Talent.com
Vancity
Information Security Risk Management AnalystVancity • Vancouver, BC, CA
Information Security Risk Management Analyst

Information Security Risk Management Analyst

Vancity • Vancouver, BC, CA
30+ days ago
Job type
  • Full-time
  • Permanent
Job description

Our Story & Purpose:

We’re Vancity, a member-owned credit union built on the principles of inclusion and social justice. Since 1946, our relentless commitment to these values has helped us challenge the status quo and break down barriers. We’ve made bold commitments to become net-zero by 2040 across all mortgages and loans, and we’re actively pursuing strategies in Indigenous banking and financial resilience for our members.

As the largest private sector Living Wage Employer in Canada, we’re proud to be consistently recognized as one of the country’s Top Employers. If you’re ready to join our team of 2,700 diverse individuals, access competitive rewards and benefits, and be part of a greater movement - apply today!

Your Role in Supporting Our Members:

As an Information Security Risk Management Analyst, you will elevate exiting risk management practices and processes. As a member of the Information Security Compliance team, they will play a crucial role in identifying, assessing, and mitigating information security risks.

This is a permanent, full-time role that will enjoy hybrid working arrangements which can be fulfilled primarily from the Vancity head office location and your Lower Mainland based home office. Periodically, you’ll be required to attend in-person activities or events.

How You'll Make an Impact:

  • Assist the Senior Manager, Information Security Compliance in developing and implementing a strategic approach to information security risk management across people, process, and technology.
  • Lead the development and maintenance of Information Security risk and governance KPI's, KRI's, and SLA's. Assist with metrics creation and reporting. Provide reporting on the status of information security risks to leadership and stakeholders.
  • Participates in third-party and supply chain cybersecurity risk assessments.
  • Maintain the IT risk register on the GRC platform (Onetrust, Auditboard).
  • Perform Security Threat Risk Assessments of all new projects and technology implementations.
  • Develop and maintain IT and Security Risk Assessment processes and documentation.
  • Advise various teams on risk mitigation and compensatory measures to reduce risks to acceptable levels, using knowledge of Vancity policies, technologies, standards and industry best practices.
  • Foster a risk aware culture across the organization.
  • Other duties as assigned.

What You’ll Bring to the Team:

  • A bachelor’s degree or equivalent in Computer Science, Business, or a related field
  • 3-5 years of progressive experience in information security risk management, preferably in a mid-sized corporate organization or a financial institution
  • Information Security Certifications in one or more of the following are desirable: Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), or Certified Information Security Manager (CISM).
  • In-depth understanding of risk management frameworks such as NIST RMF, NIST AI-RMF, ISO 31000, FAIR, and ISO 27001
  • A good understanding of relevant standards and frameworks that apply to the financial services industry such as PCI/ SWIFT/ NIST/OSFI
  • Strong understanding of regulatory requirements and standards (e.g., OSFI, BCFSA, PIPA, PIPEDA)

You’ll Thrive Here If You Are:

  • An exceptional communicator - you are comfortable communicating with stakeholders across different levels of the organization. You demonstrate confidence and provide highly specialized technical expertise and advice.
  • Flexible – You have a willingness to work in a highly flexible environment with multiple competing priorities.
  • Organized - Good multi-tasking skills and the ability to prioritize work based on risk and business needs

We value lived experience, so if you are interested in this role, we encourage you to apply even if you feel your skills don't perfectly align with those listed.

What You’ll Earn:

This role offers a salary range of $92,700 to $115,000. The base pay offered may vary depending on factors such as relevant qualifications, skills, previous experience, and internal equity. As part of our total rewards package, employees may also be eligible for our annual incentive program, subject to program eligibility requirements.

Why You’ll Love Working Here:

A career at Vancity is more than just a job, you’re joining a tradition of change-makers who are creating lasting change for our communities. Beyond base pay, we offer a comprehensive total rewards package to ensure our employees are empowered to thrive:

  • Living Wage Employer: We’re the largest private-sector Living Wage Employer in Canada and consistently ranked among Canada’s Top Employers.
  • Customizable Benefits: Permanent employees receive flexible benefit packages that can be tailored annually to meet evolving needs.
  • Generous Vacation: New employees start with 3-4 weeks of vacation per year, with additional days earned over time.
  • Extra Stat Holidays: In addition to BC’s 11 statutory holidays, we offer 2 extra days, plus care days for personal or family illness.
  • Immediate Health Coverage: Health and dental benefits begin on your hire date, with three levels of coverage to choose from.
  • Defined Benefit Pension: Our retirement plan provides a guaranteed income for life, recognizing that retirement looks different for everyone.

Vancity Talent Programs:

Vancity supports an inclusive hiring process for candidates who self-identify as Indigenous, Black, or Trans. With special permission from the BC Human Rights Commissioner, this initiative provides access to career development opportunities, prioritized job screening, and feedback. Any information you choose to share will be stored securely and used only for recruitment and career development connected to this initiative, in line with the BC Personal Information Protection Act (PIPA). For details, please see our dedicated Talent Programs job posting.

Create a job alert for this search

Information Security Risk Management Analyst • Vancouver, BC, CA

Similar jobs

Remote Information Risk & Security Analyst

DexianVancouver, Metro Vancouver Regional District, CA
Remote
Full-time

A leading IT services firm is seeking an Information Control Testing Specialist to manage information risk and ensure compliance with security policies.You will work on global initiatives, conduct ... Show more

 • Promoted

Information Security Analyst - SIEM, IR & Cloud Security

Fortinet, Inc.Burnaby, Metro Vancouver Regional District, CA
Full-time

A cybersecurity leader is seeking an experienced Information Security Analyst in Burnaby to ensure the security of their global infrastructure.The role involves monitoring security operations, resp... Show more

 • Promoted

Remote IT Security Risk Analyst: Governance & Risk

Onico SolutionsVancouver, Metro Vancouver Regional District, CA
Remote
Permanent

A leading IT security firm in Richmond Hill is looking for an IT Security Risk Analyst to support their Information Security Risk Management programs.The role requires expertise in risk assessments... Show more

 • Promoted

Information Security Policy and Implementation Specialist

Intello Technologies Inc.Vancouver, Metro Vancouver Regional District, CA
Full-time

Information Security Policy and Implementation Specialist.Location: Vancouver, BC, CA, V6B 3K9; Edmonton, AB, CA; Burnaby, BC, CA; Vancouver, BC, CA; Calgary, AB, CA; Toronto, ON, CA.Jobs by Catego... Show more

 • Promoted

Risk Management Analyst

Mike’s Hard Lemonade Co.Vancouver, Metro Vancouver Regional District, CA
Full-time

Mark Anthony Group is an entrepreneurial drinks company, built from the ground up by thinking differently, innovating and doing the unexpected.Our company is rooted in family values, a bold vision ... Show more

 • Promoted

Information Security Policy and Implementation Specialist

TELUSVancouver, Metro Vancouver Regional District, CA
Full-time

TELUS Health Chief Security Office (CSO) operates globally at the forefront of cybersecurity excellence, where our team anticipates threats, solves complex security challenges, and delivers world‑c... Show more

 • Promoted

Strategic Cybersecurity Leader as Information Security Officer

Klohn Crippen Berger Consultoria LtdaVancouver, Metro Vancouver Regional District, CA
Full-time

Step into a key role as Information Security Officer, guiding strategic cybersecurity efforts in a hybrid environment.Protect critical digital assets while leading a dedicated and motivated team to... Show more

 • Promoted

Remote Security Strategy Lead - Applications and IT

Targeted TalentVancouver, Metro Vancouver Regional District, CA
Remote
Full-time

A leading security consultancy in Ontario seeks an Information & Application Security Manager to lead their cybersecurity strategy and oversee IT, applications, and infrastructure security.This han... Show more

 • Promoted

InfoRisk Managememt Analyst

DexianVancouver, Metro Vancouver Regional District, CA
Full-time

We are looking for candidates with strong technical expertise to fill this role.Below are the details of the position:.Mode of Job: Remote / occasional visit to office.Information Control Testing S... Show more

 • Promoted

Information Security Risk Management Analyst

Insight GlobalVancouver, Metro Vancouver Regional District, CA
Full-time

Assist the Senior Manager, Information Security Compliance in developing and implementing a strategic approach to information security risk management across people, process, and technology.Lead th... Show more

 • Promoted

Cybersecurity Analyst Specializing in Incident Response and Risk Management

Pan American SilverVancouver, Metro Vancouver Regional District, CA
Full-time

Become a pivotal Cybersecurity Analyst protecting information systems from cyber threats.Experience hands-on incident response, vulnerability assessment, and security monitoring in a full-time role... Show more

 • Promoted

Senior Security Risk Management Leader

AffirmVancouver, Metro Vancouver Regional District, CA
Full-time

Spearhead security governance and TPRM initiatives as a Senior Leader.Elevate operational effectiveness and vendor risk management in a remote work setting.This role will oversee the strategic dire... Show more

 • Promoted

Strategic Information Security Architect

ColliersVancouver, Metro Vancouver Regional District, CA
Full-time

Transform global security architecture as a Strategic Information Security Architect.Spearhead cloud migration security strategies while ensuring systems are secure and compliant.This pivotal role ... Show more

 • Promoted

IT Security Risk Analyst

Onico SolutionsVancouver, Metro Vancouver Regional District, CA
Permanent

The IT Security Risk Analyst supports the Information Security Risk Management and Governance programs.They work with technology and business stakeholders to identify Information Security risks, co... Show more

 • Promoted

Risk Management Analyst

Mark Anthony GroupVancouver, Metro Vancouver Regional District, CA
Full-time

Mark Anthony Group is an entrepreneurial drinks company, built from the ground up by thinking differently, innovating and doing the unexpected.Our company is rooted in family values, a bold vision ... Show more

 • Promoted

Information Technology Security Manager

TEEMARichmond, Metro Vancouver Regional District, CA
Full-time

Get AI-powered advice on this job and more exclusive features.This range is provided by TEEMA.Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Di... Show more

 • Promoted

Information Security Risk Management Analyst

VancityVancouver, Metro Vancouver Regional District, CA
Full-time +1

Our Story & Purpose: We’re Vancity, a member-owned credit union built on the principles of inclusion and social justice.Since 1946, our relentless commitment to these values has helped us challenge... Show more

 • Promoted

Remote Senior SOC Analyst for Threat Detection and Incident Management

TreantlyVancouver, Metro Vancouver Regional District, CA
Remote
Full-time

Shape cybersecurity efforts as a Senior SOC Analyst, proficient in threat detection and incident response.Lead remote operations to tackle complex security challenges while mentoring junior analyst... Show more