13 Sep
|
Alcoa Canada
|
Montreal
13 Sep
Alcoa Canada
Montreal
We are seeking a Cybersecurity Advisor who can partner with business leaders, project teams, and technology stakeholders to identify cybersecurity risks, influence secure technology decisions, and ensure security is embedded into new initiatives from the start. This is a highly collaborative, advisory-focused role that combines cybersecurity architecture, risk management, governance, and stakeholder engagement across both Information Technology (IT) and Operational Technology (OT) environments. As a trusted cybersecurity advisor, you will: Lead cybersecurity guidance for system implementations, upgrades, and digital transformation initiatives.
Review and influence secure architecture across IT and OT environments (ICS/SCADA, IoT, industrial networks) Conduct threat modeling and security design reviews for business and industrial systems Enable and advance Alcoa initiatives in Cloud security, Zero Trust architecture, Identity Management and AI governance, ensuring appropriate controls, monitoring, and protection of sensitive data. Identify, assess, and prioritize cybersecurity risks across IT, mining/manufacturing operations Support risk mitigation plans and execution Perform risk assessments for projects, vendors, and operational technologies Support incident response planning and risk-based decision making Consult & advise on definition, implementation and revision of policies, standards, and procedures for IT/OT security Drive oversight of security controls implementation across projects in IT and OT Recommend security policy, standards and controls enhancements aligned with customer needs, NIST, CIS, ISO and other frameworks and best practices. Enable institutional cybersecurity risk management activities, including risk assessments, audits, mitigation planning and execution activities across Alcoa systems.
Support post-incident reviews and continuous improvement efforts. Act as a trusted advisor to business and technical stakeholders Work closely with IT teams to ensure secure design, implementation,
and operation of systems including cloud and application environments. Provide technical guidance on configurations, integrations and remediation.
Support company-wide awareness programs and continuously improve security posture by addressing emerging threats, including cloud and AI-related risks. Bachelor’s degree in Information Security, Computer Science, Information Systems, STEM, or related field (or degree with equivalent depth of experience in cybersecurity leadership). Significant experience in cybersecurity, Information Security, or related domains.
Cloud, IAM/Zero Trust, Data/DLP, and AI Demonstrated experience advising and consulting internal customers to achieve organizational objectives NIST CSF, NIST SP 800-53, CIS Critical Security Controls).
Experience with incident response, risk assessment, and security operations. Ability to communicate effectively with technical and non-technical stakeholders.
Experience working in or supporting complex, decentralized business units. Demonstrated ability to successfully handle sensitive discussions, maintain confidentiality, strong personal ethics commitment, strong personal integrity, and demonstrated sound judgment. Ability to collaborate effectively with enterprise teams, plant operations, engineering, and other key stakeholders to advance global cybersecurity maturity.
Strong interpersonal skills, with the ability to collaborate effectively with internal and external stakeholders, including customers, vendors, analysts, CIOs, and leaders across and beyond the IT organization. Ability to lead and motivate the information security team to achieve tactical and strategic goals. Excellent analytical skills,
the ability to support multiple projects under strict timelines, as well as the ability to work well in a demanding, dynamic environment and meet overall objectives.
Effective written and verbal communication skills in English; proficiency in additional languages is preferred.
Bilingual
English/French candidates are highly desired. CISSP, CISM, CRISC, or comparable cybersecurity certification.
Experience in manufacturing, mining, industrial, or other highly regulated environments.
Experience supporting cloud transformation, Zero Trust, or enterprise modernization initiatives. Competitive compensation packages, including pay-for performance variable pay, recognition and rewards programs, and stock-based compensation awards (3-year vesting schedule) ~ Flexible spending accounts and generous employer contribution to the HSA ~401(k), employer match up to 6%, additional employer retirement income contribution (no vesting period), and a non-qualified deferred compensation plan ~12 paid holidays per year. ~15 days of paid vacation (pro-rated from hire date). ~ Employee Assistance Program (EAP) #Alcoa is an international company with multiple locations and joint ventures across six continents. Our commitments to Inclusion, Diversity & Equity include providing trusting workplaces that are secure, respectful and inclusive of all individuals, free from discrimination, bullying and harassment and that our workplaces reflect the diversity of the communities in which we operate.
As a proud equal opportunity workplace and affirmative action employer, Alcoa is dedicated to providing equal opportunities and equal access to all individuals regardless of a person’s gender, age, race, ethnicity, sexual orientation, gender identity, religion, nation of origin, disability, veteran status, language spoken or any other characteristic or status protected by the laws or regulations in the places where we operate. If you have visited our website in search of information on U.
📌 IT Cyber Security Analyst (Montreal)
🏢 Alcoa Canada
📍 Montreal