Security GRC Specialist
Job in
Toronto, Ontario, M5A, Canada
Listing for:
Aviso Wealth
Full Time
position
Listed on 2026-08-06
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Business Analyst, IT Consultant
Job Description & How to Apply Below
At Aviso, we are dedicated to improving the financial well-being of Canadians. As a leading wealth management organization, we are committed to leadership, innovation, partnership, responsibility, and community. Working with talented and energetic professionals who exemplify our values every day, you will quickly notice that our people and dynamic ‘oneaviso’ culture sets us apart. If you are looking for interesting and challenging work, at a company committed to its people, find out more about what Aviso has to offer at
The Opportunity:
We’re looking to fill an opening with an experienced Security GRC Specialist to join our growing Security GRC team.
Reporting to the Director of Security Governance, Risk & Compliance (GRC), the Security GRC Specialist will be responsible to govern the risk management lifecycle, including monitoring findings remediation, assurance programs and reporting appropriate metrics to the senior leadership.
As one
aviso:
We Care – You do the right thing for clients, partners and colleagues. You build trusted relationships, champion service excellence, and contribute to a culture where people feel valued and supportedWe Dare –You challenge the status quo with bold ideas and fresh perspectives. You embrace change, seek opportunities to innovate and are comfortable exploring new ways of workingWe Share – You collaborate openly and build meaningful relationships. You seek out diverse perspectives, share your knowledge and work together to help colleagues, clients and partners succeedWe Deliver – You take ownership of your work, honour your commitments and focus on delivering meaningful results. You hold yourself accountable and continuously look for ways to improveWhat your day looks like:
Risk Management
Conduct risk assessments of IT infrastructure, applications, third parties, and critical processes to identify, assess and report on technology and cybersecurity risksTrack and Manage mitigation plans and ensure timely resolutionSupport the development and maintenance of cybersecurity risk register KPI monitoring and reportingGovernance
Assist in development, review and maintenance of Technology & Cybersecurity Policies, Standards, and proceduresEnsure alignment of internal policies with industry frameworks (NIST, ISO, COBIT) ·Support audits and board level reporting including preparing key metricsAssurance
Monitor compliance with external regulatory and internal control requirementsSupport internal and external audits
· Conduct periodic control testing including design and operating effectivenessThird Party Risk
Support vendor risk assessments, including reviewing response to questionnaireGRC Tools ·
Maintain and enhance governance process through GRC tools (, Archer, Service Now GRC, Resolver etc.)Support reporting, dashboard creation and automation of risk and compliance processesRequirements
Your experience and skills:
Bachelor's Degree in Information Security, Computer Science, Business, Risk Management or a related fieldRelevant certifications such as CRISC, CISA, CISSP are an asset5-8 years of experience in IT risk, cybersecurity risk, audit, compliance or equivalent rolesWorking knowledge of IT governance frameworks and standards (, NIST CSF, ISO 27001, ITIL)Familiarity with regulatory and compliance requirementsExperience with GRC platforms and toolsAbility to work in a fast-paced environment and stay updated on emerging threats and vulnerabilitiesProactiveness, natural curiosity, a willingness to learn, adaptability in an evolving environment, and a strong problem-solving mindsetAbility to work across multiple business units and collaborate across teamsFluent communication skills in English are required and bilingual skills in French are an assetBenefits
Why Aviso?
At Aviso, you will find a dynamic and inclusive culture that rewards innovation and celebrates success.
Here are a few things that set us apart:
Competitive compensation package that rewards and recognizes individual contributionsExcellent health, dental and insurance benefits to meet the diverse needs of our employeesGenerous vacation time, fitness benefit, parental leave top-up optionsMatching contributions to…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here: