Friday , October 18 2024
Breaking News

Expert Security Architecture- Cloud – Canadian National Railway

Canadian National Railway

Title of the Job: Expert Security Architecture- Cloud

Location: Montreal, QC

Job Description: At CN, we work together to move our company-and North America-forward. Be part of our Information & Technology (I&T) team, a critical piece of the engine that keeps us in motion. From enterprise architecture to operational technology, our teams use the agile methodology to automate and digitize our railroad ensuring our operations run optimally and safely and our employees can focus on value-added tasks. You will be able to develop your skills and career in our close-knit, safety-focused culture working together as ONE TEAM. The careers we offer are meaningful because the work we do matters. Join us!Job SummaryThe purpose of this role is to evaluate cloud solutions, configurations, and designs against security requirements, and define cybersecurity reference architectures and standards for all cloud environments at CN. This role will also be involved in the definition of DevSecOps practices, secure development training, and process evaluation.Main ResponsibilitiesCloud Security & DevSecOps Architecture PracticePut in place the proper sets of cloud security architecture controls to manage safety and security risk while enabling the business for technology systems such as: service-oriented-architectures; cloud technologies and containers; advanced analytics; AI; Industrial IoT; networking infrastructure; mobile technologies; etc.Ensure the cloud security architecture is maintainable, sustainable, and properly documentedMaintain and build relevant, current, valid, and reliable team knowledge related to cloud security architecture to leverage existing cybersecurity infrastructure and process, where appropriate, and drive configuration standards while supporting digital transformation in the I&T environmentFacilitate key decisions involving cloud architecture and technologiesAdvance security team accomplishments and competence by planning delivery of solutions; answering technical and procedural questions for less experienced team members; teaching improved processes; mentoring team membersEnsure the full documentation of security designs, as built architectures and operational processes through clear diagrams and well-written documentsCloud Security Roadmap and StrategyCollaborate with the CISO, Sr. Mgr. Cloud Security & DevSecOps Architecture, cybersecurity team, portfolio managers, other architects, and I&T leadership to understand the business direction and consequent impact on the security postureDefine the proper course of action and investment strategy by building business cases and security roadmapsEngage the cloud vendor ecosystem to understand capabilities and limitations to drive improvements in the security posture of current products, and assist in the selection of the right partnersEngage the cybersecurity vendor ecosystem to understand capabilities, options for compensating controls and risk mitigations to facilitate the selection of partners that integrate with the overall architectureContinuously monitor and evaluate the environment through self-assessments and independent security reviews. Enable management to identify deficiencies and inefficiencies and to initiate improvement actions though security roadmap and strategiesWorking ConditionsOccasional business travel (Canada and US) in accordance with CN policyRequirementsExperienceMinimum 12 years overall work experienceMinimum 8 years I&T experienceMinimum 5 years experience in cloud security architectureProven experience in applying a structured approach to problem resolution in large, geographically dispersed organizations with 24/7 operationsMulti-cloud experience including AWS, Azure, and Google Cloud Platform, an assetExperience with Agile and DevOps methodologies, an assetRailroad, transportation, or Global industrial experience is a significant assetEducation/Certification/DesignationBachelor’s degree in Computer Science, Computer Engineering, Electrical Engineering, System Analysis, or another relevant fieldAt least one recognized Cloud security certification: e.g. Certified Information Systems Security Professional (CISSP), Certificate of Cloud Security Knowledge (CCSK), Certified Cloud Security Professional (CCSP), GIAC Cloud Security Automation (GCSA) etc.Architecture related certifications (TOGAF, Zachman, CISSP-ISSAP, etc.) assetCompetenciesAbility to define and organize an architecture security apparatus in reusable building blocks: patterns, services, components, capability models, etc.Demonstrated capability to understand the security implications of complex business operations and how they are linked to technological solutions that provide practical risk mitigation and business enablementAbility to derive security requirements from vaguely formulated business needsAbility to interact with a broad cross-section of personnel to explain and enforce security measuresExcellent written and verbal communication skillsDetail-oriented self-starter with a high level of commitment and personal motivationKnack for prioritizing tasks and working in a fast-paced environmentTechnical Skills/KnowledgeStrong knowledge of the processes, methodologies, tools, and techniques, used for building large information technology systems in private and public cloudsKnowledge of standards, regulations and legislation governing Information Security, e.g. NIST, ISO 27001, OWASPKnowledge of general IT security architecture and technologies including: service-oriented-architectures, mobile technologies including Mobile Device Management (MDM), data-centric design, advanced analytics, AI, Identity and Access Management (IAM) lifecycles, Digital Forensics, End Point Protection, Encryption, Encryption Key Management, Database Security, Enterprise Directory Services, IDS, IPS, Next Generation Firewalls, Application Firewalls, Enterprise Password Vaults, Cloud SaaS /PaaS/IaaS Security, SIEM, etc., an assetUnderstanding of securing APIs, OpenID Connect, OAuth an assetUnderstanding networking including SD-networks and service meshes, an assetKnowledge of container security concerns, especially with Kubernetes, an assetThis position is posted as a grade 7. For internal candidates, note that the grade level of the position may adjust based on the employee’s experience.About CNCN is a world-class transportation leader and trade-enabler. Essential to the economy, to the customers, and to the communities it serves, CN safely transports more than 300 million tons of natural resources, manufactured products, and finished goods throughout North America every year. As the only railroad connecting Canada’s Eastern and Western coasts with the Southern tip of the U.S. through a 19,500 mile rail network, CN and its affiliates have been contributing to community prosperity and sustainable trade since 1919. CN is committed to programs supporting social responsibility and environmental stewardship. At CN, we work as ONE TEAM, focused on safety, sustainability and our customers, providing operational and supply chain excellence to deliver results.For internal candidates, note that the grade level of the position will depend on the employee’s experience.At CN, we are dedicated to building North America’s most and railroad, which includes reflecting the communities in which we operate. Research shows that candidates from underrepresented groups often don’t apply unless they feel they fit the job posting at 100%. Even if you don’t see yourself in every job requirement listed in a posting, we still encourage you to apply. If you require an accommodation for the recruitment process (including alternate formats of materials, accessible meeting rooms or other accommodations), please reach out to our team atAs an equal employment opportunity employer, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, and other protected status as required by applicable law. We thank all applicants for their interest, however, only candidates under consideration will be contacted. Please monitor your email on a regular basis, as communication is primarily made through email.

Company Name: Canadian National Railway

Salary:

Apply for the job!

To apply for this job please visit jobviewtrack.com.