drjobs RQ07085 - Technology Architect - Senior

RQ07085 - Technology Architect - Senior

صاحب العمل نشط

1 وظيفة شاغرة
هذا المنشور غير متاح الآن! ربما يكون قد تم شغل الوظيفة.
drjobs

حالة تأهب وظيفة

سيتم تحديثك بأحدث تنبيهات الوظائف عبر البريد الإلكتروني
Valid email field required
أرسل الوظائف
drjobs
أرسل لي وظائف مشابهة
drjobs

حالة تأهب وظيفة

سيتم تحديثك بأحدث تنبيهات الوظائف عبر البريد الإلكتروني

Valid email field required
أرسل الوظائف
الخبرة drjobs

10سنوات

موقع الوظيفة drjobs

Toronto - كندا

الراتب الشهري drjobs

لم يكشف

drjobs

لم يتم الكشف عن الراتب

عدد الوظائف الشاغرة

1 وظيفة شاغرة

الوصف الوظيفي

Description:

The Senior Technology Architect role requires extensive knowledge and experience with cyber security frameworks and controls to reduce the impact of evolving cyber threats in the Ontario K12 school board environment. Knowledge and experience with online privacy and cyber safety as it applies to minors and K12 is also highly desirable.

Common framework standards and policy(ies) provide a consistent common mapping for all which will in turn provide a common means to demonstrate assurance/compliance and ability to defend against current and future cyber threats to K12.

The Specialized IT Consultant Senior resource is responsible for but not limited to:

  • Contributing to a tailored cyber security framework that is based primarily on NIST Cybersecurity Framework (CSF) v2 with considerations from other industry frameworks and standards such as SANS/CIS Controls v8 COBIT ISO etc.
  • Developing standards for priority cyber security privacy protection and online safety controls applicable to K12 including documented guidance
  • Providing handson subject matter expertise and guidance to support adoption of framework standards and policy(ies)
  • Ensuring alignment with modern security operation (SecOps) practices leveraging automation artificial intelligence and machine learning
  • Collaborating with other parts of the government (e.g. Ontario Cyber Security Division) to consider linkages with OPS and BPS cyber security priorities and standards and alignment with other workstreams of the cyber protection strategy such as cyber security and privacy assessments to identify linkages and interconnections and facilitate alignment.
  • Presenting to various stakeholders to seek feedback as needed.
  • Delivering on other duties as assigned.
  • Providing progress and project status reports on all deliverables assigned.

This work involves working in close partnership with various government departments and the K12 education sector.

The manager may assign school boardrelated work for other initiatives as needed.



Requirements

Experience and Skill Set Requirements:

Must haves:

Cyber Security and Privacy:

  • 5 years experience mapping and adapting cyber security frameworks such as NIST Cybersecurity Framework (CSF) v2 COBIT CIS Controls v8 and ISO 27001 for adoption by an organization comparable in size and complexity to a school board.
  • 5 years experience integrating and implementing cyber security frameworks and cyber security controls into an organization s enterprise risk management practice governance and overall organization including associated change management practices.
  • Experience with the adoption of capability maturity models such as Capability Maturity Model Integration (CMMI) and Cybersecurity Maturity Model Certification (CMMC) is desirable


Industry Certifications / Relevant Degrees:

  • Security certification is mandatory (Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM))


Nicetohave:

Public Sector Experience:

  • 5 years handson experience working with large public sector environments preferably with K12 school boards


Skill Set Requirements:

Cyber Security and Privacy:

  • 5 years experience mapping and adapting cyber security frameworks such as NIST Cybersecurity Framework (CSF) v2 COBIT CIS Controls v8 and ISO 27001 for adoption by an organization comparable in size and complexity to a school board.
  • 5 years experience integrating and implementing cyber security frameworks and cyber security controls into an organization s enterprise risk management practice governance and overall organization including associated change management practices.
  • 5 years experience performing security analysis developing and implementing cyber security and online privacy policies standards and guidelines preferably for the public sector or broader public sector.
  • Demonstrated experience applying privacy frameworks such as the NIST Privacy Framework v1.1 and ISO/IEC 27701 is highly desirable.
  • Demonstrated experience performing cyber/online safety analysis developing and implementing cyber safety policies standards and guidelines is highly desirable.
  • Experience with the adoption of capability maturity models such as Capability Maturity Model Integration (CMMI) and Cybersecurity Maturity Model Certification (CMMC) is desirable
  • Excellent knowledge of applicable legislation such as Municipal Freedom of Information and Protection of Privacy Act (MFIPPA). Knowledge of the Education Act is desirable.
  • Excellent knowledge and exposure to Internet of Things (IoT) or Operational Technology (OT) security issues is desirable.


Communication Skills and Experience:

Strong communication skills as demonstrated through:

  • 10 years experience in effectively presenting to senior management and management teams and external stakeholders
  • 10 years experience in preparing written materials (e.g. security and privacy reports status reports recommendations briefing notes) for practitioners and management levels.


Industry Certifications / Relevant Degrees:

  • Security certification is mandatory (Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM))
  • Privacy certification (Certified Information Privacy Professional (CIPP)) is desirable
  • Other certifications CISA CASP


Public Sector Experience:

  • 5 years handson experience working with large public sector environments preferably with K12 school boards
  • 5 years applying Ontario s cyber security standards. The security standards (GOITS 25.X) can be found on the Government of Ontario information technology standards website:


Experience and Skill Set Requirements: Must haves: Cyber Security and Privacy: 5+ years experience mapping and adapting cyber security frameworks such as NIST Cybersecurity Framework (CSF) v2, COBIT, CIS Controls v8 and ISO 27001 for adoption by an organization comparable in size and complexity to a school board. 5+ years experience integrating and implementing cyber security frameworks, and cyber security controls into an organization s enterprise risk management practice, governance and overall organization including associated change management practices. Experience with the adoption of capability maturity models such as Capability Maturity Model Integration (CMMI) and Cybersecurity Maturity Model Certification (CMMC) is desirable Industry Certifications / Relevant Degrees: Security certification is mandatory (Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM)) Nice-to-have: Public Sector Experience: 5+ years hands-on experience working with large public sector environments, preferably with K-12 school boards Skill Set Requirements: Cyber Security and Privacy: 5+ years experience mapping and adapting cyber security frameworks such as NIST Cybersecurity Framework (CSF) v2, COBIT, CIS Controls v8 and ISO 27001 for adoption by an organization comparable in size and complexity to a school board. 5+ years experience integrating and implementing cyber security frameworks, and cyber security controls into an organization s enterprise risk management practice, governance and overall organization including associated change management practices. 5+ years experience performing security analysis, developing and implementing cyber security and online privacy policies, standards and guidelines, preferably for the public sector or broader public sector. Demonstrated experience applying privacy frameworks such as the NIST Privacy Framework v1.1 and ISO/IEC 27701 is highly desirable. Demonstrated experience performing cyber/online safety analysis, developing and implementing cyber safety policies, standards and guidelines is highly desirable. Experience with the adoption of capability maturity models such as Capability Maturity Model Integration (CMMI) and Cybersecurity Maturity Model Certification (CMMC) is desirable Excellent knowledge of applicable legislation such as Municipal Freedom of Information and Protection of Privacy Act (MFIPPA). Knowledge of the Education Act is desirable. Excellent knowledge and exposure to Internet of Things (IoT) or Operational Technology (OT) security issues is desirable. Communication Skills and Experience: Strong communication skills as demonstrated through: 10+ years experience in effectively presenting to senior management and management teams and external stakeholders 10+ years experience in preparing written materials (e.g., security and privacy reports, status reports, recommendations, briefing notes) for practitioners and management levels. Industry Certifications / Relevant Degrees: Security certification is mandatory (Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM)) Privacy certification (Certified Information Privacy Professional (CIPP)) is desirable Other certifications CISA, CASP+ Public Sector Experience: 5+ years hands-on experience working with large public sector environments, preferably with K-12 school boards 5+ years applying Ontario s cyber security standards. The security standards (GO-ITS 25.X) can be found on the Government of Ontario information technology standards website:

نوع التوظيف

دوام كامل

نبذة عن الشركة

الإبلاغ عن هذه الوظيفة
إخلاء المسؤولية: د.جوب هو مجرد منصة تربط بين الباحثين عن عمل وأصحاب العمل. ننصح المتقدمين بإجراء بحث مستقل خاص بهم في أوراق اعتماد صاحب العمل المحتمل. نحن نحرص على ألا يتم طلب أي مدفوعات مالية من قبل عملائنا، وبالتالي فإننا ننصح بعدم مشاركة أي معلومات شخصية أو متعلقة بالحسابات المصرفية مع أي طرف ثالث. إذا كنت تشك في وقوع أي احتيال أو سوء تصرف، فيرجى التواصل معنا من خلال تعبئة النموذج الموجود على الصفحة اتصل بنا