Junior Analyst, Cyber Risk

Vancouver (VHO)

Applications have closed

Teck Resources

Teck is Canada's largest diversified mining company and is committed to responsible development. It has major business units focused on copper, metallurgical coal, zinc, gold and energy. Shares are listed on the TSX under the symbols TECK.A and...

View company page

Working with the Architect, Security Risk – the Junior Analyst, Cyber Risk assist us with the development of our FAIR risk assessment and vendor security programs.
Teck applies a risk based methodology to evaluate cyber risk across our environment. Using quantified risk assessments, we can best understand the impacts of those risks on the business and prioritize accordingly.
The successful candidate will apply a focused and analytical mind to the assessment of risk, producing reproducible and defendable risk assessments covering both internal and 3rd party risk.

Responsibilities:

  • Vendor Security Assessment: The Junior Analyst, Cyber Risk will complete vendor risk assessments based upon qualitative and quantitative measures to assess the security of key Teck supply chain partners and vendors
  • FAIR Risk assessment: The analyst will apply the FAIR (Factor Analysis of Information Risk) model to assess key risks facing the organization. In addition the analyst will ensure that data helpers and loss tables used in those analysis tasks are maintained and updated

Qualifications:

  • Knowledge of the FAIR risk model and its application to information security and other non security risks
  • Experience with the RiskLens platform, including the application of loss tables and data helpers for risk quantification
  • Solid grasp of enterprise accounting principals and frameworks
  • FAIR certification is an asset
  • Interpersonal Skills and Emotional Intelligence
  • Effective time management skills, effectively balancing many different tasks
  • Ability to work in a constantly evolving, multifaceted environment
  • Ability to communicate in Spanish (written/verbal) would be a strong asset
Successful candidates must be fully vaccinated against infection by COVID-19. Candidates who are unable to be vaccinated due to a personal characteristic protected under applicable human rights legislation may request to be exempt from this requirement. We will do our best to accommodate those who are unable to be vaccinated.
About TeckAt Teck, we value diversity. Our teams work collaboratively and respect each person’s unique perspective and contribution.
We wish to thank all applicants for their interest and effort in applying for the position; however, only candidates selected for interviews will be contacted.  
Teck is a diversified resource company committed to responsible mining and mineral development with major business units focused on copper, steelmaking coal, zinc and energy. Headquartered in Vancouver, Canada, its shares are listed on the Toronto Stock Exchange under the symbols TECK.A and TECK.B and the New York Stock Exchange under the symbol TECK.   The pursuit of sustainability guides Teck’s approach to business. Teck is building partnerships and capacity to confront sustainability challenges within the regions in which it operates and at the global level. In 2018, Teck was named to the Dow Jones Sustainability World Index (DJSI) for the ninth straight year, indicating that Teck’s sustainability practices rank in the top 10 per cent of the world’s 2,500 largest public companies in the S&P Global Broad Market Index.  
Learn more about Teck at www.teck.com or follow @TeckResources 
Your application to this posting is deemed to be your consent to the collection, use and necessary disclosure of personal information for the purposes of recruitment. Teck respects the privacy of all applicants and the confidentiality of personal information.

Tags: Privacy Risk assessment Security assessment

Region: North America
Country: Canada
Job stats:  56  15  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.