Trouvez votre prochaine possibilité
Tous les postes sont affichés, les plus proches de Kitchener, ON en premier. Vous pouvez ajouter une limite de distance en tout temps.
Siemens
Information Security Professional (Hybrid)
Vaughan, ON · Hybride
Publié 12 août 2026
76 000 $–100 000 $ / année
Résumé du poste
The role serves as the local point of contact for IT and OT information security, coordinating the implementation of cybersecurity policies and risk-treatment activities. Key duties include managing vulnerability and patch governance, coordinating audits, and supporting incident response across digital and operational environments.
Détails du poste
Change the future with us. Our Information Security professionals are the guardians of our digital and operational environments. They do not wait for threats to emerge; they act with purpose and precision. They transform complex cybersecurity challenges into clear, actionable plans — building resilience, ensuring compliance, and protecting what matters most. Join our team and we will give you the platform, the tools, and the collaborative environment to make a real difference in securing Siemens' operations across IT and OT landscapes. Why you'll love working for Siemens! Freedom and a healthy work-life balance- Embrace our flexible work environment with flex hours, telecommuting and digital workspaces. Solve the world's most significant problems- Be part of exciting and innovative projects. Engaging, challenging, and fast evolving, cutting edge technological environment. Opportunities to advance your career and mentorship programs on a local and global scale. Competitive total rewards package. Profit sharing available. Rewarding vacation entitlement with the opportunity to buy and sell your vacation depending on your lifestyle. Contribute to our social responsibility initiatives focused on access to education, access to technology and sustaining communities and make a positive impact on the community. Participate in our celebrations, social events and offsite business events. Opportunities to contribute your innovative ideas and get paid for them! Employee perks and discounts. Diversity and inclusivity focused. Siemens is proud to be an eight-time award winner of Canada's Top 100 Employers, Canada's Greenest Employers 2025 and Canada's Top Employers for Young People 2025. About the role: The Information Security Professional (ISP) supports the secure operation of the organization's information technology (IT) and operational technology (OT) environments. The ISP serves as the local point of contact for information security matters and coordinates the implementation of applicable cybersecurity policies, standards, controls, and risk-treatment activities. The role works closely with Asset Owners, Asset Management Coordinators, IT and OT Operations, Product and Solution Security Experts, business departments, Compliance, Audit, and external service providers. The ISP provides security guidance, monitors compliance, follows up on cybersecurity risks, and promotes continuous improvement of the site's cybersecurity maturity. What will you do? Serve as the local point of contact for IT and OT information security matters. Advise business, operational, and technical stakeholders on cybersecurity policies, risks, requirements, and control implementation. Support the secure operation of IT and OT environments in cooperation with Asset Owners, Asset Management Coordinators, IT/OT Operations, and software development team. Support and continuously improve the local implementation of the Information Security Management System and applicable security policies and standards. Coordinate cybersecurity risk assessments, compliance reviews, security-control assessments, and risk-treatment activities. Coordinate internal and external audits, maintain required evidence, track findings, and follow up on corrective actions. Drive vulnerability and patch-management governance, including remediation tracking, prioritization, security exceptions, compensating controls, and risk escalation. Support identity and access management, privileged access, network security, third-party access, and other required technical and organizational controls. Review security requirements for new systems, infrastructure changes, projects, suppliers, and IT/OT services. Support cybersecurity incident response by coordinating stakeholders, providing asset and risk context, tracking corrective actions, and applying lessons learned. Develop and deliver cybersecurity awareness activities, communications, and role-specific training. Monitor cybersecurity risks, control effectiveness, vulnerabilities, incidents, audit findings, and compliance status through reports, dashboards, and defined performance indicators. Identify gaps and emerging threats and coordinate improvements to processes, controls, tools, documentation, and site cybersecurity maturity. Maintain current knowledge of applicable cybersecurity regulations, industry standards, threats, technologies, and Siemens requirements. What will you need to succeed? Diploma or bachelor's degree in cybersecurity, information technology, computer science, engineering, information systems, or a related field, or equivalent experience. Over 2 years of relevant experience in information security, IT/OT cybersecurity, governance, risk, compliance, security operations, or a related role. Knowledge of information security governance, risk assessment, security controls, policy compliance, audit support, and risk-treatment processes. Working knowledge of vulnerability management, patch management, security exceptions, access management, network security, and incident-response processes. Understanding of IT infrastructure, operating systems, networks, firewalls, cloud services, identity systems, and industrial or OT environments. Experience coordinating security assessments, audits, findings, remediation activities, and supporting evidence. Ability to interpret security requirements and translate identified risks into practical actions with accountable owners and target dates. Strong analytical, problem-solving, documentation, communication, facilitation, and stakeholder-management skills. Ability to communicate cybersecurity risks clearly to technical and non-technical audiences. Effective written and spoken English. Preferred Qualifications Experience in a manufacturing, industrial, OT, critical-infrastructure, regulated, or audit-intensive environment. Knowledge of ISO/IEC 27001, NIST Cybersecurity Framework, IEC 62443, or comparable cybersecurity standards. Experience with governance, risk and compliance platforms, vulnerability-management tools, security dashboards, or reporting solutions. Experience with security awareness programs, incident-response coordination, supplier security, or third-party risk management. Relevant certification such as CISSP, CISM, CISA, CRISC, Security+, GICSCP, or an IEC 62443 qualification. Experience working in a global or highly matrixed organization. Salary is commensurate with experience, and ranges between $ 76,000 CAD - $ 100,000 CAD, excluding bonus and benefits. In addition to base salary, this role includes eligibility for an annual discretionary bonus of 10% of base salary, based on Company performance metrics. About Us. We share our ideas and champion the people behind them. Siemens Canada is a leading technology company focused on industry, infrastructure, mobility and healthcare. The company's purpose is to create technology with purpose, transforming the everyday, for everyone, since 1912. By combining the real and the digital worlds, Siemens empowers its customers to accelerate their digital and sustainability transformations, making factories more efficient, cities more liveable, and transportation more sustainable. Siemens also owns a majority stake in the publicly listed company Siemens Healthineers, a leading global medical technology provider pioneering breakthroughs in healthcare. Everywhere. Sustainably. In fiscal 2024, which ended September 30, 2024, Siemens Canada had revenues of approx. $2.2 billion CAD. The company has approximately 4,400 employees from coast-to-coast and 37 office and production facilities across Canada. To learn more about Siemens Canada, visit our website at www.siemens.ca While we appreciate all applications we receive, we advise that only candidates under consideration will be contacted. Canada
Ce que vous ferez
The role serves as the local point of contact for IT and OT information security, coordinating the implementation of cybersecurity policies and risk-treatment activities. Key duties include managing vulnerability and patch governance, coordinating audits, and supporting incident response across digital and operational environments.
Exigences
Candidates need a degree in cybersecurity, IT, or a related field with over 2 years of relevant experience in security governance, risk, or compliance. Proficiency in IT/OT infrastructure and the ability to communicate complex risks to both technical and non-technical audiences is required.
Avantages
• Flexible work environment • Flex hours • Telecommuting • Digital workspaces • Mentorship programs • Competitive total rewards package • Profit sharing • Vacation entitlement • Employee perks and discounts
Autres compétences pertinentes
Relevées dans la description du poste. Confirmez les exigences importantes ci-dessus.
- Information Security Governance
- Risk Assessment
- Security Control Implementation
- Vulnerability Management
- Patch Management
- Incident Response
- Identity And Access Management
- Network Security
- IT/OT Cybersecurity
- Compliance Monitoring
- Audit Coordination
- Stakeholder Management
- Technical Documentation
- Cybersecurity Awareness Training
- Risk Treatment
- Security Policy Implementation
Domaines d’emploi
- Security & Safety
- Technology
- Engineering
- Manufacturing
- Software