Who We Are:
Every transaction matters. Every Canadian matters. At Interac, we protect both - driving trust, security, and inclusion, so our digital economy thrives. Founded in 1984, Interac connects Canadians through secure digital payments, advanced identity verification and industry-leading fraud protection. Connecting banks, businesses, and individuals, Interac enables millions to send, receive, and manage money safely and effortlessly every day - across both digital and physical environments.
As the backbone of Canada's financial ecosystem, Interac facilitates over 20 million transactions daily, supported by trusted partnerships with government and financial institutions. Consistently ranked as Canada's most reputable financial technology brand, Interac is deeply embedded in the daily lives of Canadians.
Who You Will Work With:
The vacant Security Operations, Senior Specialist role will report to the Leader, Commercial Security Managed Services.
What You Will Do:
- Lead the design, review, and governance of security architectures across cloud, on-premises, and hybrid technology environments.
- Provide strategic security guidance and risk-based recommendations to business, product, engineering, and technology stakeholders.
- Develop and maintain security standards, architecture patterns, frameworks, and technical security requirements.
- Design, implement, and assess security controls across identity and access management, security monitoring, endpoint protection, network security, cryptography, and data protection domains.
- Evaluate technology solutions and infrastructure designs to ensure security, privacy, resilience, and regulatory requirements are appropriately addressed.
- Manage third-party penetration testing engagements, including scope definition, methodology review, findings analysis, and remediation oversight.
- Monitor emerging threats, vulnerabilities, and industry trends to ensure security strategies and controls remain effective.
- Produce and maintain security documentation, including architecture diagrams, solution designs, standards, procedures, and operational processes.
- Participate in governance forums and act as a trusted advisor on security architecture and risk-related decisions.
- Build strong partnerships across business and technology teams, influence decision-making, and effectively communicate security requirements to diverse audiences.
- Represent the organization in industry engagements and promote security best practices internally and externally.
- Mentor and coach security professionals, supporting capability development, knowledge sharing, and continuous improvement.
What You Bring:
- Undergraduate degree or diploma in Computer Science, Information Systems, Information Security, Cybersecurity, or a related discipline, or an equivalent combination of education and experience.
- 7+ years of progressive experience in information security, security architecture, cybersecurity engineering, or a related field.
- Experience working with cloud platform owners and stakeholders to define and implement security requirements, compliance obligations, and risk management practices.
- Experience designing and implementing security controls within AWS and/or Microsoft Azure environments.
- Proven ability to develop detailed security requirements and provide guidance for the design and implementation of complex technology solutions.
- Experience designing, implementing, and reviewing security controls across multiple security domains, including Identity & Access Management, Security Monitoring (SIEM), Endpoint Detection & Response (EDR), Network Security, Container Security, and Cryptography.
- Experience managing third-party penetration testing engagements, including scope definition, testing methodology, findings analysis, prioritization, and remediation activities.
- Strong knowledge of enterprise technologies, including applications, databases, Windows and Linux operating systems, containerization, virtualization, networking, and backup/recovery solutions.
- Strong understanding of cloud security, secure architecture principles, risk management, and regulatory compliance requirements.
- Knowledge of industry security frameworks and standards, including ISO 27001/27002/27017/27018, NIST Cybersecurity Framework (CSF), and privacy best practices.
- Professional certifications such as CISSP, GIAC, TOGAF, SABSA, and SANS training are considered assets.
- Eligibility to work for Interac Corp. in Canada in a full-time capacity.
What We're Offering:
- The hiring range for this position is $95,000 - $110,000, and you will also be eligible for our short-term incentive plan. The exact amount will depend on factors such as skills, experience, and job-related knowledge, but Interac's commitment goes beyond compensation. Our Total Rewards package is designed to support your well-being and future, and includes:
- Generous vacation and wellness days to help you recharge
- Comprehensive employer-paid benefits coverage f