Executive Advisor – Governance, Risk and Compliance
About This Position
Executive Advisor – Governance, Risk and Compliance
Company: Malleum
Location: Toronto, Ontario, Canada
Join Malleum, a leading cyber‑defense firm serving space, aerospace, defense, government, financial services and critical infrastructure. As an Executive Advisor you will shape and elevate governance, risk and compliance (GRC) programs for high‑impact, national‑security clients.
Key Responsibilities
- Design, implement and continuously improve GRC frameworks aligned with industry standards (ISO 27001, NIST, GDPR, etc.).
- Partner with senior client leadership to assess risk exposure, define mitigation strategies, and monitor compliance across complex, multinational environments.
- Provide expert advice on regulatory changes, cyber‑security legislation and emerging threats, translating technical concepts into actionable business decisions.
- Lead cross‑functional workshops and training sessions to embed a culture of resilience and accountability.
- Develop and present executive‑level reports, dashboards and risk‑heat maps for board and stakeholder review.
- Collaborate with Malleum’s cyber‑operations teams to ensure alignment between technical controls and governance objectives.
- Mentor junior consultants and contribute to knowledge‑sharing initiatives within the firm.
Required Qualifications
- 10+ years of experience in governance, risk management, compliance or related cyber‑security roles, preferably within defense, aerospace or critical infrastructure sectors.
- Proven track record advising C‑suite executives and government agencies on GRC strategy.
- Strong knowledge of international security standards, privacy regulations and national‑security policies.
- Excellent communication, presentation and stakeholder‑management skills.
- Relevant certifications such as CISM, CISSP, CRISC or ISO 27001 Lead Implementer are highly desirable.
What We Offer
- Opportunity to work on cutting‑edge projects with marquee clients and high‑impact missions.
- Collaborative, fast‑growing environment with access to leading cyber‑defense technologies.
- Professional development budget and support for industry certifications.
- Competitive benefits package aligned with industry standards.
Frequently Asked Questions
What types of clients will I work with in this role?
You will advise marquee clients in space, aerospace, defense, government, financial services and critical infrastructure on governance, risk and compliance.
Do I need specific certifications to apply?
While not mandatory, certifications such as CISM, CISSP, CRISC or ISO 27001 Lead Implementer are highly valued.
Is remote work possible for this position?
The role is based in Toronto, Ontario, and may require occasional travel to client sites, but flexible work arrangements can be discussed.
Frequently Asked Questions
Click the Apply Now button to submit your application directly to the employer.
Check the job description for location requirements.