Cybersecurity Risk & Security Modernization Consultant 26-05334
Job Summary
Job Title: Cybersecurity Risk & Security Modernization Consultant
Location: Markham Canada
Duration: 12 Months
We are seeking an experienced Cybersecurity Risk & Security Modernization Consultant to support enterprise security initiatives focused on Patch Management Third-Party Risk Management (TPRM) and Quantum-Safe Security readiness. The ideal candidate will have expertise in cybersecurity governance vulnerability remediation vendor risk management and enterprise security modernization within large-scale or regulated environments.
The consultant will work closely with infrastructure security compliance and risk management teams to strengthen the organizations security posture and support strategic cybersecurity transformation initiatives.
- Lead enterprise patch management initiatives supporting security modernization programs
- Coordinate vulnerability remediation efforts across infrastructure applications and endpoint environments
- Partner with infrastructure and operations teams to ensure timely deployment of security patches and updates
- Monitor vulnerability exposure and remediation metrics using enterprise security tools
- Support compliance and audit initiatives through patch governance and reporting
- Conduct security risk assessments for vendors suppliers and external partners
- Review vendor security controls audit reports compliance documentation and remediation plans
- Evaluate cybersecurity risks associated with third-party technologies and services
- Collaborate with procurement legal compliance and governance teams on vendor onboarding and risk review processes
- Maintain risk registers assessment documentation and governance records
- Support enterprise quantum-safe security and cryptographic modernization initiatives
- Identify cryptographic dependencies and encryption-related risks across enterprise systems
- Contribute to future-state security architecture discussions aligned with post-quantum security standards
- Collaborate with security engineering and architecture teams on encryption governance strategies
- 7 years of experience in Cybersecurity Information Security Risk Management or Security Governance
- Strong experience with enterprise Patch Management and Vulnerability Management programs
- Hands-on experience conducting Third-Party Risk Management (TPRM) assessments and vendor security reviews
- Knowledge of cybersecurity frameworks such as:
- NIST
- ISO 27001
- CIS Controls
- Understanding of encryption technologies cryptographic standards and quantum-safe security concepts
- Experience working in large enterprise or highly regulated environments
- Strong stakeholder management and cross-functional collaboration skills
- Experience with vulnerability management platforms such as:
- Qualys
- Tenable
- Rapid7
- Familiarity with GRC platforms and security governance processes
- Industry certifications preferred:
- CISSP
- CISM
- CRISC
- Security
- Experience supporting enterprise cybersecurity transformation initiatives
Required Experience:
Contract