Remote job
Security Assessment & Authorization (SA&A) Specialist
Job details
About this role
Role overview Support security assessment and authorization for an Azure-native platform, helping a project meet and maintain Government of Canada security requirements. This intermediate-level role combines cloud security expertise with hands-on accreditation work, including documentation, evidence gathering, testing, and reporting.
Responsibilities - Advise project teams on security for Azure solutions and cloud environments. - Contribute to required security assessment and authorization activities and documentation. - Develop and maintain Document Control Responses and Security Installation Plans. - Gather, organize, and document evidence for security controls. - Perform security testing and prepare formal reports of findings. - Work with architects and security stakeholders on compliance, reviews, audits, risks, and remediation recommendations.
Requirements - Strong knowledge and hands-on experience with Microsoft Azure. - Experience implementing and configuring security controls across Azure services. - Background supporting cloud security compliance and governance. - Experience producing assessment artifacts, security documentation, and evidence packages. - Ability to execute and document security testing. - In-depth knowledge of Government of Canada SA&A processes and requirements.
Nice to have - Experience on Government of Canada cloud modernization or transformation work, and familiarity with its IT security risk management methods. - Experience with Defender for Cloud, Azure Policy, Microsoft Entra ID, Key Vault, or Sentinel. - AZ-500, CISSP, CCSP, or an equivalent security certification.
Benefits and work setup - Remote role based in Canada, with a contract running October 2026 through July 2027. - Active Government of Canada Secret clearance is required when applying.