Sr Governance, Risk & Compliance Consultant
Pickering, ON, CA, L1W 3J2
Status: Regular Full Time
Working Conditions: Hybrid
Education Level: 4 Year University Degree, preferably in Computer Science, Computer Engineering or a related field
Base Location: Oshawa, ON
Temporary Work Location: Pickering, ON
Shifts(s): Days
Travel: 10%
Deadline to Apply: January 28, 2025
Salary Range: $2,658.86 - $3,118.72 Per Week
Electrify your career and help build a brighter tomorrow.
Every generation has a challenge that defines them. At OPG, we are calling on all innovators, disruptors, thought leaders and change-makers. Join us as we work to electrify life in one generation and build a sustainable future powered by our electricity, our ideas, and our people. Join OPG and make history.
Whether you work in the skilled trades or are a business professional, a career at OPG is an opportunity to electrify your life on -- and off -- the job.
JOB OVERVIEW
Ontario Power Generation (OPG) is looking for a dynamic, strategic and results-driven professional to join our team in the role of Senior Governance, Risk & Compliance Consultant. Reporting to the Section Head of Information Systems, this position is responsible to Stay informed about new government regulations and governance requirements, ensuring that OPG's cybersecurity policies and practices remain compliant with the latest legal and regulatory standards. Stay informed about new government regulations and governance requirements, ensuring that OPG's cybersecurity policies and practices remain compliant with the latest legal and regulatory standards.
KEY ACCOUNTABILITIES
- Perform comprehensive policy gap and control assessments against CSA N290.7 standard, government regulations, and other cybersecurity frameworks to identify areas of improvement and ensure compliance.
- Review and enhance policies, procedures, and processes, maintaining oversight on Cyber Governance, Risk, and Compliance processes for OT systems.
- Assist in developing and maintaining Key Performance Indicators (KPIs) and Key Risk Indicators (KRIs) for the Cyber Governance Security Program, providing advisory services on best practices to business units.
- Advise OPG subsidiaries on developing robust cybersecurity practices to enhance maturity and reduce overall risk to the OPG brand.
- Lead cybersecurity projects aimed at improving the efficiency and effectiveness of the organization's cybersecurity measures.
- Represent OPG Cyber Security at external committees and forums, ensuring the organization's interests and cybersecurity posture are well-represented.
- Conduct various risk, control, maturity, and compliance assessments based on established security frameworks, providing recommendations for improving security posture and resolving identified risks.
- Perform third-party cyber risk assessments, work with vendors to ensure adherence to cybersecurity terms and conditions and assist in maturing the Third-Party Risk Management program by defining security controls based on vendor risk ratings and tiers.
QUALIFICATIONS
- 4 Year University Degree, preferably in Computer Science, Computer Engineering, or a related field
- Over 6 to 8 years of experience in Cyber Risk, Governance, and Cyber Security program compliance, with extensive knowledge of business continuity, OT architecture, incident response, and risk management
- Knowledge of Security Frameworks: Strong understanding of security concepts and frameworks such as NIST CSF, CIS, COSO, ISO 27001, CSA N290.7, and NERC-CIP, ensuring the ability to conduct thorough risk and compliance assessments.
- Cyber Governance and Compliance: Proven experience in reviewing and enhancing policies, procedures, and processes to maintain oversight on Cyber Governance, Risk, and Compliance processes for OT systems.
- Performance Metrics Development: Ability to assist in developing and maintaining Key Performance Indicators (KPIs) and Key Risk Indicators (KRIs) for the Cyber Governance Security Program, providing valuable advisory services to business units.
- Project Leadership: Demonstrated capability to lead cybersecurity projects that improve efficiency and effectiveness, with strong project management skills.
- Communication and Presentation Skills: Excellent communication and presentation skills, essential for advising OPG subsidiaries, representing OPG Cyber Security at external committees and forums, and collaborating with internal and external stakeholders.
The successful candidate will exhibit uncompromising integrity and commitment to upholding corporate values, and the OPG Code of Business Conduct.
OPG is committed to fostering an inclusive, equitable, and accessible environment. If you require accommodation during the selection process, please contact AODA@opg.com
This position is moving to OPG Corporate Headquarters: In Summer 2025, OPG will officially welcome employees to our new Corporate Headquarters located at 1908 Colonel Sam Drive, Oshawa, Ontario. This position will be temporarily based in Pickering, ON until the move to Headquarters in the Summer of 2025.
What makes a career at OPG different?
With operations across Ontario and the United States, OPG is one of the most diverse power producers in North America. As the largest generator in Ontario, we meet approximately 50% of the province’s electricity needs, largely from low-carbon sources like nuclear and hydro.
As we work to achieve our vision of Electrifying life in one generation, OPG and our family of companies are also helping advance the development of new low-carbon technologies such as Small Modular Reactors (SMRs), refurbishment projects, and electrification initiatives to help power the growing demands of a growing economy.
Join OPG and make history.
Please submit your application online at https://jobs.opg.com/. OPG thanks all those who apply; however, only candidates considered for an interview will be contacted.
#LI-Hybrid
.
The base salary range considers many factors including, but not limited to experience, education, and training, including any collective agreement requirements for union represented positions. It is not typical for the salary to be offered near the top of the range, and salary is dependent on numerous factors. For management roles, the base salary range does not represent the total compensation package. The total compensation package for regular full-time management roles includes pay-for-performance programs for annual and medium time periods. Maintaining a high-performance culture and excellence is a core expectation of every member of our leadership team and is rewarded through the established compensation framework.
OPG is committed to employment equity. As such, we encourage applicants from equity-seeking communities (Indigenous Peoples, racialized persons, persons with disabilities, and women). We strongly believe that alleviating the under-representation of equity-seeking individuals will create a stronger OPG team and allow us to better serve the needs of our diverse communities.
In order to fulfill the above-mentioned purpose, priority in hiring may be given to qualified persons who self-identify as a member of equity-seeking groups as identified in the application process. This initiative constitutes a special program under the Human Rights Code/Canadian Human Rights Act.