Senior Security Architect at Ontario Securities Commission | CA | Rezi

Senior Security Architect at Ontario Securities Commission

Senior Security Architect

Ontario Securities Commission · CA

Yesterday

Senior Security Architect

Ontario Securities Commission · CA

a day ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this Senior Security Architect role.

Rezi rewrites your resume against Ontario Securities Commission's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the Senior Security Architect posting at Ontario Securities Commission — free, in seconds.

About the Role

The Ontario Securities Commission (OSC) is seeking a strategic and experienced Senior Security Architect to lead the evolution of our enterprise security architecture and cybersecurity strategy. In this highly visible role, you will partner with business and technology leaders to strengthen the OSC's security posture, mitigate emerging threats, and ensure security is embedded across technology solutions, business initiatives, cloud environments, and third-party relationships. You will serve as a trusted advisor and subject matter expert, helping to safeguard the systems and information that support Ontario's capital markets.

Responsibilities

  • Define and evolve the OSC's enterprise security architecture, standards, controls, and governance framework.
  • Design and recommend security solutions that align with business objectives and industry best practices.
  • Identify emerging threats, assess architectural risks, and develop mitigation strategies.
  • Evaluate and recommend new security technologies and tools to strengthen cybersecurity capabilities.
  • Lead security architecture reviews and threat modeling activities for new initiatives, projects, and technology solutions.
  • Embed Security-by-Design and Zero Trust principles into solution design and Architecture Review Board (ARB) processes.
  • Develop and maintain security architecture roadmaps aligned with OSC's strategic and cybersecurity objectives.
  • Assess emerging technologies, including AI, automation, and digital innovation platforms, for security and risk implications.
  • Provide leadership on identity security, privileged access management (PAM), conditional access, Zero Trust architecture, and secure access strategies.
  • Lead threat and risk assessments for new and existing technologies, projects, and third-party engagements.
  • Establish security metrics, KRIs, and KPIs to support informed decision-making.
  • Conduct security reviews and provide recommendations to improve controls and security effectiveness.
  • Support compliance with industry frameworks such as NIST, CIS Controls, and ISO 27001.
  • Support the development and maintenance of security policies, standards, reference architectures, and control frameworks aligned with NIST CSF 2.0, ISO 27001, and industry best practices.
  • Lead Information Security Assessments (ISAs), threat and risk assessments, and cybersecurity due diligence activities.
  • Assess suppliers and vendors for security risks and compliance.
  • Review security assurance reports and collaborate on contractual security requirements.
  • Guide secure cloud adoption across Azure and AWS environments.
  • Promote secure development practices and DevSecOps integration.
  • Assess third-party cybersecurity programs beyond SOC reports and certifications.
  • Evaluate cloud security architectures across Azure, AWS, SaaS, and hybrid environments.
  • Support vendor security reviews, procurement initiatives, and technology risk assessments.
  • Act as a trusted advisor to senior leaders, project teams, and technology stakeholders.
  • Contribute to cybersecurity strategy, governance, and awareness initiatives.
  • Support vendor evaluations, procurement activities, and strategic technology decisions.
  • Provide technical leadership and mentorship across security and cross-functional teams.

Requirements

  • University degree in Computer Science, Engineering, or a related discipline.
  • 12+ years of progressive experience in Security Architecture, Cybersecurity, Enterprise Architecture, or Information Security, including experience providing strategic guidance to senior leadership.
  • Expertise in security architecture, threat and risk assessment, governance, and compliance.
  • Strong knowledge of cloud security, application security, network security, and secure systems design.
  • Ability to translate complex technical risks into practical business recommendations.
  • Exceptional communication, stakeholder management, and influencing skills.
  • Experience with threat modeling methodologies (e.g., STRIDE), cloud security architecture, Zero Trust, third-party risk management, security governance, and cybersecurity transformation initiatives.

Skills

  • Security Architecture
  • Cybersecurity
  • Enterprise Architecture
  • Information Security
  • Threat and Risk Assessment
  • Governance
  • Compliance
  • Cloud Security
  • Application Security
  • Network Security
  • Secure Systems Design
  • Identity Security
  • Privileged Access Management (PAM)
  • Conditional Access
  • Zero Trust Architecture
  • Secure Access Strategies
  • NIST
  • CIS Controls
  • ISO 27001
  • NIST CSF 2.0
  • Azure
  • AWS
  • SaaS
  • DevSecOps
  • STRIDE
  • Third-Party Risk Management
  • Cybersecurity Transformation
  • CISSP
  • CISM
  • CCSP
  • CISA
  • TOGAF
  • SABSA
  • Azure Security
  • AWS Security

Location

  • Ontario

Work Type

  • Regular
  • Full-time

Experience Level

  • Senior
  • 12+ years of progressive experience

Education Level

  • University degree in Computer Science, Engineering, or a related discipline

About the Company

  • The Ontario Securities Commission (OSC) is the statutory body responsible for regulating Ontario’s capital markets in accordance with the mandate established in the provincial Securities Act and the Commodity Futures Act. The mandate of the OSC is to provide protection to investors from unfair, improper or fraudulent practices, to foster fair, efficient and competitive capital markets and confidence in the capital markets, to foster capital formation, and to contribute to the stability of the financial system and the reduction of systemic risk. This mandate is performed through policy, operational, and enforcement activities. The OSC also contributes to national and global securities regulation development.
  • We offer a diverse, fair, and flexible work environment and take pride in our challenging and rewarding work.

Equal Opportunity

  • The OSC is committed to diversity and providing an inclusive workplace and providing accommodation in accordance with the Accessibility for Ontarians with Disabilities Act and the Human Rights Code. It is our priority to ensure employment opportunities are visible and barrier-free to all under-represented groups including but not limited to, Indigenous, Black and racialized groups, people with disabilities, women and people from the 2SLGBTQI+ community, to achieve an employee demographic profile reflective of the demographic profile of Ontarians.
  • The OSC is a proud partner with the following organizations: Ascend Canada, BlackNorth Initiative, Canadian Centre for Diversity and Inclusion, and Pride at Work Canada
  • If you require an accommodation during the recruitment process, please let us know by contacting our confidential inbox HRRecruitment@osc.gov.on.ca.
  • Visit Accessibility at the OSC to review the OSC’s policies on accessibility and accommodation in the workplace.