Security Architect (Cybersecurity, Cloud Security, Risk Management, NIST, CISSP)
Location: Toronto, ON - Hybrid (4 Days WFO)
Role Descriptions:
Team Description:
• The Information Security team partners with departments to advance technology and third-party information/cyber risk management capabilities that enable the Fund to compete effectively and take advantage of innovative technologies.
• The Security Architecture Engineering team is responsible for:
• Determining
• Designing
• Implementing security controls for the organization
• Assessing the security level of applications
Job Summary and Purpose:
• As a Security Architect, you will lead pieces of architecture work for key CPP Investments systems and programs.
• Collaborate with various stakeholders to help define the solution architecture and ensure it aligns with the enterprise vision and architecture strategy.
Major Accountabilities:
• Support the implementation and delivery of the CPP Investments architecture vision through:
• Definition of architecture roadmaps
• Transition architectures
• Solution documents
• Lead the design, development, and execution of security architecture strategies, ensuring alignment with:
• Organization security objectives
• Business goals
• Design and implement security architecture solutions across all systems and applications.
• Ensure architectures align with:
• Industry best practices
• Regulatory requirements
• Continuously assess and improve:
• Security processes
• Procedures
• Infrastructure
• Ensure solutions are:
• Effective
• Efficient
• Compliant
• Help build and maintain the solution architecture lifecycle and methodology appropriate to the wider enterprise architecture and CPP Investments IT capabilities, including the definition of:
• Artefacts
• Deliverables
• Models
• Processes
• Roles
• Responsibilities
• Function as a trusted security technical advisor who:
• Collaborates with business and technical stakeholders
• Sets direction
• Builds consensus
• Mediates conflicts
• Helps drive optimum solutions
• Ensure adherence to:
• Architecture processes
• Standards
• Principles
• Deliver solutions with:
• High performance
• Agility
• Reuse
• Deliver collaborative architecture decisions for:
• Technical infrastructure
• Application environments
• Facilitate and contribute to architecture decisions for:
• Business environments
• Information environments
Core Qualifications:
• Undergraduate degree or college diploma in a related field.
• 10+ years of relevant experience as a Security Architect.
• Experience in information and cybersecurity, including:
• Strategy design
• Implementation
• Monitoring
• Experience providing strategic guidance in a large consulting organization is a plus.
• Deep technical or operational experience with broad knowledge across security disciplines such as:
• Access management
• Cloud security
• Risk management
• Experience with security frameworks:
• NIST CSF
• Experience with leading security technologies.
• Experience with Palo Alto SASE solution preferred.
• Possess one or more of the following industry certifications:
• CISSP
• CISA
• CISM
• CCSP – Certified Cloud Security Professional
• SABSA – Security Architecture
• Other industry-recognized Information Security certifications
Essential Skills:
• Information Security architecture experience.
• Experience designing and implementing security controls.
• Experience assessing application security levels.
• Experience with:
• Security architecture strategies
• Cloud security
• Access management
• Risk management
• Security frameworks
• Security technologies
Experience Required:
• 10+ years of experience.
