Rq05555 Cyber Security And Privacy Control Officer

Toronto, ON, Canada

Job Description


We would like to present to you a new job opportunity and I think you may find it interesting.

If you are interested kindly send the following documents to ajandekar@smsoftconsulting.com by Thursday, 13 July at 10:00 AM EST if that interests you and matches your profile.

Without mandatory documents, we cannot submit a candidate. * Updated Resume in word format (Mandatory)

  • Skills Matrix and References (Mandatory)
Job Title: RQ05555 - Specialized IT Consultant - Senior

: Ministry of Education

Work Location: 777 Bay St., Toronto, Ontario, Hybrid

Estimated Start Date: 2023-07-24

Estimated End Date: 2024-03-31

Business Days: 92.00

Extension: Probable after the initial mandate

Hours per day or Week: 7.25 hours per day

Security Level: CRJMC

Description

The Specialized IT Consultant, Level 3, role requires extensive knowledge and experience with both cyber security and privacy controls to reduce the impact of evolving cyber threats in the Ontario K-12 school board environment. This resource is responsible for, but not limited to:
  • Performing cyber security and privacy assessments to identify vulnerable areas of the K-12 school boards including:
  • Threat risk assessments
  • Cyber security and risk assessments
  • Privacy impact assessments
  • Developing school board-specific, prioritized action and remediation plans to support K-12 school boards in improving their cyber resilience and risk posture.
  • Providing hands-on subject matter expertise and implementation guidance to support enhancements of cyber protection for K-12 school board networks, including improvements recommendations in:
  • Cyber security
  • Privacy protection for minors
  • Providing subject matter expertise and advice in improving cyber protection processes, including supporting the development of cyber security standards for K-12 school boards.
  • Providing guidance for mitigation strategies following root cause analysis of security or privacy breaches in the K-12 school board networks.
  • Providing subject matter expertise, guidance and support to K-12 school boards cyber security personnel by producing risk logs, and proposing remediation actions.
  • Presenting to various stakeholders, as needed.
  • Delivering on other duties as assigned.
  • Providing status and project status reports on all other deliverables assigned.
This work involves working in close partnership with the K-12 education sector. The resource may need to travel the same day or overnight in Ontario.

The manager will have the right to assign additional work, directly or indirectly related to this initiative as needed to support unit priorities as and when required

Experience and Skill Set Requirements

Cyber Security and Privacy \xe2\x80\x93 55%
  • 10+ years\xe2\x80\x99 experience with cyber security processes and regulations, and standards, preferably for the public sector or broader public sector
  • 10+ years\xe2\x80\x99 experience with cyber security and privacy audits and assessments including:
  • Threat risk assessments
  • Cyber security assessments
  • Privacy impact assessments
  • 10+ years\xe2\x80\x99 experience producing cyber security and privacy risk logs and preparing risk remediation plans, preferably for the public sector or broader public sector
  • 10+ years\xe2\x80\x99 experience applying cyber security industry frameworks such as NIST CSF v1.1, COBIT, CIS Controls v8 and ISO 27001
  • Knowledge of the new draft NIST Cyber Security Framework v2.0
  • 10+ years of demonstrated experience applying privacy frameworks such as the NIST Privacy Framework, ISO/IEC 27701
  • Excellent knowledge and exposure to Internet of Things (IoT) security issues
  • Excellent knowledge of Ontario, federal and international privacy laws applicable to the Ontario K-12 sector (such as Municipal Freedom of Information and Protection of Privacy Act (MFIPPA), Canadian Privacy Act, General Data Protection Regulation (GDPR) etc.)
Communication Skills and Experience \xe2\x80\x93 25%

Strong communication skills as demonstrated through:
  • 10+ years\xe2\x80\x99 experience in effectively presenting to management teams and external stakeholders
  • 10+ years\xe2\x80\x99 experience in preparing written materials (e.g., security and privacy reports, status reports, recommendations, briefing notes)
Industry Certifications / Relevant Degrees \xe2\x80\x93 15%
  • Security certification is mandatory (Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM))
  • Privacy certification is mandatory (Certified Information Privacy Professional (CIPP))
Public Sector Experience \xe2\x80\x93 5%
  • 5+ years\xe2\x80\x99 hands-on experience working with Ontario\xe2\x80\x99s public sector or Ontario\xe2\x80\x99s broader public sector
  • Applied experience with Ontario\xe2\x80\x99s cyber security standards. The security standards (GO-ITS 25.X) can be found on the Government of Ontario information technology standards website:
.

Note:

This position is currently listed as "Hybrid" however, the consultant will be remote due to COVID-19 related Work from Home (WFH) direction. Once the I&IT cluster staff are required to return to the office, the resource under this request will be required to work onsite as well.

This contract will require the consultant to work up to 3 days per week in the office and the remaining days working remotely.

\xef\xbb\xbfTravel Requirements - The resource(s) must be available to travel the same day or overnight in Ontario, as required. For this role, travel to school board locations across the province will be required. The resource(s) will work with the school boards and local public health units to ensure all required COVID-19 safety measures are followed when on-site at schools. Travel expenses will be reimbursed according to the Ontario Travel, Meal and Hospitality Expenses Directive.

Powered by JazzHR

S M Software Solutions Inc

Beware of fraud agents! do not pay money to get a job

MNCJobz.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Job Detail

  • Job Id
    JD2201885
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    Toronto, ON, Canada
  • Education
    Not mentioned