Now hiring

risk management analyst @ Farm Credit Canada

CAOnsiteFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

Location:Regina, SaskatchewanVarious FCC offices may be considered Closing Date (MM/DD/YYYY):08/31/2026 Worker Type:Permanent Language(s) Required:English Salary Range (plus eligible to receive a performance based incentive, applicable to position) :$94,620 - $128,020 Why FCC?At FCC, we're proud to be 100% invested in Canadian agriculture and food. As a federal Crown corporation, we provide financing, knowledge resources and business management software to over 103,000 customers nationwide. Here's what you can expect when you join our team:Competitive total rewards packages: market-aligned and performance-based salary and incentive programs, flexible and comprehensive group benefit and savings plans, and well-being support through benefits and wellness programsPurpose-driven work: We build strong relationships, share knowledge and support the people who feed the worldGrowth: Learning and development opportunities to help you thriveHybrid work options.How you'll make an impactAs a Senior Technical Analyst, Third-Party Risk Management (TPRM), you'll assess and monitor technology, cybersecurity, privacy and operational risks associated with third-party service providers. You'll provide independent analysis and risk-based recommendations to ensure vendor services align with organizational policies, security standards, regulatory requirements and risk appetite. Working closely with business owners, procurement, cybersecurity, privacy, legal and vendor representatives, you'll evaluate third-party controls, identify potential risks, facilitate remediation activities and support ongoing vendor oversight throughout the vendor lifecycle. We're looking for a strong analytical thinker who can assess vendor security risks, interpret technical documentation and turn findings into practical recommendations. Someone who's comfortable reviewing security reports, asking thoughtful questions and communicating clearly with both technical teams and business stakeholders. If you have a foundation in information security or cybersecurity, enjoy independent assessment work and can explain complex technical topics in plain language, this could be the role for you. What you'll doReview vendor security documentation, including SOC 2 reports, security questionnaires and supporting evidence, to assess alignment with FCC requirementsComplete vendor assessments from a shared queue, taking ownership of assigned assessments from intake through recommendationAnalyze information security, business continuity and privacy considerations to identify vendor risks, control gaps and mitigation needsCollaborate with third-party risk management, cybersecurity, privacy and business stakeholders to clarify assessment questions and support consistent decision-makingCommunicate assessment findings and recommendations to vendors and internal stakeholders in clear, practical languageContribute to a high-volume assessment environment by managing priorities, documenting rationale and escalating risks or exceptions when needed What you'll bring to the teamRequired qualifications:A bachelor's degree in computer science, information systems, cybersecurity, information security or a related disciplineAt least four years of related experience in information security, cybersecurity, technology risk, vendor risk management, security governance, risk and compliance, or a related technical risk field (or an equivalent combination of education and experience)Strong knowledge of information security concepts, controls and risk assessment practicesExperience interpreting technical security documentation and assessing vendor controls against defined requirementsAbility to assess risks, identify control gaps and provide practical recommendations that support business and vend

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores