Get more replies from employers
Send a job-specific resume in minutes.
The Ontario Cannabis Store in Toronto, ON is seeking a Senior GRC Specialist to drive IT governance, risk, and compliance initiatives. You will leverage ServiceNow GRC to strengthen controls, support audits, and work with stakeholders across the business.
The ideal candidate has 7+ years in GRC, IT risk, or related fields, with strong knowledge of NIST/ISO 27001 and risk methodologies. This permanent role offers a competitive package and room to evolve in a fast-growing industry.
The Ontario Cannabis Store provides safe, responsible access to recreational cannabis for adults 19 and older. We operate the sole legal online store for recreational cannabis in Ontario and are the provincial wholesaler of cannabis for private retail stores.
The Ontario Cannabis Store provides safe, responsible access to recreational cannabis for adults 19 and older. We operate the sole legal online store for recreational cannabis in Ontario and are the provincial wholesaler of cannabis for private retail stores. Working at the OCS is a unique opportunity to be part of an agile start-up in a ground-breaking new industry. We're a diverse team passionate about delivering a great customer experience, working together with mutual respect and building value out of our differences. We're an inclusive organization that understands that delivering great results comes out of ensuring every voice is heard.
We're looking for a Senior GRC Specialist to join our team. In this role, you'll support the execution and continuous improvement of OCS's Information Technology (IT) Governance, Risk, and Compliance (GRC) program. Working closely with business stakeholders and cross-functional teams, you'll provide expertise across IT governance, risk management, compliance, and audit activities while leveraging ServiceNow GRC capabilities to strengthen program effectiveness. As a trusted advisor, you'll identify opportunities to enhance controls, improve processes, and mitigate risk through practical, risk-informed recommendations. You'll also play a key role in supporting internal and external audits, helping ensure compliance with regulatory and organizational requirements. The ideal candidate brings a strong understanding of IT risk and compliance practices, stays current on emerging technologies, industry standards, and evolving threats, and is passionate about building and maintaining a GRC program that is both effective and adaptable in a changing technology landscape.
The target hiring range for this position is $100,000 - $120,000. This is a pay grade 7 role, with a salary range of $82,623.96 - $123,507.59. Placement in the salary range will be based on factors such as market conditions, internal equity, and candidate experience, skills, and qualifications relevant to the role. We are committed to providing an accessible, equitable and inclusive candidate and employee experience. We provide reasonable accommodation throughout the recruitment process and in employment. If you require an accommodation, please let us know, we will work with you to meet your needs.