Current jobs related to Cybersecurity Risk Analyst - Montreal, Quebec - Resolute Forest Products


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionDomtar Corporation is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a Cybersecurity Risk Analyst, you will play a critical role in maintaining and improving our IT risk management framework, managing IT exceptions, and performing 3rd party vendor risk assessments.Key...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionDomtar Corporation is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a Cybersecurity Risk Analyst, you will play a critical role in maintaining and improving our IT risk management framework, managing IT exceptions, and performing 3rd party vendor risk assessments.Key...


  • Montreal, Quebec, Canada Domtar Full time

    Cybersecurity Risk AnalystDomtar is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will contribute to the development and implementation of our IT risk management framework, ensuring the security and integrity of our systems and data.Key Responsibilities:Maintain and...


  • Montreal, Quebec, Canada Domtar Full time

    Cybersecurity Risk AnalystDomtar is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will contribute to the development and implementation of our IT risk management framework, ensuring the security and integrity of our systems and data.Key Responsibilities:Maintain and...


  • Montreal, Quebec, Canada Domtar Full time

    Cybersecurity Risk AnalystDomtar is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will contribute to the development and implementation of our IT risk management framework, ensuring the security and integrity of our systems and data.Key Responsibilities:Maintain and...


  • Montreal, Quebec, Canada Produits forestiers Résolu Full time

    Job Title: Cybersecurity Risk AnalystResolute Forest Products is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT/Security Risk...


  • Montreal, Quebec, Canada Produits forestiers Résolu Full time

    Job Title: Cybersecurity Risk AnalystResolute Forest Products is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT/Security Risk...


  • Montreal, Quebec, Canada Resolute Forest Products Inc. Full time

    Cybersecurity Risk AnalystResolute Forest Products Inc. is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will contribute to the IT risk management practice by maintaining and improving the IT risk management framework, managing IT exceptions, and performing 3rd party...


  • Montreal, Quebec, Canada Produits forestiers Résolu Full time

    Cybersecurity Risk Analyst Job DescriptionResolute Forest Products is seeking a highly skilled Cybersecurity Risk Analyst to join our team in Montreal, Quebec, Canada. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework, managing IT exceptions, and...


  • Montreal, Quebec, Canada Domtar Full time

    Job DescriptionDomtar is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework, managing IT exceptions, and performing third-party vendor risk assessments.Key ResponsibilitiesMaintain and...


  • Montreal, Quebec, Canada Domtar Full time

    Job DescriptionDomtar is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework, managing IT exceptions, and performing third-party vendor risk assessments.Key ResponsibilitiesMaintain and...


  • Montreal, Quebec, Canada Domtar Full time

    Job DescriptionDomtar is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework, managing IT exceptions, and performing third-party vendor risk assessments.Key ResponsibilitiesMaintain and...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionWe are seeking a highly skilled Cybersecurity Risk Analyst to join our team at Domtar Corporation. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT risk...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionWe are seeking a highly skilled Cybersecurity Risk Analyst to join our team at Domtar Corporation. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT risk...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionWe are seeking a highly skilled Cybersecurity Risk Analyst to join our team at Domtar Corporation. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT risk...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionWe are seeking a highly skilled Cybersecurity Risk Analyst to join our team at Domtar Corporation. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT risk...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionWe are seeking a highly skilled Cybersecurity Risk Analyst to join our team at Domtar Corporation. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT risk...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst Job DescriptionWe are seeking a highly skilled Cybersecurity Risk Analyst to join our team at Domtar Corporation. As a key member of our IT Compliance & Governance Security team, you will play a critical role in maintaining and improving our IT risk management framework.Key Responsibilities:Maintain and improve the IT risk...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst RoleDomtar Corporation is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will contribute to the IT risk management practice by maintaining and improving the IT risk management framework, managing IT exceptions, and performing 3rd party...


  • Montreal, Quebec, Canada Domtar Corporation Full time

    Cybersecurity Risk Analyst RoleDomtar Corporation is seeking a highly skilled Cybersecurity Risk Analyst to join our team. As a key member of our IT Compliance & Governance Security team, you will contribute to the IT risk management practice by maintaining and improving the IT risk management framework, managing IT exceptions, and performing 3rd party...

Cybersecurity Risk Analyst

2 months ago


Montreal, Quebec, Canada Resolute Forest Products Full time
About the Role

We are seeking a highly skilled Cybersecurity Risk Analyst to join our team at Resolute Forest Products. As a key member of our IT Security team, you will play a critical role in maintaining and improving our IT risk management framework, managing IT exceptions, and performing 3rd party vendor risk assessments.

Key Responsibilities
  • Maintain and improve an IT/Security Risk Assessment Framework to ensure the company's IT assets are protected from potential threats.
  • Document IT security risk, mitigating controls, and present them to risk owners for decision-making.
  • Coordinate with IT compliance teams to ensure compensating controls have been put in place.
  • Maintain the IT risk register throughout the IT risks lifecycle.
  • Perform Privacy Impact Assessments (PIA) to ensure the company's sensitive data is protected.
3rd Party Vendors Security Assessment
  • Maintain and improve 3rd party vendors assessment methodology to ensure the company's vendors are secure.
  • Perform 3rd party and cloud vendor security posture assessment, document the assessment, and present the results to business owners.
  • Review 3rd party contracts for IT security and data privacy-related clauses and work in collaboration with IT Procurement and Legal teams.
  • Maintain the Cloud vendor register to ensure the company's cloud vendors are secure.
  • Provide vendor selection services for cybersecurity aspects to help business units select a vendor as part of the RFP process.
IT Exception Handling Process
  • Manage and maintain the IT Exception Handling Process to ensure IT exceptions are properly documented and approved.
  • Document IT Exceptions, validate the needs from exception requestors and owners, seek exception approval from Cybersecurity management.
  • Document risk assessment as needed.
  • Maintain the IT Exceptions register and follow-up on approved exceptions.
Project Advisory
  • Provide project advisory services to Business and IT projects on IT risk matters to ensure risk management activities during project's lifecycle.
  • Occasionally provide support to project security advisory teams to document project security requirements and controls to implement.
Required Qualifications/Professional Experiences
  • Bachelor's degree or 5 years of professional experience in Cybersecurity.
  • Minimum of 8 years' experience of security governance, risk, and compliance (GRC).
  • Holds security-related certifications such as CISSP, CISM, CSSP, or similar considered an asset.
Preferred Qualifications/Professional Experiences/Years of Experience
  • Practical experience with implementing and/or working with IT Risk management frameworks.
  • Practical experience with performing IT Risk assessment during projects and as part of security operations.
  • Practical experience with security controls and risk mitigation measures implementation.
  • Practical experience by assessing 3rd party vendor risks and reviewing security and IT controls-related assurances documentation provided by 3rd parties.
  • Practical experience with managing an IT exception handling process.
  • Hands-on experience and good knowledge in topics such as identity and access management, network security, Cloud security, cryptography, web security, next-generation security solutions, and operating system security.
  • Experience with project life cycles, particularly security risk analysis, solutions design, and broad systems integration.
Critical Competencies (Leadership, Technical, Innovation, and Work Complexity)
  • Great organizational and analytical skills.
  • Able to vulgarize, ease in expressing ideas, influence others, challenge ideas, and be convincing.
  • Excellent interpersonal skills to be able to interact at all levels.
  • Ability to influence and engage with senior management.
  • Ability to quickly adapt to changing priorities and demands.
  • Worked in a decentralized environment (both technical and processes).
  • Experience in an information security (application and/or infrastructure) role in an enterprise environment.
  • Structured and autonomous person.
  • You have the ability to work well on a collaborative team and influence others without direct authority.
  • Excellent written (documentation) and verbal communication skills (English & French).
What We Are Offering
  • Competitive salary and annual bonus.
  • At least three weeks of vacation and three floating holidays a year from the first day of work, depending on your experience.
  • Full range of group insurance from the first day of work.
  • Telemedicine services.
  • Defined-contribution pension plan with generous employer participation from the first day of work.
  • Employee and family assistance program.
  • Education assistance program.
  • Health club reimbursement program.
  • Hybrid workplace: in-person and remote work.
  • Work environment based on respect, inclusion, and diversity.
  • Office accessible by public transit.