Information architect - cloud security (Toronto)

Information architect - cloud security (Toronto)

29 Aug
|
Toronto Police Service
|
Toronto

29 Aug

Toronto Police Service

Toronto

The Toronto Police Service is looking for a candidate that shares our core values: The Toronto Police Service is the fourth largest municipal police service in North America. With over 5,000 officers and approximately 2,500 civilian employees, we are dedicated to delivering best-in-class police services, in partnership with our communities, by being where the public needs the Service the most, by embracing partnerships to create safe communities, and by focusing on the needs of the City. Join the Toronto Police Service as an Information Security Architect within our IT Risk Management Unit.

This is a rare opportunity to apply your expertise to systems that directly support public safety, critical operations, and the protection of sensitive information. In this role, you will shape the security architecture that underpins a modern, technology-driven Police Service designing resilient systems, strengthening our cybersecurity posture, and ensuring our members and communities are protected. If you are passionate about security architecture, eager to tackle evolving cyber threats, and ready to influence enterprise-level decisions with real-world impact, we d love to have you on our team.

In this role, you will conceptualize designs, procure, and/or build secure information technology (IT) systems, with responsibility for aspects of system and/or network development. You will develop system concepts and work on the capabilities in phases of the systems development life cycle, translating technology and environmental conditions (e.g., You will also ensure that the stakeholder security requirements necessary to protect the organization s mission and business processes are adequately addressed in all aspects of enterprise architecture including policies, standards, reference models, segment and solution architectures, and the resulting systems supporting those missions and business processes. Furthermore, you will provide technical expertise and guidance to TPS personnel/end users regarding IT systems security in all aspects of enterprise architecture.

Define and document how the implementation of a new system or new interfaces between systems impacts the security posture of the current setting. Develop a system security context, define baseline cybersecurity requirements and corresponding system security requirements, and provide guidance and inputs to system security operations. security controls) for the information system(s) and network(s) and document appropriately. Possible on-call duties to provide immediate response to security incidents.





Define appropriate levels of system availability based on critical system functions and ensure that system requirements identify appropriate disaster recovery and continuity of operations requirements to include any appropriate fail-over/alternate site requirements, backup requirements, and material supportability requirements for system recovery/restoration. Develop/integrate cybersecurity designs for systems and networks with multilevel security requirements or requirements for processing multiple classification levels of data applicable to the TPS. Document and address the organization s information security, cybersecurity architecture, and systems security engineering requirements throughout the acquisition life cycle.

Advise on the implementation of secure configuration management processes. Ensure that acquired or developed system(s) and architecture(s) are consistent with the organization s cybersecurity architecture guidelines. Perform or manage security reviews, identify gaps in security architecture, and develop a security risk management plan.

Assess and design security management functions in various IT processes (e.g. release management, patch management) as related to cyberspace. Work on all aspects of enterprise architecture, including requirements management, architecture development, and architecture artifacts (e.g. policies, standards, reference models) maintenance. Translate proposed capabilities to technical requirements.

Provide input to risk management framework, processes, activities, and related documentation. Performs any other related duties and tasks as directed by the Manager of IT Risk Management. A four (4) year Bachelor s degree in computer related programs, combined with a minimum of 10 years of working experience within the field of IT Security Architecture, or an equivalent combination of education, certification, training, and professional experiences.

Thorough knowledge of cybersecurity and privacy principles, industry best practices, security protocols and standards; Thorough knowledge of cyber threats and system vulnerabilities, and experience in conducting Threat and Risk Assessment (TRA),



penetration testing, and vulnerability scans. Hands-on experience in applying methods, standards, and approaches for describing, analyzing, and documenting an organization s enterprise IT architecture by following a framework such as TOGAF, Zachman, Do DAF, etc. Substantial technical knowledge in building and implementing security components and measures at application, networks, infrastructure, and information layers for different organizational and system requirements.

These security components and measures include, but are not limited to, demilitarized zones (DMZ), firewalls and gateways, intrusion detection/prevention systems (IDS/IPS), endpoint protection systems (EDR), extended detection and response systems (XDR), authentication/authorization/audit/policy enforcement, directory services (e.g. AD, DNS), data anonymization for PCI and PII compliance, data loss protection scanning, accelerated cryptographic operations, data encryption at different states, anti-tampering techniques, fault tolerance techniques. Hands-on experience in security configuration, customization, and coding for IT platforms and products (e.g.

Azure cloud services, network infrastructure, security products, etc.) Strong knowledge of authentication, authorization, network access, identity and access controls (e.g. Solid knowledge of cyber defense and vulnerability assessment tools and their capabilities. Strong knowledge of computer and encryption algorithms; Knowledge of computer networking concepts and protocols (e.g.

Transmission Control

Protocol [TCP] and Internet Protocol [IP], Open System Interconnection Model [OSI]); and network security methodologies. Knowledge of capabilities and applications of network equipment including routers, switches, bridges, servers, transmission media, and related hardware. Knowledge of risk management processes (e.g. methods for assessing and mitigating risk).

Knowledge of configuration management processes and techniques. Knowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy. Knowledge of IT service management concepts for networks and related standards (e.g.

Information Technology Infrastructure

Library, current version [ITIL]). and adaptability to align IT security initiatives. Enthusiasm and practical approach in tracking information technology trends and new/emerging cybersecurity technology.

Competencies may be measured through various selection tools such as test(s) and/or interview.

📌 Information architect - cloud security (Toronto)
🏢 Toronto Police Service
📍 Toronto

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: information architect - cloud security (toronto) / toronto