A remote Security role at BMO.
How Sydicom helps: we read this listing’s requirements and tune your CV and cover letter to the keywords its ATS (Workday) is scanning for, for candidates in Canada, then help you apply.
Original listing text, shown exactly as published by the company.
•
The Penetration Tester reports to the Sr. Manager of Network and Strategic Penetration Testing and assists with the security testing activities for BMO network, cloud, and AI technologies. The role will be responsible for the execution and coordination of ethical hacking to identify weaknesses and areas for improvement.
•
Penetration Testing - Assists in delivery of security testing projects according to a structured process, to include writing test reports. This may include oversight and/or execution of the configuration and deployment of security testing software and application of results to security analysis. Assists with the execution of highly technical/analytical security assessments of Active Directory environments, network infrastructure, cloud environments, and AI technologies, including manual, custom and industry known attack methods using a risk-based intelligence-led methodology. Identifies potential misuse scenarios. Advises on secure development practices.
•
Subject Matter Expertise - Provides technical leadership to business areas as a Security Testing subject matter expert. Assists with efforts on the execution of security testing operations to include pre-engagement (scoping), engagement (testing) and post-engagement activities (reporting).
•
Information Security Risk Management - Works with leadership to mature security testing team capabilities including reporting and remediation guidance in alignment with local and global regulatory requirements. Identifies security gaps and deficiencies by conducting risk assessments; able to recommend corrective action of identified vulnerabilities and weaknesses. Assists with the execution of planning, testing, tracking, and advises on necessary risk acceptance for identified security risks.
•
Team Leadership – Assists security testing activities aimed at exploiting vulnerabilities in order to enhance the security of BMO network, cloud, and AI technologies. Works with management and peers to foster the development of less experienced Security Testing Consultants.
•
Performs hands-on penetration testing for BMO overall and businesses/groups. Liaises with stakeholders to understand problems and opportunities and enables BMO to meet its goals by understanding business vision, objectives and KPIs
•
Provides technical consultation to business areas as a Security Testing subject matter expert.
•
Assists with efforts on the execution of security testing operations to include pre-engagement (scoping), engagement (testing) and post-engagement activities).
•
Understands and can explain to others the core processes, risks and mitigation techniques for identified security gaps.
•
Develops and champions information security best practices, including staying abreast of industry information security and business trends through participation in professional associations.
•
Facilitates discussions and follows a disciplined approach to plan, elicit, analyse, document, communicate and manage initiatives and issues with stakeholders by applying a variety of elicitation techniques to probe, challenge and understand associated risks.
•
Bachelor’s degree in Information Security, Information Technology, Information Systems Management, Computer Science, Engineering or related field(s) or equivalent demonstrated work experience.
•
Strong written and verbal skills with the ability to present complex technical observations to a non-technical audience.
•
Good time management skills; the ability to commit and adhere to time-sensitive deliverables.
•
Ability to work remotely, with or without others, take direction, and be a self-starter that takes initiative
•
Active Directory Environments and associated vulnerabilities and exploitation techniques
•
Cloud Environments and associated vulnerabilities in commonly used features utilized in large multi-tenant and hybrid enterprise environments
•
Strong proficiency with security testing tools and penetration testing Linux distributions such as Kali
•
Deep practical knowledge of applying the Mitre Attack framework
Provides information security consulting services for BMO overall and businesses/groups. Liaises with stakeholders to understand problems and opportunities and enables BMO to meet its goals by understanding business vision, objectives and KPIs. Leads the development of information security strategy by understanding business processes, policies, information and information systems. Builds exceptional relationships with internal and external stakeholders. Ensures that requirements and solutions align to a real business need, are approved by all relevant stakeholders, and meets essential information security standards. Provides thought leadership, promotes new processes and methodologies and emerging technologies, with the flexibility to align to the unique requirements of the business/group and deliverables.
$82,800.00 - $154,800.00
Salaried
The above represents BMO Financial Group’s pay range and type.…
BMO
Security
10 open roles on Sydicom
BMO is a leading financial services provider. The company offers a broad range of banking, wealth management, and capital markets products and services to individuals, businesses, and institutions. It is recognized as one of Canada's largest banks.
Generated by Sydicom AI