Director, Threat and Vulnerability Management

  • Etobicoke
  • Gateway Casinos E Entertainment

Your Role

The incumbent will be responsible for leading team(s) of cyber security technical specialists to ensure compliance with cyber security standards while providing support and technology solutions to ensure the protection and integrity of Gateway corporate and Gaming Management Systems (GMS). They will ensure that support infrastructures are maintained at all times in accordance with established standards.

Why Work for Us?

Gateway celebrates and empowers our team members, who make it all possible. A career at Gateway means working with great people, being recognized for your unique contribution and career advancement opportunities across our 30 locations. Our employees thrive with ongoing training and leadership programs while working in a dynamic and fun environment. See for yourself what its like to be on a team that values your vision, skill and energy.

We Provide

  • Full benefits package for full-time employees
  • Retirement savings plan
  • Exciting, supportive and fun work environment
  • Family and friends discounts on travel, tech, food, beverage, and fitness
  • Development and training opportunities

What You Bring

  • Bachelors Degree in Technology, Computer Science or Engineering
  • CISSP, CISM, CISA, GSEC, CEH, GCIH
  • 7+ Years of project support experience, casino experience or equivalent combination of education and experience
  • 5 to 7 years of experience managing a Cyber security team, cyber security support/solution delivery team, preferably in a casino or gaming and entertainment industry or other large enterprise environment
  • Experience in DR runbook and execution in a mission-critical high availability environment preferred
  • Experience in providing services to agreed SLAs and OLA preferred
  • Experience with cloud technologies
  • Excellent communication, organizational and multi-tasking skills
  • In depth understanding of information security policies and risk analysis
  • Knowledge/Familiarity with SIEM, DLPs, FWs, SIEMs, Identity Management Solutions, IDS/IPS, Vulnerability Assessment Tools, Internet Security Tools, Router ACLS, Authentication/Radius Server, Multi Factor Authentication, Cryptography, Multi-platform access controls and administration, Cloud Security Controls
  • Working knowledge of MS Windows, Linux controls and cloud computing architecture platforms, networks and firewalls
  • Knowledge of vulnerability assessment practices
  • In depth knowledge of business continuity & disaster recovery concepts, controls and processes.
  • Must work well under tight deadlines and schedules

Key Responsibilities

  • Partner with peers in other departments to implement security and overall compliance initiatives
  • Support the overall Enterprise Risk management program by ensuring that security and compliance risks are mitigated and is responsible for protecting data from compromise
  • Responsible for analyzing, developing, implementing and enforcing security, privacy and data protection requirements, policies and corporate technical guidelines
  • Work with cross functional groups to ensure compliance with gaming standards and Gateway requirements as across multiple sites and lines of businesses
  • Manage and lead a high performance team of Cyber Security Professionals by providing technical leadership
  • Initiate, facilitate and promote activities to increase the level of information protection awareness within the company
  • Sponsor threat management related initiatives and implements process and methods to raise the maturity of security governance and execution within the company while improving the security of information assets
  • Provide ongoing evaluation of vulnerability assessment measures, identifying any threats and making recommendations to reduce exposure
  • Investigate and manage security related incidents and conduct threat risk assessments.
  • Lead the implementation of risk reduction controls
  • Act as Gateway’s representative for all security and/or business continuity audits, reviews, certifications or inquiries with internal and external clients
  • Act as the liaison between the compliance team, operations team, gaming regulators to ensure compliance.
  • Maintain documentation on information protection practices, policies and procedures
  • Implement data protection and cyber security technologies
  • Ensure functionality and maintenance of physical security system controls, redundant power and environment detection systems
  • Review new business opportunities to ensure proper privacy/security/business continuity requirements are appropriate, and adequately captured
  • Other duties as required

Working Conditions/Physical Requirements :

  • Office and casino environments
  • Some travels maybe required
  • Overtime work as required

Get to Know Gateway

Not the right fit this time? Follow us on our careers social media pages!