You are on page 1of 6

Page 1

Print Date: 08/10/2015

Position Description Report (PDR) - AMA JE Master TEMPLATE


Position Information
Profile ID

1693607

JDR Profile
Description

Lead, Cluster Service Engage

Profile Status

Active

Status Date

2013-10-20

Position Title

Lead, Cluster Service Engageme

Position Codes

00145738

Ministry

Treasury Board Secretariat

Department

636281

Job Location

9131604

Bargaining Unit

Assoc of Mgt Adm Prof Emps Ont

Manager's
Position Title

Business Relationship Manager

Class Code

6A003

Manager's
Position Code

00247929

Class Title

InformationTechnology06

Security
Clearance

ESRA#

Job Description Information


Job Code Schedule Hrs
Job Schedule 6 (36.25 Hours Minimum)

Seasonal Work Period:

Pos Supervised/Group Lead


No. of Positions or Employees
No. of Positions: 0
No. of Employees: 0

PURPOSE
Purpose

- To provide leadership and expertise to ministries in the implementation and coordination of corporate I&IT security strategy in support of mission
critical systems.
- To develop and implement corporate IT security strategies and facilitate OPS-wide security requirements through corporate/cluster ministry initiatives.

Key Responsibilities

1. Security Program, Policy Development and Implementation


- Leads the establishment and implementation of comprehensive security programs to prevent unauthorized access to information, information
technology and other sensitive assets of the Ministry; analyzes and evaluates contractual agreements between client ministries/agencies, third parties,
contractors and vendors to ensure agreements include appropriate security, compliance and confidentiality clauses.
- Develops and implements I&IT Cluster operational policies, strategies and procedures for security programs, ensuring compliance with corporate
objectives and the diverse security and business requirements of client Ministries for emergency responses, threat risk and vulnerability assessments;
coordinates forensic reviews of the use of I&IT resources.
This document is a copy of the current, approved job description from the OPS Job Description Repository (JDR) maintained by the Ministry of Government
Services effective as of the approval dates

Page 2

Print Date: 08/10/2015

- Develops communication materials and protocols to ensure prompt collection and dissemination of security information, advice and conduct of security
awareness and education; develop and implement incident reporting procedures within I&IT Cluster to record and report information for OPS corporate
security; provide input into development of corporate security policies.
2. Security Liaison and Advice
- Maintain on-going liaison with IT corporate security staff and senior client ministry program management to facilitate working relationships on all
security planning, implementation and management matters by assessing security needs and assisting asset custodians in the identification, design,
and implementation of security measures.
- Provides I&IT Cluster leadership to project teams in mission critical risk assessments and business continuity planning.
- Prepares research, evaluation and statistical reports for client management and corporate security, such as cluster statistical security incident reports
and technology reviews.
-

FACTORS
Knowledge / Skill

Knowledge of and skills in:


- Project planning and control methods, techniques, tools, current software, best practices, project life cycle methodologies, standards and policies to
lead, coordinate, assist and support medium-large I&IT projects and project components.
- Quality Assurance and Quality Control processes, policies, techniques, tools, best practices, and standards.
- OPS-wide, Cluster and related enterprise and common infrastructure architectural policies, procedures and standards.
- Information handling technology, including information processing, storage, and accessibility, industry-wide standards, protocols and functionality for
I&IT products including hardware, software, networks, middleware, and business intelligence tools.
- Ministry programs/services and policy development processes.
- Operational planning and development to implement and monitor operational project management policies and procedures.
- Written and oral communication techniques to prepare and present reports, including business cases and MB20 submissions, project plans, status
reports and planning documents, system models and artifacts, and operational policies.

Interpersonal / Influencing Skill

- Advisory skills to consult Cluster and Ministry client managers on security practices and program options.
- Presentation and facilitation skills to present information, options and recommendations to diverse audiences.
- Persuasion and negotiating skills to elicit support from multiple levels of the organization for new initiatives.
- Mediation skills to reconcile significant and historically diverse viewpoints and agreements between stakeholders with divergent objectives.

This document is a copy of the current, approved job description from the OPS Job Description Repository (JDR) maintained by the Ministry of Government
Services effective as of the approval dates

Page 3

Print Date: 08/10/2015

Analyzing / Problem Solving Skill

Analyzing and problem solving skills to:


- Evaluate incident management scenarios, operational policy requirements, identify options and make recommendations on both general and specific
security matters.
- Conduct security reviews, provide risk assessments and options to manage risks within program budgets.
- Assess differing security needs and business requirements, and conduct forensic reviews within the broad framework of the corporate IT security
strategy.

Decision Making / Responsibility

Responsible for:
- Developing and implementing I&IT Cluster operational policies for security programs, ensuring security and business requirements of client
organizations are met; coordinating and conducting forensic reviews of IT assets.
- Providing expertise and guidance within the Cluster and to client management on security planning, assessing security needs and assisting asset
custodians in the identification, design, and implementation of security measures and programs.
Has latitude to establish and implement a comprehensive security program to prevent unauthorized access to information, information technology
and/or other sensitive assets of the Ministry to meet corporate I & IT security requirements.
Decisions are guided by corporate I&IT security strategy framework, corporate security policies, OPS administrative policies and procedures and
industry I&IT trends and standards. Risk management recommendations and security advice could impact on data integrity and system costs.

Contacts / Stakeholders

- Ministry senior management/client managers to educate, advise, consult, obtain direction, and provide recommendations on general and specific
security matters.
- Senior Cluster managers to provide briefing and obtain direction.
- I&IT Cluster managers and staff to provide technical guidance and direction on security policies, procedures and processes.

Guidance / Supervision

- Provides guidance, leadership and technical advice to I&IT Security staff to direct and coordinate work, establish priorities, and monitor activities in
support of the attainment of operational results
-

This document is a copy of the current, approved job description from the OPS Job Description Repository (JDR) maintained by the Ministry of Government
Services effective as of the approval dates

Page 4

Print Date: 08/10/2015

DEMANDS AND PRESSURES


Work Demands

Unexpected changes to deadlines; tight time pressures; conflicting work demands; immediate response to security alerts that often lead to unexpected
work demands on short notice.

Mental / Sensory

- Continuous need to concentrate when reviewing and reading materials, attending meetings and dealing with security alerts.

Conditions / Environment

Work is performed in a typical office environment.

Rating
Rating

The Lead, Cluster Service Engageme position is rated at: 6

Evaluation
Evaluation

The Cluster Security Officer is rated at 6.


The position provides leadership and expertise to ministries in the implementation and coordination of corporate I&IT security strategy in support of
mission critical systems; and develops and implements corporate IT security strategies and facilitate OPS-wide security requirements through
corporate/cluster ministry initiatives.

Key factors affecting the overall rating include analyzing/problem solving, decision making/responsibility, contacts/stakeholders and
demands/pressures.

FACTORS TYPICAL OF LEVEL

In analyzing/problem solving, the position requires evaluative thinking to evaluate security needs and business requirements; to conduct forensic
reviews; and to evaluate incident management scenarios and operational policy requirements, identify options and develop recommendations.
Significant analysis and interpretation are required to provide risk assessments and options to manage risks within program budgets and to conduct
security reviews, to identify the best course of action among sometimes potentially conflicting alternatives. In decision making/responsibility, the
position has latitude to establish new courses of action, i.e., a comprehensive security program, and to manage associated risks, taking into
consideration the immediate and long-term picture. The position develops and implements related operational strategies, policies and procedures. The
position has contact with senior management to obtain direction and provide briefings, and with cluster/ministry client managers to build and maintain
relationships and to provide advice, technical guidance, direction and information. The work involves unexpected changes to deadlines, tight time

This document is a copy of the current, approved job description from the OPS Job Description Repository (JDR) maintained by the Ministry of Government
Services effective as of the approval dates

Page 5

Print Date: 08/10/2015

pressures, conflicting and unexpected work demands, e.g., immediate response to security alerts. Heightened concentration is required when dealing
with security alerts.

FACTORS STRONGER THAN

The job requires knowledge and understanding of diverse processes, including I&IT security strategy, architecture and tools; privacy legislation; client
business activities and systems; and threat and risk analysis; in order to develop and implement and integrated corporate I&IT security strategy. The
position requires skill to understand the impact of the security strategy and program on policies and on client program delivery; and to develop
enterprise-wide security solutions.
The position provides leadership, guidance and technical advice to I&IT security staff and project teams to direct and coordinate work and monitor
program implementation.

FACTORS WEAKER THAN

The position requires advisory skills to consult with and advise cluster/ministry client managers. Mediation skills are required to reconcile
different/opposing viewpoints and/or positions of stakeholders. The work is performed in an office environment.

Union Codes
Union Codes A: AMAPCEO

Class Allocation
Job Code and Title
Jobcode Title: InformationTechnology06
Jobcode: 6A003

This document is a copy of the current, approved job description from the OPS Job Description Repository (JDR) maintained by the Ministry of Government
Services effective as of the approval dates

Page 6

Print Date: 08/10/2015

This document is a copy of the current, approved job description from the OPS Job Description Repository (JDR) maintained by the Ministry of Government
Services effective as of the approval dates

You might also like