Intermediate TRA and SA&A Analyst to develop security plans and assess their current security infrastructure

S.i. Systems
Ottawa
Full-time

Our Valued Public Sector Client is seeking the services of a Intermediate TRA and SA&A Analyst to develop security plans and assess their current Security infrastructure

Description :

The client is looking for a IT Security TRA and SA&A Analyst who will take a lead role in conducting security assessments and providing support for security assessment and authorization (SA&A) processes.

The Analyst will be responsible taking initiative in coordinating with stakeholders, organizing meetings, and ensuring timely follow-ups without requiring constant direction.

This involves ensuring that security risks are identified, managed, and mitigated across CIHR’s IT infrastructure. They will also support updating security policies, procedures, and cyber security incident management processes.

Tasks :

  • Creating SA&A plans
  • Assisting clients in completing Statements of Sensitivity and System Profile Descriptions
  • Conducting Threat and Risk Assessments
  • Assessing classified systems and implementing data protection measures
  • Assessing systems, cloud infrastructure and SaaS applications in varying IT environments, including complex environments
  • Complex environments are characterized by multiple interconnected systems and applications, varied technologies, and may span on-premises and cloud infrastructures, including cloud and multi-zone deployments
  • Creating Security Requirements Traceability Matrices based on ITSG-33, while also incorporating requirements from other frameworks as necessary
  • Creating Security Assessment Reports, Safeguard Implementation Plans
  • Preparing Authorization decision letters
  • Evaluating and managing supply chain risks
  • Organizing and coordinating meetings / consultations with clients and cross-functional teams of technical and non-technical stakeholders
  • Communicating risk assessment and mitigation strategies to both technical and non-technical stakeholders.
  • Collaborating with Shared Services Canada (SSC) and the Canadian Centre for Cyber Security (CCCS)
  • Updating IT Risk Management Strategy and Departmental Plan & Policies

Must Have :

  • 5+ years SA&A and TRA Experience
  • Reliability Clearance
  • Extensive experience with safeguards and Government of Canada Guardrail (ITSG-33) policies
  • 2 years working with the public sector (federal, provincial, or municipal government, or Crown corporation).

Nice to have :

  • Certified Information Security Manager (CISM)
  • Certified Information System Security Professional (CISSP)
  • 15 days ago
Related jobs
S.i. Systems
Ottawa, Ontario

Senior Business Systems Analyst experienced in data migration projects to be the liaison between the Business and IT on various data related projects. Experience in SAP or Microsoft Dynamics. ...

KPMG
Canada, Canada

You will be involved in the selection, installation, configuration, optimization and operation of technologies, including Next Generation Firewalls (NGFW), Secure SD-WAN, Secure Access Service Edge (SASE), Intrusion Prevention System (IPS), Secure Web Gateway (SWG), Zero Trust Network Access (ZTNA),...

S.i. Systems
Ottawa, Ontario

The Integrated Digital Communications Platform (DCP) Project is an initiative set to deliver an integrated solution to enhance or replace five core components or requirements: Web Content Management System (WCMS), Digital Asset Management (DAM) Solution, Cross-Channel Campaign Management (Email Mark...

University of Ottawa
Ottawa, Ontario

Focus on leadership skills in physical and health education in the intermediate and senior divisions; facilitating implementation of current Ontario curriculum, board policies and guidelines; developing, implementing, and evaluating programs; modelling exemplary practices to meet individual needs of...

Workday, Inc.
ON, Canada
Remote

Would you enjoy learning new things in a fast paced environment? Do you have an appetite for variety and challenging business problems to solve? Are you a great communicator who can clearly articulate and demonstrate the value of Workday solutions to our customers?. Responsible for acting as a trust...

S.i. Systems
Ottawa, Ontario

As the successful candidate you will work with the business in a health-care environment to understand SharePoint use cases and support the design and implementation of SharePoint-based solutions for Collaboration, Content Management, and Workflows in both SharePoint on-premise and SharePoint Online...

N. Harris Computer Corporation - USA
.,Ontario,Remote
Remote

Manage and analyze security information and event management (SIEM) tools and services to identify and respond to events as appropriate. Knowledgeable about security controls and processes, vulnerabilities, regulatory and legal changes, and security standards that may impact information security. Th...

Brookfield Renewable
Gatineau, Quebec

Develop and manage analytical tools and processes to improve the quality and transparency of financial results and forecasts and to facilitate ad hoc reporting;. Reporting to the Manager, Financial Planning and Analysis, the Analyst will be responsible for providing analysis and insights into the bu...

Jonas Software UK
Remote Canada
Remote

Jonas’ vision is to be the branded global leader across the aforementioned vertical markets and to be recognized by customers and respective industry stakeholders as the trusted provider of ‘Software for Life’ and as an ambassador for technology, product innovation, quality, and customer service. Th...

Aritzia
Canada, Canada

Determine wage guidelines and eligibility, contributing to the development of recommendations to the business that drive performance with strategic and competitive compensation. This is a unique opportunity to be part of the team responsible for attracting and retaining world-class talent through a ...