Job Posting Title
Cyber Security Architect
Job Category
IT Security
Language Requirements
English / Anglais
Flexible Work Agreement Type
Hybrid / Hybride
Posting End Date
2026-10-12
Job Grade
PIPSC-4
Pay Range
$127,829 - $160,581
Job Summary
The Cyber Security Architect provides expert leadership in integrating cyber security into NAV CANADA’s enterprise architecture, technology modernization, and business transformation initiatives. Reporting to the Manager, Cyber Security Risk & Resilience, the role ensures cyber security principles, controls, and architectural patterns are embedded throughout the enterprise architecture lifecycle, enabling the secure adoption of new technologies, digital services, operational capabilities, and business initiatives. The role applies a structured, risk-based architectural model aligned to NAV CANADA’s enterprise cyber security program, leveraging ISO/IEC 27001, IEC 62443, and ISO/IEC 27034 as foundational frameworks.
Working primarily with Enterprise Architecture, business stakeholders, solution architects, project teams, and technology owners, the Cyber Security Architect serves as the principal advisor on security architecture matters. The role establishes security guardrails, reference architectures, design patterns, and technology standards that support enterprise decision-making, innovation, and resilience. Through participation in architecture reviews, investment planning, and major transformation initiatives, the role ensures security considerations are risk-informed, clearly articulated, and aligned with enterprise objectives and architectural standards.
Internally, the Cyber Security Architect works across Enterprise Cyber Security to ensure architectural standards and technology decisions remain aligned with operational, governance, and risk management requirements. Threat intelligence, operational insights, and risk information from Cyber Security Risk & Resilience, the Cyber Security Operations Centre, and Cyber Security Programs & Governance are translated into sustainable architectural guidance and enterprise design patterns that support consistent and effective risk outcomes across the organization.
Job Description
What NAV CANADA offers you:
- Challenging, team-oriented work environment
- Competitive compensation and benefits
- Defined benefit pension plan
- Opportunities for growth and development
- Flexible work arrangements
- Diverse and inclusive workforce
Key Accountabilities
- Unify Enterprise Cyber Security technologies and architectural patterns by defining reference architectures, integration expectations, and guardrails that maximize interoperability, consistency, and enterprise-scale value.
- Define, maintain, and evolve cyber security architecture principles, patterns, and reference architectures aligned with enterprise strategy and risk tolerance.
- Apply a structured architecture model across IT, operational technology, and application environments using ISO/IEC 27001, IEC 62443, and ISO/IEC 27034.
- Identify and reduce architectural fragmentation by assessing overlaps, gaps, and inconsistencies across Enterprise Cyber Security capabilities and technologies.
- Ensure that security requirements are consistently addressed across reference architectures, solution designs, and platform implementations in alignment with recognized cybersecurity architecture workforce standards.
- Enable effective collaboration across Cyber Security Risk & Resilience, the Cyber Security Operations Centre, and Cyber Security Programs & Governance by establishing a shared architectural language and common security guardrails.
- Support the integration and adoption of Enterprise Cyber Security platforms and tools, emphasizing architectural coherence and broad interoperability over isolated implementations.
- Consume threat modelling outputs, threat intelligence, and risk context provided by specialized teams to inform architectural decision making.
- Design, recommend, or validate architectural controls and guardrails in response to identified threats, ensuring alignment with the enterprise cyber security architecture model.
- Review solution designs and architectural artifacts to ensure threat considerations are appropriately addressed through preventive, detective, and compensating controls.
- Apply operational technology-aware architectural principles informed by IEC 62443 when evaluating designs involving industrial or operational technology environments.
- Work with Enterprise Architecture to support formal architectural review processes by providing cyber security architecture input.
- Contribute to the development and maintenance of cyber security architecture standards, patterns, and supporting documentation.
- Monitor emerging technologies, threats, and industry practices to inform continuous improvement of Enterprise Cyber Security architecture.
- Demonstrate leadership through influence, collaboration, humility, and professional credibility rather than positional authority.
Job Requirements
Education:
- Degree from a recognized university or community college with specialization in computer science, systems engineering, information systems, or a related discipline; or an equivalent combination of education and experience.
Experience:
- A minimum of five years of experience in a cyber security architecture or enterprise architecture-related role.
- Experience applying security architecture principles within complex environments, including virtualization and platform technologies such as VMware or Nutanix, and hybrid cloud architectures.
- Experience participating in architectural review and design assurance processes.
- Experience working with dedicated threat modelling or risk teams and applying their outputs to architectural design and control selection.
- Demonstrated experience communicating complex technical concepts to diverse technical and non-technical audiences.
Knowledge:
- Strong knowledge of cyber security architecture frameworks and standards, including ISO/IEC 27001, IEC 62443, and ISO/IEC 27034.
- Knowledge of enterprise IT, operational technology, cloud, and application security considerations.
- Knowledge of secure system development lifecycles and modern delivery practices.
- Knowledge of cyber risk management and security governance models.
Abilities:
- Ability to analyze complex architectures and assess cyber security and risk implications.
- Ability to translate threat and risk context into clear architectural controls and guardrails.
- Ability to communicate clearly through written documentation and verbal presentations.
- Ability to influence outcomes across multiple stakeholder groups without direct authority.
- Ability to exercise sound judgment, flexibility, and humility when navigating competing priorities.
Personal Suitability:
- Demonstrated integrity, accountability, and professional judgment.
- Strong interpersonal, collaborative, and relationship-building skills.
- Strategic mindset and organizational awareness within a regulated, safety-critical environment.
Working conditions:
- Hybrid position with a minimum of three days per week on site.
- Travel may be required.
NAV CANADA is committed to building a skilled, diverse workforce reflective of Canadian society. If you do not believe that you match every job requirement listed on this job posting, we still encourage you to apply. NAV CANADA encourages a culture of learning and growth, and recognizes that although some technical skills are mandatory, many others can be taught.
Our Company strives to create an inclusive and barrier-free selection process and work environment. If you require accommodations during this competition process, please ensure that you inform the interview coordinator or hiring manager of any accommodation measures you may require. NAV CANADA will provide accommodations throughout the recruitment and selection process to applicants with disabilities as required.
The successful candidate must meet the security requirement of the position and be legally able to work in Canada.
We thank all applicants for their interest; only those selected for next steps will be contacted.
-