The Senior Cybersecurity Technical Specialist works under Cybersecurity Planning to provide cybersecurity subject matter expertise across the enterprise playing a key role in execution of the implementation plan, as established in accordance with the Enterprise Architecture vision and roadmap, incorporating input from Cybersecurity Operations for sound, practical solution execution.
This role drives technical cybersecurity guidance and direction on projects ensuring plans and deployments align with guidelines, standards, policies, and practices.
• Provides cybersecurity technical oversight to projects and the enterprise in conjunction with the Enterprise Cybersecurity Architect, solution architects and Cybersecurity Operations.
• Participates in the detailed technical cybersecurity design on projects, analyzes solution design and architecture, and drives alignment with enterprise architecture vision, business plans, reference architecture, policies, regulatory compliance, operations, standards and industry practices.
• Works within Cybersecurity Planning on strategic direction of projects and initiatives.
• Represents BC Hydro cybersecurity interests on projects as it pertains to business requirements, constraints and standards; cybersecurity standards and best practices; operational requirements; and compliance requirements.
• Participates in assessment and prioritization of cybersecurity risks and threats to be addressed through the
• Drives remediation of gaps in cybersecurity typically identified through assessments or by operational teams.
• Collaborates closely with the Cybersecurity Planner to strategize and create initiatives and plans to address cybersecurity needs.
• Collaborates closely with the Enterprise Cybersecurity Architect providing input into and executing on the vision and roadmap established by Enterprise Architecture.
• Collaborates closely with the Cybersecurity Operations team to incorporate technical configuration details into solution implementation.
• Collaborates with Cybersecurity Planning, Enterprise Architecture, Cybersecurity Operations, project teams, business units, contractors, suppliers and service providers to support cybersecurity projects including research and discovery; project initiation; engaging service providers and business units; requirements gathering; performing resourcing and cost estimations; creating an implementation strategy; providing input into business justifications.
• Analyzes project solutions to determine how the implementation of a new system or new interfaces between systems impacts the security posture of the current environment.
• Identify gaps in solution architectures and recommend alternatives.
• Participates in projects including requirements definition, work effort estimations, budgeting, solution design, technical guidance, test plan development; reviews and approves project documentation.
• Liaises with business units to maintain a pulse on cybersecurity.
• Keeps abreast of new technologies, industry trends and developments (IT and OT).
• Bachelor’s degree in Computer Science, Engineering or a combintation of education and experience.
• Minimum seven years of work experience in a large enterprise designing and implementing cybersecurity technical solutions and performing cybersecurity operational duties. Our ideal candidate has a breadth of knowledge and experience in multiple technologies; with extensive experience in two or more technology areas (such as as cloud, data centre, enterprise applications, identity and access management, security monitoring and tools, firewalls, systems and computing, networking, collaboration tools).
• The ideal candidate has significant experience working in cybersecurity architecture and planning roles.
• Experience in identitty and access management is critical for this role.
• CISSP certification or other relevant cybersecurity certifications or significant industry experience.
• Experience advising on a range of security-related issues (e.g. establishing system boundaries; assessing the severity of weaknesses and deficiencies in the system; plans of action and milestones; risk mitigation approaches; security alerts; and potential adverse effects of identified vulnerabilities).
• Experience optimizing systems to meet enterprise performance requirements.
• Experience applying secure system design tools, methods and techniques.
• Experience applying network security architecture concepts including topology, protocols, components and principles to apply defense-in-depth to solutions.
• Experience applying cybersecurity and privacy principles to organizational requirements.
• Strong cybersecurity knowledge, technical ability, analytical and problem solving skills.
• Strong communication, conflict resolution and collaboration skills.
• Proficiency with Microsoft Word, Excel, Powerpoint, Visio, and SharePoint.
• Experience with OT and ICS (supporting electric utilities) is considered an asset.
• Experience with NERC CIP compliance an asset.
- Flexible work model, depending on your role type
For more information on the benefits we offer, visit bchydro.com/benefits.
Interested candidates should submit their applications online at https://app.bchydro.com/careers/current_opp.html or click ‘Apply’
You must use a supported browser, such as Firefox, Internet Explorer, Google Chrome or Safari. Your pop up blocker will also need to be disabled for the BC Hydro Careers site.
On the BC Hydro Careers site, click on the Apply button in order to complete the steps to apply for this job. Please be sure to update your Candidate Profile with your current resume and include copies of your certifications, if applicable.