Job Title: IT Security TRA and SA&A Analyst
Location: Ottawa, Ontario (Hybrid – 2 days/week on-site)
Language: English required
Duration: Contract (various durations)
Security Clearance: Must be eligible for Government of Canada Reliability Status
Compensation: TBD
This posting is for proactive sourcing. Contract details will be confirmed once client requirements are finalized. We are building a pipeline of experienced IT Security TRA and SA&A Analysts to support upcoming public sector initiatives.
You will support enterprise security assessment activities within digital transformation projects, ensuring systems meet Government of Canada security standards and risk management requirements.
Conduct Threat and Risk Assessments (TRA) in alignment with Government of Canada methodologies.
Support Security Assessment and Authorization (SA&A) processes and accreditation activities.
Identify security risks and recommend mitigation strategies.
Develop and review security documentation (e.g., SSPs, SRTMs, risk reports).
Ensure compliance with ITSG-33, the Policy on Government Security, and related standards.
Provide security guidance throughout the system development lifecycle.
Collaborate with technical teams and stakeholders to address security requirements.
7+ years of experience in IT security, risk management, or cybersecurity.
Hands-on experience conducting TRA and supporting SA&A processes.
Strong knowledge of Government of Canada security frameworks (e.g., ITSG-33).
Experience assessing cloud and hybrid environments is an asset.
Strong analytical, documentation, and communication skills.
Public sector experience and relevant certifications (CISSP, CISM, CRISC, Security+) are assets.
With 35+ years supporting federal projects, Altis understands Government of Canada procurement and security requirements. We provide hands-on guidance throughout the process, ensuring your experience is positioned clearly and competitively.