Information Security Consultant I

Candescent

Southwestern Ontario

On-site

CAD 80,000 - 100,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Candescent is seeking an Audit & Compliance Analyst to coordinate audits, collect evidence, and track remediation across SOC 2 Type II and PCI DSS programs. You will work with control owners, auditors, security, and business units to ensure readiness and compliant outcomes.

The role requires 3–7 years in audit/compliance, a relevant degree, and strong communication skills. Hybrid work at the Waterloo office is offered, with exposure to FFIEC, NIST CSF, and other standards.

Qualifications

  • Bachelor’s degree or equivalent in a related field.
  • 3–7 years of audit/compliance/risk management experience.
  • Experience supporting SOC 2 Type II audits and PCI DSS.
  • Familiarity with banking/regulatory requirements.
  • Strong documentation and control testing skills.
  • Excellent written and verbal communication.

Responsibilities

  • Coordinate and support SOC 2 Type II and PCI DSS audit engagements.
  • Collect and maintain audit evidence and supporting documentation.
  • Validate control design and operating effectiveness with control owners.
  • Track findings, remediation actions, and closure.
  • Support customer security assessments and due diligence requests.
  • Prepare audit status reports and compliance metrics.
  • Collaborate with Security, IT, Legal, and Ops teams to meet requirements.

Skills

Audit coordination
Regulatory compliance
Documentation
Communication
Project management
Risk management

Education

Bachelor's degree in Information Systems, Cybersecurity, Business, Accounting, or Finance

Tools

SOC 2 Type II
PCI DSS
FFIEC guidance

Job description

About the Company

Candescent is a forward-thinking technology company transforming how financial institutions deliver Intelligent Banking experiences. We unite digital banking, account opening, and branch solutions that power and connect digital banking, account opening, and branch solutions—creating seamless engagement across digital, remote, and in-person channels. Our Experience‑Led, Intelligence‑Driven approach combines human‑centered design with data, automation, and cloud‑based innovation. Built on an API‑first architecture, our extensible ecosystem enables institutions to adapt quickly, integrate easily, and unlock new opportunities for growth—turning every customer interaction into a moment of clarity, confidence, and connection.

Role Overview

Candescent is seeking an experienced Audit & Compliance Analyst to support the execution of the company's audit and compliance programs. This role is responsible for coordinating assigned audits, maintaining compliance evidence, validating controls, tracking remediation activities, and supporting customer and regulatory compliance initiatives. The ideal candidate has experience within banking, financial services, or fintech environments and possesses strong expertise in SOC 2 Type II and PCI DSS compliance programs. The Audit & Compliance Analyst will work closely with control owners, auditors, information security teams, and business stakeholders to ensure audit readiness and successful compliance outcomes.

Key Responsibilities
  • Support the execution of assigned compliance programs and audit engagements.
  • Coordinate annual SOC 2 Type II audits and PCI DSS, and other assessments as needed.
  • Collect, organize, and maintain audit evidence and supporting documentation.
  • Partner with control owners to validate control design and operating effectiveness.
  • Track audit findings, risk items, corrective actions, and remediation activities through closure.
  • Assist with customer security assessments, due diligence requests, and compliance questionnaires.
  • Support regulatory examinations and internal compliance reviews.
  • Monitor compliance activities against applicable requirements, including PCI DSS, FFIEC guidance, GLBA, and related industry standards.
  • Develop audit status reports, compliance metrics, and management reporting.
  • Participate in control readiness reviews and continuous compliance improvement initiatives.
  • Maintain compliance repositories, documentation libraries, and audit workpapers.
  • Collaborate with Information Security, Technology, Product, Legal, and Operations teams to support audit and compliance requirements.
Required Qualifications
  • Bachelor's degree in Information Systems, Cybersecurity, Business, Accounting, Finance, or a related field.
  • 3-7 years of experience in audit, compliance, information security, risk management, or governance functions.
  • Experience supporting or managing SOC 2 Type II audits.
  • Experience supporting or managing PCI DSS compliance assessments.
  • Knowledge of banking and financial services regulatory requirements.
  • Understanding of control testing, evidence collection, and audit readiness processes.
  • Strong organizational skills with the ability to manage multiple concurrent audits and compliance initiatives.
  • Excellent written and verbal communication skills.
Preferred Qualifications
  • Experience working in a banking, fintech, or financial technology organization.
  • Professional certifications such as CISA, PCI ISA, CRISC, CISM, or CIA.
  • Experience supporting customer-facing compliance and assurance activities.
  • Familiarity with control frameworks such as FFIEC, NIST CSF, SOC 2 Trust Services Criteria, and PCI DSS.
What Success Looks Like
  • Successful completion of assigned SOC 2 Type II and PCI DSS audit activities.
  • Accurate and timely collection of audit evidence.
  • Timely remediation and closure of audit findings.
  • High customer satisfaction with compliance support activities.
  • Strong audit readiness across assigned business units.
  • Consistent delivery of accurate compliance reporting and documentation.

At Candescent, the Audit & Compliance Analyst plays a key role in building trust with customers, auditors, and regulators while helping ensure the security, compliance, and resilience of the products and services that power financial institutions.

The base salary range for this position is 80,000-100,000 CAD per year. This range represents the expected base compensation for this role and is based on factors such as skills, experience, geographic location, and job-related qualifications.

Hybrid Waterloo office

Candescent is the largest non-core digital banking provider. We bring together the transformative technologies that power and connect account opening, digital banking and branch solutions for banks and credit unions of all sizes on any core.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Consultant I
Information Security Consultant I

Capitolis • Southwestern Ontario

Hybrid
CAD 80,000 - 100,000
Information Security Consultant I
Information Security Consultant I

Candescent (Digital First Holdings LLC) • Southwestern Ontario

Hybrid
CAD 80,000 - 100,000
Audit & Compliance Analyst - SOC 2 / PCI DSS
Audit & Compliance Analyst - SOC 2 / PCI DSS

Candescent (Digital First Holdings LLC) • Southwestern Ontario

Hybrid
CAD 80,000 - 100,000
Senior Security Engineer
Senior Security Engineer

EQ Bank | Equitable Bank • Toronto

Hybrid
CAD 100,000 - 140,000
Competitive discretionary bonus
Market-leading RRSP match program
Medical, dental, vision, life, and disability benefits
+3
Security Compliance Analyst
Security Compliance Analyst

Payments Canada • Toronto

Hybrid
CAD 71,000 - 96,000
Hybrid work environment
Health and dental benefits
Paid time off and parental leave
+1
Senior Network Security Consultant
Senior Network Security Consultant

Capco • Toronto

On-site
CAD 118,000 - 152,000
Health coverage
RRSP matching
Virtual health care
+5
Enterprise Security Specialist
Enterprise Security Specialist

Cprvision • Whitchurch-Stouffville

Hybrid
CAD 120,000 - 135,000
Flexible working arrangements
Comprehensive benefits package
Annual bonus program
+1
Senior Manager, IT Audit
Senior Manager, IT Audit

Peoples Group • Vancouver

Hybrid
CAD 130,000 - 140,000
Hybrid work environment
Competitive salaries and benefits
RRSP matching and profit sharing
Senior Manager, IT Audit
Senior Manager, IT Audit

Peoples Group • Calgary

Hybrid
CAD 130,000 - 140,000
Hybrid work environment
Profit sharing
RRSP matching
+2
Senior Information Security, GRC Analyst
Senior Information Security, GRC Analyst

Cassels Brock & Blackwell LLP • Toronto

Hybrid
CAD 100,000 - 125,000
Extended Health & Dental Care
RRSP Matching
Fitness Reimbursement
+6