Job Description
*This position is a 12-18 month term contract and can be located in Vancouver, BC or Victoria, BC*
*This opportunity is open for secondment to employees in the BC Public Service*
Salary Range:
The salary range for this position is $98,000 to $135,000 . The final offer will be determined based on the successful candidate’s skills, experience, and internal equity considerations. Please note that the offer may fall anywhere within the posted range and is not necessarily at the top end.
About Us:
Transportation Investment Corporation (TI Corp) is a public crown corporation dedicated to delivering major infrastructure projects in British Columbia on behalf of the Ministry of Transportation and Infrastructure. With approximately $15 billion in major infrastructure developments, we are committed to upholding the highest standards of construction oversight.
Why Join Us:
At TI Corp, you’ll be part of a dynamic and innovative team driving transformative infrastructure projects that make a real difference in communities. We pride ourselves on fostering a collaborative and inclusive work culture where your ideas are valued. Enjoy competitive compensation and comprehensive benefits, along with opportunities for professional growth and development. Here, your contributions will not only shape your career but also the future of our infrastructure landscape. Join us and be a part of something impactful.
Overview:
The Privacy and Security Manager is responsible for developing, implementing, and maintaining TI Corp’s information security and privacy framework and ensures all business units across the organization are compliant with policies, procedures and standards.
What We Offer:
- Vacation starts at five weeks and with an additional one day per year of service to a maximum of six weeks.
- TI Corp is dedicated to professionally growing staff and building internal capacity, through mentorship, active succession planning, learning and development financial assistance, and membership dues.
- Extended health and dental benefits plus a $1000 Health Spending Account annually.
- We are part of the BC Public Sector Pension Plan – if you join us from other Public Service or Public Sector organizations who are part of this pension plan, your pension will continue seamlessly.
- Hybrid work arrangement with the ability to work from home two days a week following an orientation period.
- Top-up allowance for maternity and parental leave.
- Free travel insurance for full-time employees.
- Transit subsidy program.
Key Accountabilities:
- Develops, implements, and maintains security and privacy policies, procedures, standards, framework/architecture, and technologies and adapts and recommends based on industry changes.
- Advises, guides and interprets all aspects of information security and privacy, including advising on information technology disaster recovery and business continuity planning.
- Plans and conducts various security and privacy related assessments (e.g., Security Threat and Risk Assessments (STRAs), Privacy Impact Assessments (PIAs), and Information Sharing Agreements (ISAs)) to determine risks and provides mitigating solutions and recommendations as needed.
- Provides advice and interpretation to TI Corp regarding the Freedom of Information and Protection of Privacy Act (FOIPPA), its regulation, related policies and procedures, and its interactions with other enactments.
- Develops and implements a comprehensive security and privacy awareness and training program to ensure TI Corp employees are adequately trained to incorporate security and privacy best practices within business units.
- Maintains inventory of TI Corp’s assessments and personal information banks.
- Reviews security measures and updates ensuring they address new and emerging security threats recommends the appropriate course of action.
- Provides advice for inclusion and adequacy of security and/or privacy clauses into contracts and project agreements
- Develops standards and procedures for responding to security and privacy incidents, ensuring the application of corrective measures to prevent recurrence, providing guidance to program areas to meet incident reporting policy and procedure requirements, and helping with investigations into privacy and security incidents.
- Performs internal assessments to monitor TI Corp’s compliance with its security and privacy policies.
- Provides authoritative advice to program areas on security threats, regulatory requirements and technology changes that may affect the security of electronic applications.
- Represents TI Corp on committees, work groups and task forces to develop corporate security and privacy policies, standards, guidelines, procedures, and other outputs.
- Manages resources and project teams of information security and/or privacy professionals, manages contracts, and service providers to meet project deliverables and objectives.
- Supervises staff including directing and assignment of work and performance management, development and evaluation.
Qualifications
- Bachelor’s degree in a computer science related field and considerable experience in information security and/or information privacy, or an equivalent combination of education and experience.
- Information Security and/or Privacy Certifications such as Systems Security Certified Practitioner (SSCP) or Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM) or Certified Information Privacy Professional/Canada (CIPP/C), BC Information Privacy Certificate or equivalent would be an asset.
- Recent experience with reviewing and developing security threat and risk assessments and privacy impact assessments.
- Experience building and maintaining relationships with a wide range of stakeholders in a workplace.
- Experience with the Freedom of Information and Protection of Privacy Act (FOIPPA) and related regulations, policy and procedures.
- Experience in a Microsoft environment.
- Experience with all aspects of IT security including current technologies and best practices.
- Experience with the installation, configuration, maintenance and problem resolution of hardware, software, operating systems, and network components.
- Experience with architecture development processes, information management technologies and security foundations.
- Knowledge of change management processes and project management methodologies.
- Knowledge of application design and development life cycle.
- Preference may be given to candidates who have experience in the public sector.
Additional Requirement:
- You must be legally authorized to work in Canada.
- An offer of employment is conditional upon the completion of an acceptable current criminal record check.
Notes:
- Collection Notice: Your personal information is collected from LinkedIn by Transportation Investment Corporation (TI Corp) pursuant to 26(c), 26(e), and 27(1)(a)(i) of the Freedom of Information and Protection of Privacy Act for the purpose of TI Corp recruitment. This includes information you provide through LinkedIn, as well as information about you that is generated by LinkedIn, such as your connections to other TI Corp employees on LinkedIn, how well the skills you have identified on LinkedIn match our job requirements, and what other TI Corp jobs you have applied for on LinkedIn By proceeding, you are authorizing TI Corp to indirectly collect this information. If you have any questions about the collection of your personal information, please contact the Privacy Officer at privacy@ticorp.ca
Job Tags
Full time, Contract work, 2 days per week, 1 day per week,