Enterprise Risk Specialist
fortra · Canada · On-site
Posted Sep 7, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Whether you’re an experienced professional or just getting started, your contributions matter at Fortra. If you’re passionate about tackling meaningful challenges alongside talented team members committed to helping each other succeed, all while having lots of fun, we want to hear from you. We offer competitive benefits and salaries, personal and professional development opportunities, flexibility, and much more!
The Risk Manager will support the Director of Risk & Security by leading internal audit and risk management activities across the organization. This role encompasses both traditional enterprise risk management (ERM) functions and emerging readiness efforts aimed at evaluating the organization’s ability to respond to a range of global threat scenarios. This is a hands-on position spanning multiple domains, including operational risk, IT and cybersecurity risk, third-party/vendor risk, compliance monitoring, policy governance, and business continuity planning. The Risk Manager will be responsible for guiding enterprise risk assessments, driving remediation efforts, and informing strategic decision-making through clear, high-impact reporting and advisory support. The ideal candidate brings strong technical risk acumen, demonstrated leadership capability, and the ability to operate effectively in a fast-paced, cross-functional environment. Success in this role requires building trust, fostering transparency, and collaborating across teams to strengthen the organization’s overall risk posture.

 WHAT YOU'LL DO
Risk Ownership & Collaboration
Conduct and coordinate enterprise-wide risk assessments to identify and evaluate current and emerging risks.
Maintain and continuously improve the organization’s risk register, control libraries, and mitigation plans.
Lead root cause analysis and corrective action planning for key risk incidents, control failures, and audit findings.
Third-Party & Cybersecurity Risk
Partner with IT and Procurement to assess and monitor third-party risk, including due diligence, contract risk review, and ongoing oversight.
Support the cybersecurity team in aligning risk management practices with frameworks such as NIST, ISO, and other industry standards.
Compliance & Policy Governance
Ensure adherence to internal policies, regulatory requirements (e.g., SOX, GDPR, HIPAA), and industry standards.
Monitor compliance metrics and escalate issues requiring executive visibility.
Contribute to the development, maintenance, and communication of risk-related policies, procedures, and training programs.
Reporting & Stakeholder Engagement
Prepare risk dashboards, heat maps, and executive summaries for the Director of Risk & Security, senior leadership, and audit committees.
Serve as a primary liaison for external auditors, regulators, and business unit leaders.
Communicate complex risk topics clearly to both technical and non-technical audiences.
Cross-Functional Collaboration
Collaborate with IT,…