Senior Analyst, Security Governance, Risk and Compliance
Job in
Toronto, Ontario, M5A, Canada
Listing for:
LRO Staffing
Full Time
position
Listed on 2026-01-02
Job specializations:
-
IT/Tech
Cybersecurity, Information Security
Salary/Wage Range or Industry Benchmark: 85000 - 90000 CAD Yearly
CAD
85000.00
90000.00
YEAR
Job Description & How to Apply Below
Position: Senior Analyst, Security Governance, Risk and Compliance - Permanent - 18006
About the Opportunity
Our client is building the future, and their people are at the heart of everything they do. Our client is always looking for exceptional talent to work on our exciting and ever-expanding project portfolios. They are focused on being the #1 Canadian Infrastructure Company and the first-choice employer in our industry.
Duties include but are not limited to:
Perform security risk assessments of new or existing services, applications, technologies and vendors. Documents and effectively communicates findings to key stakeholdersProvide consultative advice to help IS and the business make informed risk management decisionsIdentify and recommend appropriate controls to address identified security risks and help strengthen security postureIdentify opportunities to enhance existing processes for identifying and managing security riskDesign, operate and manage a compliance framework with associated controls that align with ISO 27001Maintain existing and develop new information security governance documents, including policies, standards, procedures and guidelinesWork with Internal Audit, Legal, Privacy and other key stakeholders to ensure that IS policies, procedures and controls are aligned with all associated requirementsLiaise with internal/external auditors, clients and business teams to facilitate audits and/or risk reviews and help to collect the required information. Ensure timely management response to findings and track remediation through to closureEnsure that in-place security controls are working effectively by designing and implementing appropriate KPIs and/or KRIs for reportingPrepare monthly, quarterly and annual reports and/or presentations for various senior management audiences, including steering committees and board of directorsValidate appropriate security controls of vendors and other 3rd parties who safeguard the company’s information assets and computer systems by performing contract reviews and security compliance reviewsConduct monthly reviews with security service providers to ensure compliance with service level agreements (SLAs) and other contractual/service requirementsAct as a backfill for other security team members, as requiredAbout YouThe successful candidate will have the following:
A university degree in Computer Science, Information Security or related equivalent is requiredCISM, CISA, CRISC or CISSP certifications are an asset8+ years of experience in an IT related field5+ years in an information security/compliance function or IT audit role3+ years of experience in information security risk managementSignificant knowledge of, and experience with, legal and regulatory compliance standards such as GDPR, PCI-DSS, PHIPA, ISO 2700-1 and/or NISTSignificant knowledge of computer networking concepts and protocols and IT security methodologiesAbility to adapt to constantly changing technical, regulatory, and compliance environmentsResults oriented, high energy, and self-motivatedExcellent verbal and written communication skillsAbility to work in a team-oriented, collaborative environmentStrong problem solving and analytical skillsAbility to handle multiple competing priorities and meet tight deadlinesAbout the JobCompetitive salary $85,000-$90,000Opportunity to work with industry leaders and innovative technology solutionsProfessional development and growth opportunitiesA collaborative and supportive team environmentComprehensive health, dental, and vision benefitsA Hybrid work schedule, 3 days in the office, 2 days at home (Airport area)LROIT
Position Requirements
10+ Years
work experience
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here: