Maarut

Lead business cybersecurity advisor

Maarut Quebec, Quebec, Canada

Software Development · 11-50 employees

Yesterday
security Principal (10+ yrs) Contractor Canada
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The role involves acting as a senior cybersecurity advisor to influence business stakeholders and manage risk governance across various portfolios. You will be responsible for presenting risk scenarios to executive committees and integrating cybersecurity strategies into large-scale transformation initiatives.

What they look for

Cybersecurity Risk Management Governance Business Advisory Crisis Management Executive Communication Cloud Computing IAM DevSecOps API Security Containerization Vulnerability Management Incident Detection Data Protection Solution Architecture Artificial Intelligence

Requirements

Candidates must hold a bachelor's degree in a relevant field and possess 8 to 12 years of experience in IT, with at least 5 years specifically in cybersecurity or risk management. Proficiency in both English and French is required, along with strong communication skills for interacting with senior management.

Full description

Description:

  • The client

envisions a senior cybersecurity advisor positioned in a business advisory capacity rather than technical execution, capable of influencing managers, project leads, and vice presidents without having direct authority over them.

  • The

recurring keywords (support, advise, raise awareness, influence, business portfolio, governance) indicate a cross-functional subject matter expert role integrated into transformation programs, not an operational security position.

  • The

implicit expectation of the mandate is strong crisis management and executive communication skills: the candidate must be able to present risk scenarios to a crisis committee and vice presidents, which implies prior advisory experience validated at this level of stakeholders.

  • The broad

range of technical domains listed (architecture, cloud computing, IAM, DevSecOps, APIs, containerization) describes the required cross-functional understanding, not deep hands-on expertise in each area.

  • This role

should not be confused with a security architect, SOC analyst, or DevSecOps engineer: those are technical execution profiles, whereas this mandate is an advisory and risk governance role tied to a specific business portfolio.

Requirements

Required:

  • Bachelor's degree in computer science, cybersecurity,

software engineering, information systems, or a related field

  • 8 to 12 years of experience in information technology,

including a minimum of 5 years in cybersecurity, technology risk management, or security governance

  • Significant experience supporting projects, programs, or

transformation initiatives

  • Experience in risk analysis and integrating cybersecurity

into business processes

  • Advanced French and English, both spoken and written

Desired:

  • Cross-functional knowledge of technical domains: solution

architecture, cloud computing (AWS, Azure, GCP), IAM/IGA/PAM, networking and perimeter security, API security, containerization, vulnerability management and privileged access management, incident detection and response, data protection

  • Participation in large-scale projects involving digital or

cloud technologies

  • Communication experience with governance bodies, committees,

or management

Asset:

  • Knowledge of artificial intelligence and emerging technology

risks

Similar roles