- Minimum 10 years' of strong, progressive experience in all of cybersecurity risk assessments, vendor assessments, and continuous risk management.
- Strong understanding of cybersecurity industry standards, principles and practices, as well as risk concepts. Understanding of application security design & architecture is an asset.
- Proven management and leadership skills in communication, prioritization and developing talent
- Demonstrated ability to communicate complex issues in a clear and concise manner to a wide range of audiences and stakeholders
- Demonstrated ability to navigate through ambiguity and guide team through changes
- Ability to understand complex processes and make sound judgement calls.
- Ability to negotiate and influence others to achieve optimal results.
- Knowledge of Ariba and Archer or other GRC management platforms.
- Post-secondary education in Computer Science, Computer Engineering, IT Security, risk management, or comparable qualified training.
- Professional designation relating to cybersecurity or IT risk (e.g. CISSP, CISA, CISM, CCSP/CCSK, GIAC) preferred.