PSP Investments

Financial Services

SeniorAnalyst,InformationSecurity(GRC)andCrisisManagement

$0–0k Montreal, Quebec, Canada FULL TIME Remote Friendly
The Brief

“Senior Analyst, Information Security (GRC) and Crisis Management at PSP Investments. Skills: Security GRC, Crisis management, Information security. Support security governance framework maintenance. Support policy maintenance”

Industry & Context.

Financial Services
Problems you'll solve

Root cause analysis

What They're Looking For.

Must Have

Bachelor's degree in Information security, Computer Science, Engineering, Three (3) to five (5) years of experience in information security, Significant exposure to security GRC activities, Experience with incident preparedness, Experience with crisis management processes, Familiarity with security frameworks, Ability to organize and work autonomously, Ability to work collaboratively, Manage competing priorities, Deliver quality work with minimal supervision, Analytical and writing skills, Bilingualism: English and French

Nice to Have

Relevant certification or active pursuit thereof, Experience in financial services, Experience in a regulated industry

What You'll Do.

Support security governance framework maintenance

Support policy maintenance

Support standards maintenance

Support procedures maintenance

Conduct security risk assessments

Maintain corporate security risk register

Support internal audit activities

Support external audit activities

Track compliance requirements

Track remediation activities

Support vendor risk management program

Assess vendor security

Follow up on vendor action items

Prepare security KPI reporting

Prepare security KRI reporting

Contribute to CISO briefings

Contribute to senior leadership briefings

Stay current on threat landscape

Share relevant findings

Support Crisis Management Plan maintenance

Support Cyber Incident Response Plan maintenance

Support operational playbooks maintenance

Coordinate crisis simulations

Facilitate crisis simulations

Coordinate tabletop exercises

Facilitate tabletop exercises

Document crisis exercise findings

Track crisis exercise remediation

Participate in incident response

Participate in crisis event response

Document incident response

Coordinate incident response

Conduct post-incident review

Maintain crisis communication protocols

Maintain crisis communication contact lists

Monitor threat intelligence feeds

Monitor sector information

Collaborate with Business Continuity

Align business continuity objectives

Align disaster recovery objectives

Identify synergies across programs

Identify synergies across plans

Identify synergies across exercises

How You'll Work.

Team & Collaboration

Cross-functional partners; Internal Audit; Legal; Enterprise Risk; Business Continuity stakeholders

Communication Scope

Translate technical information; Clear documentation

Free ATS check

Applying for this Senior Analyst, Information Security (GRC) and Crisis Management role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about PSP Investments?

Real rants from real employees. Read before you apply.

Read Company Rants →