Risk Management and Compliance Expert

1 week ago


Montreal, Quebec, Canada Domtar Full time
About the Role

We are seeking a highly skilled Cybersecurity Risk Analyst to join our team at Domtar. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.

Key Responsibilities
  • Maintain and improve an IT/Security Risk Assessment Framework
  • Document IT security risk, mitigating controls and present them to risk owner for decision taking
  • Coordinate with IT compliance team to ensure compensating controls have been put in place
  • Maintain the IT risk register throughout the IT risks lifecycle
  • Perform Privacy Impact Assessments (PIA)
  • Maintain and improve 3rd party vendors assessment methodology
  • Perform 3rd party and cloud vendor security posture assessment, document the assessment and present the results to business owners
  • Review 3rd party contracts for IT security and data privacy related clauses and work in collaboration with IT Procurement and Legal teams
  • Maintain the Cloud vendor register
  • Provide vendor selection services for cybersecurity aspects to help business units select a vendor as part of RFP process
  • Manage and maintain the IT Exception Handling Process
  • Document IT Exceptions, validate the needs from exception requestors and owner, seek exception approval from Cybersecurity management
  • Document risk assessment as needed
  • Maintain the IT Exceptions register and follow-up on approved exceptions
  • Provide project advisory services to Business and IT projects on IT risk matters to ensure risk management activities during project's lifecycle
  • Occasionally provide support to project security advisory team to document project security requirements and controls to implement
  • Produce and report IT risk management KPI and KRI on a monthly basis
Requirements
  • Bachelor degree or 5 years of professional experience in Cybersecurity;
  • Minimum of 8 years' experience of security governance, risk and compliance (GRC);
  • Holds security related certifications such as CISSP, CISM, CSSP or similar an considered an asset;
  • Practical experience with implementing and/or working with IT Risk management frameworks;
  • Practical experience with performing IT Risk assessment during projects and as part of security operations;
  • Practical experience with security controls and risk mitigation measures implementation;
  • Practical experience by assessing 3rd party vendor risks and reviewing security and IT controls related assurances documentation provided by 3rd parties (., ISO 27001 certifications, SSAE-16/18, SOC1, SOC2, ;
  • Practical experience with managing an IT exception handling process;
  • Hands-on experience and good knowledge in topics such as: identity and access management, network security, Cloud security, cryptography, web security, next generation security solutions and operating system security; and
  • Experience with project life cycles, particularly security risk analysis, solutions design and broad systems integration;
  • Great organizational and analytical skills;
  • Able to vulgarize, ease in expressing ideas, influence others, challenge ideas and be convincing;
  • Excellent interpersonal skills to be able to interact at all levels;
  • Ability to influence and engage with senior management;
  • Ability to quickly adapt to changing priorities and demands;
  • Worked in a decentralized environment (both technical and processes);
  • Experience in an information security (application and/or infrastructure) role in an enterprise environment;
  • Structured and autonomous person;
  • Ability to work well on a collaborative team and influence others without direct authority;
  • Excellent written (documentation) and verbal communication skills (English & French) a strong asset
About Domtar

Domtar is a diversified manufacturer of pulp and paper, including printing and writing, packaging, and specialty papers. We believe in the enduring value of wood-based products in global markets and have built a large network of mills and chipping plants to produce them competitively. Through our distinct approach to operational excellence, we deliver high-quality and cost-effective products to international customers.



  • Montreal, Quebec, Canada Fuze Logistics Services Inc Full time

    Compliance and Risk Management Expert in LogisticsFuze Logistics Services is a forward-thinking third-party logistics provider based in Montreal, with a presence across North America, utilizing advanced technologies and extensive industry knowledge to streamline global freight transportation.We are in search of a Compliance and Risk Management Expert to...


  • Montreal, Quebec, Canada Alteo Inc. Full time

    Job DescriptionAlteo Inc. is seeking a seasoned professional to fill the role of Compliance and Data Security Manager. This permanent position is based in a dynamic and innovative environment and offers a unique opportunity to join a forward-thinking team.Key Responsibilities:Regulatory Watch:Monitor and track legislative and regulatory developments relevant...

  • Compliance Officer

    5 days ago


    Montreal, Quebec, Canada MEDLOG Transport & Logistics Full time

    About MEDLOG Transport & LogisticsAs a leading provider of global inland solutions, MEDLOG Transport & Logistics is dedicated to delivering exceptional customer-centric services. Our mission is to be the most reliable and resourceful logistics and supply chain provider, offering customizable solutions to help businesses thrive.Job SummaryWe are seeking a...

  • Compliance Officer

    4 days ago


    Montreal, Quebec, Canada MEDLOG Transport & Logistics Full time

    About MEDLOG Transport & LogisticsAs a leading provider of global inland solutions, MEDLOG Transport & Logistics is dedicated to delivering exceptional customer-centric services. Our mission is to be the most reliable and resourceful logistics and supply chain provider, offering customizable solutions to help businesses thrive.Job SummaryWe are seeking a...


  • Montreal, Quebec, Canada Alteo Inc. Full time

    About the RoleWe are seeking a highly skilled Risk, Compliance and Security Manager to join our team at Alteo Inc. in Montreal. As a key member of our organization, you will play a critical role in defining and implementing our information security strategy, operational risk management, and compliance framework.Key ResponsibilitiesInformation Security...


  • Montreal, Quebec, Canada Alteo Inc. Full time

    About the RoleWe are seeking a highly skilled Risk, Compliance and Security Manager to join our team at Alteo Inc. in Montreal. As a key member of our organization, you will play a critical role in defining and implementing our information security strategy, operational risk management, and compliance framework.Key ResponsibilitiesInformation Security...


  • Montreal, Quebec, Canada Crédit Agricole Group Full time

    About the Role:We are seeking a highly skilled Senior Compliance Analyst to join our team at Crédit Agricole Group. As a key member of our compliance team, you will be responsible for ensuring that our business operations are in line with regulatory requirements.Key Responsibilities:Articulate Complex Concepts: Develop and present clear and concise reports...


  • Montreal, Quebec, Canada Crédit Agricole Group Full time

    About the Role:We are seeking a highly skilled Senior Compliance Analyst to join our team at Crédit Agricole Group. As a key member of our compliance team, you will be responsible for ensuring that our business operations are in line with regulatory requirements.Key Responsibilities:Articulate Complex Concepts: Develop and present clear and concise reports...


  • Montreal, Quebec, Canada Mediatonic Full time

    Mediatonic is dedicated to fostering a collaborative, inclusive, and innovative workplace. As a key player in the gaming industry, we are constantly pushing the boundaries of creativity and technology. Joining Mediatonic means being part of a team that is committed to supporting our community and users. We are seeking a Governance, Risk, and Compliance...


  • Montreal, Quebec, Canada National Bank Full time

    About the RoleWe are seeking a highly skilled Senior Compliance Expert to join our Compliance Programs team at National Bank.Key ResponsibilitiesAct as a compliance expert to ensure the Bank's adherence to Anti-Money Laundering and Terrorist Financing (PCMLTF) regulations.Participate in sound risk management and contribute to the development of the...


  • Montreal, Quebec, Canada National Bank Full time

    About the RoleWe are seeking a highly skilled Senior Compliance Expert to join our Compliance Programs team at National Bank.Key ResponsibilitiesAct as a compliance expert to ensure the Bank's adherence to Anti-Money Laundering and Terrorist Financing (PCMLTF) regulations.Participate in sound risk management and contribute to the development of the...


  • Montreal, Quebec, Canada Fuze Logistics Services Inc Full time

    Job Summary:Fuze Logistics Services Inc. is a leading provider of logistics and transportation solutions, leveraging cutting-edge technologies and industry expertise to facilitate the transport of freight globally.We are seeking a highly skilled Risk & Compliance Specialist to join our team in Montreal, responsible for managing and mitigating risks...


  • Montreal, Quebec, Canada Fuze Logistics Services Inc Full time

    Job Summary:Fuze Logistics Services Inc. is a leading provider of logistics and transportation solutions, leveraging cutting-edge technologies and industry expertise to facilitate the transport of freight globally.We are seeking a highly skilled Risk & Compliance Specialist to join our team in Montreal, responsible for managing and mitigating risks...


  • Montreal, Quebec, Canada Davies Risk Services Full time

    Davies Risk Services is seeking a Risk Management Consultant to engage on an independent contractor basis. The core of this role involves insurance-related assessments; however, the majority of assignments are advisory, aimed at enhancing risk comprehension and focusing on minimizing exposures to reduce incidents, injuries, losses, and claims. As a...


  • Montreal, Quebec, Canada National Bank Full time

    Job Title: Lead Advisor AML/ATF ProgramAt National Bank, we're seeking a highly skilled and experienced professional to join our Compliance Programs team as a Lead Advisor for our Anti-Money Laundering and Terrorist Financing (AML/ATF) program.About the RoleAs a Lead Advisor, you will play a critical role in ensuring the Bank's compliance with regulations...


  • Montreal, Quebec, Canada National Bank Full time

    Job Title: Lead Advisor AML/ATF ProgramAt National Bank, we're seeking a highly skilled and experienced professional to join our Compliance Programs team as a Lead Advisor for our Anti-Money Laundering and Terrorist Financing (AML/ATF) program.About the RoleAs a Lead Advisor, you will play a critical role in ensuring the Bank's compliance with regulations...


  • Montreal, Quebec, Canada National Bank Full time

    About the RoleWe are seeking a highly skilled Senior Compliance Advisor to join our team at National Bank. As a key member of our Compliance Programs team, you will play a critical role in ensuring the Bank's compliance with regulations and providing support to compliance partners on regulatory compliance questions.Key ResponsibilitiesSupport partners in...


  • Montreal, Quebec, Canada Hema Quebec Full time

    Job OverviewWe are seeking a proactive professional with a background in regulated sectors and risk oversight to become a part of Héma-Québec. As a Risk Management Expert, you will be instrumental in crafting and executing the organization's risk management strategy. Your responsibilities will include identifying, evaluating, mitigating, and monitoring...

  • Compliance Expert

    3 hours ago


    Montreal, Quebec, Canada beBee Professionals Full time

    Compliance Consultant OpportunityWe are seeking a highly skilled Compliance Consultant to support our organization in Montreal. The successful candidate will provide expert advice and guidance on compliance matters, ensuring that all activities align with applicable laws and regulations.Key Responsibilities:Provide compliance advice and support to the...


  • Montreal, Quebec, Canada Fuze Logistics Services Inc Full time

    About Fuze Logistics Services IncFuze Logistics Services Inc is a pioneering third-party logistics (3PL) company headquartered in Montreal, with a strong presence across North America. Leveraging cutting-edge technologies and decades of industry expertise, we provide innovative logistics solutions to facilitate the global transportation of freight.Job...