Talent.com
Information Risk Analyst (First Line of Defense) (WTL, ON)
Information Risk Analyst (First Line of Defense) (WTL, ON)Recrute Action • Waterloo, Ontario, Canada
No longer accepting applications
Information Risk Analyst (First Line of Defense) (WTL, ON)

Information Risk Analyst (First Line of Defense) (WTL, ON)

Recrute Action • Waterloo, Ontario, Canada
30+ days ago
Job type
  • Full-time
  • Permanent
  • Temporary
Job description
Information Risk Analyst (First Line of Defense)

Step into a high-impact hybrid role at the forefront of cloud security AI governance and information risk within the insurance sector. Leverage your expertise in InfoSec regulatory frameworks and emerging technologies to shape secure future-ready solutions. Work cross-functionally in a dynamic fast-paced environment.

What is in it for you:

Salaried: $65-70 per hour.
Incorporated Business Rate: $79-84 per hour.
6-month contract with the potential for permanent employment.
Full-time position: 37.50 hours per week.
Weekday schedule from 9 am to 5 pm.
In-office presence required from Tuesday to Thursday.
Remote work available on Mondays and Fridays.

Responsibilities:

Conduct comprehensive assessments of IaaS PaaS SaaS and generative AI projects identifying and mitigating associated risks.
Develop and implement governance frameworks tailored to generative AI aligning with global information risk assessment methodologies.
Collaborate with cross-functional teams to integrate risk frameworks with processes such as architecture reviews project risk management and business continuity.
Manage task priorities to ensure timely delivery of governance assessments and documentation updates.
Participate in project meetings to advise stakeholders on risks and potential impacts of proposed changes.
Ensure peer review of all completed risk assessments prior to stakeholder distribution.
Support operational security tasks including incident response firewall reviews and vulnerability management.
Provide training on risk assessment procedures and security best practices to internal teams.
Respond to audits regulatory reviews and internal control assessments.
Stay current on emerging AI technologies evolving threat landscapes and developments in AI governance.

What you will need to succeed:

Degree in Computer Science Information Technology Data Science Business Administration or a related discipline.
Relevant professional designations (e.g. CISSP CRISC CISM CISA) are considered an asset.
5 years of experience in information risk management including vendor risk project risk IT audit or control assessments.
Background in one or more technical security disciplines such as network security application security identity and access management cybersecurity or information protection.
Strong understanding of cloud computing security in IaaS PaaS or SaaS environments.
Familiarity with laws and standards such as NIST ISO27001 GDPR Sarbanes-Oxley and the EU AI Act.
Strong communication and influencing skills to support a culture of governance and risk awareness.
Effective problem-solving and analytical skills with an innovative mindset.
Excellent presentation and facilitation skills for technical and non-technical audiences.
Strong collaboration time management and organizational abilities.
Understanding of the financial services industry and its regulatory landscape is an asset.

Why Recruit Action

Recruit Action (agency permit: AP-2000003) provides recruitment services through quality support and a personalized approach to job seekers and businesses. Only candidates who match hiring criteria will be contacted.

# MFCJP



Required Skills:

Cloud Security Architect Drive AWS cloud security strategy in the insurance industry with a senior-level role focused on secure architecture compliance and automation. Leverage your expertise in AWS services threat detection and identity management in a hybrid multi-account environment. Opportunity to lead security-by-design in a regulated sector. What is in it for you: Salaried: $90-95 per hour. Incorporated Business Rate: $104-109 per hour. 12-month contract with the potential for permanent employment. Full-time position: 37.50 hours per week. Hybrid model 3 days per week on-site. Attendance on Tuesday and Wednesday is mandatory. Responsibilities: Design and implement secure landing zones using AWS Control Tower AWS Organizations and Service Control Policies (SCPs). Define multi-account security guardrails for shared services workloads and sandbox environments. Create reference architectures covering security zones network segmentation and cross-account communication (PrivateLink AWS WAN). Lead threat modelling and risk assessments for new workloads and services including Lambda ECS EC2 S3 RDS and DynamoDB. Develop security-by-design templates integrated into Infrastructure as Code (IaC) pipelines. Partner with compliance teams to maintain continuous alignment with CIS Benchmarks and organizational risk frameworks. Implement federated access and single sign-on with AWS IAM Identity Center (AWS SSO) Okta and Azure AD. Manage cross-account roles STS trust policies and temporary credentials for developers and third parties. Automate secret and credential rotation with AWS Secrets Manager and AWS Systems Manager Parameter Store. Enforce encryption at rest using AWS KMS CloudHSM and envelope encryption patterns. Ensure encryption in transit (TLS 1.2/1.3) across internal and public endpoints. Manage key rotation cross-region replication and HSM-based root of trust. Implement S3 Object Lock Macie for data discovery and classification and Access Points for fine-grained data access. Implement PrivateLink AWS WAN and Route 53 Resolver endpoints for service-to-service isolation. Configure Web Application Firewall (WAF) and AWS Shield Advanced for DDoS mitigation. Enforce egress control through Cloud NAT AWS Gateway Load Balancer (GWLB) or custom proxies. Deploy and integrate AWS Security Hub GuardDuty Macie and Inspector for proactive threat detection. Configure Amazon Detective for forensic investigation and anomaly correlation. Integrate findings into SIEM/SOAR platforms such as FortiSOAR or Azure Sentinel. Automate response playbooks with AWS Step Functions Lambda and SNS alerts. Implement AWS Config rules and Conformance Packs to enforce compliance with benchmarks like CIS AWS Foundations. Use AWS Artifact for vendor assurance and control documentation. Manage compliance dashboards via Security Hub Trusted Advisor and Control Tower drift detection. What you will need to succeed: Bachelors degree in Computer Science Information Security or related field. AWS Certified Security Specialty. AWS Certified Solutions Architect Professional. CISSP CISM CCSP GCSA or GIAC Cloud Security Automation certification. 8 years of experience in cybersecurity. 4 years of experience in AWS cloud security architecture. Deep understanding of the AWS Well-Architected Framework (Security Pillar). Strong hands-on expertise in AWS identity and access management encryption network segmentation and compliance. Familiarity with AWS security services including GuardDuty Inspector Security Hub and Macie. Experience automating security controls using AWS native tools and IaC pipelines. Proficiency in incident response using Step Functions Lambda and Systems Manager. Experience integrating with SIEM/SOAR platforms such as FortiSOAR or Azure Sentinel. Why Recruit Action Recruit Action (agency permit: AP-2504511) provides recruitment services through quality support and a personalized approach to job seekers and businesses. Only candidates who match hiring criteria will be contacted. # AVICJP


Key Skills
ISO 27001,Microsoft Access,Risk Management,Financial Services,PCI,Risk Analysis,Analysis Skills,COBIT,NIST Standards,SOX,Information Security,Data Analysis Skills
Employment Type : Full Time
Experience: years
Vacancy: 1
Monthly Salary Salary: 65 - 70
Create a job alert for this search

Information Risk Analyst First Line of Defense WTL ON • Waterloo, Ontario, Canada

Similar jobs
Developer/Analyst

Developer/Analyst

Navacord • waterloo, ON, ca
Full-time
WHY THIS ROLE MATTERS:Navacord is hiring technical talent in the insurance industry! We are accepting applications for a dynamic individual with 5+ years experience in a full stack development envi...Show more
Last updated: 10 days ago • Promoted
Information Security Specialist | Spécialiste en sécurité de l'information - Hitachi Cyber

Information Security Specialist | Spécialiste en sécurité de l'information - Hitachi Cyber

Hitachi Cyber • waterloo, on, ca
Full-time
Rejoins Hitachi Cyber, un leader mondial en cybersécurité, et fais partie d’une équipe dynamique d’experts dédiée à la protection des organisations dans divers secteurs d’activité.En tant que Spéci...Show more
Last updated: 1 day ago • Promoted
Claim Manager

Claim Manager

Empire Life • waterloo, ON, ca
Full-time +2
Claim ManagerLocation: Remote, or if local to an office, hybrid - Kingston, Toronto, or MontrealThe total target compensation (TTC) range, including salary and target bonus, is $55,968 - $98,580.Th...Show more
Last updated: 30+ days ago • Promoted
Anaplan Engagement Lead

Anaplan Engagement Lead

Codex • waterloo, ON, ca
Full-time
Anaplan Engagement LeadLocation: Canada (Remote)Employment Type: Full-TimeSalary: $150,000 - $200,000About the Role<...Show more
Last updated: 10 days ago • Promoted
Bilingual Security Engineer - Palo Alto, Fortinet, Cisco and/or Check Point - Ateko, backed by Bell Canada

Bilingual Security Engineer - Palo Alto, Fortinet, Cisco and/or Check Point - Ateko, backed by Bell Canada

Ateko, backed by Bell Canada • waterloo, on, ca
Full-time
Responsabilités / Obligations du poste :.Pour ce poste, vous devez être parfaitement bilingue en anglais et en français.Tests complexes, déploiement, intégration et remédiation de pare-feu de sécur...Show more
Last updated: 1 day ago • Promoted
ROC Monitoring Analyst

ROC Monitoring Analyst

Eneon-ES • waterloo, ON, ca
Full-time
ROC Monitoring AnalystPosition Type: Full-timeLocation: Remote within CanadaEmployer DescriptionEneon is a leading Battery Energ...Show more
Last updated: 16 days ago • Promoted
Information Technology Private Tutoring Jobs Elmira

Information Technology Private Tutoring Jobs Elmira

Superprof • Elmira, Canada
Full-time +1
Superprof is Canada's #1 tutoring platform, and we're actively recruiting passionate tutors! Whether you're a student, a professional, or simply someone who loves teaching, join the largest communi...Show more
Last updated: 30+ days ago • Promoted
URGENT: Nanny Wanted - Experienced Nanny Needed In Elmira, Ontario $17.60/Hour

URGENT: Nanny Wanted - Experienced Nanny Needed In Elmira, Ontario $17.60/Hour

CanadianNanny.ca • Elmira, Ontario, Canada
Full-time
Arvaind Family in Elmira, Ontario is seeking a full-time nanny for their infant.The position offers the option of live-in or live-out arrangements.The role involves caring for the infant, light hou...Show more
Last updated: 16 days ago • Promoted
Tier I SOC Analyst - CyberClan

Tier I SOC Analyst - CyberClan

CyberClan • waterloo, on, ca
Full-time
Tier I SOC Analyst - Job Description.Established in 2006, CyberClan’s carefully selected team of experts are capable of solving complex cyber security challenges – keeping data secure and businesse...Show more
Last updated: 30+ days ago • Promoted
Governance, Risk & Compliance Consultant

Governance, Risk & Compliance Consultant

Malleum • waterloo, on, ca
Full-time
We are a premier cybersecurity consultancy, blending advanced offensive and defensive strategies to safeguard our customers.With a team known for its contributions to cybersecurity research at plat...Show more
Last updated: 1 day ago • Promoted
Project Management Lead

Project Management Lead

Broadsign • waterloo, ON, ca
Permanent
Project Management LeadReports To: SVP OperationsLocation: Montreal, QC (Hybrid)About usBroadsign is a growing software company with a mi...Show more
Last updated: 20 hours ago • Promoted • New!
Product Manager (B2B SaaS / Healthcare AI)

Product Manager (B2B SaaS / Healthcare AI)

Ubie • waterloo, ON, ca
Full-time
The Opportunity 🚀Are you an experienced Product Manager looking to build the future of AI-driven healthcare?Ubie is seeking a Product Manager to lead the development and scaling of our B2B SaaS so...Show more
Last updated: 30+ days ago • Promoted
Senior Data Analyst

Senior Data Analyst

BET99 • waterloo, ON, ca
Full-time
Job OverviewAs a Senior Data Analyst, you’ll be at the forefront of strategic decision‑making—turning complex data into insights that drive business success.You bring deep analytical expertise, cur...Show more
Last updated: 21 days ago • Promoted
*Information Risk Analyst (First Line of Defense) (WTL, ON)

*Information Risk Analyst (First Line of Defense) (WTL, ON)

Recrute Action • Waterloo, ON, ca
Full-time +2
Quick Apply
Information Risk Analyst (First Line of Defense).Step into a high-impact, hybrid role at the forefront of cloud security, AI governance, and information risk within the insurance sector.Leverage yo...Show more
Last updated: 7 days ago
Feasibility Analytics Lead

Feasibility Analytics Lead

ICON Strategic Solutions • waterloo, on, ca
Full-time
ICON Strategic Solutions is currently hiring for a Feasibility Analytics Lead role with one of our larger sponsor dedicated programs.This role will be responsible for providing the study team with ...Show more
Last updated: 16 days ago • Promoted
Associate Vice President of Data & Analytics - Tundra Technical Solutions

Associate Vice President of Data & Analytics - Tundra Technical Solutions

Tundra Technical Solutions • waterloo, on, ca
Full-time
Associate Vice President of Data & Analytics.About Tundra Technical Solutions.Since 2004, Tundra's mission to become the world's number one choice for top talent has been relentless.As we thrive in...Show more
Last updated: 16 days ago • Promoted
Canada Payroll Data Conversion Specialist

Canada Payroll Data Conversion Specialist

ACL Digital • waterloo, ON, ca
Full-time
Job Title: Payroll Data Conversion Specialist – ADP Streamline to Workday (Canada)Location: Remote (Must support US Time Zones)Duration: ContractRequired Qua...Show more
Last updated: 20 days ago • Promoted
Model Risk Analyst

Model Risk Analyst

Mindlance • waterloo, on, ca
Full-time
Location : Montreal ,QC (Need to go 3-4 days in week onsite).Experience in capital stress testing.Experience in model use governance.Experience in model risk management.Experience in model validati...Show more
Last updated: 1 day ago • Promoted