As a sector vulnerability management lead, you play a key role in governing and advancing the organization’s vulnerability management practices. You contribute to protecting information resources, IT assets and strategic data by aligning security controls with organizational priorities and risk management objectives. As a sector vulnerability management lead, you influence a wide range of partners, including IT, cybersecurity and architecture teams, as well as the Desjardins Group Security Office (DGSO). You analyze security issues, recommend directions and support decision-making on strategic initiatives. You also help improve processes, standards and practices that strengthen the organization’s security posture. Team spirit, a collaborative approach, leadership, influencing skills and strategic thinking are essential to success in this role. More specifically, you will be required to:
- Oversee the governance of vulnerabilities, security incidents, framework gaps, and operational and technology risks across the sector
- Define, enhance and promote directions, standards, processes and best practices for vulnerability management and workstation security
- Identify, analyze and anticipate security issues and risks, establish diagnoses, and provide strategic recommendations to the appropriate decision-making bodies
- Lead strategic initiatives and continuous improvement initiatives to strengthen the security posture and advance the maturity of vulnerability management practices
- Represent the department on committees, with partners and before decision-making bodies to help align security priorities and strategies
- Produce and present analyses, indicators and reports for management and senior management to support decision-making
- Collaborate across sectors with the IT, cybersecurity and architecture teams to support transformation and implementation initiatives
- Enhance and optimize vulnerability management tools, processes and methodologies to improve operational efficiency and risk management
- Proactively detect trends, critical vulnerabilities and recurring issues, engage the relevant contributors and monitor response plans
- Serve as an expert advisor and sector go-to person for partners and managers on complex initiatives that impact information security.
What we offer*
- Competitive salary and annual bonus
- 4 weeks of flexible vacation starting in the first year
- Defined benefit pension plan that provides predictable, stable income throughout retirement
- Group insurance including telemedicine
- Reimbursement of health and wellness expenses and telework equipment
* Benefits apply based on eligibility criteria.
#LI-Hybrid
What you bring to the table
- Bachelor's degree in a related field
- A minimum of six years of relevant experience
- Please note that other combinations of qualifications and relevant experience may be considered
- Demonstrated experience in vulnerability analysis to be able to assess severity and effectively prioritize corrective actions
- Knowledge of French is required
- Advanced proficiency of English due to the nature of the duties or work tools or because the position involves interactions with English-speaking partners, members and/or clients
- Proficiency in communication tailored to different audiences, including explaining technical issues to non-specialized resources
- Proficiency with continuous learning in a constantly evolving technological environment
- Knowledge of the levers for mobilizing teams when it comes to security and fostering a proactive culture of vulnerability management
- Knowledge of compliance or operational risk vulnerability management
- 24/7 availability on rotation with compensation, to respond to major incidents in your sector
Action oriented, Customer Focus, Differences, Interpersonal Savvy, Nimble learning, Strategic mindset
Job Family
Information technology (FG)
Unposting Date
2026-08-6