FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in conducting information security risk assessments and compliance, with a strong understanding of information security principles and technologies. Capable of effectively communicating complex security concepts to diverse business groups and managing security risks in alignment with organizational policies.
Highest-signal resume keywords
Information Security Risk AssessmentCloud-Based Technologies (SaaS)Information Security ComplianceCISSP CertificationStrong Communication Skills
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Information Security PrinciplesRisk ManagementSecurity Best PracticesSecurity Contract ReviewEmerging Security TechnologiesReport WritingRisk RemediationSecurity ConsultingIT Security ManagementInformation Technology
Soft Skills
Negotiation SkillsStrategic ThinkingConsensus BuildingIndependent WorkCommunication with Non-Technical Stakeholders
Tools & Technologies
AWSAzure
Certifications & Qualifications
CISSPCCSPCISMCISA
Industry Keywords
Information SecurityComplianceRisk AssessmentSecurity PoliciesConfidential Information Protection
Tech Stack
Tools & technologiesAWSAzureCloud
About the role
Key responsibilities & impact- Assist business units with information security risk assessment and compliance matters
- Conduct information security risk assessments for initiatives, third-party suppliers/external vendors, and applications
- Perform security contract reviews and advise on security best practices
- Review emerging security strategies
- Assess initiatives and projects to ensure controls align with Sun Life Information Security policies and directives
- Provide security consulting to safeguard confidential information from disclosure, modification, or destruction
- Report assessment status, identified risks, and current work activities to management
- Provide preliminary recommendations on information security risks
- Track and manage open security risks, remediation plans, and target dates
- Work with business and technology risk owners to ensure risk remediation
- Collaborate with Business, Architecture, Infrastructure, Legal, Compliance, Risk, and Privacy teams
- Report to the Director, Security Advisory Services
Requirements
What you’ll need- University degree or college diploma in Computer Science, Engineering, Information Technology, Information Security and Risk Management, or comparable professional education/training relevant to IT Security management
- Minimum 5 years of experience in Information Security and Information Technology (IT)
- In-depth knowledge of information security and IT principles, protocols, practices, and industry standards
- Experience conducting information security risk assessments, including cloud-based (SaaS) technologies such as AWS and Azure
- Strong understanding of existing and emerging information security technologies
- Strong communication and negotiation skills with senior staff and executives
- Excellent report writing skills
- Familiarity with contract wording and interpretation of security clauses
- Ability to communicate with business groups from a non-technical perspective and translate technical context into common business language
- Ability to work independently, think strategically, negotiate, build consensus, and work with diverse groups
- Reliability Status Clearance required before employment starts, including law enforcement inquiry, credit check, and accounting for activities outside Canada during the last 5 years
- Professional designation relating to Information Security, such as CISSP, CCSP, CISM, or CISA (nice to have)
Benefits
Comp & perks- Wellness programs supporting mental, physical, and financial health
- Variety of career paths and networking opportunities
- Hybrid work flexibility between home and office
- Incentive plans for eligible employees, subject to individual and company performance
- Accommodation available during the application process
- Diverse and inclusive workplace
