(Canada) Senior Cyber Compliance & Audit Analyst (contract)

Thomson Reuters 

Toronto

Hybrid

CAD 55,104 - 66,124

Full time

10 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Medical benefits
Dental benefits
Vision benefits
Retirement benefits

Job summary

A major global information provider is seeking a Senior Cyber Compliance & Audit Analyst to enhance compliance frameworks and conduct audits. Applicants should have a Bachelor's degree and 4+ years of experience in ISO 27001 compliance. Strong communication skills and relevant certifications are a must. The position offers a pay range of $40-$48/hr CAD and optional benefits including medical and dental.

Qualifications

  • 4+ years of relevant work experience in ISO 27001:2022, ITGC, or SOC.
  • Certifications such as ISO, CISA, CISSP, or CISM are essential.
  • Knowledge about GRC platforms like RSA Archer and ServiceNow.

Responsibilities

  • Assess and test the effectiveness of controls using TR's framework.
  • Execute a testing plan and communicate requirements to control owners.
  • Compile reports on audit results and present to managers.

Skills

Control testing
ISO 27001 compliance
Governance
Financial Services
Communication skills

Education

Bachelor's degree in IT, Accounting, or Finance

Tools

RSA Archer
ServiceNow
Vanta
MetricStream

Job description

(Canada) Senior Cyber Compliance & Audit Analyst (Contract)

Contract (10 months 28 days)

Published 2 days ago

iso 27001

RSA Archer

cyber compliance

CISM

Looking forward to advancing your career in IT Audit? We are growing and we are hiring, come join us.

About the Role :

  • In this opportunity as Senior Cyber Compliance & Audit analyst, you will assess, challenge, and test the design and operational effectiveness of controls using TR's control framework and ISO 27001 controls by working collaboratively with control owners and stakeholders to improve the control testing process, including defining re-test cycles and evidence expected.
  • Execute a testing plan by communicating requirements to control owners, reviewing evidence submitted, agreeing on deficiencies found and finalizing the next steps in meeting control requirements.
  • Complete test papers including the results of testing and storing relevant artifacts.
  • Oversee and act as a liaison for both external and internal audits.
  • Identify procedures and practices that are not compliant with industry Frameworks
  • Recommend and support stakeholders making changes to address non-compliance issues.
  • Compile reports on audit results and present them to managers & supervisors.
  • Propose efficiencies and automation where possible to optimize workflow.
  • Work closely with other teams like ERM, Finance, business and application owners, third party or contractors supporting processes to report and track remediation plans for any control deficiencies identified.
  • Ensure awareness about security risks, best practices and policy/standard requirements are essential to ensure compliance.
  • Work independently, act decisively and ensure personal deadlines and team requirements are met.
  • Willingness and drive to learn continuously and approach change with openness.

About You

You're a fit for the role of Senior Cyber Compliance & Audit analyst if your background includes:

  • Bachelor's degree in IT, Accounting, Finance or equivalent education and experience (preferable).
  • At least 4+ years of relevant work experience in ISO 27001:2022, ITGC, SOC, PCI within Audit, Big 5, consulting firms or as line 1a or line 1b completing IT-IS
  • Control testing or working within a Governance or Compliance function across Financial Services organizations.
  • One of these certifications in order of preference is essential ISO, CISA, CISSP, CCAK, CISM, or CRISC .
  • Strong ethical principles and understanding of business and IS ethics.
  • Awareness about common security vulnerabilities of web and cloud applications and operating techniques from sources such as SANS, OWASP Top10 and Cloud Security Alliance (CSA).
  • Experience in testing Cloud controls and related technologies will be an asset.
  • Excellent oral and written communication skills in English. Additional expertise in French, Spanish or another language will be an asset.
  • Knowledge about GRC platforms like Vanta, ServiceNow, Process Unity, RSA Archer, MetricStream and the like.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

The pay range that the employer in good faith reasonably expects to pay for this position is $40-$48/hr CAD.

Our optional benefits can include medical, dental, vision and retirement benefits.

Applications will be accepted on an ongoing basis.

Tundra Technical Solutions (the operator of this Talent Community) is a global leader of contingent talent services. Our success and our clients’ success are built on a foundation of service excellence. We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic. Qualified applicants with arrest or conviction records will be considered for employment in accordance with applicable law, including the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. Unincorporated LA County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: client provided property, including hardware (both of which may include data) entrusted to you from theft, loss or damage; return all portable client computer hardware in your possession (including the data contained therein) upon completion of the assignment, and; maintain the confidentiality of client proprietary, confidential, or non-public information. In addition, job duties require access to secure and protected client information technology systems and related data security obligations.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Compliance Officer
Sr. Compliance Officer

Raise • Ottawa

Hybrid
CAD 61,000 - 81,000
(Canada) Project Manager (contract)
(Canada) Project Manager (contract)

Thomson Reuters  • Toronto

Hybrid
CAD 103,320 - 115,718
Medical benefits
Dental benefits
Vision benefits
+1
IT Cyber Security Consultant
IT Cyber Security Consultant

Raise • Vancouver

On-site
CAD 61,372 - 87,408
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

10 Percent Recruiting Ltd. • Canada

Hybrid
CAD 110,000 - 140,000
C++ Developer
C++ Developer

Capgemini • Toronto

On-site
CAD 48,000 - 75,000
Medical benefits
Retirement benefits
Professional development
(Canada) Tax Editor (contract)
(Canada) Tax Editor (contract)

Thomson Reuters  • Canada

On-site
CAD 34,000 - 39,000
Assurance maladie
Assurance dentaire
Assurance vision
+1
Senior Specialist, Risk Management
Senior Specialist, Risk Management

Tundra Technical Solutions • Toronto

On-site
CAD 120,000 - 180,000
(Canada) HR Assistant (contract)
(Canada) HR Assistant (contract)

Thomson Reuters  • Toronto

Hybrid
CAD 38,572 - 45,460
Medical benefits
Dental benefits
Vision benefits
+1
Business Analyst - Risk IT (contract)
Business Analyst - Risk IT (contract)

Capgemini • Toronto

On-site
CAD 34,000 - 55,000
Medical benefits
Dental benefits
Vision benefits
+1
Senior IT Auditor
Senior IT Auditor

isgSearch • Markham

On-site
CAD 90,000 - 115,000
Health, dental, vision insurance
Retirement and incentive programs
Health Care Spending Account
+1