×
Register Here to Apply for Jobs or Post Jobs. X

Security Risk Analyst

Job in Surrey, BC, Canada
Listing for: Miller Thomson LLP
Full Time position
Listed on 2026-08-01
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below

Miller Thomson
- Vaughan Office, 100 New Park Place, Vaughan, Ontario, Canada

Miller Thomson
- Calgary Office, 525 8th Avenue S.W., Calgary, Alberta, Canada

Miller Thomson
- London Office, 255 Queens Avenue, London, Ontario, Canada

Job Description

Posted Thursday, July 30, 2026 at 4:00 a.m.

As a recognized national law firm, we support, grow, and impact our communities through our work. We help entrepreneurs, companies, and professionals shape and build the Canadian economy.

When you start a career with Miller Thomson, you join a firm that puts its people first. We provide the opportunity to influence the course of your career, community, and workplace with the support and backing of a national organization. While teamwork and collaboration are hallmarks of our culture, we accept and encourage individuality. You can expect a friendly, safe, and supportive environment where your colleagues will rally around to help you succeed.

We are seeking a Security Risk Analyst to join our team in any of our offices
!

The Security Risk Analyst is responsible for identifying, assessing and supporting the management of information security risks across the Firm. Reporting to the Manager, Compliance & Risk, this role contributes to the Firm’s risk management program by evaluating technology risks, supporting control assessments and assisting in the development of mitigation strategies.

The position exists to provide analytical and technical expertise in the assessment of risks related to systems, applications, data and third-party services. The Security Risk Analyst works closely with IT teams, business stakeholders and vendors to identify vulnerabilities, assess potential impacts and ensure appropriate controls are in place. This role contributes to maintaining a secure and resilient technology environment by supporting risk assessments, monitoring risk activities and assisting in the continuous improvement of the Firm’s security posture.

The Security Risk Analyst plays a key role in enabling informed decision-making related to risk and compliance.

Key Responsibilities:

  • Identify and assess information security risks by evaluating systems, processes and technologies to determine potential vulnerabilities and impacts.
  • Analyze risk findings by documenting risk levels, control gaps and mitigation recommendations to support decision-making and risk tracking.
  • Support control reviews by assessing the design and effectiveness of security controls to ensure alignment with policies and standards.
  • Evaluate vendor and third-party risks by reviewing security documentation and assessing compliance with Firm requirements.
  • Maintain risk registers and track remediation activities by monitoring progress and ensuring timely resolution of identified risks.
  • Work with infrastructure, application and business teams to understand risks, recommend controls and support risk mitigation efforts.
  • Assist with audit and compliance initiatives by providing risk-related documentation, evidence and analysis.
  • Contribute to the improvement of risk management practices by identifying trends, recommending enhancements and supporting awareness initiatives.

What You'll Bring:

  • Bachelor's Degree in Information Security, Information Technology, Risk Management or a related discipline, or an equivalent combination of education and experience.
  • 3-5 years of experience in information security, risk analysis, compliance or related roles.
  • Experience supporting risk assessments or security programs in an enterprise environment.
  • Experience in a professional services organization is considered an asset.
  • Familiarity with information security frameworks (e.g., ISO 27001, NIST or similar).
  • Understanding of risk assessment methodologies and control frameworks.
  • Knowledge of common security risks, vulnerabilities and mitigation strategies.
  • Experience with risk registers, assessment tools and reporting practices.
  • Strong analytical and problem-solving skills.
  • Ability to interpret technical information and assess risk implications.
  • Strong attention to detail and organizational skills.
  • Excellent written and verbal communication skills.

What we offer:

We believe in the importance of a Total…

Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary