CrawlJobs Logo

Senior Security Specialist

https://www.randstad.com Logo

Randstad

Location Icon

Location:
Canada, Toronto

Category Icon
Category:
IT - Software Development

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Our client is looking for a Senior Security Specialist for a 6 month contract in Toronto. This is a hybrid role 2 days per week onsite.

Job Responsibility:

  • Lead security and vendor risk assessments, identifying risks and gaps, and developing mitigation strategies for third-party vendors
  • Conduct detailed assessments of third-party vendors’ security domains, communicate findings, prepare regular reports and updates to management and stakeholders
  • Develop and implement cybersecurity governance frameworks, policies, and procedures in collaboration with cross-functional teams
  • Provide support for audit, compliance, and regulatory requests. Precise and thorough documentation and analysis are essential for effective security auditing and compliance efforts
  • Collaborate with internal teams and vendors to develop cybersecurity requirements for new solutions, ensuring alignment with security policies and standards
  • Work with other team members to develop and align with cybersecurity requirements for solutions as required
  • Work with project teams to recommend and implement security controls to address identified risks
  • Work with Enterprise Architecture, Solution Delivery, Security and Operations teams as part of a large program/project team to ensure security solutions and meet security compliance and security policies and standards
  • Identify requirements for policies and standards, and work with relevant teams in creation, development, review and approval
  • Act as a cybersecurity resource for new and upcoming project-based detail work
  • Work with project teams to identify and recommend security controls to remediate security risks and issues
  • Ongoing compliance work related to regulatory requirements and/or compliance to Metrolinx standards
  • Develop the security process, procedure, governance artifacts and security controls within the Cybersecurity Risk Management and Governance/Compliance Programs
  • Assist with security audits and threat/risk assessments to ensure compliance with security policies, standards and procedures, and work with business/technical/operational areas in taking corrective actions on any identified security exposures
  • Provide advice, risk assessment, recommendations and technical assistance in implementing security controls for projects
  • Communicate regularly with cybersecurity teams, internal stakeholders, project teams and representatives from various functional teams, including escalating any matters to senior team members that require additional analysis
  • Support the implementation of security principles, policies, and standards to align with industry best practices, ensuring security controls are integrated into system development, deployment, and operation

Requirements:

  • 7+ years’ experience in information security
  • Proven experience in contractual security requirements and third-party risk management through RFP processes and vendor evaluations throughout procurement life cycle
  • Proficient in cybersecurity risk management and third-party risk management tools (e.g., ServiceNow, OneTrust, Audit Board)
  • Strong knowledge of industry standards and regulations such as PCI-DSS, NIST, ISO 27001 and the ability to ensure compliance
  • Strong communication, interpersonal and presentation skills for engaging with diverse stakeholders
  • Expertise in security governance, risk management, and compliance, including developing road maps, policies, standards, procedures and processes
  • Ability to work in cross-functional teams, communicating complex technical information to all levels of the organization, including the leadership team
  • Experience with development of security processes, procedures and standards documentation
  • Strong time management skills and the ability to prioritize project work and ongoing responsibilities
  • Self-motivated with the ability to work independently in a fast-paced environment
  • Proficiency with standard Microsoft Office tools such as Word, Excel, PowerPoint, PowerBI and Visio
What we offer:
  • Hybrid role: 2 Days onsite / 3 days remote
  • Earn a competitive rate within the industry

Additional Information:

Job Posted:
June 01, 2025

Expiration:
July 20, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.