Information Security Policy and Implementation Specialist
Listed on 2026-06-04
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Data Security
Join our team
TELUS Health Chief Security Office (CSO) operates globally at the forefront of cybersecurity excellence, where our team anticipates threats, solves complex security challenges, and delivers world‑class cybersecurity solutions through cutting‑edge technology and premier industry partnerships in an ever‑evolving digital landscape.
Our TELUS Health Information Security Team, as part of TELUS Health CSO’s GRC Team, is responsible for establishing the TELUS Health Information Security Management System (ISMS), including the development of a dedicated security policy program and maturing information security governance across the wider organization globally.
Here’s the impact you’ll make and what we’ll accomplish togetherAs Information Security Policy and Implementation Specialist, you will report to the Information Security Manager, playing an integral role in the elevation of security policy and standards and support enterprise‑wide implementation of security policy initiatives.
This role is primarily responsible for establishing industry‑leading, risk‑based security requirements across the organization that align with ISO 27001/2 and ensure compliance with health regulatory obligations. This involves delivering a security policy program that is consistent, compliant, and audit‑ready. You’ll lead all aspects of policy development, including scoping and planning activities, security requirements assessments and analysis, facilitating multi‑level consultation and review cycles, up to and including final delivery, communication and awareness activities.
You will serve as an essential contributor, playing a central role in all facets of the information security team’s functions and services. Your specific and critical responsibility will be to manage projects effectively, ensure that all policy projects and related initiatives are executed with the utmost diligence, adhering rigorously to established methodologies and ensuring outcomes support broader TELUS Health CSO objectives.
Whatyou’ll do
- Lead the development of security policies and technical standards independently to ensure compliance with security industry frameworks, best practices and regulations, specifically you’ll be responsible for leading the following activities: in‑depth requirements gathering, security control mapping, gap assessments and analysis, documenting and review cycles, through to publishing and communication.
- Ensure compliance with international health and data protection requirements by identifying and defining regulatory‑compliant control enhancements relevant to variable operational and commercial jurisdictions, mapping controls and uplifting policy to align.
- Steer security policy implementation efforts through policy socialization and business engagement activities.
- Drive consultation processes with stakeholders in the broader security, IT, product and business units across the organization. Responsibilities include gathering all relevant information about operating environments and controls, leading workshops, proposal sessions and policy walkthroughs to ensure organizational alignment and understanding of policy intent and compliance obligations.
- Lead the security policy exceptions program: managing all exception requests, performing risk assessments, recommending compensatory controls, delivering exception decisions and providing ongoing oversight throughout the exceptions lifecycle.
- Support the development and expansion of the information security management system (ISMS) and governance program initiatives.
- Oversee the quality of deliverables for all policy related activities and projects through rigorous processes of peer reviewing, analyzing and validating controls, and ensuring compliance with internal procedures.
- Contribute to our Security Desk, answering general inquiries and providing guidance to the broader organization on security policy, controls and requirements, and best practices.
- Recommend and support administration and deployment of security tools to address security needs and support process improvements.
- Excellent communication and interpersonal skills, capable of influencing at…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).