... Manager, Security GRC and be part of the broader Information Security group. You will contribute to PSP's information security governance, risk, and compliance (GRC) program as well as to its ...
... Manager, Security GRC and be part of the broader Information Security group. You will contribute to PSP's information security governance, risk, and compliance (GRC) program as well as to its ...
Manager, Security
Montreal, QC · Hybrid
Manager, Security Full-Time (Hybrid) Montreal, QC or Mississauga/Brampton, ON The Manager, Security ... assets and information. * Conduct regular security assessments and audits to identify ...
Manager, Security
Montreal, QC · Hybrid
Manager, Security Full-Time (Hybrid) Montreal, QC or Mississauga/Brampton, ON The Manager, Security ... assets and information. * Conduct regular security assessments and audits to identify ...
Manager, Security Full-Time (Hybrid) Montreal, QC or Mississauga/Brampton, ON The Manager, Security ... assets and information. * Conduct regular security assessments and audits to identify ...
Manager, Security Full-Time (Hybrid) Montreal, QC or Mississauga/Brampton, ON The Manager, Security ... assets and information. * Conduct regular security assessments and audits to identify ...
Advisor, IT security
Levis, QC · Hybrid
As sector vulnerability management lead, you'll help protect IT hardware, software and data, notably through the design, administration and control of proven security systems. You'll also be called ...
Advisor, IT security
Levis, QC · Hybrid
As sector vulnerability management lead, you'll help protect IT hardware, software and data, notably through the design, administration and control of proven security systems. You'll also be called ...
Advisor, IT security
Montreal, QC · Hybrid
As sector vulnerability management lead, you'll help protect IT hardware, software and data, notably through the design, administration and control of proven security systems. You'll also be called ...
Advisor, IT security
Montreal, QC · Hybrid
As sector vulnerability management lead, you'll help protect IT hardware, software and data, notably through the design, administration and control of proven security systems. You'll also be called ...
Cybersecurity Director
Quebec, QC · On-site +1
CA$138K - CA$173K/yr
Manage a team of information security and cybersecurity professionals by providing leadership, coaching, support, and fostering a culture of security awareness. Ensure the team has the necessary ...
Cybersecurity Director
Quebec, QC · On-site +1
CA$138K - CA$173K/yr
Manage a team of information security and cybersecurity professionals by providing leadership, coaching, support, and fostering a culture of security awareness. Ensure the team has the necessary ...
Monitor and analyze Security Information and Event Management (SIEM) to identify security issues for remediation. * Knowledge of creating Security Information Event Management (SIEM) policy rulesets.
Monitor and analyze Security Information and Event Management (SIEM) to identify security issues for remediation. * Knowledge of creating Security Information Event Management (SIEM) policy rulesets.
... IT security management (system dumps, logs and/or technical documentation) * Experience with Microsoft SharePoint and Office suite * Experience communicating cybersecurity requirements, change ...
... IT security management (system dumps, logs and/or technical documentation) * Experience with Microsoft SharePoint and Office suite * Experience communicating cybersecurity requirements, change ...
IT Security Intern
Montreal, QC · Remote
We're looking for an IT Security Intern to join our team. This role is ideal for a student who is ... The highlight of your internship will be leading the rollout of a company-wide password management ...
IT Security Intern
Montreal, QC · Remote
We're looking for an IT Security Intern to join our team. This role is ideal for a student who is ... The highlight of your internship will be leading the rollout of a company-wide password management ...
Bilingual Senior Consultant- Cyber Strategy and Transformation
Montreal, QC · Hybrid
CA$80K - CA$138K/yr
We have world-class security and privacy experts. Our Cyber Risk Services help organizations with the management of information and technology risks by delivering end-to-end solutions, using proven ...
Bilingual Senior Consultant- Cyber Strategy and Transformation
Montreal, QC · Hybrid
CA$80K - CA$138K/yr
We have world-class security and privacy experts. Our Cyber Risk Services help organizations with the management of information and technology risks by delivering end-to-end solutions, using proven ...
IT Manager
Montreal, QC · On-site
Oversee the administration, maintenance, availability, security, and lifecycle management of ... Partner with Information Security leadership to support cybersecurity initiatives, vulnerability ...
IT Manager
Montreal, QC · On-site
Oversee the administration, maintenance, availability, security, and lifecycle management of ... Partner with Information Security leadership to support cybersecurity initiatives, vulnerability ...
Security Architect
Brossard, QC · On-site
Bachelor's or master's degree in Information Technology, Computer Science, or a related work ... Deep knowledge of cloud security posture management (such as PRISMA), cloud workload protection ...
Security Architect
Brossard, QC · On-site
Bachelor's or master's degree in Information Technology, Computer Science, or a related work ... Deep knowledge of cloud security posture management (such as PRISMA), cloud workload protection ...
Security Architect
Montreal, QC · On-site
Bachelor's or master's degree in Information Technology, Computer Science, or a related work ... Deep knowledge of cloud security posture management (such as PRISMA), cloud workload protection ...
Security Architect
Montreal, QC · On-site
Bachelor's or master's degree in Information Technology, Computer Science, or a related work ... Deep knowledge of cloud security posture management (such as PRISMA), cloud workload protection ...
Security Architect
Quebec, QC · On-site
Bachelor's or master's degree in Information Technology, Computer Science, or a related work ... Deep knowledge of cloud security posture management (such as PRISMA), cloud workload protection ...
Security Architect
Quebec, QC · On-site
Bachelor's or master's degree in Information Technology, Computer Science, or a related work ... Deep knowledge of cloud security posture management (such as PRISMA), cloud workload protection ...
Security Architect
Joliette, QC · On-site
Bachelor's or master's degree in Information Technology, Computer Science, or a related work ... Deep knowledge of cloud security posture management (such as PRISMA), cloud workload protection ...
Security Architect
Joliette, QC · On-site
Bachelor's or master's degree in Information Technology, Computer Science, or a related work ... Deep knowledge of cloud security posture management (such as PRISMA), cloud workload protection ...
Information Technology Audit Senior Associate (Bilingual FR/EN)
CA$65K - CA$109K/yr
Working towards one of these designations: CPA,CA, CMA, CGA, CIA, CGAP, Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM) or Certified Information Systems ...
Information Technology Audit Senior Associate (Bilingual FR/EN)
CA$65K - CA$109K/yr
Working towards one of these designations: CPA,CA, CMA, CGA, CIA, CGAP, Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM) or Certified Information Systems ...
Security Architect
Boisbriand, QC · On-site
Bachelor's or master's degree in Information Technology, Computer Science, or a related work ... Deep knowledge of cloud security posture management (such as PRISMA), cloud workload protection ...
Security Architect
Boisbriand, QC · On-site
Bachelor's or master's degree in Information Technology, Computer Science, or a related work ... Deep knowledge of cloud security posture management (such as PRISMA), cloud workload protection ...
Bring broad expertise in information security and application security to identify threats ... Autonomous - Time Management Skills * Broad knowledge of application security, including ...
Bring broad expertise in information security and application security to identify threats ... Autonomous - Time Management Skills * Broad knowledge of application security, including ...
Security Program Manager
CA$77K - CA$95K/yr
Security Program Manager - Security and Compliance Salary: $77,000-$95,000 As part of the Security ... To get a taste of the Global Excel life and for more information on our company, visit our Facebook ...
Security Program Manager
CA$77K - CA$95K/yr
Security Program Manager - Security and Compliance Salary: $77,000-$95,000 As part of the Security ... To get a taste of the Global Excel life and for more information on our company, visit our Facebook ...
Security Program Manager
CA$77K - CA$95K/yr
Security Program Manager - Security and Compliance Salary: $77,000-$95,000 As part of the Security ... To get a taste of the Global Excel life and for more information on our company, visit our Facebook ...
Security Program Manager
CA$77K - CA$95K/yr
Security Program Manager - Security and Compliance Salary: $77,000-$95,000 As part of the Security ... To get a taste of the Global Excel life and for more information on our company, visit our Facebook ...
Information Security Manager information
What are some common challenges information security managers face when implementing new security protocols within an organization?
What is the difference between Information Security Manager vs Security Analyst?
| Aspect | Information Security Manager | Security Analyst |
|---|---|---|
| Certifications | CISSP, CISM, CISA | CompTIA Security+, GIAC Security Essentials |
| Work Environment | Oversees security policies, manages teams, strategic planning | Monitors security systems, analyzes threats, implements security measures |
| Employer & Industry Usage | Used in organizations with dedicated security teams across industries | Common in IT departments, security operations centers |
The main difference is that the Information Security Manager focuses on strategic security management and team leadership, while the Security Analyst handles day-to-day security monitoring and threat analysis. Both roles require relevant certifications and are vital in maintaining organizational security, but they differ in scope and responsibilities.
What does an information security manager do?
What is an information security manager?
The job duties of an information security manager involve overseeing the effort to protect networks, computers, and data from cyber attacks, viruses, and other security breaches. In this career, your responsibilities include creating IT security features that can protect your company’s data. In addition to building systems to protect against hacking, you must also be ready to lead the response when a security breach occurs. As an information security manager, you are responsible for creating and implementing practices and policies that employees can use to protect their employer's networks and data.

Senior Analyst, Information Security (GRC) and Crisis Management
Montreal, QC • Hybrid
Full-time
Retirement, PTO
This job post has expired today. Applications are no longer accepted.
Job description
We're one of Canada's largest pension investors, with CAD$299.7 billion of net assets as of March 31, 2025.
We invest funds for thepension plans of thefederalpublicservice, the Canadian Forces, theRoyal Canadian Mounted Police andthe ReserveForce. Headquartered in Ottawa, PSP Investments has its principal business office in Montreal and offices in New York, London and Hong Kong.
Capturing and leading complex global investments requires us to work as one to seize valuable opportunities, in close collaboration with some of the world's top companies. At PSP Investments, you'll join a team of motivated and engaged professionals, dedicated to propelling our organization further than ever before.
ABOUT YOUR ROLEAs a Senior Analyst, Security GRC & Crisis Management, you will report to the Manager, Security GRC and be part of the broader Information Security group. You will contribute to PSP's information security governance, risk, and compliance (GRC) program as well as to its enterprise crisis management capabilities. You will support the execution and continuous improvement of security frameworks, risk assessment processes, compliance activities, and crisis preparedness planning.
You will:
Security Governance, Risk & Compliance
Support the maintenance and evolution of PSP's security governance framework, policies, standards, and procedures in alignment with ISO 27001, NIST CSF, and COBIT
Conduct security risk assessments across business units, technology platforms, and third-party vendors; maintain the corporate security risk register
Support internal and external audit activities related to information security; track compliance requirements, remediation activities, and control gaps
Support the vendor risk management program, including security assessments and follow-up on outstanding action items
Prepare security KPI/KRI reporting materials and contribute to briefings for the CISO and senior leadership.
Stay current on the evolving threat landscape and regulatory developments; share relevant findings with the team and cross-functional partners in Internal Audit, Legal, and Enterprise Risk
Crisis Management & Resilience
Support the maintenance and improvement of PSP's Crisis Management Plan, Cyber Incident Response Plan, and related operational playbooks across all crisis scenarios - cyber, operational, reputational, and physical
Assist in coordinating and facilitating crisis simulations and tabletop exercises across crisis types; document findings and track remediation actions
Participate in the operational response to incidents and crisis events, including documentation, coordination across teams, and post-incident review
Contribute to maintaining crisis communication protocols and contact lists for internal and external stakeholders
Monitor threat intelligence feeds and sector information sources; collaborate with Business Continuity and other stakeholders to align business continuity/ disaster recovery objectives and identify synergies across programs, plans, and exercises within the broader crisis management framework
Bachelor's degree in Information security, Computer Science, Engineering, or a related field
Three (3) to five (5) years of experience in information security, with significant exposure to security GRC activities
Experience with and awareness of incident preparedness and crisis management processes.
Familiarity with security frameworks such as ISO 27001, NIST CSF, or COBIT
Ability to organize and work either autonomously or collaboratively, manage competing priorities, and deliver quality work with minimal supervision in a fast-paced environment
Strong analytical and writing skills; able to translate technical information into clear documentation for non-technical audiences
Relevant certification or active pursuit thereof considered a strong asset; experience in financial services or a regulated industry an asset
Bilingualism: English and French (frequent interactions in English with PSP employees based in our offices in Hong Kong, London and New York, and interactions in French with employees in our local offices in Montreal and Ottawa)
We offer a tailored employee experience and competitive total rewards and benefits package* designed to attract and retain global diverse talent, reward performance, and reinforce business strategies and priorities. Beyond salary and incentive pay eligibility, you have access to:
Investment in career development
Comprehensive group insurance plans
Competitive pension plans
Unlimited access to virtual healthcare services and wellness programs
Gender-inclusive paid family leave policy: up to 26 weeks for primary caregivers, 5 weeks for secondary caregivers
A personalized family-building support, from pre-pregnancy to menopause, with available financial assistance
Vacation days available on day one with additional days on milestone service anniversaries, and summer Friday afternoons off
A hybrid work model with a mix of in-office and remote days
*Benefits package may vary based on your employee type.
At PSP Investments, we aim to provide a workplace where everyone feels valued, safe, respected and empowered to grow. As part of this leadership commitment, we strongly encourage applications from all qualified applicants and strive to offer an inclusive and accessible candidate experience. If you require any accommodation for any part of the recruitment process, please let us know.
Visit us on www.investpsp.com/en/
Follow us on LinkedIn
#LI-AB2