We are banking at another level.
Choosing BDC as your employer means working in a healthy, inclusive, and skilled workplace that puts forward the best conditions to bring together unique teams where employees are empowered to act. It also means being at the centre of ambitious economic and financial projects to see further and to do things differently, to fuel the success of Canadian entrepreneurs.
Choosing BDC as your employer also means:
Flexible and competitive benefits, including an Employee Savings and Investment Plan where BDC matches part of your voluntary contributions, a Defined Benefit Pension Plan, a $750 wellness and health care spending account, to name a few
In addition to paid vacation each year, five personal days, sick days as necessary, and our offices are closed from December 25 to January 1
A hybrid work model that truly balances work and personal life
Opportunities for learning, training and development, and much more...
Explore the BDC Way in our Culture Book
POSITION OVERVIEW
The Cybersecurity Technical Lead is a senior member of the Business and Product Security Posture (BPSP) team, this role provides technical leadership in driving security‑by‑design, provides consistent and risk‑based guidance, mentors Squad members, and influences technology decisions across the organization.
The Cybersecurity Technical Lead plays a key role in strengthening BDC’s cloud and platform security posture across the main Cloud providers (public and privet Cloud), ensuring that solutions are designed, built, and maintained following industry‑leading security standards.
This role collaborates closely with Software Development teams, Solution Architects, CloudOps, Platform Engineering, Product Owners, and business stakeholders to drive a secure-by-design approach across cloud and on-premises environments. Operating within an Agile framework, the Technical Lead contributes to Quarterly Planning and Quarterly Alignment exercises, providing technical and security leadership to ensure strategic priorities, architectural direction, and risk considerations are aligned with business objectives, product roadmaps, and delivery commitments.
Primary accountability: industrialize security controls across cloud platforms, CI/CD pipelines and Kubernetes-based environments by defining and implementing automated guardrails, Policy-as-Code controls, IaC security validations, security gates and secure-by-default deployment patterns.
The Cybersecurity Technical Lead is also responsible for supporting applied AI security initiatives—including LLM risk management, AI governance integration, safe AI enablement, and secure Copilot usage.
In this capacity, Technical Lead complements the existing AppSec/SSDLC Technical Lead, enabling BPSP to deliver comprehensive, end-to-end product and platform security expertise across the organization. Reporting to a Product Owner, the Technical Lead will be responsible for translating business priorities and product objectives into secure and scalable technical solutions. The role will work closely with stakeholders across business, technology, and security functions to ensure that security and technology decisions align with product strategy, delivery roadmaps, and organizational objectives, embedding security throughout the product lifecycle.
CHALLENGES TO BE MET
1. Leadership & Collaboration
2. Cloud Security
3. Platform & Kubernetes Security
4. Artificial Intelligence Security
5. Supporting Responsibility – Penetration Testing & Vulnerability Assessment
· Support penetration testing and vulnerability assessment activities by defining scope, scenarios, and priorities based on threat models and risk, while keeping the role’s primary focus on Cloud DevSecOps and platform security industrialization.
· Validate findings, ensure accurate severity rating, and track remediation.
· Provide expertise to interpret and communicate results to technical and non-technical stakeholders.
6. Supporting Responsibility – Governance & Advisory
· Provide targeted expert security advisory to IT, product, and business teams where it supports cloud, platform, SSDLC, and AI security outcomes.
· Contribute to security risk assessments and threat modeling exercises, with emphasis on translating findings into automated and repeatable technical controls.
· Review and validate compliance evidence for internal controls, audits, and regulatory requirements.
· Develop and promote security policies, standards, and guidelines
· Define and produce metrics
WHAT WE ARE LOOKING FOR
Technical Expertise
Experience
Education/Certifications
#INDHP
Proudly one of Canada’s Top 100 Employers and one of Canada’s Best Diversity Employers, we are committed to fostering a diverse, equitable, inclusive and accessible environment where all employees can thrive and feel empowered to bring their whole selves to work. If you require an accommodation to complete your application, please do not hesitate to contact us at [email protected].
While we appreciate all applications, we advise that only the candidates selected to participate in the recruitment process will be contacted.
Built for the bilingual job market. Formatted to pass ATS screening in both English and French.
BDC
ACCOUNT MANAGER, VIRTUAL BUSINESS CENTER – Toronto, Halton, Mississauga or OttawaFull-time - $750 · French and English