Cyber Risk Analyst
2 days ago
We’re looking for a talented Cyber Risk Analyst to grow our team. If your passion lies in understanding and navigating the complex landscape of cyber threats through a lens of advanced risk assessment and mitigation strategies, we have an excellent opportunity for you.
As a key member of our team, you will be actively involved in conducting risk, privacy, and cybersecurity assessments, assisting our high-profile clients in identifying risks, enhancing their security posture, and developing robust strategies to mitigate potential cyber threats.
We believe in fostering a culture of continuous learning and professional development, providing opportunities for you to expand your expertise in cybersecurity, privacy, and risk management. Together, we will tackle challenging projects, innovate solutions, and achieve excellence in our field, ensuring that as our team grows, you do too.
**Key Responsibilities**:
- Assist with conducting information security gap, maturity, and threat risk assessments (e.g., NIST CSF, HITRUST CSF, CIS CSC, etc.).
- Collect information security control evidence from third-party vendors to facilitate the process of conducting third-party risk assessments for our clients.
- Assist with conducting in-depth analysis of business, financial, and IT systems, alongside other data processing systems, to identify technology and privacy risks and provide recommendations for improvements and risk treatment.
- Assist with creating professional reports, providing comprehensive insights into assessment findings, detailed risk information, and expert advice on remediation or risk reduction and treatment strategies.
- Assist in the coordination and documentation of the IT risk control libraries for third-party and threat risk assessments.
- Work collaboratively with the team to strategize engagements, formulate project timelines and requirements, conduct needs analysis, and provide support for other project planning activities.
- Maintain up-to-date knowledge of security threats, industry trends, GRC tools, processes, and technologies.
- Travel to company offices and client locations across Canada.
**Technical Skills**:
- Good understanding and hands-on experience in conducting cybersecurity maturity and risk assessments, including the evaluation of security controls and vulnerabilities.
- Familiarity with cloud service provider security frameworks and configuration best practices such as AWS Shared Responsibility Model, Azure Security Benchmarks, CSA CCM, etc.
- Familiarity with industry regulations and standards, such as NIST SP 800-53, NIST CSF, ISO 27001, HITRUST CSF, CIS benchmarks and critical security controls.
- Good understanding of network systems configurations, Unix, Linux, Windows, and database server configurations.
**Education and Work Experience**:
- Degree in Information Technology, Information Systems, Information Security, or Risk Management (or equivalent work experience).
- At least 2-3 years of professional experience in cybersecurity, with a focus on risk assessment, security controls, and/or compliance.
**Industry Certifications**:
- Willingness to obtain industry certifications (e.g. CTPRP, CISSP, CRISC, CIPP, HITRUST CCSFP, etc.).
- Industry certification in Information Security/Audit is an asset.
**Soft Skills**:
- Exceptional customer service, communication, and interpersonal skills.
- Strong written and verbal communication skills.
- Strong organizational skills.
- Strong time management skills.
- Honesty and integrity.
- Dedication to providing solutions to meet or exceed client's needs and expectations.
- Ability to handle challenges and project workloads.
**Benefits**:
- Company-paid medical and dental benefits and wellness benefits.
- Company-paid continuing professional education and certification maintenance.
- RRSP contribution.
- 4 weeks of paid vacation, with 5 weeks of paid vacation after 5 years of service.
- Company team-building events throughout each year.
- Flexible remote work options.
**Location**:
- You must be located within reasonable travelling distance of the Control Gap Headquarters in Mississauga, Ontario, Canada.
- You must possess reliable transportation to travel to company offices and client work sites.
**Employment Type**:
- Full-time
-
Cyber Security Analyst
2 weeks ago
Mississauga, Canada Superior Propane Full time**What we will offer you**: **Culture**: Join a supportive and inclusive work environment where teamwork, respect, and open communication are at the core of everything we do. **Opportunity**: A continuous focus on professional development with many opportunities for training & career growth. **Health & Wellness**: Competitive health benefits right from the...
-
Business System Analyst-Mainframe
15 minutes ago
Mississauga, Canada Royal Cyber Inc. Full timeOverviewBusiness System Analyst - Mainframe role at Royal Cyber Inc.ResponsibilitiesBusiness Systems Analysts with experience in delivering projects in Mainframe host environment (IMS, BOCOL, JCL experience is a plus).DetailsSeniority level: Entry levelEmployment type: Full-timeJob function: Information TechnologyIndustries: IT Services and IT...
-
Cyber Security Operations Center Analyst
3 days ago
Mississauga, Canada Finastra USA Corporation Full time**Responsibilities**: **About the role** Finastra’s Cyber Security Operations team is at the front line of detecting, monitoring for and responding to cybersecurity incidents within the global infrastructure. The Security Operations Center Analyst will have a crucial role in defending the enterprise network from potential and active threats. You will be...
-
IT GRC Analyst: Security, Compliance
3 weeks ago
Mississauga, Canada EllisDon Full timeA leading construction technology company in Mississauga seeks an IT Governance, Risk & Compliance Analyst. The ideal candidate will have extensive experience supporting information security programs and developing policies to align with regulatory standards. Responsibilities include conducting risk assessments, guiding teams on compliance, and participating...
-
Cyber Security Analyst
5 days ago
Mississauga, Canada EllisDon Full timeConnect with us LinkedIn, Instagram, Facebook, Twitter Thinking about a change? We recognize that the construction industry is changing at a rapid pace and we continually strive to be at the forefront. Our core values empower people to deliver great careers and develop creative solutions for complex problems on some of the most intricate projects. It...
-
Cyber Security Analyst
5 days ago
Mississauga, Canada EllisDon Corporation Full time**Connect with us** **LinkedIn**,** **Instagram**,** **Facebook**,** **Twitter** **Thinking about a change?** We recognize that the construction industry is changing at a rapid pace and we continually strive to be at the forefront. Our core** **values** empower people to deliver great careers and develop creative solutions for complex problems on some of...
-
IT Governance, Risk
3 weeks ago
Mississauga, Canada EllisDon Full timeIT Governance, Risk & Compliance Analyst Job Category: Digital & Data Engineering Requisition Number: ANALY010882 Apply now Posted : January 9, 2026 Full-Time Locations Showing 1 location Do you want to build the software that builds cities? EllisDon’s construction technology team is made up of Full-Stack Developers, Data Analysts, UX Designers, Product...
-
Governance, Risk
1 week ago
Mississauga, Canada EllisDon Corporation Full time**Connect with us** **LinkedIn**,** **Instagram**,** **Facebook**,** **Twitter** **Do you want to build the software that builds cities?** EllisDon’s **construction technology team** is made up of Full-Stack Developers, Data Analysts, UX Designers, Product Owners, IT Operations and we’re growing fast! Our team also includes some of the best digital...
-
Grc Analyst
7 days ago
Mississauga, Canada WIS International Full timeWIS International is looking for a GRC Analyst to join our team!!! **Responsibilities**: - Responsible for executing the cyber security risk management processes including risk identification, analysis, and evaluation, across the enterprise, for risks resulting from non-compliance with cyber security standards. - Develop and implement Security policies and...
-
Security Analyst
8 minutes ago
Mississauga, Canada Independent Electricity System Operator (IESO) Full timeSecurity Analyst (Risk Assessment & Architecture) Date: November 24, 2025Location: Mississauga, ON – Hybrid Join to apply for the Security Analyst (Risk Assessment & Architecture) role at Independent Electricity System Operator (IESO). Why Join Us? The IESO is committed to ensuring Ontario’s electricity system meets the province’s needs today and into...