Senior GRC Analyst translating contractual and regulatory cybersecurity obligations into technical requirements. Supporting compliance, risk management, and security implementation for Telesat’s Lightspeed satellite network.
Responsibilities
Serve as the primary liaison between Cybersecurity, Engineering, Corporate Functions, and Business Operations to translate contractual cybersecurity obligations into enterprise and system-level requirements
Convert high-level cybersecurity controls and contractual mandates into actionable, verifiable, and traceable technical specifications for the Telesat Lightspeed program
Ensure accurate implementation of cybersecurity requirements within engineering deliverables
Analyze customer, regulatory, contractual, and cybersecurity requirements for incorporation into Telesat Lightspeed System Specifications and operational processes
Collaborate cross-functionally with Engineering, Product Management, Legal, Procurement, IT, Operations, Program Management, Supply Chain, Human Resources, and other business units
Maintain traceability matrices linking contractual obligations to specific technical controls
Advise engineering teams on meeting cybersecurity obligations
Support risk-based decision-making, cybersecurity strategy execution, governance activities, and compliance priorities
Identify, assess, and escalate significant cybersecurity, compliance, or program risks, including impact analysis and mitigation recommendations
Requirements
Diploma or Degree in a relevant area of study, preferably Computer Science or Engineering, with demonstrated IT policy-related experience
5 years of experience as a Security Governance, Risk Management, and Compliance (GRC) specialist
3 years of experience designing and developing procedures and processes for Information Security best practices
Extensive experience leading cybersecurity risk assessments, risk management activities, and risk mitigation strategies across complex enterprise and engineering environments
Ability to analyze and interpret contractual, regulatory, customer, and cybersecurity requirements and translate them into actionable, measurable, and traceable technical and operational requirements
Strong understanding of cybersecurity governance, compliance frameworks, and control implementation
Excellent written, verbal, and executive-level communication skills
Presentation and facilitation skills, including leading cross-functional workshops, requirements reviews, and stakeholder discussions
Strong organizational, analytical, and systems-thinking skills
Experience developing and maintaining requirements traceability matrices
Experience with NIST SP 800-53, NIST SP 800-171, and related cybersecurity frameworks
Experience supporting aerospace, satellite, telecommunications, or critical infrastructure environments is an asset
Knowledge of CNSSP-12 and CAIQ is an asset
Experience with GRC platforms, requirements management tools, compliance automation solutions, and traceability tools is an asset
CISA certification is preferred
Must be able to work in Canada and obtain Enhanced Reliability Status
Benefits
Full Time Hire (FTE with Benefits)
Equal opportunity employer
Required interview accommodations
Confidential treatment of accommodation information
Senior Compliance Advisor guiding insurance and savings regulation at iA Financial Group, a Canadian insurance, savings, and wealth management company. Advising Sales teams and partners on regulatory risks, frameworks, and training.
Senior Regulatory Specialist leading mining permitting and environmental compliance projects for Ensero, an environmental consulting and remediation business. Providing regulatory direction, stakeholder engagement, and technical mentorship.
Senior GRC Analyst evaluating cybersecurity controls, privacy, and enterprise risk for Arctic Wolf’s security operations platform. Leading assurance reviews and compliance improvements across global cross - functional teams.
Compliance coordinator managing regulatory filings, audits, and consultations for AltaLink, an Alberta electricity transmission company. Maintaining compliance systems, deadlines, evidence, reporting, and regulatory risk processes.
Compliance Testing Manager evaluating controls, regulations, and risks for Sun Life Financial Canada. Developing test plans, reports, recommendations, and AI - enabled compliance improvements.
Director leading first - line risk and compliance for EQ Bank’s B2B payments, BIN sponsorship, and fintech partnerships. Building governance, controls, and teams for safe Canadian banking innovation.
Director of Compliance building consumer regulatory, privacy, and security programs for Yomali, a global e - commerce conglomerate. Leading compliance operations and advising portfolio businesses across multiple jurisdictions.
International Quality Manager supporting Village Farms' global cannabis and plant - based products. Leading supplier quality, regulatory compliance, audits, and commercialization across international markets.
Compliance and controls lead strengthening first - line risk programs for Tru Cooperative Bank, a British Columbia financial cooperative. Overseeing compliance testing, vendor risk, change management, remediation, and operational improvements.
Licensing and compliance specialist managing crypto - finance regulatory filings, entity maintenance, and contracts for Shift Markets. Supporting global digital - asset businesses across US states and international jurisdictions.