Security Consultant II - Cybersecurity Table Top Exercise (TTX)

Location: 

Toronto, ON, CA Ottawa, ON, CA Toronto, ON, CA, M5J 2V5 Calgary, AB, CA Vancouver, BC, CA Edmonton, AB, CA

Req ID:  47110
Jobs by Category:  Security & Automation
Job Function:  Cybersecurity
Status:  Full Time
Schedule:  Regular

Description

 

Our team and what we’ll accomplish

 

We live in and work in a rapidly evolving digital world where cyber security is critical. The Global CSO function for TELUS Health brings a focus on the Security of our Sensitive Health Information (PHI) and regulatory compliance, to meet and exceed the expectations of our global customers as the most trusted wellbeing company in the world. The TELUS Health CSO team strives to always be steps ahead, tackling the toughest cyber security challenges head-on with top talent and cutting-edge technology. 

 

The Incident Management team provides pre and post incident response support to the TELUS Health cyber security team, including reporting, process and procedure development, operational readiness activities, and root cause analysis. We work collaboratively across the TELUS Health and TELUS corporate teams to ensure coordination and information sharing around cyber events and response.  

 

As our Security Consultant leading Table Top Exercises, you will plan, coordinate, execute, and evaluate Table Top Exercises designed to simulate cyber security incidents. The goal of these exercises is to test the effectiveness of TELUS Health’s security response plans, protocols, and procedures, as well as to identify areas for improvement. The role involves a combination of technical acumen, project management, facilitation, and evaluation skills. 

What you'll do

 

  • Define the objectives and goals of the Table Top Exercise, ensuring alignment with TELUS Health’s needs and priorities.
  • Develop realistic and challenging scenarios that simulate security incidents or events relevant to TELUS Health
  • Coordinate all logistical aspects of the exercise, including venue selection, scheduling, and resource allocation.
  • Engage with exercise participants, including senior leadership, first response teams, and other stakeholders, to ensure their understanding and commitment to the exercise.
  • Assign roles and responsibilities to participants, ensuring that all essential functions and positions are covered during the exercise.
  • Act as the facilitator during the Table Top Exercise, guiding participants through the scenario, posing questions, and prompting discussions to explore response strategies and decision-making processes.
  • Manage the flow of the exercise, introducing new information, challenges, and developments at appropriate intervals to simulate the evolving nature of real-world incidents.
  • Ensure the exercise stays on schedule and that all planned activities and discussions are adequately covered.
  • Coordinate the exercise, take notes, and assess participant performance.
  • Conduct debriefing sessions with participants to gather feedback, discuss lessons learned, and identify strengths and areas for improvement.
  • Prepare comprehensive after-action reports (AARs) that document the exercise, summarize key findings, and provide actionable recommendations for enhancing preparedness and response capabilities.
  • Collaborate with stakeholders to develop action plans that address the identified gaps and weaknesses highlighted during the exercise.
  • Monitor and track the implementation of corrective actions and improvements, ensuring that lessons learned are integrated into TELUS Health policies and procedures.
  • Provide training and education to staff based on the outcomes of the Table Top Exercise to reinforce best practices and enhance overall readiness.
  • Ensure that the Table Top Exercise complies with relevant industry standards, regulatory requirements, and best practices (e.g. SOC2).
  • Maintain accurate records of exercise planning, execution, and evaluation to support compliance and continuous improvement efforts.

Qualifications

 

What you bring 

 

  • Bachelor's degree or Diploma in Computer Science, Information Technology, Cybersecurity, or a related field
  • You have 5+ years of experience in a similar capacity.
  • Mandatory: currently has or is able to obtain Government of Canada security clearance
  • Excellent problem solving and investigate capabilities, as pertaining to information security 
  • Intermediate experience in project management
  • Intermediate understanding and experience in one or more information security domains (e.g. data protection and privacy, compliance, risk management, application and cloud security, and incident management).
  • Intermediate experience with and knowledge of security frameworks, including ISO 27001 and ISO 27002, AICPA SOC 2 Trust Services Principles, NIST Cybersecurity Framework.
  • Familiarity with relevant data protection, privacy and health-related laws and regulations, such as GDPR, HIPAA, PIPEDA,
  • Proficient communication and interpersonal skills, with the ability to communicate requirements effectively, develop consensus and build relationships with stakeholders at all levels of the organization.
  • A demonstrated ability to manage challenging situations and competing priorities in a fast-paced environment.
  • Comfortable with ambiguity, you are able to adapt, make adjustments and maintain focus and positivity through change.
  • Capable of defining an approach, seeking out resources and taking ownership for your objectives and responsibilities.
  • Effective analytical skills and attention to detail, with the ability to interpret and analyze data and reports.

 
Great-to-haves

 

  • Project Management Professional (PMP), Certified Information Systems Auditor (CISA), and ITIL V3Certifications, Certified Information Systems Security Professional (CISSP), or Certified Information Security Manager (CISM)
  • Fundamental/working knowledge of other industry standards, such as NIST 800-53, PCI-DSS, CIS Benchmarks, COBIT and/or ISF.
Salary Range:  $82,000-$124,000
Performance Bonus or Sales Incentive Plan:  12%

Actual total compensation will be determined based on factors such as knowledge, skills, performance and experience. Please note that the compensation shown in the job posting may be subject to change in 2025.

A bit about us

We’re a people-focused, customer-first, purpose-driven team who works together every day to innovate and do good. We improve lives through our technology solutions and foster a culture of innovation that empowers team members to solve complex problems and create remarkable human outcomes in a digital world. 

You’ll find our engaging, high-performance culture personally fulfilling, professionally challenging, and financially rewarding. We’re committed to diversity and equitable access to employment opportunities based on ability. Your unique contributions and talents will be valued and respected here. When you join our team, you’re helping us make the future friendly.

Note for Quebec candidates: if knowledge of English is required for this position, it is because the team member will be asked, on a regular basis, to interact in English with external or internal parties or to use English applications or software as part of their tasks.

 

 

 

 

Security & Automation

We’re looking for talented sales professionals, solution designers, security technicians and customer support specialists with proven experience in commercial security and automation to join our team.

We are honoured to be recognized

Team TELUS at a glance

1.4M
Days volunteered in our communities

$1.3
Billion contributed to charitable and community organizations since 2000

15.2
Million customer connections

Accessibility

TELUS is proud to foster an inclusive culture that embraces diversity. We are committed to fair employment practices and all qualified applicants will receive consideration for employment.

We offer accommodation for applicants with disabilities, as required, during the recruitment process.