IT Security Risk Analyst [OneIT]

Montreal, QC, Canada

WSP

WSP ist eines der weltweit führenden Planungs- und Beratungsunternehmen für das Bauwesen, mit rd. 54.000 talentierten Mitarbeiterinnen und Mitarbeitern in mehreren Büros in der ganzen Welt.

View all jobs at WSP

Apply now Apply later

The Opportunity:

As a Risk Analyst, you will be supporting the Technology &Cyber Risk Manager in running IT risk management process. You will work closely with IT teams to manage technology-related risks and foster relationships. This role requires good analytical, excellent organizational skills and the ability to work effectively in a diverse, global environment. You will need to be able to prioritize tasks and manage your time effectively. 

 

Why choose WSP?

  • We value and are committed to upholding a culture of inclusion and belonging
  • Our Flexible Work Policy – we recognize the importance of balance in our lives and encourage you to prioritize the balance in yours. We will support you on and off the job so you can be fully present in both your work and home lives.
  • A Canadian success story - we're proud to wear the red and white of this beautiful country and show the world what Canada has to offer.
  • Enhance the world around you - from the environment to the highways, to the buildings and the terrain, WSP is the fabric of Canada.
  • Outstanding career opportunities - we're growing and pushing ourselves every day to be greater than yesterday - we're open to your ideas and trying new things.
  • A phenomenal collaborative culture and a workforce filled with genuinely good people who are doing humbly important work. Come find out for yourself what it's like to be a part of our journey.

We offer attractive pay, flexible work options, a great corporate culture, comprehensive and employee-focused benefits including virtual healthcare and a wellness platform as well as great savings programs, and a clear vision for the future.

#WeAreWSP

 

What you can expect to do here:

  • Support the implementation of a comprehensive and effective IT risk management practice across the WSP global IT organisation. This should include facilitating the identification of potential IT risks, the evaluation of their impact, the formulation of strategies to mitigate these risks, and the tracking of their mitigation and/or acceptance.  Assist the Security Risk Manager in conducting regular monitoring and review of the IT risk management process to ensure its effectiveness and alignment to the organization’s risk appetite and business objectives. 
  • Facilitate delivery of IT risk management training within the IT community and support establishing a culture of risk-aware decision-making, accountability, and a commitment to maintaining an effective control environment.
  • Analyze and process data related to risks, issues and deficiencies to identify patterns and trends.
  • Create visualizations and reports that communicate the insights gained from the data.
  • Understand and assimilate rapidly technology, and risk management concepts and dependencies.
  • Be a subject matter expert in relation to the management of the Integrated Risk Management Platform (Service-Now IRM). This includes entities, risk statements and controls management.
  • Be the central point of contact for all support related to the Risk platform.
  • Proactive and display independence and autonomy in performing the role.

 

What you’ll bring to WSP:

About you: 

  • 3 to 5 years related experience in Information Technology, experience in Security is a plus.
  • Knowledge of technology (applications, network, etc)
  • Experience with IT Governance frameworks such as ISO 27001
  • Experience with governance, compliance, and audit within IT environments
  • Limited travelling may be required.
  • A degree in information technology, or related field.
  • Experience working in large/global enterprise IT is a plus.

Due to the nature of this role, you may need to work outside of standard business hours occasionally.

Preferred

  • Knowledge of Service-Now Integrated Risk Management platform (IRM) 
  • Professional certification is a plus, in one or more of the following disciplines — IT governance (e.g., CGEIT), security (e.g., CISSP, CISM), internal audit (CISA) or Payment Card Industry (PCI)

 

 

 

 

WSP is one of the world's leading professional services firms. Our purpose is to future proof our cities and environments.

We have over 65,000 team members across the globe.  In Canada, our 12,000+ people are involved in everything from environmental remediation to urban planning, from engineering iconic buildings to designing sustainable transportation networks, from finding new ways to extract essential resources to developing renewable power sources for the future.

At WSP:

  • We value our people and our reputation
  • We are locally dedicated with international scale
  • We are future focused and challenge the status quo
  • We foster collaboration in everything we do
  • We have an empowering culture and hold ourselves accountable
Please Note:
Health and Safety is a core paramount value of WSP.  Given the importance of keeping one another safe it is expected that you comply with our Health, Safety & Environment (HSE) policy at all times as well as client HSE policies when working at client locations.

Offers of employment for safety-sensitive positions involving fieldwork are contingent upon candidates being able to perform key physical tasks of the job as described in the job posting and interview. This may include the ability to work in a variety of environmental conditions, such as remote or isolated areas, working alone, and in inclement weather (within safe and reasonable limits).

WSP welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process.

WSP is committed to the principles of employment equity. Only the candidates selected will be contacted.

WSP does not accept unsolicited resumes from agencies. For more information please  READ THE FULL POLICY. 

Apply now Apply later
  • Share this job via
  • 𝕏
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  1  0

Tags: CISA CISM CISSP Compliance Governance ISO 27001 Monitoring Risk management

Perks/benefits: Flex hours Flex vacation Health care Wellness

Region: North America
Country: Canada

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.