Enable job alerts via email!

Security GRC Specialist

Aviso

Toronto

On-site

CAD 109,000 - 123,000

Full time

30+ days ago

Job summary

Aviso is looking for a Security GRC Specialist who will join their dynamic team in Toronto. This role is responsible for managing cybersecurity risks, ensuring compliance with regulations, and updating policies in alignment with industry standards. Ideal candidates will have a strong background in IT risk management and possess relevant certifications. At Aviso, you will find a competitive compensation package and a culture that values continuous improvement, innovation, and teamwork.

Benefits

Competitive compensation package
Excellent health, dental, and insurance benefits
Generous vacation time
Matching contributions to retirement program
Commitment to learning & development

Qualifications

  • 5-8 years of experience in IT risk, cybersecurity risk, audit, or compliance.
  • Relevant certifications such as CRISC, CISA, CISSP are an asset.
  • Ability to work in a fast-paced environment and stay updated on emerging threats.

Responsibilities

  • Conduct risk assessments of IT infrastructure and applications.
  • Track and manage mitigation plans; ensure timely resolution.
  • Monitor compliance with external regulatory requirements.

Skills

Cybersecurity
Risk Management
Compliance
Collaboration
Problem Solving

Education

Bachelor's Degree in Information Security, Computer Science, Business, Risk Management

Tools

GRC Tools (e.g., Archer, ServiceNow GRC, Resolver)

Job description

This range is provided by Aviso. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.

Base pay range

CA$109,000.00 / yr - CA$123,000.00 / yr

Direct message the job poster from Aviso

At Aviso, we are dedicated to improving the financial well-being of Canadians. As a leading wealth management organization, we are committed to leadership, innovation, partnership, responsibility, and community. Working with talented and energetic professionals who exemplify our values every day, you will quickly notice that our people and dynamic ‘oneaviso' culture sets us apart. If you are looking for interesting and challenging work, at a company committed to its people, find out more about what Aviso has to offer at www.aviso.ca.

The Opportunity :

We're looking for an experienced Security GRC Specialist to join our growing Security GRC team.

Reporting to the Director of Security Governance, Risk & Compliance (GRC), the Security GRC Specialist will be responsible to govern the risk management lifecycle, including monitoring findings remediation, assurance programs and reporting appropriate metrics to the senior leadership.

Who you are :

  • Service - You consider both internal and external stakeholders and demonstrate intent of understanding and putting the clients' needs first. You advocate service excellence and work to deliver solutions that meet the needs. You proactively develop strategic partnerships that allow Aviso Wealth to become a trusted advisor and partner
  • Execution - You are committed to achieving your goals and to succeed. This includes focusing on "getting things done", as well as recognizing and taking advantage of opportunities as they arise. You are consistently looking for ways to improve your personal best and see value in continuous improvement. You take accountability for your actions and learn from mistakes
  • Collaboration - You work collaboratively with others with the common goal of driving positive results. Making meaningful contributions to your team to achieve organizational goals is a priority. You proactively encourage collaboration, build trust and inclusion, and work to establish effective relationships both inside and outside of the organization

What your day looks like :

  • Conduct risk assessments of IT infrastructure, applications, third parties, and critical processes to identify, assess and report on technology and cybersecurity risks
  • Track and Manage mitigation plans and ensure timely resolution
  • Support the development and maintenance of cybersecurity risk register KPI monitoring and reporting

Governance

  • Assist in development, review and maintenance of Technology & Cybersecurity Policies, Standards, and procedures
  • Ensure alignment of internal policies with industry frameworks (NIST, ISO, COBIT)
  • Support audits and board level reporting including preparing key metrics

Assurance

  • Monitor compliance with external regulatory and internal control requirements
  • Support internal and external audits
  • Conduct periodic control testing including design and operating effectiveness

Third Party Risk

  • Support vendor risk assessments, including reviewing response to questionnaire
  • Maintain and enhance governance process through GRC tools (e.g., Archer, ServiceNow GRC, Resolver etc.)
  • Support reporting, dashboard creation and automation of risk and compliance processes

At Aviso, we are dedicated to improving the financial well-being of Canadians. As a leading wealth management organization, we are committed to leadership, innovation, partnership, responsibility, and community. Working with talented and energetic professionals who exemplify our values every day, you will quickly notice that our people and dynamic ‘oneaviso' culture sets us apart. If you are looking for interesting and challenging work, at a company committed to its people, find out more about what Aviso has to offer at www.aviso.ca.

The Opportunity :

We're looking for an experienced Security GRC Specialist to join our growing Security GRC team.

Reporting to the Director of Security Governance, Risk & Compliance (GRC), the Security GRC Specialist will be responsible to govern the risk management lifecycle, including monitoring findings remediation, assurance programs and reporting appropriate metrics to the senior leadership.

Who you are :

  • Service - You consider both internal and external stakeholders and demonstrate intent of understanding and putting the clients' needs first. You advocate service excellence and work to deliver solutions that meet the needs. You proactively develop strategic partnerships that allow Aviso Wealth to become a trusted advisor and partner
  • Execution - You are committed to achieving your goals and to succeed. This includes focusing on "getting things done", as well as recognizing and taking advantage of opportunities as they arise. You are consistently looking for ways to improve your personal best and see value in continuous improvement. You take accountability for your actions and learn from mistakes
  • Collaboration - You work collaboratively with others with the common goal of driving positive results. Making meaningful contributions to your team to achieve organizational goals is a priority. You proactively encourage collaboration, build trust and inclusion, and work to establish effective relationships both inside and outside of the organization

What your day looks like :

  • Conduct risk assessments of IT infrastructure, applications, third parties, and critical processes to identify, assess and report on technology and cybersecurity risks
  • Track and Manage mitigation plans and ensure timely resolution
  • Support the development and maintenance of cybersecurity risk register KPI monitoring and reporting

Governance

  • Assist in development, review and maintenance of Technology & Cybersecurity Policies, Standards, and procedures
  • Ensure alignment of internal policies with industry frameworks (NIST, ISO, COBIT)
  • Support audits and board level reporting including preparing key metrics

Assurance

  • Monitor compliance with external regulatory and internal control requirements
  • Support internal and external audits
  • Conduct periodic control testing including design and operating effectiveness

Third Party Risk

  • Support vendor risk assessments, including reviewing response to questionnaire

GRC Tools

  • Maintain and enhance governance process through GRC tools (e.g., Archer, ServiceNow GRC, Resolver etc.)
  • Support reporting, dashboard creation and automation of risk and compliance processes

Requirements

Your experience and skills :

  • Bachelor's Degree in Information Security, Computer Science, Business, Risk Management or a related field
  • Relevant certifications such as CRISC, CISA, CISSP are an asset
  • 5-8 years of experience in IT risk, cybersecurity risk, audit, compliance or equivalent roles
  • Working knowledge of IT governance frameworks and standards (e.g., NIST CSF, ISO 27001, ITIL)
  • Familiarity with regulatory and compliance requirements
  • Experience with GRC platforms and tools
  • Ability to work in a fast-paced environment and stay updated on emerging threats and vulnerabilities
  • Proactiveness, natural curiosity, a willingness to learn, adaptability in an evolving environment, and a strong problem-solving mindset
  • Ability to work across multiple business units and collaborate across teams
  • Fluent communication skills in English are required and bilingual skills in French are an asset

Why Aviso?

At Aviso, you will find a dynamic and inclusive culture that rewards innovation and celebrates success.

Here are a few things that set us apart :

  • Competitive compensation package that rewards and recognizes individual contributions
  • Excellent health, dental and insurance benefits to meet the diverse needs of our employees
  • Generous vacation time, fitness benefit, parental leave top-up options
  • Matching contributions to our retirement program
  • Commitment to the continuous improvement of our staff through learning & development and an education assistance program
  • Regular social events to foster teamwork

Your Information

By submitting your application, you consent to the collection, use, and disclosure of your provided personal information for the purposes of assessing your qualifications and suitability for employment with Aviso. Your information will be handled in accordance with applicable Canadian privacy laws, including thePersonal Information Protection and Electronic Documents Act (PIPEDA)and relevant provincial legislation. Your data may be shared with authorized personnel involved in the recruitment process and retained only as long as necessary to fulfill these purposes or as required by law.

Further information is available on the Privacy link on our Career Page - Privacy Policies

Aviso welcomes and encourages applications from all qualified individuals including persons with disabilities. If you require an accommodation, we will work with you to meet your needs in all stages of the hiring process.

We thank all applicants for their interest, however, only those selected for further consideration will be contacted.

No recruiters or agencies, please.

Company Overview :

Aviso is a leading wealth management and investment services provider for the Canadian financial industry, with approximately $145 billion in total assets under administration and management, and over 1,000 employees. We're building a comprehensive, technology-enabled, client-centric wealth services ecosystem. Our clients include our partners, advisors, and investors. We're a trusted partner for nearly all credit unions across Canada, in addition to a wide range of portfolio managers, investment dealers, insurance and trust companies, and introducing brokers. Our partners depend on Aviso for specific solutions that give them a competitive edge in a rapidly evolving, highly competitive industry. Our investment dealer and mutual fund dealer and our insurance services support thousands of investment advisors. Our asset manager, NEI Investments, specializes in investing responsibly. Our online brokerage, Qtrade Direct Investing, empowers self-directed investors, and our fully automated investing service, Qtrade Guided Portfolios, serves investors who prefer a hands-off approach. Aviso Correspondent Partners provides custodial and carrying broker services to a wide range of firms. We have offices in Toronto, Vancouver, Montreal, and Winnipeg. Aviso is backed by the collective strength of our owners : the credit union Centrals, Co-operators / CUMIS, and Desjardins. We're proud to power businesses that empower investors .

A career with Aviso means being part of a group of talented, energetic professionals who live their values every day, and belonging to an organization dedicated to your success and career development. If you're looking for interesting and challenging work, at a company committed to its people, apply to join our team.

This position is posted with an expected salary range of $109,000 - $123,000 CAD annually. Individual compensation packages are based on various factors unique to each candidate and the requirements of the position.

Seniority level

Seniority level

Associate

Employment type

Employment type

Full-time

Job function

Job function

Information Technology

Referrals increase your chances of interviewing at Aviso by 2x

Security Guard (Various Opportunities : Part-time / Full-time)

Campus Security Guard - Future Opportunities

Full Time Security Guard - 1 Queen St East

Security Specialist (Threat Risk Assessment) 8536-0312

Security Guard - Full Time - Seneca Polytechnic (Newnham)

Security Specialist Threat Risk Assessment 9054-0415

Security Guard - Government Site / Data Centre (Full Time)

Scarborough General Hospital - Full Time Security Guard

Security Dispatch Full Time North York General Hospital Leslie

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

J-18808-Ljbffr

Create a job alert for this search

Security Specialist • Toronto, ON, Canada

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs