Cyber Risk Analyst

2 days ago


Mississauga, Canada Control Gap Inc. Full time

We’re looking for a talented Cyber Risk Analyst to grow our team. If your passion lies in understanding and navigating the complex landscape of cyber threats through a lens of advanced risk assessment and mitigation strategies, we have an excellent opportunity for you.

As a key member of our team, you will be actively involved in conducting risk, privacy, and cybersecurity assessments, assisting our high-profile clients in identifying risks, enhancing their security posture, and developing robust strategies to mitigate potential cyber threats.

We believe in fostering a culture of continuous learning and professional development, providing opportunities for you to expand your expertise in cybersecurity, privacy, and risk management. Together, we will tackle challenging projects, innovate solutions, and achieve excellence in our field, ensuring that as our team grows, you do too.

**Key Responsibilities**:

- Assist with conducting information security gap, maturity, and threat risk assessments (e.g., NIST CSF, HITRUST CSF, CIS CSC, etc.).
- Collect information security control evidence from third-party vendors to facilitate the process of conducting third-party risk assessments for our clients.
- Assist with conducting in-depth analysis of business, financial, and IT systems, alongside other data processing systems, to identify technology and privacy risks and provide recommendations for improvements and risk treatment.
- Assist with creating professional reports, providing comprehensive insights into assessment findings, detailed risk information, and expert advice on remediation or risk reduction and treatment strategies.
- Assist in the coordination and documentation of the IT risk control libraries for third-party and threat risk assessments.
- Work collaboratively with the team to strategize engagements, formulate project timelines and requirements, conduct needs analysis, and provide support for other project planning activities.
- Maintain up-to-date knowledge of security threats, industry trends, GRC tools, processes, and technologies.
- Travel to company offices and client locations across Canada.

**Technical Skills**:

- Good understanding and hands-on experience in conducting cybersecurity maturity and risk assessments, including the evaluation of security controls and vulnerabilities.
- Familiarity with cloud service provider security frameworks and configuration best practices such as AWS Shared Responsibility Model, Azure Security Benchmarks, CSA CCM, etc.
- Familiarity with industry regulations and standards, such as NIST SP 800-53, NIST CSF, ISO 27001, HITRUST CSF, CIS benchmarks and critical security controls.
- Good understanding of network systems configurations, Unix, Linux, Windows, and database server configurations.

**Education and Work Experience**:

- Degree in Information Technology, Information Systems, Information Security, or Risk Management (or equivalent work experience).
- At least 2-3 years of professional experience in cybersecurity, with a focus on risk assessment, security controls, and/or compliance.

**Industry Certifications**:

- Willingness to obtain industry certifications (e.g. CTPRP, CISSP, CRISC, CIPP, HITRUST CCSFP, etc.).
- Industry certification in Information Security/Audit is an asset.

**Soft Skills**:

- Exceptional customer service, communication, and interpersonal skills.
- Strong written and verbal communication skills.
- Strong organizational skills.
- Strong time management skills.
- Honesty and integrity.
- Dedication to providing solutions to meet or exceed client's needs and expectations.
- Ability to handle challenges and project workloads.

**Benefits**:

- Company-paid medical and dental benefits and wellness benefits.
- Company-paid continuing professional education and certification maintenance.
- RRSP contribution.
- 4 weeks of paid vacation, with 5 weeks of paid vacation after 5 years of service.
- Company team-building events throughout each year.
- Flexible remote work options.

**Location**:

- You must be located within reasonable travelling distance of the Control Gap Headquarters in Mississauga, Ontario, Canada.
- You must possess reliable transportation to travel to company offices and client work sites.

**Employment Type**:

- Full-time



  • Mississauga, Canada Superior Propane Full time

    **What we will offer you**: **Culture**: Join a supportive and inclusive work environment where teamwork, respect, and open communication are at the core of everything we do. **Opportunity**: A continuous focus on professional development with many opportunities for training & career growth. **Health & Wellness**: Competitive health benefits right from the...


  • Mississauga, Canada Royal Cyber Inc. Full time

    OverviewBusiness System Analyst - Mainframe role at Royal Cyber Inc.ResponsibilitiesBusiness Systems Analysts with experience in delivering projects in Mainframe host environment (IMS, BOCOL, JCL experience is a plus).DetailsSeniority level: Entry levelEmployment type: Full-timeJob function: Information TechnologyIndustries: IT Services and IT...


  • Mississauga, Canada Finastra USA Corporation Full time

    **Responsibilities**: **About the role** Finastra’s Cyber Security Operations team is at the front line of detecting, monitoring for and responding to cybersecurity incidents within the global infrastructure. The Security Operations Center Analyst will have a crucial role in defending the enterprise network from potential and active threats. You will be...


  • Mississauga, Canada EllisDon Full time

    A leading construction technology company in Mississauga seeks an IT Governance, Risk & Compliance Analyst. The ideal candidate will have extensive experience supporting information security programs and developing policies to align with regulatory standards. Responsibilities include conducting risk assessments, guiding teams on compliance, and participating...


  • Mississauga, Canada EllisDon Full time

    Connect with us LinkedIn, Instagram, Facebook, Twitter Thinking about a change? We recognize that the construction industry is changing at a rapid pace and we continually strive to be at the forefront. Our core values empower people to deliver great careers and develop creative solutions for complex problems on some of the most intricate projects. It...


  • Mississauga, Canada EllisDon Corporation Full time

    **Connect with us** **LinkedIn**,** **Instagram**,** **Facebook**,** **Twitter** **Thinking about a change?** We recognize that the construction industry is changing at a rapid pace and we continually strive to be at the forefront. Our core** **values** empower people to deliver great careers and develop creative solutions for complex problems on some of...

  • IT Governance, Risk

    3 weeks ago


    Mississauga, Canada EllisDon Full time

    IT Governance, Risk & Compliance Analyst Job Category: Digital & Data Engineering Requisition Number: ANALY010882 Apply now Posted : January 9, 2026 Full-Time Locations Showing 1 location Do you want to build the software that builds cities? EllisDon’s construction technology team is made up of Full-Stack Developers, Data Analysts, UX Designers, Product...

  • Governance, Risk

    1 week ago


    Mississauga, Canada EllisDon Corporation Full time

    **Connect with us** **LinkedIn**,** **Instagram**,** **Facebook**,** **Twitter** **Do you want to build the software that builds cities?** EllisDon’s **construction technology team** is made up of Full-Stack Developers, Data Analysts, UX Designers, Product Owners, IT Operations and we’re growing fast! Our team also includes some of the best digital...

  • Grc Analyst

    7 days ago


    Mississauga, Canada WIS International Full time

    WIS International is looking for a GRC Analyst to join our team!!! **Responsibilities**: - Responsible for executing the cyber security risk management processes including risk identification, analysis, and evaluation, across the enterprise, for risks resulting from non-compliance with cyber security standards. - Develop and implement Security policies and...

  • Security Analyst

    8 minutes ago


    Mississauga, Canada Independent Electricity System Operator (IESO) Full time

    Security Analyst (Risk Assessment & Architecture) Date: November 24, 2025Location: Mississauga, ON – Hybrid Join to apply for the Security Analyst (Risk Assessment & Architecture) role at Independent Electricity System Operator (IESO). Why Join Us? The IESO is committed to ensuring Ontario’s electricity system meets the province’s needs today and into...