The Digital Security, Monitoring, Expertise and Assemblage Department is responsible for securing workstations and virtual environments, managing vulnerabilities, ensuring compliance and responding to security incidents, in order to maintain an acceptable level of risk in accordance with Desjardins Group frameworks. In addition to leading security projects, the department manages the implementation and updating of security software on workstations. As a sector vulnerability management lead, you play a key role in governing and advancing the organization’s vulnerability management practices. You contribute to protecting information resources, IT assets and strategic data by aligning security controls with organizational priorities and risk management objectives. As a sector vulnerability management lead, you influence a wide range of partners, including IT, cybersecurity and architecture teams, as well as the Desjardins Group Security Office (DGSO). You analyze security issues, recommend directions and support decision-making on strategic initiatives. You also help improve processes, standards and practices that strengthen the organization’s security posture. Team spirit, a collaborative approach, leadership, influencing skills and strategic thinking are essential to success in this role. More specifically, you will be required to:
-
Oversee the governance of vulnerabilities, security incidents, framework gaps, and operational and technology risks across the sector
-
Define, enhance and promote directions, standards, processes and best practices for vulnerability management and workstation security
-
Identify, analyze and anticipate security issues and risks, establish diagnoses, and provide strategic recommendations to the appropriate decision-making bodies
-
Lead strategic initiatives and continuous improvement initiatives to strengthen the security posture and advance the maturity of vulnerability management practices
-
Represent the department on committees, with partners and before decision-making bodies to help align security priorities and strategies
-
Produce and present analyses, indicators and reports for management and senior management to support decision-making
-
Collaborate across sectors with the IT, cybersecurity and architecture teams to support transformation and implementation initiatives
-
Enhance and optimize vulnerability management tools, processes and methodologies to improve operational efficiency and risk management
-
Proactively detect trends, critical vulnerabilities and recurring issues, engage the relevant contributors and monitor response plans
-
Serve as an expert advisor and sector go-to person for partners and managers on complex initiatives that impact information security.
What we offer*
-
Competitive salary and annual bonus
-
4 weeks of flexible vacation starting in the first year
-
Defined benefit pension plan that provides predictable, stable income throughout retirement
-
Group insurance including telemedicine
-
Reimbursement of health and wellness expenses and telework equipment
- Benefits apply based on eligibility criteria.
#LI-Hybrid
What you bring to the table
-
Bachelor's degree in a related field
-
A minimum of six years of relevant experience
-
Please note that other combinations of qualifications and relevant experience may be considered
-
Demonstrated experience in vulnerability analysis to be able to assess severity and effectively prioritize corrective actions
- Knowledge of French is required
-
Advanced proficiency of English due to the nature of the duties or work tools or because the position involves interactions with English-speaking partners, members and/or clients
-
Proficiency in communication tailored to different audiences, including explaining technical issues to non-specialized resources
-
Proficiency with continuous learning in a constantly evolving technological environment
-
Knowledge of the levers for mobilizing teams when it comes to security and fostering a proactive culture of vulnerability management
-
Knowledge of compliance or operational risk vulnerability management
-
24/7 availability on rotation with compensation, to respond to major incidents in your sector
Action oriented, Customer Focus, Differences, Interpersonal Savvy, Nimble learning, Strategic mindset
Equity, Diversity, Inclusion and Accessibility
At Desjardins, we believe in equity, diversity and inclusion. We're committed to welcoming, respecting and valuing people for who they are as individuals, learning from their differences, embracing their uniqueness, and providing a positive workplace for all. At Desjardins, we have zero tolerance for discrimination of any kind. We believe our teams should reflect the diversity of the members, clients and communities we serve.
If there's something we can do to help make the recruitment process or the job you're applying for more accessible, let us know. We can provide accommodations at any stage in the recruitment process. Just ask!
Trade Union (If applicable)
Job Family
Information technology (FG)
Unposting Date
2026-08-6