ARCHIVED
This job listing has been archived and is no longer accepting applications.
MisuJob - AI Job Search Platform MisuJob

Security Risk & Compliance Analyst

Confidential

Ottawa, Ontario Hybrid permanent

Posted: January 30, 2026

Interested in this position?

Create a free account to apply with AI-powered matching

Job Description

*Must be located in Ottawa, ON to collaborate in office 3 days/week. 

#CareersThatKickSaas! TrueContext is looking for a Security Risk & Compliance Analyst, an individual-contributor role who is responsible for owning customer security questionnaires, vendor security risk management, and SOC 2–aligned security and compliance activities for TrueContext. The role acts as the central point of contact for security and compliance questions from customers, vendors, and internal stakeholders. 

Key Responsibilities 

Lead end-to-end completion of customer security questionnaires, RFIs, and due diligence requests, coordinating inputs from engineering, security, and leadership to ensure accurate and consistent responses.   

Maintain and continuously improve a reusable library of standard security answers, architecture descriptions, and supporting evidence mapped to SOC 2 and related frameworks.   

Own the third-party/vendor security lifecycle: intake, risk triage, detailed security assessments for higher-risk vendors, ongoing monitoring, and periodic reassessment.   

Review vendor SOC 2 reports and other attestations, identify issues or exceptions, document risk, and drive agreed mitigation actions with internal owners.   

Coordinate the company’s SOC 2 program activities, including control mapping, evidence collection, tracking remediation items, and preparing for audits.   

Partner with engineering teams to understand system design, data flows, and operational practices, translating technical details into clear security and compliance narratives.   

Provide security and compliance input on contracts and DPAs, working with Legal and Procurement on security clauses, data protection requirements, and vendor obligations.   

Define and track practical metrics (e.g., questionnaire volume/SLAs, vendor risk tiers, open remediation items) and report status and risks. 

Educate Sales, Customer Success, and other go-to-market teams on security positioning, SOC 2 scope, and standard responses so they can set expectations with customers.    

 

Skills and Qualifications 

2–5 years of experience in information security, risk management, compliance, or related roles, ideally in a SaaS or cloud-native environment.   

Direct experience with customer security questionnaires and vendor risk assessments, including reading SOC 2 reports and other security attestations.   

Solid understanding of SOC 2 principles and common security controls (access management, encryption, logging/monitoring, SDLC, incident response, business continuity).   

Ability to interact confidently with senior engineers, translate between technical and non-technical audiences, and influence without direct authority.   

Strong written and verbal communication skills with an emphasis on clarity, consistency, and reusability of security and compliance messaging.   

Experience with GRC, vendor risk, or compliance platforms (e.g., SOC 2 automation tools, vendor risk management tools) is an asset.   

Some Extra Benefits: 

Company-wide & team social events 

Wellness yearly allowance 

Annual learning allowance 

Great time off benefits (4 weeks of vacation + 2 True2ME days + 1 TrueCrewCares day) 

Summer FriYAYs (every other Friday off from Victoria Day until Labour Day) 

Catered lunches 2x per week 

An amazing office space with plenty of snacks, drinks, and space to collaborate 

Hybrid work environment (3 days a week in the office) 

Salary Range:

$80,000 - $120,000

If you are looking for the opportunity to embrace and be part of a truly unique company culture, this KickSaaS opportunity might just be for you!

Why Apply Through MisuJob?

AI-Powered Job Matching: MisuJob uses advanced artificial intelligence to analyze your skills, experience, and career goals. Our matching algorithm compares your profile against thousands of job requirements to find positions where you have the highest chance of success. This saves you hours of manual job searching and ensures you only see relevant opportunities.

One-Click Applications: Once you create your profile, applying to jobs is effortless. Your resume and cover letter are automatically tailored to highlight the most relevant experience for each position. You can apply to multiple jobs in minutes, not hours.

Career Intelligence: Beyond job matching, MisuJob provides valuable career insights. See how your skills compare to market demands, identify skill gaps to address, and understand salary benchmarks for your experience level. Make data-driven decisions about your career path.

Frequently Asked Questions

How do I apply for this position?

Click the "Register to Apply" button above to create a free MisuJob account. Once registered, you can apply with one click and track your application status in your dashboard.

Is MisuJob free for job seekers?

Yes, MisuJob is completely free for job seekers. Create your profile, get matched with jobs, and apply without any cost. We help you find your dream job without any hidden fees.

How does AI matching work?

Our AI analyzes your resume, skills, and experience to understand your professional profile. It then compares this against job requirements using natural language processing to calculate a match percentage. Higher matches mean better fit for the role.

Can I apply to jobs in other countries?

Absolutely. MisuJob features jobs from companies worldwide, including remote positions. Filter by location or look for remote opportunities to find jobs that match your preferences.

Ready to Apply?

Join thousands of job seekers using MisuJob's AI to find and apply to their dream jobs automatically.

Register to Apply