Our client, a prominent leader in the Canadian financial services and insurance sector, is seeking two Cybersecurity Risk Assessment Specialists to join their IT Governance group. In this strategic, advisory role, you will serve as a key partner to business and technical teams. Your primary objective will be evaluating the security posture of new technology solutions, steering proactive IT risk management, and ensuring strict alignment with industry standard frameworks—all within a culture that deeply values human potential and innovation.
...
Advantages
Ultra-Flexible Hybrid Model: Require only 2 days per month in office (Montreal, Quebec City, or Toronto).
High-Impact Autonomy: High-visibility consulting role where you influence decisions without direct line management overhead.
Supportive Workplace Culture: A people-centric organization that actively promotes continuous professional growth.
Modern Tooling: Opportunity to leverage cutting-edge tools, including generative AI (e.g., Copilot), to streamline assessments and process design.
Cross-Border Exposure: Work closely with multi-disciplinary stakeholders and partners across Canada and the US.
Responsibilities
Conduct comprehensive risk assessments on cybersecurity, information systems, cloud deployments, and emerging architectures.
Provide risk-advisory guidance to IT delivery teams across all project phases (design, execution, operations, and continuous evolution).
Validate compliance and align technical architectures with industry-standard frameworks (specifically NIST CSF and 800-53).
Formulate clear, pragmatic, and actionable risk mitigation recommendations tailored to business objectives.
Translate complex security risks into clear concepts for both technical teams and executive stakeholders.
Actively drive the continuous improvement of the organization's overall cybersecurity maturity and risk posture.
Qualifications
Experience: 5 to 8+ years of hands-on experience in IT risk assessment, GRC (Governance, Risk, and Compliance), or information security.
Framework Expertise: Deep knowledge of NIST frameworks (NIST CSF / 800-53) and risk evaluation methodology.
Education: Bachelor’s degree in Computer Science, Information Security, Data Science, or equivalent background.
Soft Skills: Demonstrated ability to influence stakeholders without direct authority, strong analytical rigor, and high operational autonomy.
Certifications (Assets): CISSP, CCSP, or CRISC designations.
Emerging Tech Asset: Interest or hands-on practice using generative AI tools to enhance analysis and documentation workflows.
Language Requirement: Fully fluent in both English and French (written and spoken) to seamlessly support daily interactions across US and Canadian teams.
Our client operates in Canada. The company takes all reasonable steps to limit the number of positions in Quebec that require knowledge of a language other than French, and only requires it when necessary and its existing bilingual employees are unable to perform these duties. Based on an assessment conducted by our client, it has been determined that this position requires candidates to be fluent in English (both spoken and written). In particular, this position will require the employee to interact with centralized internal departments (e.g., Operations / HR / Finance / Legal / Contracts / Sales) that support the organization in Canada and that do not speak French.
Summary
Location: Hybrid (2 days/month on-site in Montreal, Quebec City, or Toronto).
Type: Full-time / Consulting Mandate.
Start Date: Immediate / Fast-track hiring process.
Industry: Financial Services / Cybersecurity & IT Risk.
Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.
Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
show more
Our client, a prominent leader in the Canadian financial services and insurance sector, is seeking two Cybersecurity Risk Assessment Specialists to join their IT Governance group. In this strategic, advisory role, you will serve as a key partner to business and technical teams. Your primary objective will be evaluating the security posture of new technology solutions, steering proactive IT risk management, and ensuring strict alignment with industry standard frameworks—all within a culture that deeply values human potential and innovation.
Advantages
Ultra-Flexible Hybrid Model: Require only 2 days per month in office (Montreal, Quebec City, or Toronto).
High-Impact Autonomy: High-visibility consulting role where you influence decisions without direct line management overhead.
Supportive Workplace Culture: A people-centric organization that actively promotes continuous professional growth.
Modern Tooling: Opportunity to leverage cutting-edge tools, including generative AI (e.g., Copilot), to streamline assessments and process design.
Cross-Border Exposure: Work closely with multi-disciplinary stakeholders and partners across Canada and the US.
...
Responsibilities
Conduct comprehensive risk assessments on cybersecurity, information systems, cloud deployments, and emerging architectures.
Provide risk-advisory guidance to IT delivery teams across all project phases (design, execution, operations, and continuous evolution).
Validate compliance and align technical architectures with industry-standard frameworks (specifically NIST CSF and 800-53).
Formulate clear, pragmatic, and actionable risk mitigation recommendations tailored to business objectives.
Translate complex security risks into clear concepts for both technical teams and executive stakeholders.
Actively drive the continuous improvement of the organization's overall cybersecurity maturity and risk posture.
Qualifications
Experience: 5 to 8+ years of hands-on experience in IT risk assessment, GRC (Governance, Risk, and Compliance), or information security.
Framework Expertise: Deep knowledge of NIST frameworks (NIST CSF / 800-53) and risk evaluation methodology.
Education: Bachelor’s degree in Computer Science, Information Security, Data Science, or equivalent background.
Soft Skills: Demonstrated ability to influence stakeholders without direct authority, strong analytical rigor, and high operational autonomy.
Certifications (Assets): CISSP, CCSP, or CRISC designations.
Emerging Tech Asset: Interest or hands-on practice using generative AI tools to enhance analysis and documentation workflows.
Language Requirement: Fully fluent in both English and French (written and spoken) to seamlessly support daily interactions across US and Canadian teams.
Our client operates in Canada. The company takes all reasonable steps to limit the number of positions in Quebec that require knowledge of a language other than French, and only requires it when necessary and its existing bilingual employees are unable to perform these duties. Based on an assessment conducted by our client, it has been determined that this position requires candidates to be fluent in English (both spoken and written). In particular, this position will require the employee to interact with centralized internal departments (e.g., Operations / HR / Finance / Legal / Contracts / Sales) that support the organization in Canada and that do not speak French.
Summary
Location: Hybrid (2 days/month on-site in Montreal, Quebec City, or Toronto).
Type: Full-time / Consulting Mandate.
Start Date: Immediate / Fast-track hiring process.
Industry: Financial Services / Cybersecurity & IT Risk.
Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.
Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
show more