Enable job alerts via email!
A leading energy provider in British Columbia is seeking an IT Advisor - Cybersecurity Remediation Advisor to enhance its cybersecurity posture. The role involves assessing vulnerabilities, facilitating collaboration among various teams, and overseeing remediation activities. Candidates should have a bachelor's degree in Cybersecurity and at least 5 years of experience in the field, with strong knowledge of cloud security and secure development practices. A flexible work model and generous vacation days are included in the benefits.
BC Hydro
Vulnerability Prioritization & Strategy Development
* Collaborates with Cybersecurity to assess, prioritize, and define remediation strategies for application-layer security weaknesses (published vulnerabilities, insecure configurations, deviations from security standards), including those in thirdparty and custom-built software.
Cross-Team Coordination & Engagement
* Facilitates collaboration across application development, DevOps, QA, and business application teams to ensure timely and effective remediation. Acts as a bridge between technical and business stakeholders.
Execution & Operational Oversight
* Oversees remediation activities such as code fixes, library upgrades, configuration changes and security hardening, and secure deployment practices—leveraging internal teams or vendors through projects, sprints, or operational workflows.
Secure Development Lifecycle (SDLC) Integration
* Partners with engineering and DevOps teams to embed security controls throughout the SDLC. Promotes secure coding practices, threat modeling, and integration of automated security testing (e.g., SAST, DAST, SCA).
Tooling & Automation Advocacy
* Identifies and champions tools that support vulnerability detection, remediation tracking, and secure CI/CD pipelines. Works with platform teams to automate remediation workflows. Third-Party & SaaS Risk Management
* Coordinates with vendor management and procurement to assess and remediate vulnerabilities in third-party and SaaS applications. Ensures compliance with internal security standards.
* Maintains authoritative tracking of remediation progress across application portfolios. Provides regular updates to leadership and acts as the escalation point for unresolved or high-risk issues.
Security Awareness & Enablement
* Conducts enablement sessions for application teams on secure development and remediation best practices. Serves as a trusted advisor to product owners and engineering leads.
Governance & Policy Alignment
* Ensures remediation activities align with cybersecurity standards enterprise security policies, compliance requirements, and audit findings. Contributes to the development of application security standards and SLAs.
Continuous Improvement & Risk Mitigation
* Identifies opportunities to enhance application security posture and reduce long-term risk through proactive measures, process improvements, and strategic initiatives.
What you bring
* Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or a related field.
* 5+ years of experience in cybersecurity, with a focus on application and platform security.
* Strong understanding of application development lifecycles and methodologies.
* Experience with hybrid IT environments (on-premise and cloud).
* Familiarity with DevSecOps practices and tools.
* Experience with secure coding practices and application security testing.
* Familiarity with tools such as static and dynamic analysis, vulnerability scanning, and penetration testing.
* Strong understanding of cloud-native security architectures and shared responsibility models.
* Knowledge of cybersecurity frameworks and standards (e.g., NIST).
* Hands-on experience with securing cloud platforms (AWS, Azure) and hybrid environments.
* Certifications such as CISSP, CCSP, or AWS/Azure Security Specialty are highly desirable.
* Familiarity with NERC CIP compliance is an asset.
* Previous experience with Security Operations management suites that organise workloads for managing risk policies, security incidents and vulnerability responsiveness (i.e. ServiceNow IRM/GRC & SecOps)
What we offer
- A minimum of 15 paid vacation days
- Flexible work model, depending on your role type
- Training and development courses
For more information on the benefits we offer, visit bchydro.com/benefits.
To apply for this position, please click the appropriate "Apply" button (or follow the application instructions listed in the Job Description above). If more than one Apply button appears below, please select the option you prefer.
Please Notify Me Of:
New Job Listings Posted By This Company
News and Editorial Regarding This Company
Company Profile Changes and Updates
Personnel Changes At This Company
Company Alert Notification Settings
Please select how you would like to be notified of updates by this Company:
Display Updates For This Company in My Member Account Online
Please Send me an Email Alert (With All of My Company Updates) On The Following Dates:
(Updates from all selected companies are combined and sent in a single email)
IT Advisor - Cybersecurity Remediation Advisor
Post your resume on T-Net and let employers come to you.
Registration on or use of this website constitutes acceptance of our Terms of Use .