Sr. Specialist Cyber Awareness
Job Title
Senior Specialist Cloud Security Assessment
Division
Toronto Cyber Security
Reports To
Manager Cyber Architecture & Application
Hiring Manager
Salary Range
$126,000 to $176,140
Work Location
55 John Street, Toronto
Job Type
Permanent Full Time
Shift Information
Monday to Friday, 35 hours work week
The Senior Specialist, Cloud Security Assessment will be responsible for supporting the Chief Information Security Officer (CISO) in executing the City’s cyber vision, strategy, and goals. The primary focus will be on advising and delivering technical expertise related to cloud security initiatives across the City’s divisions, agencies, and corporations. This role will involve the development, implementation, and continuous improvement of cloud security measures, engaging with teams to enhance the cyber security posture of cloud environments.
The Senior Specialist will provide senior-level guidance, subject matter expertise, and operational support within the Cyber Architecture and Application area, ensuring the cloud infrastructure is both secure and compliant with best practices and regulatory requirements.
What you will be doing:
Assist with the secure design, implementation, and management of security cloud solutions for the City, ensuring the protection of critical data and systems in the cloud environment.
Conduct security assessments, threat modeling, and architecture reviews of existing cloud architectures, identify cyber security gaps, and recommend solutions to enhance cloud security posture.
Provide leadership and direction in the research, design, planning, and execution of cloud security initiatives to address emerging threats and trends related to generative/Agentic AI, data usage, access governance, monitoring, and misuse, and advising stakeholders on secure and responsible adoption of AI technologies in cloud environments.
Provide subject?matter expertise in PCI?
DSS compliance within cloud environments, supporting PCI-DSS scoping, control validation, evidence review, and remediation guidance for cloud?hosted payment systems and integrated third?party services.
Collaborate with cross-functional teams to ensure the secure adoption and operation of secure cloud services, while identifying areas of improvement for ongoing cloud security practices.
Assist in developing, documenting, and enforcing cloud security policies, standards, and guidelines. Ensure alignment with industry best practices, frameworks, and regulatory compliance requirements through comprehensive security assessments and collaborative discussions
Assist the technology team in implementing robust security controls in cloud environments, safeguarding against potential cloud-specific vulnerabilities.
Offer training and mentorship to internal teams, promoting the adoption of cloud security concepts and best practices, including network security and data protection in the cloud.
Drive alignment between business and technical teams on cloud security priorities and initiatives, ensuring seamless execution of cloud security programs.
Stay informed on the latest cloud security developments and trends to proactively recommend improvements and ensure the organization remains ahead of potential threats.
What you must have:
Post-secondary degree in Business or Technology or a related discipline
Extensive experience in cloud security assessments, threat modeling, and cloud architecture reviews.
Strong understanding of cloud security frameworks, industry standards, and regulatory requirements (NIST, CSA CCM, CIS, ISO 27001, PCI-DSS etc.).
Hands-on implementation experience with cloud data platforms.
In-depth knowledge of cloud platforms, security solutions, and services (AWS, Azure, Google Cloud, etc.).
Solid understanding of Security Service Edge (SSE), Cloud Access Security Broker (CASB), Cloud Security Posture Management (CSPM), Cloud Native Application Protection Platform (CNAPP) and Cloud Workload Protection Platform (CWPP) tools; knowledge of cloud security frameworks, standards and best practices; and working with cloud IAM and IaaS, PaaS and SaaS native security capabilities.
Extensive experience with serverless, container hosting and…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: