Senior IT Risk Analyst — Hybrid (3 days on-site)

goeasy Ltd

Mississauga

Hybrid

CAD 121,000 - 138,000

Full time

6 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

RRSP matching
Employee Share Purchase Plan
Annual bonus
Employee discounts

Job summary

goeasy is seeking a Senior IT Risk Analyst in Mississauga to partner with IT and business teams to identify, assess, and reduce technology and cybersecurity risks across the organization. You will strengthen the IT risk management framework and support audits and compliance programs.

The ideal candidate brings hands-on security knowledge and governance experience, with the ability to translate technical findings into business risk recommendations; familiarity with PCI DSS, SOC 2, SOX, and GRC

Qualifications

  • 5-8+ years of experience in IT risk, cybersecurity, compliance, audit, or a related field.
  • Experience supporting or leading compliance programs such as PCI DSS, SOC 2, and/or SOX/Bill 198.
  • Experience performing IT risk assessments, control testing, audit support, and remediation management.
  • Strong understanding of cybersecurity and technology controls across infrastructure, applications, identity management, cloud platforms, and data protection.
  • Ability to translate technical findings into business-focused risk recommendations.
  • Experience with GRC platforms, reporting tools, and process automation tools is considered an asset.
  • Familiarity with Power BI, SQL, Python, AI-enabled tools, or similar technologies is preferred.
  • Bachelor's degree in Information Security, Computer Science, Business, or a related field, or equivalent experience.
  • CISA, CRISC, CISSP, PCI, or other relevant certifications are considered an asset.

Responsibilities

  • Partner with IT and business teams to identify, assess, and communicate technology and cybersecurity risks across the organization.
  • Maintain and enhance the Enterprise IT Risk Management Framework, including risk registers, risk assessments, KRIs, reporting, and governance processes.
  • Conduct risk assessments, control reviews, and gap analyses while tracking remediation activities through to completion.
  • Support internal and external audits by coordinating evidence collection, documentation, control testing, and audit readiness activities.
  • Lead or support compliance initiatives including PCI DSS, SOC 2, SOX/Bill 198, and other security frameworks and standards.
  • Assess risks and controls across key technology domains, including identity and access management, network security, application security, cloud environments, vulnerability management, data protection, and security monitoring.
  • Support vendor risk management, third-party assessments, and ongoing remediation tracking.
  • Contribute to Disaster Recovery and Business Continuity governance, testing, and continuous improvement activities.
  • Identify opportunities to improve and automate recurring risk, compliance, reporting, and control‑monitoring activities.
  • Collaborate with stakeholders across Technology, Audit, Legal, Finance, and business teams to strengthen risk and control practices.

Skills

Power BI
SQL
Python
AI-enabled tools
GRC platforms
Cybersecurity controls

Education

Bachelor's degree or equivalent

Tools

GRC platforms
Automation tools

Job description

goeasy is seeking a Senior IT Risk Analyst in Mississauga to partner with IT and business teams to identify, assess, and reduce technology and cybersecurity risks across the organization. You will strengthen the IT risk management framework and support audits and compliance programs.

The ideal candidate brings hands-on security knowledge and governance experience, with the ability to translate technical findings into business risk recommendations; familiarity with PCI DSS, SOC 2, SOX, and GRC

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Hybrid IT Service Delivery Analyst: ITSM & CMDB Lead
Hybrid IT Service Delivery Analyst: ITSM & CMDB Lead

goeasy Ltd • Mississauga

Hybrid
CAD 83,000 - 88,000
RRSP matching
Employee discounts
On-site gym
+3
Senior IT Risk & Compliance Auditor (Hybrid – Toronto)
Senior IT Risk & Compliance Auditor (Hybrid – Toronto)

Global Technical Talent, an Inc. 5000 Company • Toronto

Hybrid
CAD 60,000 - 80,000
Senior SOC 2 Audit Lead - IT Risk & Performance (Hybrid)
Senior SOC 2 Audit Lead - IT Risk & Performance (Hybrid)

Covenant HR • Toronto

Hybrid
CAD 90,000 - 120,000
Information Risk Specialist (Hybrid, Toronto)
Information Risk Specialist (Hybrid, Toronto)

Dexian • Toronto

On-site
CAD 90,000 - 110,000
Senior IT Risk Analyst
Senior IT Risk Analyst

goeasy Ltd • Mississauga

Hybrid
CAD 121,000 - 138,000
RRSP matching
Employee Share Purchase Plan
Annual bonus
+1
Senior IT Auditor — Hybrid (Remote 2 days)
Senior IT Auditor — Hybrid (Remote 2 days)

Groom & Associés / Associates • Montreal (administrative region)

Hybrid
CAD 120,000 - 140,000
RRSP matching
4 weeks vacation
Great benefits package
Sr. Cyber Security advisor
Sr. Cyber Security advisor

Key2Source INC • Markham

Hybrid
CAD 120,000 - 180,000
Mid-Senior Risk & IT Analytics Consultant
Mid-Senior Risk & IT Analytics Consultant

TechDoQuest • Mississauga

On-site
CAD 80,000 - 100,000
Security Analyst - Part Time
Security Analyst - Part Time

Equifax, Inc. • Toronto

On-site
USD 49,850 - 78,336
Senior Manager, Technology Risk Governance & Compliance
Senior Manager, Technology Risk Governance & Compliance

Corus Entertainment • Toronto

Hybrid
CAD 85,000 - 110,000