Manager, Information Security

City of New WestminsterNew Westminster, BC
Hybrid

About The Position

The Manager, Information Security is a new pivotal leadership role for the City of New Westminster, and we're looking for a passionate security professional who's ready to shape and strengthen our cyber security program. In this exempt position, you'll be a trusted advisor to the Chief Information Officer and a key partner to leaders and teams across the organization. Your focus will be protecting the integrity of City data, information systems, and networks—ensuring security is embedded in how we design, deliver, and operate technology services across departments. You're at your best when you're translating complex security risk into clear priorities and practical action. You bring a strong mix of technical credibility and people leadership, and you know how to build relationships while setting a high bar for secure outcomes. You're energized by continuous improvement—building repeatable practices, improving cyber maturity, and making security measurable and meaningful.

Requirements

  • Bachelor's degree in Computer Science, Information Technology, Computer Engineering, or a related discipline (or an equivalent combination of education and experience).
  • Minimum 7 years of progressive IT experience, including at least 5 years providing cybersecurity/information security services to medium or large organizations (municipal/public sector experience preferred).
  • Demonstrated experience leading or overseeing core cyber security functions such as: Security governance (policies/standards), risk management, and compliance support; Incident response and cyber security investigations; Security controls design and implementation across applications, infrastructure, networks, and data.
  • Professional certification such as CISM, CISSP, ISO 27001/27002 (or an equivalent industry-recognized security credential).
  • Demonstrated ability to communicate effectively with technical and non-technical audiences, including writing reports and presenting effectively to Council, executives and leadership.

Nice To Haves

  • Strong working knowledge of recognized security frameworks and controls, such as: NIST Cybersecurity Framework (NIST SP 800-53) or IS027001/27002.
  • Experience developing and delivering a cyber security program including: Multi-year roadmaps and prioritized initiatives; Operational security procedures and repeatable playbooks; KPI/KRI reporting, cyber risk dashboards, and continuous improvement metrics.
  • Working knowledge of Canadian privacy requirements (with emphasis on BC FOIPPA) and experience supporting compliance expectations in a public-sector environment.
  • Experience with Security and risk assessments.
  • Experience with Threat monitoring and response processes.
  • Experience with Security awareness programs and phishing simulations.
  • Experience with Cyber risk register development and maintenance.
  • Experience working with identity and access security concepts and tooling, including authentication/authorization, auditing, and privileged access management (PAM).
  • Demonstrated people-leadership capability including coaching, mentoring, performance management, and building a positive, accountable team culture.
  • Strong stakeholder engagement and relationship management skills—able to influence across departments and collaborate with peers, vendors, and partners.
  • Excellent analytical, research, planning, and organizational skills, with the ability to manage multiple priorities and lead security initiatives from concept to implementation.

Responsibilities

  • Lead and advance City-wide Information Security strategy, planning and design, governance, policy, and standards.
  • Lead and advance Security operations improvements (prevention, detection, response and resiliency), across on-premise and cloud environments.
  • Collaborate closely with other IT functional areas to ensure security best practices are integrated into all that we do.
  • Lead and advance Cyber incident response, investigations, and coordinated remediation.
  • Lead and advance Security awareness initiatives that strengthen culture and reduce risk.
  • Develop and present Dashboards and reporting that clearly communicate security posture and risk.
  • Develop and implement security awareness training programs for City staff and contractors.
  • Conduct Risk assessment and penetration testing to identify and mitigate potential cyber threats.
  • Provide Strategic technical advice and consultation to business unit clients and project teams and provides assistance with the adoption of cybersecurity technology and standards.
  • Oversee the hiring, development and directing of staff, monitoring performance towards division, department, and corporate objectives.
  • Collaborate with external stakeholders, including government agencies and other organizations, to establish and maintain partnerships for the exchange of cyber threat intelligence and best practices.
  • Work closely with software vendors and reputable cybersecurity authorities to identify any threats that may impact the City’s systems.
  • Develop and maintain cyber-incident response plans and contribute to the ongoing development of business continuity plans, application security standards, end point protection, PCI compliance, IOT and communications security.

Benefits

  • Earned day off/flex day program
  • Attractive vacation and extended benefits package
  • Opportunity to contribute to the Municipal Pension Plan
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service