Cyber Risk Consultant

6 months ago


Mississauga, Canada Control Gap Inc. Full time

**Cyber Risk Consultant**

We’re looking for a talented Cyber Risk Consultant to grow our team. If your passion lies in understanding and navigating the complex landscape of cyber threats through a lens of advanced risk assessment and mitigation strategies, we have an excellent opportunity for you.

As a key member of our team, you will be actively involved in conducting risk, privacy, and cybersecurity assessments, assisting our high-profile clients in identifying risks, enhancing their security posture, and developing robust strategies to mitigate potential cyber threats.

We believe in fostering a culture of continuous learning and professional development, providing opportunities for you to expand your expertise in cybersecurity, privacy, and risk management. Together, we will tackle challenging projects, innovate solutions, and achieve excellence in our field, ensuring that as our team grows, you do too.

**Key Responsibilities**:

- Conduct information security gap, maturity, and threat risk assessments (e.g., NIST CSF, HITRUST CSF, CIS CSC, etc.).
- Collect information security control evidence from third-party vendors to facilitate the process of conducting third-party risk assessments for our clients.
- Conduct in-depth analysis of business, financial, and IT systems, alongside other data processing systems, to identify technology and privacy risks and provide recommendations for improvements and risk treatment.
- Develop professional reports, providing comprehensive insights into assessment findings, detailed risk information, and expert advice on remediation or risk reduction and treatment strategies.
- Assist in the co-ordination and documentation of the IT risk control libraries for third-party and threat risk assessments.
- Work collaboratively with the team to strategize engagements, formulate project timelines and requirements, conduct needs analysis, and provide support for other project planning activities.
- Maintain up-to-date knowledge of security threats, industry trends, GRC tools, processes, and technologies.
- Travel to company offices and client locations across Canada.

**Technical Skills**:

- Good understanding of and hands-on experience in risk management disciplines, such as IT risk, internal audit, general IT controls, and SOC 2 assessments.
- Good understanding of cloud service provider security frameworks and configuration best practices such as AWS Shared Responsibility Model, Azure Security Benchmarks, CSA CCM, etc.
- Good understanding of industry regulations and standards, such as NIST SP 800-53, NIST CSF, ISO 27001, HITRUST CSF, CIS benchmarks, etc.
- Knowledge of emerging attacker trends, attack methodologies, and response techniques to ensure robust and up-to-date security measures would be an asset.
- Knowledge and experience working with SOC audit reports.
- Good understanding of network systems configurations, Unix, Linux, Windows, Cloud native and database server configurations.

**Education and Work Experience**:

- Degree in Information Technology, Information Systems, Information Security, or Risk Management (or equivalent work experience).
- Minimum 4 years of professional experience in cybersecurity, with a focus on risk assessment, security controls, and/or compliance.

**Industry Certifications**:

- Willingness to obtain industry certifications (e.g., CISSP, CRISC, CIPM, CIPT, HITRUST CCSFP, etc.).
- Industry certification in Information Security/Audit is an asset.

**Soft Skills**:

- Exceptional customer service, communication and interpersonal skills
- Strong written and verbal communication skills.
- Strong organizational skills
- Strong time management skills
- Honesty and integrity
- Dedication to providing solutions to meet or exceed client's needs and expectations
- Ability to handle challenges and project work loads

**Benefits**:

- Company paid medical and dental benefits and wellness benefits
- Company paid continuing professional education and certification maintenance
- RRSP contribution
- 4 weeks of paid vacation, with 5 weeks of paid vacation after 5 years of service
- Company team building events throughout each year
- Control Gap offers custom-built state of the art tools and a proven processes that allows our assessors to be comfortable, efficient, and organized while providing excellent audit quality.
- Flexible remote work options

**Location**:

- You must be located within reasonable travelling distance of the Control Gap Headquarters in Mississauga, Ontario, Canada.
- You must possess reliable transportation to travel to company offices and to client work sites.

**Employment Type**:

- Full-time


  • Cyber Risk Analyst

    6 months ago


    Mississauga, Canada Control Gap Inc. Full time

    **Cyber Risk Analyst** We’re looking for a talented Cyber Risk Analyst to grow our team. If your passion lies in understanding and navigating the complex landscape of cyber threats through a lens of advanced risk assessment and mitigation strategies, we have an excellent opportunity for you. As a key member of our team, you will be actively involved in...

  • Cyber Risk Analyst

    6 months ago


    Mississauga, Canada Control Gap Inc. Full time

    We’re looking for a talented Cyber Risk Analyst to grow our team. If your passion lies in understanding and navigating the complex landscape of cyber threats through a lens of advanced risk assessment and mitigation strategies, we have an excellent opportunity for you. As a key member of our team, you will be actively involved in conducting risk, privacy,...

  • Intern, Cyber Security

    6 months ago


    Mississauga, Canada MNP Full time

    What do you think of when you hear the name MNP? Most likely tax and accounting, but as one of Canada’s largest consulting organizations, we’re so much more! We’re also serious about technology. Make an impact with MNP Digital and our Cyber Security team as an **Intern, Cyber Security & Privacy.** For over 10 years, MNPs’ Cyber team has been...


  • Mississauga, Canada MNP Full time

    What do you think of when you hear the name MNP? Most likely tax and accounting, but as one of Canada’s largest consulting organizations, we’re so much more! We’re also serious about technology. Make an impact with MNP Digital as an **Intern or Co-op Student **for our Cyber Security & Privacy team. For over 10 years, MNPs’ Cyber team has been...


  • Mississauga, Ontario, Canada Mnp Llp Full time

    At MNP LLP, we're not just about tax and accounting - we're a consulting organization that's serious about technology. As a SOC Analyst in our Managed Services Security team, you'll play a critical role in helping clients take a proactive approach to cyber crime and stay ahead of the curve when it comes to new technologies and innovations.This is an exciting...


  • Mississauga, Ontario, Canada Jace Holdings Ltd. Full time

    At Jace Holdings Ltd., we're committed to excellence and community impact. As a leading company among Canada's Top 100 employers, we're seeking an exceptional Cyber Security Operations Manager to join our team.The successful candidate will lead a high-performing team of Cyber Security professionals, overseeing all facets of Cyber Security and technology....


  • Mississauga, Canada Superior Propane Full time

    **What we will offer you**: **Culture**: Join a supportive and inclusive work environment where teamwork, respect, and open communication are at the core of everything we do. **Opportunity**: A continuous focus on professional development with many opportunities for training & career growth. **Health & Wellness**: Competitive health benefits right from the...

  • Cyber Security Expert

    1 month ago


    Mississauga, Ontario, Canada Konica Minolta Business Solutions U.S.A., Inc. Full time

    Cyber Security Analyst RoleThe Cyber Security Analyst will be responsible for daily tasks and maintenance to security related systems as necessary. This role involves working closely with clients to manage security requests and incidents.Key ResponsibilitiesIncident Management: Manage security requests and incidents, communicating continuously with...

  • Data & Risk Manager

    3 weeks ago


    Mississauga, Canada AstraZeneca GmbH Full time

    p>Head of Data & Information RiskIntroduction to Role:Join AstraZeneca's Enterprise Data Office (EDO) as the Head of Data & Information Risk. In this role, you will work closely with partners across AstraZeneca to establish and drive an enterprise approach to data processes, policies, standards, and working practices. This is an opportunity to be empowered...


  • Mississauga, Canada Revay and Associates Limited Full time

    p>Revay and Associates Limited (Revay) is Canada’s consultant of choice in construction dispute resolution, project management, project controls and risk management services. p>Revay is seeking a bright and motivated senior consultant with experience in the Canadian construction industry to join our growing team in Toronto. The senior-level candidate...


  • Mississauga, Ontario, Canada CDW Full time

    Cyber Security Analyst Position at CDWWe are seeking a skilled Cyber Security Analyst to join our team at CDW. As a key member of our security team, you will be responsible for investigating security incidents, analyzing threats, and providing recommendations to our clients.Key Responsibilities:Monitor and analyze security alerts on our SIEM/EDR/XDR tools...


  • Mississauga, Canada Community Trust Full time

    Senior Manager, IT Risk & Governance Oversight Mississauga, ON, Canada Req #2634 Friday, June 7, 2024 Questrade Financial Group (QFG) of Companies is committed to helping our customers become much more financially successful and secure. We are everything a traditional financial institution is not. At QFG, you will be constantly moving forward, bringing...


  • Mississauga, Ontario, Canada Citibank Full time

    Job Title: Risk and Control ConsultantAbout CitiCiti, the leading global bank, is seeking a highly skilled Risk and Control Consultant to join its Internal Audit team. As a key member of our team, you will play a critical role in ensuring that Citi meets audit standards and regulations.Job SummaryThe Risk and Control Consultant is responsible for performing...


  • Mississauga, Ontario, Canada CDW Full time

    At CDW, we're a leading technology solutions provider to businesses, governments, education institutions, and healthcare organizations across the globe. Our expertise spans the full spectrum of IT needs, from infrastructure to cybersecurity.We're seeking a highly skilled Cyber Security Specialist to join our team. As a key member of our security operations...

  • Head of Data

    3 weeks ago


    Mississauga, Canada AstraZeneca GmbH Full time

    Head of Data & Information RiskIntroduction to Role:Join AstraZeneca's Enterprise Data Office (EDO) as the Head of Data & Information Risk. In this role, you will work closely with partners across AstraZeneca to establish and drive an enterprise approach to data processes, policies, standards, and working practices. This is an opportunity to be empowered to...

  • Manager, IT Risk

    8 months ago


    Mississauga, Canada Questrade Financial Group Full time

    Questrade Financial Group (QFG) of Companies is committed to helping our customers become much more financially successful and secure. We are everything a traditional financial institution is not. At QFG, you will be constantly moving forward, bringing the future of fintech into existence. You will be a part of a collaborative team that cares deeply about...


  • Mississauga, Ontario, Canada Konica Minolta Full time

    Job DescriptionThis role is responsible for performing daily tasks and maintenance to security-related systems as necessary. The Cyber Security Analyst will be responsible for triaging and completing tickets submitted by clients of the organization.Responsibilities:Manage security requests and incidents while continuously communicating with clientsTake part...


  • Mississauga, Canada CB Canada Full time

    Cyber Security Program Lead/Project Manager On behalf of our client in the Telco Sector, PROCOM is looking for a Cyber Security Program Lead/Project Manager. Cyber Security Program Lead/Project Manager – Job Description Lead, track and influence the SOC transformation program (automation prioritization and security controls roadmap) from a planning,...


  • Mississauga, Ontario, Canada RailWorks Corporation Full time

    About Us At RailWorks Corporation, we are a leading provider of track and transit system expertise with over 100 years of experience. We take on challenging projects every day and our success relies on a collaborative and open-minded work environment that encourages teamwork, positivity, and ingenuity. We are committed to creating a culture of trust,...


  • Mississauga, Canada Jace Holdings Ltd. Full time

    Cyber Security Specialist (12 months contract)Requisition ID: 184649Career Group: Corporate Office CareersJob Category: IT Cyber Security OperationsTravel Requirements: 0 - 10%Job Type: Full-TimeCountry: Canada (CA)Province: Ontario; Alberta; Nova ScotiaCity: Mississauga / Calgary / StellartonEmbark on a rewarding career with Sobeys Inc., where your talents...