- Pay Rate: $51.72 /hour, depending on experience
- Contract Length: 10 Months
- Location: Calgary, Alberta
Raise is currently hiring a
Cybersecurity Risk Analyst on behalf of our client. They’re expanding their team to meet growing needs, making this a unique opportunity to work with an industry leader. Our Client, is one of North America's leading energy infrastructure companies with operations in natural gas, oil and power industries throughout Canada, the United States, and Mexico
Note: The primary pay rate is based on T4 classification; however, we will also consider applications from candidates interested in an INC classification, where applicable.
Description
The Cybersecurity Risk Analyst in this role will work with other security team members, along with IS and business teams, you will be responsible for managing the lifecycle of cybersecurity risk assessments for corporate digital environment, industrial control systems (ICS) environments, and third-parties in addition to identifying current/emerging security risks based on the output of the assessments.
Our Clients Enterprise Security Office Governance, Risk, Compliance & Resilience team is evolving to meet the needs of their growing business and are expanding their presence to support improving the security posture. Our client is seeking an energetic Cybersecurity Risk Analyst on a term contract who is looking to build their knowledge and experience in cybersecurity. You will be responsible for performing risk assessments, enabling compliance with the organizations policy & standards, and preparing risk reporting.
Responsibilities
- Perform cybersecurity risk assessments based on established cybersecurity risk framework and processes
- Facilitate business impact assessment to support cybersecurity risk assessments
- Communicate cybersecurity risk to business owners and managers
- Report on cybersecurity risk and manage their life cycle with stakeholders
- Drive development, implementation and automation of risk management tools and processes
- Identify and analyze complex business and technology risks
- Recommend cost effective and appropriate risk control to reduce cybersecurity risk
- Enter, update, and maintain accurate risk information within the cybersecurity risk register in accordance with established procedures.
- Conduct research to maintain and expand knowledge on the latest cybersecurity controls and standards, as well as the threat and vulnerability landscape
- Manage and provide cybersecurity risk support to project activities across the enterprise
- Collaborate with the Manager GRCR, GRCR team, other Enterprise Security team members, IS teams and business units on all areas related to cybersecurity
- Other tasks as required
Qualifications
- 4 or more years of Cybersecurity, Risk Management, or related experience
- Demonstrated understanding of business processes, industry best practices, cybersecurity controls and related standards such as NIST CSF, NIST SP 800 53, and/or ISO/IEC 27001 & 27002.
- Preferred Qualifications
- Understanding of network architectures, including on-premise, cloud, and hybrid environments.
- Familiarity with common network components and technologies, such as firewalls, routers, switches, VPNs, and network segmentation.
- Proven experience managing risk (preferably cybersecurity risk) for a large enterprise
- Demonstrated strong understanding of the IT security landscape, including emerging risks and security solutions
- Previous work experience and an overall understanding of the energy industry
- Ability to present ideas and results to technical and non-technical audiences in both verbal and written communications
- Excellent problem-solving skills and ability to resolve complex issues and lead intermediate application development projects
- Highly self-motivated with a passion for risk, safety, and cybersecurity
- Strong prioritization skills with an always-on attitude and obsessed with delivering business outcomes
- Education and Certifications
- Bachelor’s degree or technical diploma, preferably in a related discipline such as Computer Science, Information Security, or Computer Engineering
- Risk management certifications are considered an asset (e.g. CISA) ICS/SCADA experience is considered an asset
Looking for meaningful work? We can help!
Raise is an established hiring firm with over 65 years of experience. We believe strongly in making the world a better place through work, which is why we’re a certified B Corporation and donate 10% of our profits to charity.
We strive to build teams that reflect the diversity of the communities we work in. We encourage all qualified applicants to apply, including people from traditionally underrepresented groups such as women, visible minorities, Indigenous peoples, people identifying as LGBTQ2SI, veterans, and people with visible/nonvisible disabilities.
We have a dedicated webpage for accommodations where you can learn more about what we offer and request accommodation: https://raise.jobs/accommodations/
In order to submit candidates for roles, our clients will sometimes require personal information to confirm the identity of applicants and their legal status to work. Raise will never ask you for personal or banking information unless you have been selected for a job. If you are ever unsure about the legitimacy of this or any other Raise job posting (or have any other questions), please contact us at +1 800-567-9675 or hello@raiserecruiting.com.
#WES