Senior Analyst, Governance Risk and Compliance

Posted 2 days ago

Apply Now

Resume Score

Check how well your resume matches this job before you apply.

Sign in to check score

About the role

  • Senior GRC Analyst translating contractual and regulatory cybersecurity obligations into technical requirements. Supporting compliance, risk management, and security implementation for Telesat’s Lightspeed satellite network.

Responsibilities

  • Serve as the primary liaison between Cybersecurity, Engineering, Corporate Functions, and Business Operations to translate contractual cybersecurity obligations into enterprise and system-level requirements
  • Convert high-level cybersecurity controls and contractual mandates into actionable, verifiable, and traceable technical specifications for the Telesat Lightspeed program
  • Ensure accurate implementation of cybersecurity requirements within engineering deliverables
  • Analyze customer, regulatory, contractual, and cybersecurity requirements for incorporation into Telesat Lightspeed System Specifications and operational processes
  • Collaborate cross-functionally with Engineering, Product Management, Legal, Procurement, IT, Operations, Program Management, Supply Chain, Human Resources, and other business units
  • Maintain traceability matrices linking contractual obligations to specific technical controls
  • Advise engineering teams on meeting cybersecurity obligations
  • Support risk-based decision-making, cybersecurity strategy execution, governance activities, and compliance priorities
  • Identify, assess, and escalate significant cybersecurity, compliance, or program risks, including impact analysis and mitigation recommendations

Requirements

  • Diploma or Degree in a relevant area of study, preferably Computer Science or Engineering, with demonstrated IT policy-related experience
  • 5 years of experience as a Security Governance, Risk Management, and Compliance (GRC) specialist
  • 3 years of experience designing and developing procedures and processes for Information Security best practices
  • Extensive experience leading cybersecurity risk assessments, risk management activities, and risk mitigation strategies across complex enterprise and engineering environments
  • Ability to analyze and interpret contractual, regulatory, customer, and cybersecurity requirements and translate them into actionable, measurable, and traceable technical and operational requirements
  • Strong understanding of cybersecurity governance, compliance frameworks, and control implementation
  • Excellent written, verbal, and executive-level communication skills
  • Presentation and facilitation skills, including leading cross-functional workshops, requirements reviews, and stakeholder discussions
  • Strong organizational, analytical, and systems-thinking skills
  • Experience developing and maintaining requirements traceability matrices
  • Experience with NIST SP 800-53, NIST SP 800-171, and related cybersecurity frameworks
  • Experience supporting aerospace, satellite, telecommunications, or critical infrastructure environments is an asset
  • Knowledge of CNSSP-12 and CAIQ is an asset
  • Experience with GRC platforms, requirements management tools, compliance automation solutions, and traceability tools is an asset
  • CISA certification is preferred
  • Must be able to work in Canada and obtain Enhanced Reliability Status

Benefits

  • Full Time Hire (FTE with Benefits)
  • Equal opportunity employer
  • Required interview accommodations
  • Confidential treatment of accommodation information

Job title

Job type

Full Time

Experience level

Senior

Salary

Not specified

Degree requirement

Associate's Degree

Tech skills

Cyber Security

Location requirements

HybridOttawaCanada

Report this job

Found something wrong with the page? Please let us know by submitting a report below.