Position Description CGI, a global leader in IT service outsourcing is seeking a Manager or Director of Security, internally referred to as a Business Unit, Security Business Partner (BUSBP), to support business units across the Canada. The BUSBP is a leadership position that is a direct report to the Vice President of Security for Canada Operations within the Office of the Chief Security Officer. The role will focus on all aspects of corporate security, from physical, cyber and information security disciplines. The BUSBP is the primary security point of contact to support the business unit in executing CGI security requirements within Canada, responsible for the overall security posture of the business unit and supporting and responding to client security related matters. Opportunity to work in a converged security environment with exposure to diverse domains. Membership in a cross-functional security team encompassing physical security, workforce protection, information security and Business Continuity Planning. Responsible for the safety and well-being of members in the assigned Business Unit. Your future duties and responsibilities Client Delivery Enablement Ensure implementation of the ESMF consistently across the BU delivery operations Support engagement delivery and client inquiries related to CGI Global Security (i.e. VIP and client meetings) Support client security reviews and audits in collaboration with all stakeholders Primary point of contact for CGI Global Security functions and client security matters within the BU Business Development Enablement Review proposals/renewals for security risk and CGI Security Baseline compliance, and provide recommendations (i.e., security integration into BEMF) Support Global Security aspects of client presentations Support strategic collaborative opportunities with the business security practices and delivery centers Support CGI Merger and Acquisition program as needed. Strategy and Framework Execution Communicate, train and enforce BU adherence to CGI Security Baseline for internal and shared (multi-client) environments Manage exceptions to the CGI Security Baseline within the BU Validate BU requirements are in alignment with Global Security initiatives in collaboration with all stakeholders Lead the security education, training and awareness programs within the BU in alignment with Global Security directives Support security certification and re-certification within the BU (e.g. ISO 27001) where applicable, consistent with ESMF Security Management and Reporting Maintain and report on security metrics including quarterly scorecard Report on security risks at the BU level Oversee the management of security incidents including escalation to the SBU SBP and BU management as needed Lead the Security Risk Management process within the BU (i.e., analysis, mitigation and monitoring of identified risks) Participate and inform security audits and compliance activities within the BU Manage security vulnerability program and ensure remediation are deployed timely Validate the execution of third-party security risk assessments for the BU Physical / Workforce Security and BCP Oversee the execution of physical security and workforce protection at the BU level Ensure that the BU develops, maintains and tests business continuity plans (BCP) Support global crisis management activities and work closely with the BU during crisis/ BCP situations Support insider threat management as requested Government Security Programs (when applicable) Oversee personnel and security clearance program Manage special security agreements (e.g. defense, space, intelligence etc.) Oversee security operations in alignment with ESMF and manage conflicts between CGI and government scope Required Qualifications To Be Successful In This Role A minimum of 8+ years in an information security role. Ability to work independently in a high-stress, often fast paced environment. Within security, and especially during incident response, business hours often do not conform to standard and/or extend beyond the traditional eight-hour work day. Experience leading the security incident response. Experience with client contract (MSA/SOW) reviews based on best practices and company policy Expert understanding of risk management principles A results-focused approach to work which values service quality, economy and collaboration. Demonstrated judgment and the ability to adapt to a dynamic environment. Must be a selfmotivating, and selfstarter capable of operating with little to no supervision to be successful. Candidates that are reliant upon day to day oversight and/or instructions will not be successful in this environment. Must be comfortable with executive presentations and general interactions. Must be a proficient public speaker. Must be available to perform security functions during nonstandard business hours when required. CGI is providing a reasonable estimate of the pay range for this role. The determination of this range includes factors such as skill set level, geographic market, experience and training, and licenses and certifications. Compensation decisions depend on the facts and circumstances of each case. A reasonable estimate of the current range is $125,000$175,000. This role is an existing vacancy. Together, as owners, lets turn meaningful insights into action. Life at CGI is rooted in ownership, teamwork, respect and belonging. Here, youll reach your full potential because You are invited to be an owner from day 1 as we work together to bring our Dream to life. Thats why we call ourselves CGI Partners rather than employees. We benefit from our collective success and actively shape our companys strategy and direction. Your work creates value. Youll develop innovative solutions and build relationships with teammates and clients while accessing global capabilities to scale your ideas, embrace new opportunities, and benefit from expansive industry and technology expertise. Youll shape your career by joining a company built to grow and last. Youll be supported by leaders who care about your health and wellbeing and provide you with opportunities to deepen your skills and broaden your horizons. At CGI, we value the strength that diversity brings and are committed to fostering a workplace where everyone belongs. We collaborate with our clients to build more inclusive communities and empower all CGI partners to thrive. As an equalopportunity employer, being able to perform your best during the recruitment process is important to us. If you require an accommodation, please inform your recruiter. To learn more about accessibility at CGI, contact us via email. Please note that this email is strictly for accessibility requests and cannot be used for application status inquiries. Come join our teamone of the largest IT and business consulting services firms in the world. Directeur(trice), Partenaire dAffaires Scurit CGI, un leader mondial en impartition de services TI, est la recherche dun Gestionnaire ou Directeur en Scurit, dsign linterne comme Partenaire dAffaires Scurit pour une Unit dAffaires (BUSBP), afin de soutenir plusieurs units daffaires travers le Canada. Ce que nous offrons Une opportunit de travailler dans un environnement de scurit converge, offrant une exposition plusieurs domaines. La possibilit de faire partie dune quipe de scurit multidisciplinaire incluant la scurit physique, la protection du personnel, la scurit de linformation et la continuit des activits. La responsabilit de la scurit et du bientre des membres de lunit daffaires assigne. Your future duties and responsibilities Le Partenaire dAffaires Scurit (BUSBP) gre la mise en uvre des politiques, des procdures et des normes corporatives au sein de lunit daffaires. Soutien la prestation client Veiller la mise en uvre uniforme du cadre ESMF dans les oprations de livraison du BU. Soutenir la gestion des engagements client et les demandes lies la scurit globale de CGI (ex. rencontres VIP ou clients). Soutenir les revues et audits de scurit clients en collaboration avec les parties prenantes. Agir comme point de contact principal pour les fonctions de Scurit Globale CGI et pour toutes questions de scurit client. Soutien au dveloppement des affaires Examiner les propositions/renouvellements afin dvaluer les risques de scurit et la conformit au Baseline de Scurit CGI, et formuler des recommandations (incluant lintgration de la scurit dans le BEMF). Soutenir les volets scurit lors des prsentations clients. Supporter les opportunits stratgiques en collaboration avec les pratiques de scurit et les centres de prestation. Contribuer au programme de fusion et acquisitions (M&A) au besoin. Excution de la stratgie et du cadre de scurit Communiquer, former et assurer ladhsion au Baseline de Scurit CGI dans les environnements internes et multiclients. Grer les exceptions au Baseline de Scurit au sein du BU. Valider que les besoins du BU sont aligns aux initiatives de Scurit Globale. Diriger les programmes dducation, de formation et de sensibilisation la scurit dans lunit daffaires. Soutenir la certification et recertification scurit (ex. ISO 27001) selon lESMF, le cas chant. Gestion et rapports de scurit Maintenir et prsenter les indicateurs de scurit, incluant le tableau de bord trimestriel. Produire les rapports sur les risques de scurit au niveau du BU. Superviser la gestion des incidents de scurit, incluant lescalade vers le SBP du SBU et la direction du BU. Diriger le processus de gestion des risques de scurit du BU (analyse, attnuation et suivi). Participer aux audits de scurit et aux activits de conformit. Grer le programme de vulnrabilits et assurer la mise en place rapide des mesures correctives. Valider lexcution des valuations de risque de scurit des tiers pour le BU. Scurit physique / Protection du personnel / Continuit des activits Superviser lapplication des mesures de scurit physique et de protection du personnel au niveau du BU. Veiller ce que le BU dveloppe, maintienne et teste ses plans de continuit des activits (PCA/BCP). Soutenir les activits de gestion de crise globale et collaborer troitement avec lunit daffaires durant les situations de crise/PCA. Soutenir les activits lies la gestion de la menace interne, au besoin. Programmes de scurit gouvernementale (selon pertinence) Superviser les programmes de filtrage et habilitations de scurit. Grer les ententes de scurit particulires (dfense, spatial, renseignement, etc.). Grer les oprations de scurit en conformit avec lESMF et rsoudre les conflits entre les exigences de CGI et celles du gouvernement. Required Qualifications To Be Successful In This Role Minimum de 8+ annes dexprience dans un rle en scurit de linformation. Capacit travailler de manire autonome dans un environnement exigeant et souvent rapide. Les heures de travail peuvent dpasser les horaires standards, particulirement lors de rponses des incidents. Exprience en gestion de rponse aux incidents de scurit. Exprience en examen contractuel client (MSA/SOW) selon les meilleures pratiques et politiques internes. Excellente comprhension des principes de gestion du risque. Orientation rsultats, axe sur la qualit du service, lefficacit et la collaboration. Jugement prouv et capacit sadapter un environnement en constante volution. Autonomie leve, sens de linitiative, capacit russir sans encadrement quotidien. Aisance avec les prsentations excutives et les interactions de haut niveau ; excellentes comptences en communication publique. Disponibilit pour effectuer des fonctions de scurit en dehors des heures normales lorsque requis. CGI offre une estimation raisonnable de la fourchette salariale pour ce poste. Le calcul de cette fourchette dpend de divers facteurs, notamment le niveau de comptence, le march gographique, lexprience, la formation ainsi que les licences et certifications professionnelles. Les dcisions en matire de rmunration dpendent des particularits de chaque cas. Une estimation raisonnable de cette fourchette salariale se situe entre 125,000 $ et 175,000 $. Ce poste est vacant. Ensemble, en tant que propritaires, mettons notre savoir-faire luvre. La vie chez CGI est ancre dans lactionnariat, le travail dquipe, le respect et un sentiment dappartenance. Chez nous, vous pourrez exploiter votre plein potentiel parce que Nous vous invitons devenir propritaire ds le jour 1 alors que nous travaillons ensemble faire de notre rve une ralit. Cest pourquoi nous nous dsignons comme associs de CGI, plutt que comme employs. Nous tirons profit des retombes de notre succs collectif et contribuons activement lorientation et la stratgie de notre entreprise. Votre travail cre de la valeur. Vous laborerez des solutions novatrices et dvelopperez des relations durables avec vos collgues et clients, tout en ayant accs des capacits mondiales pour concrtiser vos ides, saisir de nouvelles opportunits, et bnficier dune expertise sectorielle et technologique de pointe. Vous ferez voluer votre carrire en vous joignant une entreprise btie pour crotre et durer. Vous serez soutenus par des leaders qui ont votre sant et bientre cur et qui vous permettront de saisir des occasions afin de parfaire vos comptences et largir les horizons. Chez CGI, nous valorisons la richesse que la diversit apporte et nous nous engageons favoriser un environnement de travail o chacun spanouit. Nous collaborons avec nos clients pour btir des communauts plus inclusives et permettre tous les associs de CGI de russir. En tant quemployeur prnant lgalit des chances, il est important pour nous que vous puissiez donner le meilleur de vous-mme durant le processus de recrutement. Si vous avez besoin dun accommodement particulier, veuillez en informer votre recruteur. Pour en savoir plus sur l''''accessibilit chez CGI, contactez-nous par courriel. Veuillez noter que ce courriel est strictement rserv aux demandes d''''accessibilit et ne peut tre utilis pour vrifier ltat dune candidature. Joignezvous nous, lune des plus importantes entreprises de conseil en technologie de linformation (TI) et en management au monde. #J-18808-Ljbffr
Job Title
Director, Security Business Partner