IT Security Risk Analyst

5 days ago


Richmond Hill, Canada Onico Solutions Full time

The IT Security Risk Analyst supports the Information Security Risk Management and Governance programs. They work with technology and business stakeholders to identify Information Security risks, conduct risk assessments, recommend risks mitigation strategies, and monitor identified risks throughout its lifecycle. They also update and monitor Key Performance Indicators (KPI’s), Key Risk Indicators (KRI’s), Service Level Agreements (SLA’s), and other documentation related to the Information Security program. They contribute to the creation of management reporting to convey the status of Information Security risks and governance metrics across the organization.

This role requires an experienced subject matter expert who has in-depth understanding of Information Security controls across a broad range of technologies and platforms.

Responsibilities

- Identification, assessment and monitoring of Information Security risks.
- Recommendation of compensating controls to reduce inherited risk to an acceptable level.
- Development and maintenance of Information Security risk and governance KPI’s, KRI’s, and SLA’s.
- Support for security audits, prioritization and remediation of identified gaps.
- Creation and maintenance of Information Security policies and other risk and governance documentation
- Implementation and operation of risk and governance technology tools and processes
- Collaboration with different stakeholders to manage Information Security risks in a timely matter

Requirements

- 3+ years of experience with IT Security Risk Management/Risk Assessments
- 3+ year of experience with IT Security policies, standards, procedures and guidelines
- Experience working with and managing external vendors
- Strong knowledge of Information Security controls for Mobile, IoT, Cloud, Applications, Network and System infrastructure
- Excellent knowledge of security technologies which are commonly used in enterprises to protect information systems, both on premise and in the Cloud. Hands-on design, implementation and management of variety security technologies are strong assets.
- Working knowledge of Information Security and Risk Management frameworks like ISO27001, ISO27005 and NIST CSF and NIST 800-30
- Understanding of legal and regulatory compliance standards and requirements like PCI-DSS and PIPEDA
- CISSP, CISA, CRISC and other security certifications are a strong asset.

This is a permanent position located in Toronto (work from home until deemed safe).

#J-18808-Ljbffr



  • Richmond Hill, Canada Onico Solutions Full time

    A leading IT security firm in Richmond Hill is looking for an IT Security Risk Analyst to support their Information Security Risk Management programs. The role requires expertise in risk assessments and strong knowledge of security technologies. Responsibilities include identifying risks, recommending mitigation strategies, and collaborating with...


  • Richmond Hill, Canada City of Richmond Hill Full time

    Posting Id - 3044 - Department - Corporate and Financial Services - Division - Information Technology - Rate of Pay - $103,967.00 -$120,603.00 Annual - Job Type - Permanent Full Time - Replacement/New Position - New Hire - Posting Type - Internal and External - Posting Date - 07/07/2025 - Application Deadline - 07/21/2025 **Position Summary**: Reporting to...

  • IT Security Analyst

    1 week ago


    Richmond Hill, Canada Onico Solutions Full time

    The IT Security Analyst is responsible for managing risk related to information technology (IT) security consistent with our client’s business objectives. Responsibilities - Develop and update information security frameworks (policies, guidelines and standards) - Perform security threat and risk analysis (TRA) - Evaluate, document and follow up on...


  • Richmond Hill, Canada Open Text Corporation Full time

    **Hiring Manager**: Michael Deis **Talent Acquisition Advisor**: Jess Bougie **Job Code Level**: IYP5 Refer Your Friends! Security Operations is the team that handles day to day protection of our environment and the tools that support them. This team takes care of identifying security weaknesses and facilitates remediation efforts. Additionally, this team...


  • Richmond Hill, Canada OpenText Full time

    AI-First. Future-Driven. Human-Centered. At OpenText, AI is at the heart of everything we do—powering innovation, transforming work, and empowering digital knowledge workers. We're hiring talent that AI can't replace to help us shape the future of information management. Join us. Global Information Security (GIS) leverages our people, processes and...

  • Sr. Security Analyst

    4 weeks ago


    Richmond Hill, Canada OpenText Full time

    Join to apply for the Sr. Security Analyst role at OpenText. About OpenTextOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the world, tackle...

  • Sr. Security Analyst

    4 weeks ago


    Richmond Hill, Canada OpenText Full time

    Join to apply for the Sr. Security Analyst role at OpenText. About OpenTextOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the world, tackle...

  • Security Analyst

    3 weeks ago


    Richmond Hill, Canada Onico Solutions Full time

    The Security Analyst is responsible for our client’s computer, network and cyber security. The Security Analyst administers all aspects of information security and is responsible for the identification, investigation and resolution of security events; as well as for conducting vulnerability audits and taking timely action to remediate findings. The...


  • Richmond Hill, Canada Onico Solutions Full time

    The Information Security Analyst is responsible for the identification, investigation and resolution of security events across networks and Cloud environments; as well as for conducting vulnerability audits and taking timely action to remediate findings. They are involved in the design, configuration and implementation of security solutions. They are also...


  • Richmond Hill, Canada OpenText Full time

    A global leader in information management is seeking a Sr. Security Analyst to monitor and protect information assets, collaborate with internal teams, and drive innovative security solutions. Candidates must have at least 3 years of experience in cybersecurity governance, excellent communication skills, and relevant certifications. A role that offers the...