Compliance Specialist assessing cybersecurity compliance for TC Energy. Collaborating with teams on security standards and regulatory requirements.
Responsibilities
Perform assessments and report on cybersecurity compliance across TC Energy
Conduct internal Cybersecurity audits
Coordinate Cybersecurity Compliance attestations
Drive automation of security controls with a focus on continuous monitoring
Partner with our Strategy and Performance team to develop key metrics and create dashboards that leverage available data sources for leadership review and decision-making
Collaborate with governance and risk teams to enhance our GRC practices by optimizing processes related to people, procedures, and technology
Review security tools to identify vulnerabilities or insecure configurations and provide guidance on remediation strategies
Interpret and translate cybersecurity standards and regulatory requirements into actionable security controls, ensuring their effective implementation within the organization’s technical and procedural frameworks
Coordinate and organize evidence for regulatory audits by collecting relevant documents, confirming compliance, and ensuring materials are ready for auditor review.
Coordinate with internal teams to support timely audit responses
Requirements
Bachelor’s degree in Computer Science, Information Security, Computer Engineering or a technical diploma in a related discipline
A minimum of 2 or more (2+) years of Cybersecurity or related IT analytical experience is a requirement
Familiar with TCP/IP, WAN/LAN concepts, operating systems, and firewall security policies
Knowledge of cybersecurity frameworks such as the NIST Cybersecurity Framework (CSF) and Zero Trust security principles, with the ability to apply these frameworks to compliance assessments and control design
Ability to present ideas and results to technical and non-technical audiences in both verbal and written communications
Certified Information Systems Auditor (CISA) designation or equivalent certification (preferred)
Proven experience and comprehensive understanding of cyber regulatory standards, including TSA, CER and Z246.1.
Demonstrated ability creating and updating security controls for compliance requirements
ICS/SCADA experience (preferred)
Knowledge of business intelligence tools (Power BI, Tableau) for creating dashboards for reporting (preferred)
Threat Intelligence Analyst investigating telecom security threats and customer deployment data for Enea, a global telecom and cybersecurity software company. Supporting client security reviews and threat intelligence operations.
Information Security Analyst governing End - User Computing risks, controls, and remediation for TD, a major North American bank. Advising stakeholders and supporting governance reporting, audits, and regulatory requirements.
IT Security Analyst II coordinating cybersecurity monitoring, MSP oversight, audits, and incident follow - up. Supporting Veristat’s global life - sciences services and regulated technology environments.
Security Analyst protecting GitLab’s DevSecOps platform through vulnerability triage and CVE operations. Coordinating researchers, customers, and internal teams on secure software response.
SIEM/SOAR cybersecurity analyst monitoring threats, building alerts, and measuring controls. Supporting Wepoint’s digital transformation work for businesses and public sector organizations.
SIEM/SOAR information security analyst supporting Wepoint’s digital transformation services. Developing cybersecurity monitoring cases, alerts, dashboards, and security - control documentation.
Security Analyst II protecting Intact’s insurance operations through incident response and SIEM monitoring. Supporting security platforms, incident resolution, dashboards, and IT security initiatives.