Director, IT Application Security

Job Overview

  • Company Name Bell
  • Job Start Date Thu, 02 Dec 2021 23:21:07 GMT
  • Job Type Full Time - Permanent
  • Job Source Careerjet

Job title: Director, IT Application Security

Job description: Req Id: 339315

At Bell, we do more than build world-class networks, develop innovative services and create original multiplatform media content – we’re revolutionizing how Canadians communicate.

If you’re ready to bring game-changing ideas to life and join a community that values bold ideas, professional growth and employee wellness, we want you on the Bell team.

The Bell IT team uses emerging technologies, Agile and DevOps to design and build innovative solutions that enable Bell’s communications services for businesses and consumers. We’re looking for creative problem-solvers who are curious, collaborative and ready to be on the leading edge of technological transformation.

Position Description:

Bell’s Information Technology team is seeking a Director, IT Application Security to help drive the vision, strategy, transformation, design and delivery of Bell’s application security across key customer centric applications that serve our wireless, residential and business market customers. Reporting to the Vice President, IT Delivery Customer Experience you will be leading a team responsible for our overall secure Software Development Life Cycle (sSDLC) program. The successful candidate will be responsible for defining application security requirements and ensuring the delivery of secure applications and solutions. The Director, IT Application Security is also responsible for the implementation of large security focused projects.

The successful candidate will exhibit the skills of an experienced leader, with a disciplined approach to process. You will work with a group tasked with coordinating across many functional teams to ensure that our applications stay at the highest security level. In our large and diverse organization, you will be required to be innovative and collaborative in order to be successful. Candidate must be comfortable working and communicating with executives and can work at a deep technical level with developers.

About the Team:
Bell’s Information Technology –Customer Experience (CE) team is responsible for the delivery of web, mobile app, customer agent, IVR and big data applications for all brands, including Bell, Virgin, Lucky, Solo and BCE.

Job Duties/Accountabilities:

  • Functional
  • Drive the development, implementation and ongoing improvements of security processes that result in effective methods for reducing security risks before project deployments
  • Support and resolve findings from SAST, DAST, pen test and other review process within agreed upon SLAs.
  • Ownership of key security focused projects, ensuring project budget, timelines and scope are met, while managing associated resourcing and risk.
  • Participate in driving the vision, strategy, transformation, design and delivery of security products, processes and application enhancement across key mobile, web, IVR and big data based applications and supported sites that serve our customers
  • Partner with Customer Experience, Corporate and IT Security teams to resolve, and build customer centric and secure solutions
  • Accountable to pull together overall program status, communications materials for executive review. Ability to produce effective metrics reporting the state of application security programs
  • Build and maintain relationships with external delivery partners
  • Demonstrate the ability to effectively collaborate with Executives, Directors, Managers and Team Members in the pursuit of measurable outcomes and results
  • People Management
  • Provides leadership and direction for full time and contract Project Managers, SecOps primes, Security, Business and Technical analysts
  • Responsible for the management of approximately 40 contract or fulltime resources setup in matrix organization located in various urban centers such as; Mississauga, Montreal, and Toronto. Travel between offices is required.
  • Mentor, coach and support staff in their personal and professional development e.g. objective setting, performance appraisals, training plans, talent management, organization changes, salary reviews, etc.
  • Provide vision, leadership, structure and communications to the team as work to though normal operational activities including service interruptions and project deployments.
  • Ensures timely and effective communications with internal/external customers, internal resources, partners and outside agencies
  • Proven communication, negotiation, facilitation and persuasion skills enabling internal and external members to come together to solve a business problem or improve operational excellence

Critical Qualifications/Competencies:

  • 10+ years of experience leading and developing teams focused in the areas of Security Architecture, Secure Development Lifecycle Management, Application Security (web and Mobile)
  • 5+ years leading at a director level or higher, motivating teams and fostering professional development
  • Bring a deep background and broad experience in Information Security, Application Security, & Application Development or related business areas
  • Proven experience of web & mobile development lifecycles and methodologies, including Waterfall and Agile Scrum (SaFE).
  • Demonstrated success leading large programs and teams in multiple locations.
  • Experience evaluating existing security standards and technology to discover opportunities and mitigate risks.
  • Proven IT experience with excellent communication skills and the ability to understand and articulate to all levels of management representing both technical and business perspectives.
  • Strong negotiation, facilitation and persuasion skills enabling internal and external members to collaborate and build premier digital experiences
  • Strong analytical thinker with ability to associate technical tasks as well as relate to pertinent business processes
  • Strong experience with implementing successful and effective sSDLC program with high level of automation
  • In-depth experience with common web application vulnerabilities, such as the OWASP Top 10, and business logic flaws; ability to explain all vulnerabilities and weaknesses and discuss effective defensive techniques

Preferred Qualifications/Competencies:

  • Bachelor’s Degree, MBA or Master’s degree in Business Administration, Computer Science, or related field (proven and documented experience can be used in place of education)
  • Excellent verbal, interpersonal and written communication skills
  • Flexibility and adaptability to respond to new information, changing conditions, and obstacles
  • Partnering and collaboration skills to develop networks, build alliances, engage in cross-functional activities and find common ground with stakeholders.
  • Knowledge of operations management competencies that can be applied regardless of situation or initiative e.g. critical outage, system maintenance, contract negotiations, etc
  • Program Management Experience involving significant revenue streams
  • Security+, GSEC, CISSP certifications

Working Conditions

  • Occasional travel to regional offices in Montreal, Toronto and Ottawa, conferences, employee sessions, seminars, training, etc
  • Willing to work as the job requires; non-business hour and weekend work as it relates to meeting timeline or assisting with incident and problem resolution

Bilingualism is an asset (English and French); adequate knowledge of French is required for positions in Quebec.

Additional Information:

Position Type: Management
Job Status: Regular – Full Time
Job Location: Canada : Ontario : Mississauga || Canada : New Brunswick : Fredericton || Canada : New Brunswick : Moncton || Canada : New Brunswick : Saint John || Canada : Newfoundland : St. John’s || Canada : Nova Scotia : Bedford || Canada : Nova Scotia : Halifax || Canada : Ontario : Ottawa || Canada : Ontario : Toronto || Canada : Quebec : Montreal
Application Deadline: 05/09/2021

Please apply directly online to be considered for this role. Applications through email will not be accepted.

At Bell, we don’t just accept difference – we celebrate it. We’re committed to fostering an inclusive, equitable, and accessible workplace where every team member feels valued, respected, and supported, and has the opportunity to reach their full potential. We welcome and encourage applications from people with disabilities.

Accommodations are available on request for candidates taking part in all aspects of the selection process. For a confidential inquiry, simply email your recruiter directly or to make arrangements. If you have questions regarding accessible employment at Bell please email our Diversity & Inclusion Team at .

Created: Canada, ON, Mississauga

Bell, one of

Source:

Apply for this job

Search Job

JobAdvisors.ca provides a centralized location for employers and job seekers. We update industry job trends, prospects and other vital information, from verified sources, for both Jobseekers and Employers and promote the content in multiple social media channels.

Follow us on: