Cybersecurity Governance Risk Analyst

1 month ago


Montreal, Quebec, Canada Domtar Corporation Full time
Cybersecurity Risk Analyst Job Description

We are seeking a highly skilled Cybersecurity Risk Analyst to join our team at Domtar Corporation. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.

Key Responsibilities:
  • Maintain and improve the IT risk management framework to ensure effective risk assessment and mitigation.
  • Manage IT exceptions and perform 3rd party vendor risk assessments to identify and mitigate potential risks.
  • Participate in Business and IT projects to assess risks and provide risk mitigation recommendations.
  • Document IT security risks, mitigating controls, and present them to risk owners for decision-making.
  • Coordinate with the IT compliance team to ensure compensating controls have been put in place.
  • Maintain the IT risk register throughout the IT risks lifecycle.
  • Perform 3rd party and cloud vendor security posture assessments, document the assessments, and present the results to business owners.
  • Review 3rd party contracts for IT security and data privacy-related clauses and work in collaboration with IT Procurement and Legal teams.
  • Provide vendor selection services for cybersecurity aspects to help business units select a vendor as part of the RFP process.
Requirements:
  • Bachelor's degree or 5 years of professional experience in Cybersecurity.
  • Minimum of 8 years' experience in security governance, risk, and compliance (GRC).
  • Holds security-related certifications such as CISSP, CISM, CSSP, or similar considered an asset.
  • Practical experience with implementing and/or working with IT Risk management frameworks.
  • Practical experience with performing IT Risk assessments during projects and as part of security operations.
  • Practical experience with security controls and risk mitigation measures implementation.
  • Practical experience assessing 3rd party vendor risks and reviewing security and IT controls related assurances documentation provided by 3rd parties.
  • Experience with project life cycles, particularly security risk analysis, solutions design, and broad systems integration.
  • Ability to influence and engage with senior management.
  • Worked in a decentralized environment (both technical and processes).
  • Excellent written (documentation) and verbal communication skills (English & French) a strong asset.

We offer a competitive compensation package, including a flexible insurance plan, a pension plan with matching company contributions, and a hybrid remote work schedule. If you are a motivated and experienced professional looking for a new challenge, please submit your application.



  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionWe are seeking a highly skilled Cybersecurity Risk Analyst to join our team at Domtar Corporation. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT risk...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionWe are seeking a highly skilled Cybersecurity Risk Analyst to join our team at Domtar Corporation. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT risk...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionWe are seeking a highly skilled Cybersecurity Risk Analyst to join our team at Domtar Corporation. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT risk...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionWe are seeking a highly skilled Cybersecurity Risk Analyst to join our team at Domtar Corporation. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT risk...


  • Montreal, Quebec, Canada Domtar Full time

    Cybersecurity Risk AnalystDomtar is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will contribute to the development and implementation of our IT risk management framework, ensuring the security and integrity of our systems and data.Key Responsibilities:Maintain and...


  • Montreal, Quebec, Canada Domtar Full time

    Cybersecurity Risk AnalystDomtar is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will contribute to the development and implementation of our IT risk management framework, ensuring the security and integrity of our systems and data.Key Responsibilities:Maintain and...


  • Montreal, Quebec, Canada Domtar Full time

    Cybersecurity Risk AnalystDomtar is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will contribute to the development and implementation of our IT risk management framework, ensuring the security and integrity of our systems and data.Key Responsibilities:Maintain and...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionDomtar Corporation is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a Cybersecurity Risk Analyst, you will play a critical role in maintaining and improving our IT risk management framework, managing IT exceptions, and performing 3rd party vendor risk assessments.Key...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionDomtar Corporation is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a Cybersecurity Risk Analyst, you will play a critical role in maintaining and improving our IT risk management framework, managing IT exceptions, and performing 3rd party vendor risk assessments.Key...


  • Montreal, Quebec, Canada Produits forestiers Résolu Full time

    Cybersecurity Risk Analyst Job DescriptionAt Produits forestiers Résolu, we are seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve an...


  • Montreal, Quebec, Canada Produits forestiers Résolu Full time

    Cybersecurity Risk Analyst Job DescriptionAt Produits forestiers Résolu, we are seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve an...


  • Montreal, Quebec, Canada Produits forestiers Résolu Full time

    Job Title: Cybersecurity Risk AnalystResolute Forest Products is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT/Security Risk...


  • Montreal, Quebec, Canada Produits forestiers Résolu Full time

    Job Title: Cybersecurity Risk AnalystResolute Forest Products is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT/Security Risk...


  • Montreal, Quebec, Canada Resolute Forest Products Inc. Full time

    Cybersecurity Risk AnalystResolute Forest Products Inc. is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will contribute to the IT risk management practice by maintaining and improving the IT risk management framework, managing IT exceptions, and performing 3rd party...


  • Montreal, Quebec, Canada Domtar Full time

    Job DescriptionDomtar is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework, managing IT exceptions, and performing third-party vendor risk assessments.Key ResponsibilitiesMaintain and...


  • Montreal, Quebec, Canada Domtar Full time

    Job DescriptionDomtar is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework, managing IT exceptions, and performing third-party vendor risk assessments.Key ResponsibilitiesMaintain and...


  • Montreal, Quebec, Canada Domtar Full time

    Job DescriptionDomtar is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework, managing IT exceptions, and performing third-party vendor risk assessments.Key ResponsibilitiesMaintain and...


  • Montreal, Quebec, Canada Produits forestiers Résolu Full time

    Cybersecurity Risk Analyst Job DescriptionResolute Forest Products is seeking a highly skilled Cybersecurity Risk Analyst to join our team in Montreal, Quebec, Canada. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework, managing IT exceptions, and...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst RoleDomtar Corporation is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will contribute to the IT risk management practice by maintaining and improving the IT risk management framework, managing IT exceptions, and performing 3rd party...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst RoleDomtar Corporation is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will contribute to the IT risk management practice by maintaining and improving the IT risk management framework, managing IT exceptions, and performing 3rd party...