Security Advisor Specialist – Governance, Risk & Compliance

Intact FC

Montreal (administrative region)

Hybrid

CAD 119,000 - 145,000

Full time

6 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Flexible work
Extra days off
Wellbeing programs
Employee share plan

Job summary

Intact is seeking a Security Advisor Specialist – GRC to join the Partner Solutions (PSI) team. You will advise projects to ensure security risks are identified and addressed, bridging technical teams and cyber risk management with governance, risk, and compliance in mind.

The role requires a Bachelor’s degree in Computer Science or Information Security, 8+ years in cybersecurity, and cloud knowledge across AWS, Azure, and GCP.

Qualifications

  • Bachelor’s degree in Computer Science, Information Security, or related field.
  • 8+ years of cybersecurity experience including advisory, architecture, or risk management.
  • Strong knowledge of IT infrastructure and cloud platforms (AWS/Azure/GCP) and security technologies.

Responsibilities

  • Act as a trusted security advisor to project teams by assessing risks and controls.
  • Ensure designs align with internal security policies, standards, and regulatory requirements.
  • Collaborate with architects to embed security into solution design and delivery.
  • Conduct security risk assessments and control reviews for new and existing systems, applications, and infrastructure.
  • Identify gaps in security architecture and recommend practical mitigation strategies.
  • Provide guidance on secure design patterns for cloud and hybrid environments.
  • Support governance frameworks including policies, standards, and control libraries.
  • Participate in architecture reviews and security design assessments.
  • Document security positions and technical specifications with the security architect.
  • Monitor emerging threats and evolving technologies to proactively address risks.
  • Clearly communicate risk findings and recommendations to technical and non-technical stakeholders.

Skills

Cybersecurity
Security advisory
Risk management
Cloud security
GRC
Communication skills

Education

Bachelor's degree in Computer Science, Information Security or related field

Tools

AWS
Azure
GCP

Job description

Our employees are at the heart of everything we do. Together, we help people, businesses, and society prosper in good times and be resilient in bad times.

Our employee promise represents Intact’s commitment to you in exchange for living our Values, striving to do your best work, being open to change and investing in your career. In return, we promise to provide support, opportunities and performance-led financial rewards at a workplace where you can shape the future, win as a team and grow with us.

Pay at Intact is about much more than just salary.
  • Flexible work arrangements and a hybrid work model

  • Possibility to purchase up to 5 extra days off per year

  • Multiple benefits offered to support physical and mental wellbeing, including telemedicine, Wellness account and much more

  • Share plan & other savings: up to 12% of salary or even more (ask how you could earn guaranteed income for life)

Salary range (but not limited to):

118,700 - 145,100

Annual bonus target, based on the base salary, with a potential payout of up to double the target (subject to personal and company performance):

15%

As part of our commitment to Win As A Team , we share our success with employees through our annual bonus plan and Employee Share Purchase Plan (ESPP) – with Intact matching 50% of your net shares.

Our pension offerings provide flexibility and long-term security for our employees beyond their careers. We are one of the few companies offering the opportunity to receive guaranteed income for life via our defined benefit pension plan.

Salary for the candidate will be determined taking into consideration a number of factors including: experience, skills, qualifications, anticipated contribution to role, internal equity, etc. The salary range presented above is based on a 35-hour workweek and would represent a majority of different candidate profiles. However, we encourage candidates who may fall outside of this range to apply as well.

About the role

Are you passionate about cybersecurity and looking to make a significant impact in a new and dynamic environment? Join the Partner Solutions (PSI) team as a Security Advisor Specialist – GRC. As a Cybersecurity Advisor Specialist, you will play a critical role in advising projects and organizational initiatives to ensure security risks are identified, assessed, and addressed in alignment with internal policies, standards, and controls. You will act as a bridge between technical teams and cyber risk management, providing expert guidance to ensure secure and compliant solutions are implemented. This role requires a strong technical foundation to challenge and collaborate with IT teams, as well as a solid understanding of governance, risk, and compliance principles.

What you’ll do here:
  • Act as a trusted security advisor to project teams by assessing proposed solutions from a risk and control perspective.
  • Ensure technical implementations align with internal security policies, standards, and regulatory requirements.
  • Collaborate with architects and security advisors to embed security into solution design and delivery.
  • Conduct security risk assessments and control reviews for new and existing systems, applications, and infrastructure.
  • Identify gaps in security architecture and recommend practical mitigation strategies.
  • Provide guidance on secure design patterns, particularly in cloud and hybrid environments.
  • Support the development and maintenance of security governance frameworks, including policies, standards, and control libraries.
  • Participate in architecture reviews and security design assessments.
  • Collaborate with the security architect to document security positions and technical specifications.
  • Monitor emerging threats and evolving technologies to proactively address potential risks.
  • Clearly communicate risk findings and recommendations to technical and non-technical stakeholders.
What you bring to the table
  • Bachelor’s degree in Computer Science, Information Security, a related field, or equivalent experience.
  • 8+ years of experience in cybersecurity, including security advisory, architecture, or risk management roles.
  • Strong technical knowledge of IT infrastructure, cloud platforms (AWS, Azure, GCP), and security technologies.
  • Experience evaluating technical solutions for risk and compliance.
  • Knowledge of security frameworks and standards such as NIST, ISO 27001, CIS, and internal control frameworks.
  • Ability to challenge and collaborate with technical teams on implementation decisions.
  • Understanding of IAM, encryption, network security, and secure system design.
  • Experience with risk assessment methodologies and tools.
  • Excellent communication and interpersonal skills, with the ability to influence and guide stakeholders at all levels.
  • Certifications preferred: CISSP, CISM, CCSP, Azure Security certifications, or equivalent.
  • Ability to define and document standards, security positions, and procedures.
  • Ability to work in a dynamic, teamwork-focused environment.
  • Demonstrated commitment to valuing differences and working alongside diverse people and perspectives.
  • Bilingualism in French and English is required, given the need to interact regularly with colleagues and stakeholders across the country.
  • No Canadian work experience required; however, candidates must be eligible to work in Canada.
#LI-Hybrid

Ce poste jouera un rôle essentiel au sein de notre équipe. | This position will fill an essential role in our team.

_ We are an equal opportunity employer _

At Intact, our Value of respect is founded on seeing diversity as a strength. We strive to create an accessible workplace where employees feel valued, included and encouraged to share their unique perspectives.

We encourage applications from individuals who are members of equity-deserving groups, including but not limited to women, Indigenous peoples, persons with disabilities, Black people, and members of the 2SLGBTQI+ community.

As part of Intact’s commitment to reconciliation, we acknowledge that we work, meet and travel across the land currently called Canada, originally inhabited by First Nations, Metis and Inuit people. This history extends through many centuries and continues to evolve today.

We have policies to ensure equal access and participation for people with disabilities, including providing workplace adjustments (accommodations). A copy of applicable policies is available on request.

If we can provide a specific adjustment to make the recruitment process more accessible for you, please let us know when we reach out about a job opportunity. We’ll work with you to meet your needs.

Learn more about our recruitment process and your candidate journey here.

Please note that Intact does not provide sponsorship or other support for immigration-related matters including but not limited to employer‑specific closed work permits. Candidates must be eligible to work in Canada from the anticipated start date and throughout her employment and are solely responsible for maintaining their work eligibility.

If you are an employee of Intact or belairdirect, please apply for this role on Internal Career Site.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Advisor Specialist – Governance, Risk & Compliance
Security Advisor Specialist – Governance, Risk & Compliance

Intact Financial Corporation • Montreal (administrative region)

Hybrid
CAD 119,000 - 145,000
Hybrid work model
Annual bonus up to 15%
Employee Share Purchase Plan (ESPP)
+1
Security Advisor Specialist – Governance, Risk & Compliance at Intact
Security Advisor Specialist – Governance, Risk & Compliance at Intact

Intact • Montreal (administrative region)

Hybrid
CAD 119,000 - 145,000
Security Specialist - IAM
Security Specialist - IAM

Intact Financial Corporation • Montreal (administrative region)

Hybrid
CAD 119,000 - 145,000
Flexible work arrangements
Hybrid work model
Up to 5 extra days off per year
+3
Security Advisor Specialist – Governance, Risk & Compliance at Intact
Security Advisor Specialist – Governance, Risk & Compliance at Intact

Intact • Saint-Hyacinthe

Hybrid
CAD 119,000 - 145,000
Hybrid work model
Wellness account
Employee Share Plan
+1
Security Advisor Specialist - Threat Modelling
Security Advisor Specialist - Threat Modelling

Intact • Toronto

On-site
CAD 119,000 - 145,000
Hybrid work model
Extra days off (up to 5) per year
Wellbeing benefits and telemedicine
+1
Security Advisor Senior, Offensive Security (Global Red Team)
Security Advisor Senior, Offensive Security (Global Red Team)

Intact Financial Corporation • Toronto

Hybrid
CAD 120,000 - 170,000
Hybrid work model
Extra vacation days (up to 5)
Telemedicine & Wellness account
+1
Security Advisor Specialist - Threat Modeling
Security Advisor Specialist - Threat Modeling

Intact Financial Corporation • Toronto

Hybrid
CAD 119,000 - 145,000
Hybrid work model
Employee Share Purchase Plan (ESPP)
Defined benefit pension plan
+1
Security Analyst II - Pen Tests
Security Analyst II - Pen Tests

Intact • Toronto

Hybrid
CAD 81,000 - 99,000
Flexible hybrid work
Extra vacation days
Wellbeing benefits
+1
Security Analyst II - Governance & Data Protection
Security Analyst II - Governance & Data Protection

Intact Financial Corporation • Montreal (administrative region)

Hybrid
CAD 81,000 - 99,000
Hybrid work model
Share plan
Wellbeing program
+1
Security Analyst II - Pen Tests
Security Analyst II - Pen Tests

Intact FC • Vancouver

Hybrid
CAD 81,000 - 99,000
Hybrid work model
Up to 5 extra days off per year
Telemedicine and Wellness account
+1