All of your investing, made simple.
Senior Technical Specialist, Corporate Security
Location
Canada
Posted
7 days ago
Salary
$89.6K - $112K / year
Seniority
Senior
Job Description
Senior Technical Specialist, Corporate Security
Wealthsimple
• Own all aspects of the Physical Protection System (PPS), with Genetec Security Centre (access control and VMS) as the primary platform — including configuration, maintenance, troubleshooting, and optimization across a multi-site enterprise architecture. • Serve as the first point of contact for PPS troubleshooting, conducting root cause analysis and driving defect resolution in partnership with our security integrator and internal IT. • Oversee and manage the Wealthsimple security integrator relationship, holding vendors accountable to SLAs and quality standards. • Lead technical planning, testing, and implementation of new security technologies and system integrations, managing projects from scoping through delivery. • Work with IT/Security teams to improve the existing and future integrations with our IdP, ensuring user onboarding and offboarding is automated correctly and user audits can be done by our IT and Compliance teams. • Develop and maintain complete technical documentation and controls, system audits, and infrastructure records in partnership with internal and external stakeholders. • Organize and lead annual penetration testing exercises and oversee remediation of identified vulnerabilities. • Manage access control credentials and site access programs. • Develop and lead training, as well as the creation of technical policies and procedures.
Job Requirements
- 5+ years of hands-on experience managing enterprise physical security systems, with demonstrated depth in Genetec Security Centre — Omnicast VMS and access control modules are required; advanced troubleshooting and multi-server architecture experience strongly preferred.
- Post-secondary education in Electronic Engineering Technology, Engineering Sciences, Information Technology, Network Engineering, IT Security, Computer Science, or a related field.
- Working IT and networking knowledge and an understanding of standard IT security practices including network segmentation, SSO and app integration, compliance auditing. You will need to gather requirements from IT/Security teams and execute those requirements in the PPS.
- Proven project management experience: you've led large scale security technology projects from requirements through commissioning and can manage timelines, vendors, and competing priorities without hand-holding.
- Understanding of procurement requirements and processes.
- In-depth experience project managing a security integrator or third-party service vendor.
- Outstanding written and verbal communication skills — able to produce clear technical documentation and present to non-technical stakeholders. You are able to communicate and build relationships with cross-functional stakeholders.
- Ability to handle sensitive and contentious issues with discretion and integrity.
- Previous experience in a fintech, financial services, or critical infrastructure environment is highly desirable.
- Security or technical certifications are an asset: Axis Certified Professional, CISSP, CISA, or equivalent.
Benefits
- Top-tier health benefits and life insurance
- Long-term group savings with employer match, through Wealthsimple for Business
- 20 vacation days, 4 wellness days, and unlimited sick and mental health days per year
- 90 days away: work outside Canada for up to 90 days per year
- Employee resource groups, including Rainbow (2SLGBTQ), Women of WS, and Black at WS
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Lead our security and privacy efforts and protect the students, educators, and partners who use the platform. • Drive the security engineering, compliance, and privacy programs forward with end-to-end ownership of risk and customer assurance. • Promote effective and thoughtful decision making to reduce uncertainty and increase organizational velocity. • Stand up SIEM and detection engineering pipelines to alert on and investigate anomalies before they turn into incidents. • Standardize and enforce RBAC on critical systems, including non-human and AI agent identities. • Add LLM-assisted and highly contextual code analysis to security-relevant pull requests, addressing tenant isolation and prompt injection threats. • Design data de-identification and isolation approaches for privacy-by-design use cases. • Keep an up-to-date risk register and security roadmap, communicating clearly through regular updates. • Support engineering team with secure design reviews that provide actionable and tradeoff-informed recommendations. • Equip customer-facing teams with top-notch trust center content, including security knowledge bases and customer assurance collateral. • Lead SOC 2 compliance operations and audits to reduce overhead on engineering and support teams. • Lead the incident response function to ensure rapid recovery capabilities. • Partner with Trust and Safety on child safety and responsible AI deployments. • Work cross-functionally to build partnerships instead of roadblocks.
• Own FedRAMP and GovRAMP (formerly StateRAMP) certifications and roadmaps: Lead the overall strategy for obtaining and maintaining federal authorizations, including package management, compliance timelines, and authority coordination. • Manage 3PAO relationships and assessments: Work with accredited third-party assessment organizations to conduct initial assessments and annual re-assessments. Coordinate scoping, evidence preparation, testing coordination, and results validation. • Lead continuous monitoring (ConMon) execution: Oversee the delivery of monthly, annual, and event-driven FedRAMP deliverables including vulnerability scans, penetration testing, system security plan updates, and compliance reporting. • Manage Plans of Action and Milestones (POA&M) processes: Own the identification, prioritization, tracking, and remediation of findings. Ensure timely closure of Critical (30 days), High (30 days), and Moderate (90 days) findings while coordinating with engineering and security teams. • Coordinate significant change requests and system modifications: Work with product and engineering to document, scope, assess, and obtain agency approval for system changes that impact security controls or compliance posture. • Engage with authorizing officials and federal agencies: Build and maintain relationships with government sponsors, CIOs, and agency decision-makers. Provide regular status updates, respond to questions, and demonstrate authorization compliance. • Prepare comprehensive assessment packages: Lead the development of System Security Plans (SSP), Security Assessment Plans (SAP), risk exposure tables, and supporting documentation required for audits. • Drive compliance automation and efficiency: Identify opportunities to automate evidence collection, simplify reporting, and reduce manual effort while maintaining rigor and auditability.
• Provide one-on-one consultations to assess SSI eligibility. • Evaluate household composition, countable income, resource levels, deeming, and state-specific variations. • Explain SSI application steps, documentation requirements, and pathways, including CAL, TERI, Presumptive Disability, Disabled Adult Child, and 1619(b). • Manage cases from creation to closure with accurate documentation. • Maintain expert-level knowledge of SSI regulations, Medicaid eligibility rules, POMS guidance, and SSA processes. • Meet or exceed FEDlogic QA quality standards and participate in internal improvement initiatives. • Any other duties as assigned by leadership.
Principal Enterprise Security Architect
IntelanceEnterprise Architecture. Cybersecurity. AI Operating Models. We build strategic systems for the future of business.
Role Description We are appointing a small number of Principal Enterprise Security Architects to our associate panel. This is not permanent employment. Assignments will be offered according to client demand, suitability and availability. There is no guaranteed volume of work. - Lead independent security architecture reviews for complex enterprise environments. - Assess cloud, on-premises and hybrid architectures across identity, networks, endpoints, applications, platforms and data. - Review security requirements, architecture decisions, trust boundaries and control designs. - Carry out threat modelling and identify credible attack paths and design weaknesses. - Assess identity and access management, network segmentation, encryption, logging, resilience and recovery arrangements. - Judge whether proposed alternative controls provide equivalent protection. - Review high-level and detailed designs and challenge unsupported assumptions. - Work alongside governance and risk advisors, enterprise architects and technical assessors. - Turn technical findings into clear decisions and recommendations for executives and boards. - Produce client-ready architecture findings, diagrams and assurance reports. - Complete scheme-specific training and participate in internal quality reviews where required. Qualifications - Substantial experience as a Principal Security Architect, Enterprise Security Architect or security design authority. - Experience designing or assuring complex systems in large or regulated organisations. - Strong knowledge of secure-by-design principles, threat modelling and architecture assurance. - Practical experience across cloud, hybrid infrastructure, identity, networks, applications and data security. - The ability to distinguish genuine security requirements from unnecessary complexity. - Excellent written English and the ability to explain technical risks to non-technical decision-makers. - We are particularly interested in applicants who hold UK Cyber Security Council professional registration at Principal or Chartered level in Secure System Architecture & Design. - We will also consider candidates who can demonstrate experience aligned with Chartered level and are willing to undergo formal professional assessment. - SABSA, TOGAF, CISSP, CCSP and cloud architecture certifications are useful, but do not replace the professional registration requirement. - You must be based in the UK, able to attend UK client sites when agreed, and able to contract through a limited company or another compliant arrangement. Benefits - Senior architecture and assurance assignments. - Flexible associate working based on your availability. - Direct access to Intelance leadership. - Work alongside experienced enterprise architects, risk advisors and technical assessors. - Clear scopes and independent advisory responsibilities. - Potential inclusion in Intelance proposals and associate credentials, subject to agreement. Company Description Intelance is a strategic consultancy specialising in Enterprise Architecture, AI transformation, and cybersecurity. We help organisations design the systems, structures, and operating models needed to scale, secure, and lead in a volatile world. Our team combines TOGAF-based architecture thinking with cybersecurity governance (Cyber Essentials, ISO 27001), cloud-native patterns, and AI operating model design. From EA blueprints to Zero Trust frameworks to AI adoption roadmaps - Intelance transforms complexity into strategic clarity. We serve public and private sector clients across the UK, Africa, and the Middle East - particularly in regulated industries such as government, healthcare, finance, energy, and pharma.



