Senior Consultant, Governance, Risk
7 days ago
About Us
We are a premier cybersecurity consultancy, blending advanced offensive and defensive strategies to safeguard our customers.
With a team known for its contributions to cybersecurity research at platforms like Black Hat and DEF CON, we excel at identifying and mitigating sophisticated threats. Large enterprises from a range of industries trust us for advanced adversarial emulation and for critical support in managing their cyber frameworks. Governments trust us with classified projects, relying on our precision and discretion to handle sensitive information securely.
We're a small group that makes a big impact. Our deep technical expertise and our commitment to clients continues to fuel our success, and with success comes growth – we're currently searching for a Senior GRC Consultant with a strong cybersecurity consulting background…
Role Profile
In this position your mandate is to ensure that our clients meet the stringent cybersecurity standards set by regulatory bodies in their industries and jurisdictions. Working remotely, you'll advise clients on best practices, develop work plans, harness resources, and ultimately drive engagements to completion.
This is a challenging role, but also an outstanding opportunity to join an accelerating startup in a position that's crucial to the company's continued success.
Key Responsibilities
- Provide guidance and support to client organizations throughout their cybersecurity maturity journey, helping them to build robust cybersecurity roadmaps.
- Work with clients to design and implement right-sized cybersecurity controls in line with global industry, sector, and regulatory frameworks and standards.
- Collaborate with clients' teams to develop and implement risk treatment methodologies and plans necessary to achieve and maintain their program compliance.
- Clearly articulate cybersecurity requirements to client organizations' employees of all levels to ensure understanding and senior leadership sponsorship.
- Assist organizations with the review and update of existing security policies and procedures to align with evolving requirements and best practices in cybersecurity.
- Prepare detailed reports on the status of an organization's cybersecurity compliance. Prepare and deliver thoughtful, insightful, and professional presentations to clients and internal Malleum stakeholders.
- Keep abreast of the latest cybersecurity threats and trends, as well as updates to the relevant industry standards such as the CMMC framework.
- Achieve utilization targets, complete projects on time and budget, and meet quality standards.
- Study, learn, test, document, execute and seek to continuously improve scalable consulting services processes to effectively deliver customer engagements while achieving a high level of customer satisfaction.
- Execute project planning, scheduling, and other coordination of internal and client resources to conduct interviews, meetings, and presentations.
- Develop a thorough understanding of our solution and service offerings, sales process, marketing materials, contract and statement of work (SOW) structure, methodologies, delivery standards, work tools, and processes.
- Pursue additional education and stay current on best practices, technical skills, and tools related to the position's duties.
Candidate Profile
We're looking for a star. As an ideal candidate you're a natural consultant: driven, highly organized, autonomous and analytical, with outstanding communication and interpersonal skills, and the ability to quickly establish your credibility and build trusting relationships with clients.
You thrive under pressure, you learn fast, and your expertise stretches beyond typical GRC work into the implementation of cybersecurity controls to support clients' continuous improvement efforts.
It is essential that you fulfill the requirements to acquire a SECRET level II security clearance.
Key Qualifications
- Post-secondary education in information technology, computer science, or equivalent combination of education and experience.
- 5+ years of experience in IT security, risk management, or compliance.
- Current certification as a Registered Practitioner Advanced (RPA) or Registered Practitioner (RP) is an asset. The ability to achieve a Registered Practitioner (RP) credential under the CMMC version 2.0 framework is essential.
- In-depth knowledge of the CMMC framework, NIST SP 800-171, and DFARS 252.204-7012 regulations.
- Relevant professional certifications such as CISSP (mandatory), CRISC, CISA, CISM, coupled with advanced knowledge of a range of cybersecurity technologies and solutions.
- Skilled and experienced in managing projects and leading consulting engagements, with a record of delivering exceptional value to clients.
- Experience with cybersecurity systems and infrastructure design and configuration is a significant asset.
- Superior communication and presentation skills with the ability to explain complex security concepts to non-technical staff.
- Exceptional client-service orientation, with the ability to build trust and develop rapport with a broad range of client stakeholders, including Defense Industrial Base compliance and information system professionals.
- Independent and autonomous, with the drive to seek out and leverage internal resources as needed, and proactively take ownership of their work and career development.
- Excellent analysis and problem-solving skills, especially in the information systems, security, and privacy space.
- Ability to learn new subject matter and context quickly and to maintain market and subject matter awareness.
- Ability to understand SOWs, customer proposals, project notes, deliverables, and final reports; assimilate previous experience, relevant subject matter, data, facts, and results; and develop relevant questions of colleagues to hasten understanding scenarios, methodologies, processes, and "lessons learned."
-
Senior Cybersecurity Governance Consultant
18 hours ago
Canada Malleum Full timeAbout MalleumWe are a premier cybersecurity consultancy, blending advanced offensive and defensive strategies to safeguard our customers.With a team known for its contributions to cybersecurity research at platforms like Black Hat and DEF CON, we excel at identifying and mitigating sophisticated threats. Large enterprises from a range of industries trust us...
-
Sr. Governance, Risk
2 weeks ago
Canada Hitachi Cyber Full timeRejoignez l'équipe dynamique et innovante d'Hitachi Cyber en tant que spécialiste principal de la gouvernance, des risques et de la conformité et faites évoluer votre carrière. En tant que leader mondial des solutions de sécurité de l'information, nous sommes à l'avant-garde de la protection des organisations contre les cybermenaces en constante...
-
Data Governance
2 days ago
Canada Randstad Canada Full timeRole: Data Governance & Risk Manager Duration: 6+ Months Contract Location: Toronto, ON --- HYBRID ********************************************************************************************************************* Candidates MUST be located in Toronto, ON / GTA --- This is a HYBRID Role --- 3 days work from office...
-
Senior Risk and Compliance Manager
2 days ago
Canada Randstad Canada Full timeJob Description: We are seeking an experienced Senior Risk and Compliance Manager to join our team at Randstad Canada. In this role, you will be responsible for developing and implementing risk management strategies to ensure compliance with regulatory requirements.About the Role:This is a long-term contract position requiring a commitment of 6+ months.The...
-
Senior Risk Associate
3 days ago
Canada Opus Fund Services Full timeWhy Opus?At Opus, integrity isn't just a principle. It's how we do business. As an independently owned company operating in seven countries, we've built our success by staying true to our values: questioning everything, embracing change, building not buying, winning together, and doing the right thing. Our employees see the difference - we're a certified...
-
Executive Advisor, Governance, Risk
4 weeks ago
Canada Malleum Full timeAbout UsWe are a premier cybersecurity consultancy, blending advanced offensive and defensive strategies to safeguard our customers.With a team known for its contributions to cybersecurity research at platforms like Black Hat and DEF CON, we excel at identifying and mitigating sophisticated threats. Large enterprises from a range of industries trust us for...
-
Azure Purview Data Governance Consultant
4 days ago
on, canada | ca Innovim Technology Solutions Full timeTitle: Azure Purview Data Governance Consultant Location: Toronto or London, ON (hybrid Mode) Duration: Long Term Contract Note: (Canadian Citizens / PR holders in Canada for more than 5 years) as they need to get ProB clearance. Job Summary: We are seeking a highly skilled Sr Consultant with 10 to 14 years of experience in Data Governance Functional,...
-
Security Analyst, Governance, Risk
4 days ago
Canada Jobber Full timeWe're looking for a Security Analyst- GRC to be part of our Security department at Jobber. This role is ideal for entry-to-intermediate level candidates in the security, governance, risk and compliance space. This opportunity fits those earlier in their security career, new graduates with internship experience, or those looking to pivot into...
-
Data Governance Strategist
2 days ago
Canada Randstad Canada Full timeRole: As a Senior Risk and Compliance Manager, you will be responsible for overseeing the development and implementation of risk management strategies to ensure compliance with regulatory requirements.Duration: This is a long-term contract position that requires a commitment of 6+ months. The role is based in Toronto, ON, and involves working in a hybrid...
-
Canada Saransh Inc Full timeTitle: Senior ServiceNow Delivery Manager/ConsultantLocation: Remote – Canada / USA (EST time zone)Job Type: ContractNote:Canada preferred, EST time zone. But if some from US, can consider them too.Contract duration - Till year end with possibility of extensionStart: ASAPAbout the Role:We are looking for an experienced Enterprise Service Management (ESM)...
-
Senior NetSuite Consultant
7 days ago
Canada Centrilogic Full timeSenior NetSuite Consultant Centrilogic is a leading NetSuite Alliance partner, specializing in ERP and Technology solutions for non-profits, healthcare, municipal governments, software, general business, and high-tech industries. We help organizations streamline operations, improve financial visibility, and achieve digital transformation through NetSuite's...
-
Canada Randstad Canada Full timeOverview: At Randstad Canada, we are committed to providing our clients with innovative solutions to their workforce challenges. As a Senior Risk and Compliance Manager, you will play a key role in ensuring that our clients' businesses are protected from risk and that they comply with regulatory requirements.About the Position:This is a long-term contract...
-
Risk Control Consultant
7 days ago
Canada Aon Full timeConsultant, Risk Control Do you enjoy consulting with internal and external clients, contractors, regulatory authorities and engineers on risk control matters? Are you interested in being involved in the methodical identification, evaluation, and mitigation of various risk factors (fire, natural hazard, liability, etc.) to reduce an organization's potential...
-
Canada Malleum Full timeAbout MalleumWe are a leading cybersecurity consultancy that leverages cutting-edge offensive and defensive strategies to safeguard our clients' assets.Our team, known for its contributions to cybersecurity research at esteemed platforms like Black Hat and DEF CON, excels at identifying and mitigating sophisticated threats. Large enterprises from various...
-
Senior Business Consultant
4 weeks ago
Canada TAG HR Full timeAre you an experienced Business Consultant looking for a fully remote, 60-day contract ? Our client, a federal government department, is seeking a bilingual professional (English & French) with expertise in workplace assessments to conduct an in-depth evaluation of an organizational work unit. Read on and apply today About You To succeed in this role,...
-
Canada Oracle Full timePrincipal Solution Sales Consultant, Government and Education-22000CEZ **Applicants are required to read, write, and speak the following languages***: English **Preferred Qualifications** **Oracle Government & Education | **Canada** | Principal Solution **Sales Consultant** **This role is remote based and covers **Canada** - up to **25**% travel** Do...
-
Market Risk Specialist
7 days ago
Canada Avanciers Inc. Full timeAvanciers is hiring Market Risk Consultant at Canada remote for one of our Fortune 500 clients. This is a Full time role with the client. Benefits will be covered by the Client.Job Title: Market Risk ConsultantLocation: REMOTEDuration: Full timeLooking for intermediate/junior level candidates, and the candidates need to be currently working on and have...
-
Senior Pension Manager
3 weeks ago
Canada IFG - International Financial Group Full timeOur client a top insurance company, is seeking an experienced and strategic leader for the role of Senior Pension Manager, Canadian Pensions for an 18-month contract role . This position is responsible for the end-to-end management and oversight of Manulife's Canadian Defined Benefit (DB) and Defined Contribution (DC) pension plans. The ideal candidate...
-
Senior IT Consultant
2 days ago
Canada Maarut Inc Full timeSenior IT Consultant Job DescriptionWe are seeking a Senior IT Consultant to join our team at Maarut Inc. As a Senior IT Consultant, you will be responsible for providing technical guidance and expertise to clients and internal stakeholders.Key ResponsibilitiesProvide technical guidance and expertise to clients and internal stakeholdersDevelop solutions to...
-
Market Risk Specialist
6 days ago
Canada Avanciers Inc. Full timeAvanciers is hiring Market Risk Consultant at Canada remote for one of our Fortune 500 clients. This is a Full time role with the client. Benefits will be covered by the Client.Job Title: Market Risk ConsultantLocation: REMOTEDuration: Full timeLooking for intermediate/junior level candidates, and the candidates need to be currently working on and have...