Cybersecurity Risk Assessor

Raise

Vancouver

On-site

CAD 160,000 - 170,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Raise is hiring a Cybersecurity Risk Assessor in Vancouver, BC. The role focuses on reducing security risks for a major Canadian energy client, including vulnerability assessments and penetration testing using tools like Kali Linux, Tenable, and Burp Suite.

The successful candidate will guide remediation, validate baselines, and assist in incident response and compliance activities with CIP, NIST, and ISO controls. A strong security background and ability to obtain clearance are required.

Qualifications

  • Minimum seven years in IT with at least five in cybersecurity.
  • Experience with vulnerability scanning, penetration testing, and risk assessment.
  • Familiarity with regulatory frameworks (NIST/BC FIPPA) and security controls.
  • Ability to obtain security clearance for a Security Sensitive Position.

Responsibilities

  • Identify cybersecurity risks and incidents through vulnerability assessments and monitoring.
  • Perform technical penetration testing and web app testing with Kali/Tenable/Burp Suite.
  • Analyze test results and recommend remediation and baseline configurations.
  • Support incidents with documentation and incident response coordination.
  • Provide guidance on cybersecurity practices within IT projects and audits.

Skills

Cybersecurity experience
Vulnerability assessment
Penetration testing
Threat monitoring
Security policies
ISO 27001/27002

Education

Bachelor’s degree in Computer Science or related field
CISSP (Asset)
CRISC (Asset)
CISA (Asset)

Tools

Kali Linux
Tenable
Burp Suite
SIEM
Active Directory

Job description

  • Pay Rate: $78.70/hour, depending on experience
  • Contract Length: 1 year
  • Pay Rate: $78.70/hour, depending on experience
  • Contract Length: 1 year
  • Location: Vancouver, British Columbia

Raise is currently hiring a Cybersecurity Risk Assessor on behalf of our client. They’re expanding their team to meet growing needs, making this a unique opportunity to work with an industry leader. Our Client, is one of the largest electrical energy suppliers in Canada.

Note: The primary pay rate is based on T4 classification; however, we will also consider applications from candidates interested in an INC classification, where applicable.

Description

The Cybersecurity Risk Assessor in this role will complete activities that reduce, mitigate, and document security risks to protect our client's critical information infrastructure. This role ensures full compliance with digital technology and cybersecurity regulations and policies while combining risk assessment expertise with technical penetration testing capabilities.

Responsibilities
  • Risk & Vulnerability Assessment: Identify potential cybersecurity risks and incidents by performing vulnerability assessments, coordinating with internal teams/stakeholders, and monitoring external events and security logs.
  • Penetration Testing & Technical Operations: Conduct technical penetration testing and web application testing using specialized tools such as Kali Linux, Tenable, and Burp Suite.
  • Remediation & Baseline Validation: Determine remediation options and recommend solutions by analyzing security test results, confirming the impact of security risks, and validating baseline security configurations for operating systems, applications, networking tools, and telecommunications equipment.
  • Incident Support & Operations: Provide support during and after critical systems breaches, outages, or unexpected activities by creating security operations documents (e.g., incident reports) and collaborating with incident response leads.
  • Project Guidance & Security Integration: Provide guidance on cybersecurity action items in IT projects by conducting compliance impact assessments and ensuring projects adopt industry best practices.
  • Compliance & Audit Support: Collaborate with Critical Infrastructure Protection (CIP) Policy Subject Management Experts (SMEs), safety teams, and emergency management to complete compliance sustainment activities, collect audit-supporting documents, and maintain CIP policies.
Qualifications
  • A minimum of seven (7) years of working experience in Information Technology, with at least five (5) years focused specifically on cyber security or equivalent.
  • Technical & Domain Knowledge IT Processes & Capabilities
  • Internet Policy Enforcement and Network Architecture
  • Active Directory and Log Management
  • Vulnerability Scanning and Penetration Testing
  • Auditing, Configuration Management, and Asset Management
  • Continuous Monitoring, Web Content Filtering, and Strong Authentication/Encryption
  • Security Technologies
  • Intrusion Prevention/Detection (Network, Host, Wireless) and WIDS
  • Security Information Event Management (SIEM) and VPN
  • Next-Generation Firewalls (NGFW) and Web Application Firewalls (WAF)
  • Database Activity Monitoring (DAM) and Public Key Infrastructure (PKI)
  • Data Loss Prevention (DLP) and Identity and Access Management (IAM) solutions
  • Industry Standards & Frameworks
  • ISO 27001/27002
  • National Institute of Standards and Technology (NIST)
  • British Columbia’s Freedom of Information and Protection of Privacy Act (BC FIPPA)
  • North American Electric Reliability Corporation Critical Infrastructure Protection (NERC CIP)
  • Control Objectives for Information and Related Technologies (COBIT)
  • Education and Certifications
  • Bachelor’s degree or technical diploma in Computer Science, Information Security, or an equivalent field.
  • Ability to successfully obtain a security clearance for a Security Sensitive Position classification.
  • Preferred Certifications (Considered an Asset)
  • Certified Information Systems Security Professional (CISSP)
  • Certified in Risk Information Systems Control (CRISC)
  • Certified Information Systems Auditor (CISA)
  • Certified Information Security Manager (CISM)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Penetration Tester (GPEN)
Additional Information
  • Every contractor must supply their own Windows 11 Laptop computer for the duration of the assignment.
  • Every contractor must supply their own “Smart Phone”. This is needed to gain access to the Organizations network.

We encourage all qualified applicants to apply, including people from traditionally underrepresented groups such as women, visible minorities, Indigenous peoples, people identifying as LGBTQ2SI, veterans, and people with visible/nonvisible disabilities.

We have a dedicated webpage for accommodations where you can learn more about what we offer and request accommodation: https://raise.jobs/accommodations/

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Risk & Penetration Tester (Contract)
Cybersecurity Risk & Penetration Tester (Contract)

Raise • Vancouver

On-site
CAD 160,000 - 170,000
Work Package Manager - Compliance & Emergent Initiatives
Work Package Manager - Compliance & Emergent Initiatives

Raise • Surrey

On-site
CAD 71,000 - 101,000
Senior Security Analyst, Third Party Risk
Senior Security Analyst, Third Party Risk

Insight Global • Vancouver

On-site
Senior Security Engineer
Senior Security Engineer

fispan • Vancouver

On-site
CAD 130,000 - 160,000
Extended health and dental benefits
Paid time off
Savings and retirement plan matching
+5
Senior IT Project Manager
Senior IT Project Manager

Raise • Calgary

Hybrid
CAD 113,000 - 130,000
Cybersecurity Architect - REMOTE
Cybersecurity Architect - REMOTE

Pave Talent • Canada

On-site
CAD 90,000 - 100,000
Competitive compensation
Professional development opportunities
Collaborative work environment
Cybersecurity Analyst -191 - IW- 191
Cybersecurity Analyst -191 - IW- 191

DGA Careers • Edmonton

On-site
CAD 90,000 - 120,000
Cyber Security Engineer
Cyber Security Engineer

Altis • Vancouver

Hybrid
CAD 110,000 - 160,000
Hybrid work model
Professional growth opportunities
Cybersecurity Analyst -191
Cybersecurity Analyst -191

DGA Careers • Edmonton

On-site
CAD 90,000 - 130,000
IT Advisor (Cybersecurity Audit and OT Risk)
IT Advisor (Cybersecurity Audit and OT Risk)

BC Hydro • Vancouver

On-site
CAD 85,000 - 110,000
15 paid vacation days
Flexible work model
Training and development courses