Location: Remote, Canada
Language: English, strong written and verbal communication skills required
Duration: 18-month contract with a potential 6-month extension
Background Check Requirement: Must be eligible to obtain a Secret security clearance. Candidates must have resided in Canada for a minimum of five years to qualify.
About the Opportunity
We are seeking an experienced Cyber Security Risk Analyst to join a high-performing cyber assurance team within a large, highly regulated organization. This role offers the opportunity to help shape cyber risk reporting, support governance activities, and influence decision-making by translating complex technical findings into meaningful business insights.
Working alongside cyber security, risk, and technology professionals, you will play a key role in strengthening organizational resilience. This position is ideal for someone who enjoys bridging the gap between technical risk assessments and executive-level reporting while contributing to a collaborative and fast-paced environment.
What’s In It for You
• Opportunity to contribute to critical cyber security and risk management initiatives within a regulated environment
• Exposure to senior business and technology leaders and enterprise-wide governance processes
• A collaborative team culture that values knowledge sharing and continuous improvement
• The chance to work with leading cyber risk frameworks, technologies, and reporting practices
• Fully remote work arrangement that supports flexibility and work-life balance
Your Responsibilities
• You’ll lead the creation, drafting, and delivery of executive-level cyber risk reports for stakeholders across the organization
• You’ll translate findings from Threat and Risk Assessments (TRAs) and penetration tests into clear business-focused recommendations
• In this role, you’ll assess and communicate risk using frameworks such as NIST and HTRA methodologies
• You’ll document, track, and report cyber risks using ServiceNow GRC, including risk registers, treatment plans, exceptions, and remediation activities
• You’ll support governance forums, audit activities, and stakeholder discussions by clearly communicating cyber risk posture and recommendations
• You’ll help maintain reporting quality, consistency, and alignment with enterprise standards while supporting team members as needed
Skills and Qualifications
• 5+ years of progressive experience in cyber security, technology risk, or a related discipline
• 3+ years of experience producing executive-grade cyber risk reports for senior business and technology stakeholders
• Strong working knowledge of NIST cyber security frameworks, including NIST CSF, NIST SP 800-30, and NIST SP 800-53
• Hands-on experience applying Harmonized Threat and Risk Assessment (HTRA) methodologies and interpreting penetration test and TRA results
• Recent experience using ServiceNow GRC for cyber risk documentation, reporting, issue management, and risk register maintenance
• Strong understanding of cyber vulnerabilities, threat vectors, remediation strategies, and translating technical risks into business impacts
• Excellent communication, analytical, and stakeholder management skills, with the ability to work independently and manage competing priorities
Why Partner with Altis
If you’ve never worked with a staffing agency before, we make it easy. We work with top employers across Canada who have great jobs to fill, each vetted and verified by our team. When you apply for a job with Altis, we get to know you as a candidate and learn what your strengths are. Then, if you’re a solid match, we handle all the logistics, advocating for you as a candidate for the role, providing access to coaching and connecting you directly with the hiring manager. And rest assured, all our services are free of cost for candidates.