Intermediate Cybersecurity Risk Analyst to perform risk assessments and enable compliance
Remote / Online - Candidates ideally in
Montreal, Montréal, Province de Québec, Canada
Listing for:
S.i. Systems
Full Time, Contract, Remote/Work from Home
position
Listed on 2026-02-28
Job specializations:
-
IT/Tech
Cybersecurity, IT Consultant, Information Security, Data Security
Job Description & How to Apply Below
Location: MontrealOur large Oil & Gas industry client is seeking an Intermediate Cybersecurity Risk Analyst to perform risk assessments and enable compliance
.
Initial full-time contract until Dec 15, , with a possibility of extension.
% Remote Contract within MST hours of operation!
Position Overview:
Responsible for managing the lifecycle of cybersecurity risk assessments for corporate digital environment, industrial control systems (ICS) environments, and third-parties in addition to identifying current/emerging security risks based on the output of the assessments.
Must-Haves:
A minimum of four (4+) or more years of Cybersecurity, Risk Management, or related experienceProven experience managing and identifying cybersecurity risk for a large, enterprise environmentDemonstrated understanding of cybersecurity business processes, industry best practices, cybersecurity controls and related standards such as NIST CSF, NIST SP 53, and/or ISO/IEC & .Demonstrated strong understanding of the IT security landscape, including emerging risks and security solutionsNice-to-Haves:
ICS/ SCADA experience.Understanding of network architectures, including on-premise, cloud, and hybrid environments.Familiarity with common network components and technologies, such as firewalls, routers, switches, VPNs, and network segmentation.Risk management certifications are considered an asset (e.g. CISA).Previous work experience and an overall understanding of the energy industry.Key Responsibilities:
Perform cybersecurity risk assessments based on established cybersecurity risk framework and processesFacilitate business impact assessment to support cybersecurity risk assessmentsCommunicate cybersecurity risk to business owners and managersReport on cybersecurity risk and manage their life cycle with stakeholdersDrive development, implementation and automation of risk management tools and processesIdentify and analyze complex business and technology risksRecommend cost effective and appropriate risk control to reduce cybersecurity riskEnter, update, and maintain accurate risk information within the cybersecurity risk register in accordance with established procedures.Conduct research to maintain and expand knowledge on the latest cybersecurity controls and standards, as well as the threat and vulnerability landscapeManage and provide cybersecurity risk support to project activities across the enterpriseCollaborate with the Manager GRCR, GRCR team, other Enterprise Security team members, IS teams and business units on all areas related to cybersecurity
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here: