12 Sep
|
Jobtailor
|
Montreal
12 Sep
Jobtailor
Montreal
- Lead cybersecurity guidance for system implementations, upgrades, and digital transformation initiatives - Review and influence secure architecture across IT and OT environments, including ICT/SCADA, IoT, and industrial networks - Conduct threat modeling and security design reviews for business and industrial systems - Enable initiatives in cloud security, Zero Trust architecture, identity management, and AI governance - Identify, assess, and prioritize cybersecurity risks across IT and mining/manufacturing operations - Support risk mitigation plans and execution - Perform risk assessments for projects, vendors, and operational technologies - Support incident response planning and risk-based decision-making - Advise on the definition, implementation, and revision of IT/OT security policies, standards, and procedures - Oversee security control implementation across IT and OT projects - Recommend enhancements aligned with NIST, CIS, ISO, and other frameworks and best practices - Enable cybersecurity risk management activities, including risk assessments, audits, mitigation planning, and execution - Support post-incident reviews and continuous improvement - Ensure adherence to relevant frameworks and regulations, including ISO 27001, NIST, and IEC 62443 - Support internal and external audits - Maintain compliance documentation and evidence - Act as a trusted advisor to business and technical stakeholders - Work closely with IT teams on secure design, implementation, and operation of cloud and application environments - Provide technical guidance on configurations, integrations, and remediation - Support company-wide awareness programs and improve security posture by addressing emerging cloud and AI-related threats - Foster a collaborative, inclusive,
and service-oriented team culture across Alcoa teams Requirements - Bachelor’s degree in Information Security, Computer Science, Information Systems, STEM, or related field (or degree with equivalent depth of experience in cybersecurity leadership) - Significant experience in cybersecurity, Information Security, or related domains - Domain specific experience in 2 or more of the following: Cloud, IAM/Zero Trust, Data/DLP, and AI - Demonstrated experience advising and consulting internal customers to achieve organizational objectives - Strong knowledge of security frameworks and standards (e.g., NIST CSF, NIST SP 800-53, CIS Critical Security Controls) - Experience with incident response, risk assessment, and security operations - Ability to communicate effectively with technical and non-technical stakeholders - Experience working in or supporting complex, decentralized business units - Demonstrated ability to successfully handle sensitive discussions, maintain confidentiality, strong personal ethics commitment, strong personal integrity, and demonstrated sound judgment - Ability to collaborate effectively with enterprise teams, plant operations, engineering, and other key stakeholders - Solid interpersonal skills for collaboration with internal and external stakeholders, including customers, vendors, analysts, CIOs,
and leaders - Ability to lead and motivate the information security team - Excellent analytical skills and ability to support multiple projects under strict timelines in a demanding, dynamic setting - Effective written and verbal communication skills in English; additional languages preferred - Strong knowledge of ITIL, COBIT, and compliance requirements - Bilingual English/French candidates highly desired - CISSP, CISM, CRISC, or comparable cybersecurity certification preferred - Experience in manufacturing, mining, industrial, or highly regulated environments preferred - Experience supporting cloud transformation, Zero Trust, or enterprise modernization initiatives preferred Core Competencies Demonstrates expertise in cybersecurity leadership, risk management, and compliance with frameworks such as NIST and ISO. Capable of advising on secure architecture and implementing security policies across IT and OT environments. Highest-signal resume keywords - Cybersecurity Leadership - Risk Assessment - Cloud Security - Incident Response - Security Frameworks ATS Optimization Keywords Hard Skills - Cybersecurity - Information Security - Risk Management - Threat Modeling - Security Design Reviews - Zero Trust Architecture - Identity Management - AI Governance - Compliance Documentation - Security Control Implementation Soft Skills - Effective Communication - Collaboration - Interpersonal Skills - Analytical Skills - Leadership Certifications & Qualifications - CISSP - CISM - CRISC Industry Keywords - Manufacturing - Mining - Industrial Environments - Regulatory Compliance - Cybersecurity Frameworks Tools & Technologies - ICS/SCADA - IoT - Cloud Environments - ITIL - COBIT
📌 Cybersecurity Advisor – North America (Montreal)
🏢 Jobtailor
📍 Montreal