Information Security Officer 3 – Security Architect, Application and Product Security

Posted 1hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Information Security Officer specializing in application and product security for the Government of Alberta. Safeguarding digital services through collaboration and compliance with cybersecurity policies.

Responsibilities:

  • Development, maintenance, advocacy, and compliance for security architecture and DevSecOps framework and policy instruments such as directives, frameworks, policies, standards, and guidelines.
  • Security architecture subject matter expertise in the one or more following domains: Secure application development processes and tools.
  • Secure business architecture. Secure data architecture. Secure application architecture. Secure technology architecture.
  • Consultation, evaluation, and delivery of digital service products throughout the solution development life cycle (SDLC) for conformance to IMT cybersecurity policy instruments including formulation of options and recommendations.
  • Conduct security review, consult, and advise on secure coding, secrets management, on-premises, Amazon Web Services (AWS), Azure, Google Cloud Platform (GCP), and third-party hosted solutions with verbal and written report.
  • Provide security advice to business and technical stakeholders, including senior executives.
  • Participate in projects as an information security subject matter expert with a focus on security architecture and security capabilities within a DevSecOps framework to protect digital service development and operations.
  • Participate in the identification of information security requirements, as well as the development of strategies and solutions to meet these requirements across the organization.
  • Facilitate or perform identification, assessment, and treatment of information and technology security threats and risks.

Requirements:

  • A university degree in Computer Science, Information Technology, or a related field.
  • Minimum of 4 years of related experience in:
  • Secure solution delivery life cycle, Secure application development.
  • Securing continuous integration and continuous deployment (CI/CD), DevSecOps, testing, and security architecture.
  • Equivalencies: A related two-year diploma from a recognized post-secondary institution and a minimum of six (6) years related experience; or A related one-year certificate from a recognized post-secondary institution and a minimum of seven (7) years related experience.
  • Security certification (CISSP, CISM, CISA, CEH, GPEN, or equivalent) or working toward certification is expected.
  • Solution architecture experience.
  • Enterprise architecture experience and/or certification.
  • Experience with AI-powered cybersecurity tools and techniques.

Benefits:

  • Positive workplace culture and work-life balance
  • Leadership and mentorship programs