Security Risk Analyst
6 months ago
**Security Risk Analyst**
**Take a central role**
The Bank of Canada has a vision to be a leading central bank—dynamic, engaged and trusted—committed to a better Canada. No other employer in the country offers you the unique opportunity to work at the very center of Canada’s economy, in an organization with significant impact on the economic and financial well-being of all Canadians. You will be challenged, energized and motivated to excel in our environment.
Building on the principles that have always guided us - excellence, integrity and respect - we strive to be forward-looking and innovative, to welcome people with diverse perspectives and talents, and to earn trust by living up to our commitments and by clearly explaining the intent of our policies and actions.
With our defined-benefit pension plan, benefits, and high flexibility for work life balance - find out more about why we are annually ranked as one of Canada's top employers: Working Here - Bank of Canada
Find out more about the next steps in our Recruitment process.
**Did you know?**
The Security Risk Oversight and Policy (SROP) team is the second line of defense in the Bank’s overall enterprise security risk management universe. The team partners with business stakeholders to oversee security risk management practices across all Bank departments. This includes oversight of information security risks, cyber and technology risks, and physical and personnel security risks.
**What you will do**
The Security Risk Analyst is a member of the SROP team within the Bank’s Corporate Security Service (CSS) department and performs security-related risk assessments relating to all the Bank’s critical assets. Following a defined enterprise security risk management approach, the analyst assists Bank business groups in identifying and assessing key risks and controls and recommends appropriate safeguards to protect the confidentiality, integrity, and availability of Bank assets. The Security Risk Analyst also applies and interprets security policies as they relate to risk management and is support the creation and lifecycle management of security policies and associated policy instruments.
Specifically, you will:
- support security risk oversight engagements, performing an in-depth assessment of security risks and controls
- test the effectiveness of security controls using several testing methodologies including tabletop exercises, site visits and red teaming exercises
- provide security advisory services to business stakeholders on completeness and effectiveness of their security controls
- write oversight engagement letters, briefing notes, and security posture reports in clear and concise business language
- support the lifecycle of the Corporate Security Policy and all associated policy instruments (creation, modification, and retirement)
**What you need to succeed**
- strong understanding of physical security risks and controls
- proven oral and written communication skills
- business relationship and/or stakeholder management skills
- ability to work well independently as well as on a team
- problem-solving, critical thinking, and analytical skills
**Nice-to-have**
- valid security and/or related certification (e.g., PSP, APP, etc.).
- knowledge of enterprise risk management approaches and practices, including the three lines of defence model
- knowledge of information security, cybersecurity, and technology risks (including frameworks such as NIST and ISO)
- knowledge of and experience with Government of Canada information technology security policies, directives, standards and guidelines (e.g., Policy on Government Security, management of information technology security, ITSG-22/33/38, Directive on Departmental Security Management)
- knowledge of and experience with Government of Canada Harmonized Threat and Risk Assessment (HTRA) methodology and other security industry standards (e.g., ISO 27001, NIST 800 series, ITSGs, ITIL, PCI)
**Your education and experience**
The position requires a Bachelor’s degree in a relevant field with a a minimum of three years of relevant security experience (i.e., physical and personnel security, policy analysis, communications, business analysis, security analysis and/or information technology security, travel security, in a public or private security function) or an equivalent combination of education and experience may be considered.
**What you need to know**
- Language requirement: English and French essential (bilingual) with a minimum starting level of functional (level 4) in second official language. Training may be provided to help reach the required level of fully functional (level 5) in second official language.
- Priority will be given to Canadian citizens and permanent residents
- Security level required: Be eligible to obtain Top Secret
- Relocation assistance may be provided, if required
- Please save a copy of the job poster. Once the closing date has passed, it will no longer
-
Student, Security Risk Analyst
6 months ago
Ottawa, Canada Bank of Canada Full time**Student, Security Risk Analyst** **Take a central role** The Bank of Canada has a vision to be a leading central bank—dynamic, engaged and trusted—committed to a better Canada. No other employer in the country offers you the unique opportunity to work at the very center of Canada’s economy, in an organization with significant impact on the economic...
-
IT Security Analyst
7 months ago
Ottawa, Canada JSI Full timePosting Details Job Details Description Key Responsibilities: • Conduct regular security assessments and risk analysis of IT assets and networks to identify and address potential vulnerabilities and threats. • Monitor network activity for security threats and breaches and investigate violations when they occur. • Install,...
-
IT Security Tra and C&a Analyst
6 months ago
Ottawa, Canada ADGA Group Consultants Inc Full time**Company Description** ADGA requires the services of an Information Technology Security TRA and C&A Analyst to work on the Identity Credential and Access Management (ICAM) team that is developing an identity solution for small departments and agencies (SDA) in the Government of Canada. The team requires an IT Security TRA and C&A Analyst to assist them in...
-
IT Security Analyst
6 months ago
Ottawa, Canada Jatom Systems Inc.-CAN Full time**Key Responsibilities**: - Conduct regular security assessments and risk analysis of IT assets and networks to identify and address potential vulnerabilities and threats. - Monitor network activity for security threats and breaches and investigate violations when they occur. - Install, configure, and manage security tools and software to ensure protection...
-
IT Security Threat and Risk Assessment and
6 months ago
Ottawa, Canada Hashmap Full time**Req ID**:261126 We are currently seeking a IT Security Threat and Risk Assessment and Certification and Accreditation Analyst to join our team in Ottawa, Ontario (CA-ON), Canada (CA). **Must perform the following**: - Review, analyze and/or apply: - Networking Protocols such as HTTP, FTP, and Telnet - Secure IT architectures fundamentals, standards,...
-
IT Security Threat and Risk Assessment and
6 months ago
Ottawa, Canada NTT DATA Full time**Req ID**: 261126 We are currently seeking a IT Security Threat and Risk Assessment and Certification and Accreditation Analyst to join our team in Ottawa, Ontario (CA-ON), Canada (CA). **Must perform the following**: - Review, analyze and/or apply: - Networking Protocols such as HTTP, FTP, and Telnet - Secure IT architectures fundamentals, standards,...
-
IT Risk Management Professional
1 week ago
Ottawa, Ontario, Canada CDA-AMC Full timeOverview">CDA-AMC, a pan-Canadian health organization, is seeking an experienced IT Risk Management Analyst to join its team. As the Senior IT Risk Management Analyst, you will play a key role in identifying, assessing, and mitigating risks to our information systems and data.">Salary">The estimated annual salary for this position ranges from $97,000 to...
-
Cyber Security Analyst
6 months ago
Ottawa, Canada CFMWS Full time**WHO WE ARE** CFMWS. A job with purpose. Our 4000+ person strong organization champions a healthy, fun, creative and active lifestyle for Canadian Armed Forces members, Veterans and their families. Help us deliver a variety of recreation and fitness programs, offer family support, organize charity events and make sure our members access retail, travel and...
-
Senior Network Security Analyst
2 weeks ago
Ottawa, Ontario, Canada S.i. Systèmes Full timeJob DescriptionOur client is seeking a seasoned Sr Network Security Analyst to lead network security impact analysis and IT security threat assessment.About the RoleAnalyze IT security threats and alerts to identify potential security risks.Conduct network security impact analysis to ensure the security and integrity of the organization's network.Develop and...
-
Security Awareness Analyst
1 month ago
Ottawa, Canada Bank of Canada Full time**Security Awareness Analyst** **Take a central role** The Bank of Canada has a vision to be a leading central bank—dynamic, engaged and trusted—committed to a better Canada. No other employer in the country offers you the unique opportunity to work at the very center of Canada’s economy, in an organization with significant impact on the economic and...
-
Security Threat and Risk Assessment Analyst
7 months ago
Ottawa, Canada CB Canada Full timeCompany DescriptionFounded in 1967, ADGA is a privately owned and operated Canadian company. We employ over 700 highly skilled team members who apply their knowledge and expertise in service delivery of advanced technology solutions for clients in the Defence, Security and Professional Services markets across Canada.Celebrating over 50 years in business, we...
-
Security Analyst
1 week ago
Ottawa, Canada Senate of Canada Full timeHUMAN RESOURCES DIRECTORATE DIRECTION DES RESSOURCES HUMAINES **Security Analyst** **Directorate**: Corporate Security **Classification**: SEN 6: $68,063 - $86,122 **Job Type**: Indeterminate Appointment (permanent, full-time) **Location**: Ottawa, Ontario, Canada **Closing Date**:Sunday, January 5, 2025 **About the Senate** The Senate plays a...
-
IT Risk
1 week ago
Ottawa, Canada CDA-AMC Full timep>154 University Ave, Toronto, ON M5H 3Y9, Canada ● 865 Carling Ave, Ottawa, ON K1S 5S8, Canada Req #119Status: Full time, indefiniteSalary range: $ 97,000 to $121,000 per yearCADTH is now Canada’s Drug Agency — a pan-Canadian health organization. We are an independent, not-for-profit organization headquartered in Ottawa, with a satellite office in...
-
Security Analyst
7 days ago
Ottawa, Canada Parliament of Canada, Senate Full timeClosing Date: Sunday, January 5, 2025 HUMAN RESOURCES DIRECTORATE DIRECTION DES RESSOURCES HUMAINES **Security Analyst** **Directorate**: Corporate Security **Classification**: SEN 6: $68,063 - $86,122 **Job Type**: Indeterminate Appointment (permanent, full-time) **Location**: Ottawa, Ontario, Canada **Closing Date**:Sunday, January 5, 2025 **About...
-
Cyber Security Analyst
6 months ago
Ottawa, Canada Hollingsgate Workforce solutions Full time**Cybersecurity Analyst (Entry to Mid-Level) - Full-Time, $50-70K** **Company**: Hollingsgate Recruitment **Location**: Ottawa, ON **Industry**: Managed Services **Salary Range**: $50,000 to $70,000 Annually **Employment Type**: Full-Time **Work Mode**: Onsite **Responsibilities**: - Monitor and manage the patching of vulnerabilities across various...
-
Third Party Risk Analyst
6 months ago
Ottawa, Canada MGIS Full timeThis hybrid position is located in Kanata, Ontario and reports to the Director of Customer Success. Work Hours: Monday - Friday - Create and deliver online information risk surveys to our clients’ third-party vendors, which would include monitoring, technical support, and final provisioning of reviewed results - Demonstrate strong customer service skills...
-
Enterprise Risk
4 months ago
Ottawa, Canada Canadian Medical Protective Association Full time**ENTERPRISE RISK **&** STRATEGY** **ANALYST** **CONTRIBUTING TO THE CMPA** Working closely with all CMPA departments, the Strategy & Program Management (SPM) department leads nimble and adaptable enterprise management processes. The core functions include strategic planning and strategic issues analysis, annual planning and performance management,...
-
Third Party Risk Analyst
6 months ago
Ottawa, Canada MGIS Full timeThis hybrid position is located in Kanata, Ontario and reports to the Director of Customer Success. Work Hours: Monday - Friday - Create and deliver online information risk surveys to our clients’ third-party vendors, which would include monitoring, technical support, and final provisioning of reviewed results - Demonstrate strong customer service skills...
-
Third Party Risk Analyst
6 months ago
Ottawa, Canada MGIS Full timeThis hybrid position is located in Kanata, Ontario and reports to the Director of Customer Success. Work Hours: Monday - Friday - Create and deliver online information risk surveys to our clients’ third-party vendors, which would include monitoring, technical support, and final provisioning of reviewed results - Demonstrate strong customer service skills...
-
Specialist, IT Security Risk Management
7 months ago
Ottawa, Canada CMHC Full time**Job Requisition ID**: 9921 **Position Status**: Permanent Full Time **Position Type**:Hybrid **Office Location**:Ottawa (ON); Calgary (AB); Montreal (QC); Toronto (ON) **Travel Requirement**: Occasional **Language Designation**: English Essential **Language Skill Levels (Read/Write/Speak)**: ZZZ About CMHC At CMHC, the work you do and the work we...