About Us:Every day over 138,000 full-time and part-time Loblaw colleagues serve customers in more than 1,000 corporate and franchised stores from coast to coast. This makes Loblaw one of Canada's largest private sector employers. Loblaw is committed to providing a wide, growing and successful range of products and services to meet everyday household demands of Canadian consumers. Through innovation, we have the advantage of President's Choice and no name control brands being the #1 and #2 consumer packaged goods brands by sales in Canada. Loblaw is committed to being socially responsible by respecting the environment, sourcing with integrity, making a positive difference in the communities it serves, reflecting the nation's diversity and being a great place to work.Loblaw has been recognized as one of Canada's Top 100 Employers and Greenest Employers for 2010.All we need to continue our success is you.Job Overview:The Senior Director, IT Security reports directly to and works under the direction of the Vice President, Infrastructure and Operations. The role of the Senior Director Information Security is accountable for overall leadership and risk management for the information security function, including IT PCI compliance and IT SAP security within Loblaw Companies Limited.Accountabilities:• Sets specific performance targets both within Information Security department and across the company and manages performance to those targets, while escalating issues and risks proactively.• Coordinates with executives charged with IT Risk Management across the company to ensure that the scope and span of accountability for information security remains aligned with that overall corporate risk management framework. • Co-ordinates and liases with various audit bodies both internal and external.• Directs the development of security standards, processes, procedures and architectures in line with the security strategy.• Identifies legal and regulatory requirements (i.e., PCI, PIPEDA, Bill 198/SOX, etc.) are enforced through policy alignment and execution.• Ensures compliance with security policies, standards and procedures through security awareness and training programs and specification of performance requirements in job descriptions and Guidelines of Conduct.• Performs periodic information security and privacy risk assessments and conducts related ongoing compliance monitoring activities in coordination with the company's other compliance and operational assessment functions.• Identifies and participates in the project management process to ensure security requirements are addressed in all technology /system projects and to ensure security compliance. Acts as the liaison with Internal Audit and the Corporate Security department regarding overlapping information security issues -- e.g., investigations or badge access.• Participates in outsourcing negotiations and interfacing with external outsourcing service providers to ensure alignment to company security policies.• Acts as liaison with human resources about personnel issues related to information security -- e.g. involved in terminations due to policy non-compliance and investigates and reports on security threats, violations and other security incidents to management.• Consults with senior management in times of an information security crisis to ensure that the crisis is properly managed internally and externally. • Advises senior management of changes in the technical, legal and regulatory arenas affecting information security, privacy, IT compliance and computer crime. Advises business managers and technical personnel about the implementation of the security program in their respective areas.• Selects and implements security tools and execute the day-to-day accountabilities of the department including security administration. Qualifications:• 7 - 10 years progressive experience with in an information technology environment within a leadership role.• A degree or equivalent in Computer Science with a focus on networking or security is preferred. An MBA would be an asset, but not essential.• Hold an industry recognized security certification (i.e., CISSP, CISA, CISM)• Good leadership and managerial skills (vision setting, leadership by example, influence, talent management, project planning, supervisory skills)• Knowledgeable in all aspects of information security especially at the high level strategy and architecture.• Able to create and direct a new group within an organization, which includes talent management, interviewing and hiring staff, setting performance objectives, providing timely performance feedback and coaching and motivating above average performance.• Excellent communications skills, both written and verbal.• Demonstrated ability to direct the day-to-day activities of the security group• Must be an intelligent, articulate and persuasive leader who can serve as an effective member of the senior management team and who is able to communicate security-related concepts to a broad range of technical and non-technical staff. • Should have experience with security privacy, regulatory compliance, auditing, and risk management, as well as contract and vendor negotiation. • Must have strong working knowledge of pertinent law and the law enforcement community. • In-depth experience with intrusion detection systems, security access authorization, firewalls, security audits, network penetration testing, authorization issues, protection strategies.• Experience with standard work in security, such as ISO, ANSI, IETF is and asset.• Experience working in challenging and complex IT shops, cleaning them up and turning them around• Applicable technical experience, such as doing Identity Management, SAP Security and PCI Compliance• Previous exposure to working with Audit departments to understands security audits and remediation• Able to work as a team player within the IT organization, but also assert their expertise from a security mandate perspective
Location:
Canada-ON-Brampton
Telecommute:
No (Onsite Position)
Contact Name:
Melanie Wyndowe
Contact Phone:
Contact Email:
melanie.wyndowe@loblaw.ca
URL:
http://www.loblaw.ca
Please mention Match Your Skill Jobs when contacting us.
$('#incl-soc').load('/includes/soc_icons.jsp?subject=Senior+Director%2C+IT+Security+in+Brampton%2C+ON+%7C+Dev+Bistro&body=http%3A%2F%2Fwww.devbistro.com%2Fjobs%2F131246');
New to Software Development?Digg.com Software Architect turned SimpleGeo co-founder Joe Stump shares advice for those seeking programming careers.
Get involved in an open-source community
Work with accomplished programmers
Have your code critiqued and refined
Gain professionalism and communication skills through agile collaborative environment
Follow your passion or fail
Reality check: life as a programmer
|