Governance, Risk
4 weeks ago
Governance, Risk & Compliance Consultant About Us We are a premier cybersecurity consultancy, blending advanced offensive and defensive strategies to safeguard our customers. With a team known for its contributions to cybersecurity research at platforms like Black Hat and DEF CON, we excel at identifying and mitigating sophisticated threats. Large enterprises trust us for advanced adversarial emulation and for critical support in managing their cyber frameworks. Governments trust us with classified projects, relying on our precision and discretion to handle sensitive information securely. We’re a small group that makes a big impact, and we’re currently searching for a GRC Consultant with a strong cybersecurity consulting background. Role Profile In this position your mandate is to ensure that our clients meet the stringent cybersecurity standards set by regulatory bodies. Working remotely, you’ll advise clients on best practices, develop work plans, harness resources, and drive engagements to completion. Key Responsibilities Provide guidance and support to client organizations throughout their cybersecurity maturity journey, helping them to build robust cybersecurity roadmaps. Work with clients to design and implement right-sized cybersecurity controls in line with global industry, sector, and regulatory frameworks and standards. Collaborate with clients’ teams to develop and implement risk treatment methodologies and plans necessary to achieve and maintain their program compliance. Clearly articulate cybersecurity requirements to client organizations’ employees of all levels to ensure understanding and senior leadership sponsorship. Assist organizations with the review and update of existing security policies and procedures to align with evolving requirements and best practices in cybersecurity. Prepare detailed reports on the status of an organization’s cybersecurity compliance. Prepare and deliver thoughtful, insightful, and professional presentations to clients and internal stakeholders. Keep abreast of the latest cybersecurity threats and trends, as well as updates to the relevant industry standards such as the CMMC framework. Achieve utilization targets, complete projects on time and budget, and meet quality standards. Study, learn, test, document, execute and continuously improve scalable consulting services processes to effectively deliver customer engagements while achieving a high level of customer satisfaction. Execute project planning, scheduling, and other coordination of internal and client resources to conduct interviews, meetings, and presentations. Develop a thorough understanding of our solution and service offerings, sales process, marketing materials, contract and statement of work (SOW) structure, methodologies, delivery standards, work tools, and processes. Pursue additional education and stay current on best practices, technical skills, and tools related to the position’s duties. Candidate Profile We’re looking for a star consultant: driven, highly organized, autonomous, and analytical, with outstanding communication and interpersonal skills, and the ability to quickly establish credibility and build trusting relationships with clients. You thrive under pressure, learn fast, and your expertise stretches beyond typical GRC work into the implementation of cybersecurity controls to support continuous improvement efforts. It is essential that you fulfill the requirements to acquire a SECRET level II security clearance. Key Qualifications Post-secondary education in information technology, computer science, or equivalent combination of education and experience. 5‑8 years of experience in IT security, risk management, or compliance. Current certification as a Registered Practitioner Advanced (RPA) or Registered Practitioner (RP) is an asset. The ability to achieve a Registered Practitioner (RP) credential under the CMMC version 2.0 framework is essential. In-depth knowledge of the CMMC framework, NIST SP 800‑171, and DFARS 252.204‑7012 regulations. Relevant professional certifications such as CISSP, CRISC, CISA, CISM, coupled with advanced knowledge of a range of cybersecurity technologies and solutions. Skilled and experienced in managing projects and leading consulting engagements, with a record of delivering exceptional value to clients. Experience with cybersecurity systems and infrastructure design and configuration is a significant asset.> Superior communication and presentation skills with the ability to explain complex security concepts to non-technical staff. Exceptional client-service orientation, with the ability to build trust and develop rapport with a broad range of client stakeholders, including Defense Industrial Base compliance and information system professionals. Independent and autonomous, with the drive to seek out and leverage internal resources as needed, and proactively take ownership of their work and career development. Excellent analysis and problem-solving skills, especially in the information systems, security, and privacy space. Ability to learn new subject matter and context quickly and to maintain market and subject matter awareness. Ability to understand SOWs, customer proposals, project notes, deliverables, and final reports; assimilate previous experience, relevant subject matter, data, facts, and results; and develop relevant questions of colleagues to hasten understanding scenarios, methodologies, processes, and lessons learned. #J-18808-Ljbffr
-
Manager, Governance Risk and Compliance
1 week ago
Ottawa, Canada KPMG Full timeOverview: We are looking for dynamic professionals to join our growing Governance, Risk and Compliance Services (GRCS) practice at the Manager level. Our Risk Services - Governance, Risk and Compliance Services (GRCS) professionals provide a range of risk advisory services to organizations including internal control advisory services, internal audit,...
-
Strategic Portfolio Risk
4 weeks ago
Ottawa, Canada Export Development Canada | Exportation et développement Canada Full timeA Canadian development finance institution is seeking a Principal for Portfolio Oversight & Governance. The role involves developing risk tracking metrics, assessing risk appetite, and managing key stakeholder relationships. Candidates should have a degree in Business Administration and significant experience in portfolio and credit risk management. The...
-
Strategic Portfolio Risk
4 weeks ago
Ottawa, Canada Export Development Canada | Exportation et développement Canada Full timeA Canadian development finance institution is seeking a Principal for Portfolio Oversight & Governance. The role involves developing risk tracking metrics, assessing risk appetite, and managing key stakeholder relationships. Candidates should have a degree in Business Administration and significant experience in portfolio and credit risk management. The...
-
Global Risk
4 weeks ago
Ottawa, Canada Atlas Full timeA leading global HR consulting firm is looking for a Risk & Compliance Manager to enhance governance and compliance initiatives. The role involves automating policy updates, managing vendor risk assessments, and ensuring compliance with standards such as GDPR and ISO 27001. Ideal candidates should possess a bachelor's degree and relevant experience in...
-
Global Risk
4 weeks ago
Ottawa, Canada Atlas Full timeA leading global HR consulting firm is looking for a Risk & Compliance Manager to enhance governance and compliance initiatives. The role involves automating policy updates, managing vendor risk assessments, and ensuring compliance with standards such as GDPR and ISO 27001. Ideal candidates should possess a bachelor's degree and relevant experience in...
-
Governance, Risk
4 weeks ago
Ottawa, Canada Malleum Full timeGovernance, Risk & Compliance Consultant About Us We are a premier cybersecurity consultancy, blending advanced offensive and defensive strategies to safeguard our customers. With a team known for its contributions to cybersecurity research at platforms like Black Hat and DEF CON, we excel at identifying and mitigating sophisticated threats. Large...
-
Ottawa, Ontario, Canada KPMG Full time $104,000 - $150,000 per yearOverview:You've got big plans. We have opportunities to match, and we're committed to empowering you to become a better you, no matter what you do.When you join KPMG, you'll be one of over 200,000 professionals providing audit, tax, advisory and business enablement services across 154 countries.At KPMG in Canada, we believe our differences make us stronger....
-
Remote IT Security Risk Analyst
4 weeks ago
Toronto, Montreal, Calgary, Vancouver, Edmonton, Old Toronto, Ottawa, Mississauga, Quebec, Winnipeg, Halifax, Saskatoon, Burnaby, Hamilton, Victoria, Surrey, Halton Hills, London, Regina, Markham, Brampton, Vaughan, Kelowna, Laval, Southwestern Ontario, R, Canada Onico Solutions Full timeA technology consulting company in Toronto is looking for an IT Security Risk Analyst to support their Information Security Risk Management programs. The role involves identifying and assessing security risks, developing governance documentation, and collaborating with various stakeholders. The ideal candidate has over 3 years of experience in IT Security...
-
Project Coordinator
2 weeks ago
Ottawa, Canada Risk Sciences International Full timeRisk Sciences International, Inc. (RSI) is a Canada-based, international leader in understanding, managing, and communicating risks that impact public health and safety, livelihoods, property, infrastructure, the environment and more broadly, all aspects of society, industry and government. RSI delivers professional scientific, analytical, operational and...
-
Cybersecurity Governance, Risk
4 weeks ago
Toronto, Montreal, Calgary, Vancouver, Edmonton, Old Toronto, Ottawa, Mississauga, Quebec, Winnipeg, Halifax, Saskatoon, Burnaby, Hamilton, Victoria, Surrey, Halton Hills, London, Regina, Markham, Brampton, Vaughan, Kelowna, Laval, Southwestern Ontario, R, Canada Harmonic Full timeCybersecurity Governance, Risk & Compliance SpecialistHarmonic is the worldwide leader in virtualized broadband and video delivery solutions, enabling media companies and service providers to deliver premium broadband, video streaming, and broadcast services to consumers globally.We’re building a stronger cybersecurity culture—and we need someone who’s...