Information Security Specialist
Core
Champion and execute corporate IT security strategy, governance, and compliance for Teladoc Health Canada's technology and data across systems, applications, and cloud environments.
Role type
Senior Information Security Specialist (GRC & Compliance)
Builds
Security posture, compliance certifications (SOC 2, ISO 27001), and risk mitigation frameworks for a global virtual care platform.
Domain
Healthcare / Information Security / Cloud Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Security program frameworks (SOC 2, ISO 27001), cloud security (AWS, Azure), vendor security assessments, incident response, regulatory compliance (Canadian privacy), technical controls design, risk assessment, SDLC security integration, SIEM integration, network security architecture, encryption standards, digital certificate management.
Preferred skills
Healthcare experience, CISM/CISA/CISSP certifications, Azure experience, Kubernetes/Containers.
Technologies
AWS, Azure, Salesforce, Mulesoft, Vanta, Linux, Windows, Apache, Nginx, MySQL, PostgreSQL, SQL Server, TCP/IP, firewalls, VPNs, SIEM platforms, Kubernetes.
Responsibilities
Champion and execute corporate IT security strategy and governance; Liaise with legal/privacy teams for regulatory adherence; Establish and execute vendor security assessments; Lead SOC 2 and ISO 27001 audit cycles; Develop security guidelines and controls; Oversee incident response planning and remediation; Assess technology environment and SDLC for security risks; Design and maintain security controls across infrastructure and cloud; Communicate security risks to leadership.
Seniority
Senior, hands-on IC with strategic oversight