Cybersecurity Risk Management Expert

2 weeks ago


Montreal, Quebec, Canada Produits forestiers Résolu Full time

Resolute Forest Products, a global leader in the forest products industry, is seeking a Cybersecurity Risk Analyst to join its team. Based in Montreal, Quebec, Canada, this full-time permanent position offers a rewarding and safe work environment with opportunities for growth and skill development.

About Resolute

Founded over two centuries ago, Resolute has built a reputation for excellence in the forest products industry. With a strong commitment to sustainability and social responsibility, the company operates over 40 facilities across North America, employing over 6,600 people.

This role will contribute to the IT risk management practice at Paper Excellence Group by maintaining and improving the IT risk management framework, managing IT exceptions, and performing third-party vendor risk assessments. As a key member of the Manager of IT Compliance & Governance Security team, you will play a critical role in ensuring the security and integrity of our systems and data.

Key Responsibilities
  • Maintain and improve an IT/Security Risk Assessment Framework
  • Document IT security risks, mitigating controls, and present them to risk owners for decision-making
  • Coordinate with the IT compliance team to ensure compensating controls have been implemented
  • Maintain the IT risk register throughout the IT risks lifecycle
  • Perform Privacy Impact Assessments (PIA)
  • Maintain and improve third-party vendors assessment methodology
  • Perform third-party and cloud vendor security posture assessments, document the assessment, and present the results to business owners
  • Review third-party contracts for IT security and data privacy-related clauses and work collaboratively with IT Procurement and Legal teams
  • Maintain the Cloud vendor register
  • Provide vendor selection services for cybersecurity aspects to help business units select a vendor as part of RFP processes
  • Manage and maintain the IT Exception Handling Process
  • Document IT exceptions, validate the needs from exception requestors and owners, seek exception approval from Cybersecurity management
  • Document risk assessments as needed
  • Maintain the IT Exceptions register and follow up on approved exceptions
Requirements
  • Bachelor's degree or 5 years of professional experience in Cybersecurity
  • Minimum of 8 years' experience in security governance, risk, and compliance (GRC)
  • Holds security-related certifications such as CISSP, CISM, CSSP, or similar, considered an asset
  • Practical experience with implementing and/or working with IT Risk management frameworks
  • Practical experience with performing IT Risk assessments during projects and as part of security operations
  • Practical experience with security controls and risk mitigation measures implementation
  • Practical experience by assessing third-party vendor risks and reviewing security and IT controls-related assurances documentation provided by third parties
  • Practical experience with managing an IT exception handling process
  • Hands-on experience and good knowledge in topics such as identity and access management, network security, cloud security, cryptography, web security, next-generation security solutions, and operating system security
  • Experience with project life cycles, particularly security risk analysis, solutions design, and broad systems integration
About Us

At Resolute Forest Products, we value diversity, equity, and inclusion. We believe that our employees are our greatest asset and strive to create a work environment that promotes respect, inclusivity, and diversity. Our core values include working safely, being accountable, ensuring sustainability, and succeeding together.



  • Montreal, Quebec, Canada National Bank Full time

    Job DescriptionWe are seeking a seasoned Cybersecurity and Technology Risk Management Expert to join our team at National Bank.About the RoleThis is a permanent, full-time position offering a competitive salary range of $120,000 - $180,000 per year, commensurate with experience.Key ResponsibilitiesManage relationships and build trust with business lines,...


  • Montreal, Quebec, Canada Transat AT Full time

    Cybersecurity Specialist, Governance, Risks and ComplianceJob DescriptionAs a key member of the GRC cybersecurity team at Transat AT, you will collaborate closely with business units to ensure the company meets its compliance requirements. Your role will involve identifying and monitoring various business risks that may impact the organization.You will play...


  • Montreal, Quebec, Canada National Bank Full time

    Job OverviewNational Bank is seeking a highly skilled Strategic Cybersecurity Risk Manager to join their Technology, Cyber and Data Risk Management team. This role will play a critical part in identifying and mitigating cybersecurity risks across the organization.About the RoleThis position requires an individual with 10+ years of experience in technology...


  • Montreal, Quebec, Canada Intact Financial Corporation Full time

    About the RoleAs a Cybersecurity Risk Advisory Expert at Intact Financial Corporation, you will play a crucial role in promoting a strong cybersecurity regulatory compliance environment for our organization.


  • Montreal, Quebec, Canada National Bank Full time

    Unlock Your Potential as a Cybersecurity Risk Management LeaderWe are seeking an experienced and skilled Cybersecurity Risk Management Leader to join our Technology, Cyber and Data Risk Management team at National Bank. As a key member of our team, you will play a critical role in helping us achieve our mission to have a positive impact on people's...


  • Montreal, Quebec, Canada Banque Nationale du Canada Full time

    Job DescriptionWe are seeking a seasoned Strategic Technology and Cybersecurity Risk Manager to join our team at Banque Nationale du Canada. As a key member of our Technology, Cyber and Data Risk Management sector, you will play a critical role in ensuring the security and resilience of our technology infrastructure.In this position, you will be responsible...


  • Montreal, Quebec, Canada Intact Financial Corporation Full time

    At Intact Financial Corporation, we're committed to helping people, businesses, and society prosper in good times and be resilient in bad times. As a Cybersecurity Risk Advisor, you'll play a critical role in promoting a strong cybersecurity regulatory compliance culture within our organization.About the RoleAs a Cybersecurity Risk Advisor, you'll work...


  • Montreal, Quebec, Canada National Bank Full time

    About the RoleAs a Senior Cyber Security Advisor at National Bank, you will play a critical role in protecting our organization's digital assets and ensuring the confidentiality, integrity, and availability of sensitive information. This is an exciting opportunity to leverage your cybersecurity expertise and experience to drive business growth while...


  • Montreal, Quebec, Canada Intact Financial Corporation Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Advisory Specialist to join our team at Intact Financial Corporation.Job SummaryAs a Cybersecurity Risk Advisory Specialist, you will play a critical role in helping us promote a strong cybersecurity regulatory compliance across our organization. You will work closely with our Cybersecurity...


  • Montreal, Quebec, Canada National Bank Full time

    Senior Cyber Security AdvisorA career as a Senior Cybersecurity Advisor at National Bank means acting as a cybersecurity expert and providing tactical and strategic guidance, as well as advice to help business and technical teams achieve acceptable security risk postures. It is through your diplomacy, as well as your knowledge of governance processes, risk...


  • Montreal, Quebec, Canada Transat A.T Inc. Full time

    Cybersecurity Specialist, Governance, Risks and ComplianceOur mission at Transat A.T Inc. is to be the preferred airline of our customers and our team.We value open-mindedness, concern for others, intelligence at work, and a healthy dose of fun to achieve great things every day.As part of our GRC cybersecurity team, you will work closely with all business...


  • Montreal, Quebec, Canada CyberShell Full time

    Cybershell is a leading cybersecurity advisory firm seeking an exceptional Senior Director, Cybersecurity Advisory Services. As a key member of our team, you will deliver top-tier advisory solutions to clients and drive business growth through strategic advisory services.**Job Overview:**Develop comprehensive cybersecurity strategies aligned with clients'...


  • Montreal, Quebec, Canada Transat AT Full time

    Cybersecurity Governance, Risk, and Compliance SpecialistEstimated Salary: $80,000 - $120,000 per yearAbout Transat ATTransat AT is a leading international tour operator with operations in over 50 countries. We offer a range of products and services to our customers, including travel packages and airline tickets.Job SummaryWe are seeking an experienced...


  • Montreal, Quebec, Canada C S Inc Full time

    About the RoleWe are seeking a highly skilled Automotive Cybersecurity Expert to join our team at C S Inc.Job DescriptionAs an Automotive Cybersecurity Expert, you will be responsible for providing expertise in automotive cybersecurity standards, such as ISO 21434 and IEC 62443. You will work closely with clients to identify security risks and develop secure...


  • Montreal, Quebec, Canada Produits forestiers Résolu Full time

    Cybersecurity Risk Management SpecialistAbout ResoluteResolute Forest Products is a leading global player in the forest products industry, with a rich history spanning over two centuries. The company has built a strong foundation through the acquisition of more than 20 predecessor companies, supporting hundreds of communities along the way. With a presence...


  • Montreal, Quebec, Canada C S Inc Full time

    Unlock Your Career as an Automotive Cybersecurity ExpertWe are seeking a highly skilled Cybersecurity Engineer to join our team at C S Inc. As a leading company in the automotive industry, we prioritize cybersecurity and functional safety.About the Role:The ideal candidate will possess extensive experience in developing cybersecurity frameworks and...


  • Montreal, Quebec, Canada Barclay Simpson Full time

    About the RoleWe are seeking a seasoned Cybersecurity Risk Manager to join our team at Barclay Simpson. In this role, you will be responsible for developing and implementing IT GRC frameworks to ensure the security and integrity of our IT systems.ResponsibilitiesYou will lead the implementation of IT risk management processes, including technical IT risk...


  • Montreal, Quebec, Canada Banque Nationale du Canada Full time

    Job OverviewWe are seeking a seasoned professional to fill the role of Chief Advisor, Technology and Cyber Risk Management. As a key member of our Technology, Cyber and Data Risk Management team, you will play a critical part in ensuring the Bank's technology and cybersecurity practices are robust and aligned with industry standards.Key...


  • Montreal, Quebec, Canada CS GROUP Full time

    Job Title: Cybersecurity Expert for Automotive SafetyAbout UsCS GROUP is an accelerator of Functional Safety and Cybersecurity for companies developing critical embedded technologies. Our clients are OEMs and Tier 1 suppliers in the aerospace, automotive, defense, and rail sectors.Job SummaryWe are seeking a highly experienced Automotive SPICE Cybersecurity...


  • Montreal, Quebec, Canada CAE Full time

    Job SummaryIn this highly specialized role as a Cybersecurity Governance Specialist, you will play a pivotal part in shaping the cybersecurity landscape of CAE. With five years of experience in IT security and an in-depth understanding of risk analysis methodologies and security standards (ISO, PCI, NIST), you will be instrumental in developing and...