Enable job alerts via email!

IT Security & Compliance Analyst

Alimentiv

London

On-site

CAD 67,000 - 112,000

Full time

2 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in the IT sector is seeking an IT Security & Compliance Analyst to ensure compliance with applicable laws and industry standards. This role requires expertise in IT compliance, audit preparation, and a strong ability to communicate and collaborate across various teams.

Qualifications

  • Strong understanding of GDPR, HIPAA, SOC 2, and ISO 27001 compliance.
  • Previous audit experience with a varied technical audience.

Responsibilities

  • Ensure compliance with IT regulations and standards.
  • Assist in audits and maintain documentation of compliance activities.
  • Monitor IT systems for alignment with compliance standards.

Skills

Analytical skills
Problem-solving skills
Communication skills
Attention to detail

Education

Certification in CISA, CISSP, CRISC, or ISO 27001 Lead Auditor
Experience in IT compliance or information security

Job description

The IT Security & Compliance Analyst is responsible for ensuring that the organization's IT systems, processes, and policies comply with applicable laws, regulations, and industry standards. This role involves assessing and monitoring compliance risks, conducting audits, managing IT policies and procedures, and working closely with internal teams to maintain a secure and compliant IT environment. The IT Security & Compliance Analyst also plays a critical role in supporting audits, ensuring data protection, and driving continuous improvement of IT compliance programs.

Security & Regulatory Compliance

  • Ensure organizational compliance with applicable IT regulations, standards, and frameworks (e.g., ISO 27001, SOC 2, NIST, HIPAA, GDPR, 21 CFR Part 11).
  • Assist in preparing for internal and external IT audits (e.g., regulatory audits, third-party audits, customer audits).
  • Review and respond to IT client audit questionnaires and provide sponsor or regulatory audit support where needed.
  • Responsible and accountable for the resolution of CAPAs owned by IT (e.g. create or amend work instruction, policy and/or procedure).
  • Maintain accurate documentation of all compliance activities and audit reports.
  • Support the development and maintenance of IT policies, procedures, and standards to promote compliance.
  • Evaluate the compliance posture of third-party vendors and service providers to ensure they meet necessary security standards.
  • Support the IT Team to ensure Training, Documents, and Issues are addressed and/or maintained.
  • Participate in incident response activities related to security and compliance issues, including investigation, remediation and documentation.
  • Make recommendations on creative and innovative ways to improve process and procedures and respond to audit findings.

Monitoring & Training

  • Monitor and evaluate IT systems and processes to ensure they align with established compliance standards.
  • Ensure security and regulatory non-compliance issues are properly remediated.
  • Track and report on compliance-related incidents and remediation activities.
  • Confirm System Owners and Technical system experts maintain effective information systems security and regulatory compliance according to policies and procedures, including monitoring completion of regular system operational tasks (e.g. system access reviews and other yearly IT operational tasks).
  • Ensure that IT security and compliance policies are communicated and enforced across the organization.
  • Monitor training completion status for all IT staff, follow-up and offer assistance if necessary (i.e. how to complete an unplanned deviation).
  • Assist in reviewing and provide feedback on training matrices.

Continuous Improvement

  • Keep abreast of IT security trends, industry regulations and guidelines to ensure ongoing compliance.
  • Perform regular proactive reviews or audits to identify potential areas of improvement to compliance, security risk and vulnerability, analyze impact and drive improvements.
  • Prepare compliance reports for management, highlighting potential issues and areas for improvement.

Qualifications

  • Certification in CISA, CISSP, CRISC, or ISO 27001 Lead Auditor is an asset
  • Demonstrated experience in IT compliance, information security, or a related field, with specific experience in SOC 2 and ISO 27001 compliance.
  • Strong understanding of GDPR, HIPAA, Good Clinical Practice (GCP)and working knowledge of 21 CFR Part 11, GAMP 5 and Computer System Validation (CSV) processes.
  • Excellent analytical and problem-solving skills
  • Previous audit experience and the ability to work with a broad spectrum of people with varying levels of technical acumen
  • High level of accuracy and attention to detail
  • Strong ethical standards and integrity
  • Excellent verbal and written communication skills and the ability to work collaboratively with cross-functional stakeholders

$67,500 - $112,000 a year

  • Bonus

PHISHING SCAM WARNING: Alimentiv is aware of the continued increase of phishing scams, leveraging various methods of attack via email, text, voice and social media. Please note that Alimentiv only uses company email addresses, which contain “@alimentiv.com”, to communicate with candidates via email. If you are contacted by someone about an open job at Alimentiv, please verify the domain of the sender’s email address and that they are asking you to apply on this website. If you believe you’ve been a victim of a phishing scam, please contact your local government cyber authority to report.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Analyste, Conformité et gestion des risques (Contrat de 12 mois)

KPMG Canada

London

Remote

CAD 54,000 - 81,000

2 days ago
Be an early applicant

Bilingual Payroll Program & Compliance Advisor

BlueSky Personnel Solutions

Ontario

Remote

CAD 75,000 - 85,000

2 days ago
Be an early applicant

DevOps Security Consultant (Remote)

Intello Technologies Inc.

Belleville

Remote

CAD 82,000 - 124,000

Yesterday
Be an early applicant

Senior Analyste, Conformité et gestion des risques (Contrat de 12 mois)

KPMG Canada

Saskatoon

Remote

CAD 54,000 - 81,000

2 days ago
Be an early applicant

Senior Analyste, Conformité et gestion des risques (Contrat de 12 mois)

KPMG Canada

Victoria

Remote

CAD 54,000 - 81,000

2 days ago
Be an early applicant

Senior Analyste, Conformité et gestion des risques (Contrat de 12 mois)

KPMG Canada

Quebec

Remote

CAD 54,000 - 81,000

5 days ago
Be an early applicant

Security Consultant - Spider Labs (Pen Testing)

Trustwave

Remote

CAD 80,000 - 120,000

2 days ago
Be an early applicant

Surface Safety Advisor

InnisfilToday.ca

Remote

CAD 70,000 - 90,000

2 days ago
Be an early applicant

DevOps Security Consultant (Remote)

TELUS

Burnaby

Remote

CAD 90,000 - 130,000

2 days ago
Be an early applicant