dedicated to Cybersecurity or Information Security projects
PMP certification is required
Security certifications such as CISSP, CISM, or CISA are highly valued assets
Strong understanding of Healthcare data standards (HL7, FHIR) and privacy regulations (Law 25, PIPEDA) is preferred
Familiarity with security frameworks (NIST, ISO) and technologies (SIEM, Firewalls, Cloud Security - Azure/AWS)
Proven ability to communicate complex risk and security concepts to executive leadership
Bilingualism (English and French) is required
Nice to have:
Security certifications such as CISSP, CISM, or CISA are highly valued assets
Strong understanding of Healthcare data standards (HL7, FHIR) and privacy regulations (Law 25, PIPEDA) is preferred