Security GRC Specialist
Aviso Wealth
At Aviso, we are dedicated to improving the financial well-being of Canadians. As a leading wealth management organization, we are committed to leadership, innovation, partnership, responsibility, and community. Working with talented and energetic professionals who exemplify our values every day, you will quickly notice that our people and dynamic ‘oneaviso’ culture sets us apart. If you are looking for interesting and challenging work, at a company committed to its people, find out more about what Aviso has to offer at " rel="nofollow noreferrer noopener">
The Opportunity
We’re looking for an experienced Security GRC Specialist to join our growing Security GRC team.
Reporting to the Director of Security Governance, Risk & Compliance (GRC), the Security GRC Specialist will be responsible to govern the risk management lifecycle, including monitoring findings remediation, assurance programs and reporting appropriate metrics to the senior leadership.
Who you are
- Service – You put your clients’ needs first. You advocate service excellence, and work to deliver client-centric solutions, and proactively develop strategic partnerships that allow Aviso to become a trusted advisor and partner
- Execution – You are committed to achieving your goals and to succeed. This includes focusing on “getting things done”, as well as recognizing and taking advantage of opportunities as they arise. You are consistently looking for ways to improve your personal best and see value in continuous improvement. You take accountability for your actions and learn from mistakes
- Collaboration – You work collaboratively with others with the common goal of driving positive results. Making meaningful contributions to your team to achieve organizational goals is a priority. You proactively encourage collaboration, build trust and inclusion, and work to establish effective relationships both inside and outside of the organization
What your day looks like
Risk Management
- Conduct risk assessments of IT infrastructure, applications, third parties, and critical processes to identify, assess and report on technology and cybersecurity risks
- Track and Manage mitigation plans and ensure timely resolution
- Support the development and maintenance of cybersecurity risk register KPI monitoring and reporting
Governance
- Assist in development, review and maintenance of Technology & Cybersecurity Policies, Standards, and procedures
- Ensure alignment of internal policies with industry frameworks (NIST, ISO, COBIT) ·
- Support audits and board level reporting including preparing key metrics
Assurance
- Monitor compliance with external regulatory and internal control requirements
- Support internal and external audits · Conduct periodic control testing including design and operating effectiveness
Third Party Risk
- Support vendor risk assessments, including reviewing response to questionnaire
GRC Tools ·
- Maintain and enhance governance process through GRC tools (e.g., Archer, ServiceNow GRC, Resolver etc.)
- Support reporting, dashboard creation and automation of risk and compliance processes
Requirements
Your experience and skills
- Bachelor's Degree in Information Security, Computer Science, Business, Risk Management or a related field
- Relevant certifications such as CRISC, CISA, CISSP are an asset
- 5-8 years of experience in IT risk, cybersecurity risk, audit, compliance or equivalent roles
- Working knowledge of IT governance frameworks and standards (e.g., NIST CSF, ISO 27001, ITIL)
- Familiarity with regulatory and compliance requirements
- Experience with GRC platforms and tools
- Ability to work in a fast-paced environment and stay updated on emerging threats and vulnerabilities
- Proactiveness, natural curiosity, a willingness to learn, adaptability in an evolving environment, and a strong problem-solving mindset
- Ability to work across multiple business units and collaborate across teams
- Fluent communication skills in English are required and bilingual skills in French are an asset
Benefits
Why Aviso?
At Aviso, you will find a dynamic and inclusive culture that rewards innovation and celebrates success.
Here are a few things that set us apart:
- Competitive compensation package that rewards and recognizes individual contributions
- Excellent health, dental and insurance benefits to meet the diverse needs of our employees
- Generous vacation time, fitness benefit, parental leave top-up options
- Matching contributions to our retirement program
- Commitment to the continuous improvement of our staff through learning & development and an education assistance program
- Regular social events to foster teamwork
Your Information
By submitting your application, you consent to the collection, use, and disclosure of your provided personal information for the purposes of assessing your qualifications and suitability for employment with Aviso. Your information will be handled in accordance with applicable Canadian privacy laws, including the Personal Information Protection and Electronic Documents Act (PIPEDA) and relevant provincial legislation. Your data may be shared with authorized personnel involved in the recruitment process and retained only as long as necessary to fulfill these purposes or as required by law.
Further information is available on the Privacy link on our Career Page – " rel="nofollow noreferrer noopener"> Privacy Policies
Equal Employment Opportunity
Aviso welcomes and encourages applications from all qualified individuals including persons with disabilities. If you require an accommodation, we will work with you to meet your needs in all stages of the hiring process.
We thank all applicants for their interest, however, only those selected for further consideration will be contacted.
No recruiters or agencies, please.
Company Overview
Aviso is a leading wealth management and investment services provider for the Canadian financial industry, with approximately $145 billion in total assets under administration and management, and over 1,000 employees. We’re building a comprehensive, technology-enabled, client-centric wealth services ecosystem. Our clients include our partners, advisors, and investors. We’re a trusted partner for nearly all credit unions across Canada, in addition to a wide range of portfolio managers, investment dealers, insurance and trust companies, and introducing brokers. Our partners depend on Aviso for specific solutions that give them a competitive edge in a rapidly evolving, highly competitive industry. Our investment dealer and mutual fund dealer and our insurance services support thousands of investment advisors. Our asset manager, NEI Investments, specializes in investing responsibly. Our online brokerage, Qtrade Direct Investing, empowers self-directed investors, and our fully automated investing service, Qtrade Guided Portfolios, serves investors who prefer a hands-off approach. Aviso Correspondent Partners provides custodial and carrying broker services to a wide range of firms. We have offices in Toronto, Vancouver, Montreal, and Winnipeg. Aviso is backed by the collective strength of our owners: the credit union Centrals, Co-operators/CUMIS, and Desjardins. We’re proud to power businesses that empower investors .
A career with Aviso means being part of a group of talented, energetic professionals who live their values every day, and belonging to an organization dedicated to your success and career development. If you’re looking for interesting and challenging work, at a company committed to its people, apply to join our team.
Salary
This position is posted with an expected salary range of $105000 - $125,000 CAD annually. Individual compensation packages are based on various factors unique to each candidate and the requirements of the position.
- ...that will lead to best-practice risk management. The Opportunity EY is looking for dynamic individuals in the SAP Security, Controls, and SAP GRC space. These professionals will know how to help clients identify, design, implement and extract value from their SAP...SuggestedLong term contractWeekend work
$110k - $160k per year
...EY and help to build a better working world. The Opportunity The Tech Risk-SAP GRC team within EY’s Business Consulting domain is looking for a dynamic person in the SAP Security, Controls, and SAP GRC space. This candidate will know how to help clients identify, design...SuggestedFlexible hoursWeekend work$57k - $102k per year
...Learn from deep subject matter experts through mentoring and on the job coaching Summary We are seeking a motivated Security Specialist to join our cybersecurity team. In this role, you will be responsible for deploying, configuring, and managing Firewall, EDR, and...SuggestedPermanent employmentFlexible hours- We are seeking a highly skilled Senior Security Specialist to join the team on a contract basis in Toronto. In this role, you will play a critical... ...cloud security strategies, architectures, and controls for secure cloud adoption. Support the maturity of Security Operations...SuggestedContract work
$88k - $132k per year
...and help to build a better working world. The Opportunity EY is looking for dynamic individuals in the Oracle Applications Security and GRC space for on premise and cloud applications. These professionals will know how to help clients identify, design, implement and...SuggestedWeekend work$35 - $40 per hour
...Security Strategy & Communications Specialist Contribute to impactful cybersecurity and business initiatives in the insurance sector while creating executive presentations, strategic communications, and engaging reports. This hybrid role offers exposure to senior leadership...Hourly payContract workShift work2 days per week$84k - $126k per year
...advise on a range of projects, from conducting current state assessments to designing and implementing Governance, Risk and Compliance (GRC) technology solutions. The role demands curiosity, proactivity and quick learning, with the expectation that you dive into the...Permanent employmentFlexible hours$88k - $132k per year
...Join EY and help to build a better working world. The Opportunity EY is looking for dynamic individuals in the SAP Security, Controls, and SAP GRC space. These professionals will know how to help clients identify, design, implement and extract value from their SAP...$96.55 - $115.86 per hour
...RQ00650 - Sr. Security Specialist 1+ year contract (260 business days) - possible extension ONSITE 5 days - 200 Front St West NOTE... ...security operations, incident response, threat intelligence, secure architecture, and other security assurance activities. ~...Contract work$63.85 - $70.51 per hour
We are seeking a highly technical, expert-level Network LAN/Security Specialist to design and execute Data Center Server Access Layer upgrades and... ..., you will manage network equipment replacement projects, secure critical infrastructure using advanced firewall/IPS systems, and...RemplacementContract workRemote work$126k - $234k per year
...modernize their risk and compliance systems, collaborating with solution architects, process experts, and industry-leading vendors. Manage GRC technology programs and services - Oversee solution assessment and implementation projects, and production support and maintenance...Permanent employmentFlexible hours- Job Description: Planning and Monitoring the supply chain distribution to ensure timely and cost-effective delivery of products collecting and analyzing data to improve efficiency and manage vendor relationships. coordinating with suppliers, managing inventory, and optimizing...Part timeRelocation
- ...likelihoods of various threat scenarios? If so, this would be a great opportunity for you! Our client is looking for a Senior Security Specialist for a 12 month contract in Toronto. This is an onsite role. Rate: $ 593.78 - $ 638.47 Advantages • Earn a competitive...Contract work
$72k - $138k per year
...GitLab CI/CD, or Google Cloud Build. You will implement and maintain best practices for cloud governance, security, and compliance, ensuring robust and secure cloud environments. Additionally, you will develop and implement automated monitoring and alerting solutions to...Permanent employmentFlexible hours$92.84k - $98.64k per year
...Ontario Medical Association’s (OMA) information security governance, risk, and compliance program... ...security practices and enabling the secure adoption of technology, including emerging... ...artificial intelligence (AI). The Cybersecurity GRC Analyst advances the OMA’s strategic...Permanent employmentFull timeWork at officeFlexible hours$20 - $21 per hour
...RESPITE SECURITY SPECIALIST Are you passionate about Safety & Security and seeking opportunity to join a team of Security Specialist? A.S.... ...Respite Security Protection Specialist takes responsibility for secure and safe at the Respite Centers in Toronto. What you will do:...Hourly pay- ...impact. Role Summary A detail-oriented and proactive security analyst role sitting at the intersection of security operations,... ...endpoint detection tools (CrowdStrike, SentinelOne) Exposure to GRC platforms or risk management tools Helpdesk or IT support background...Full timeInternshipShift work
$150 per hour
...data exfiltration , ransomware , worms , and exploits . Evaluate POC exploit development to determine boundaries between security research and malicious intent. Provide ground-truth labels to improve classifiers that enhance AI safety . Work...Remote jobHourly payWeekly payContract workFor contractorsSummer work- ...you have knowledge and experience with the security & IT policies/standards of the Ontario... ...)? Do you have the ability to handle and secure sensitive information, detailing the due-... ...client is looking for a Senior Security Specialist - Threat Risk Assessment for a 12 month...Contract work
- ...and executing the enterprise information security strategy to guarantee the confidentiality,... ...leadership of Governance, Risk & Compliance (GRC), Security Architecture, and Security... ...Security Architecture Integration: Embed secure-by-design principles, NIST framework methodologies...Full timeFlexible hours
$105k - $234k per year
...like? Reporting to the executive leadership for the Application Security group in Deloitte's Technology and Transformation practice, the... ...Security teams and services. Our Application Security specialists design and configure roles and user access within ERP, HCM, CRM...Permanent employmentLocal areaFlexible hours- ...GRC Solution Architect (RSA Archer / SAFA) Location: Toronto, ON Work Style: Hybrid Skills: Agile Way of Working~Solution and Functional Architect (SAFA) Experience Required: 10 & Above Role Descriptions: Solution architects role is to build and integrate...Contract work
- ...RQ10926 - 2 x Sr. Security Specialist - Threat Risk Assessment 2 openings 1-year contract (254 business days) - possible extension... ...HTRA) or equivalent methodology Knowledge of techniques to secure information assets and the planning, design, and implementation...Contract work
$108.1k - $222.8k per year
...of Toronto. Hybrid is 3 days a week onsite and 2 days a week remote SAP Enterprise Cloud Services is looking for a Senior Security Specialist with a strong technological and security background across the stack. Your focus topic will be Security Incident Response. You...Permanent employmentFull timeWork at officeLocal areaRemote workWorldwideFlexible hours2 days per week3 days per week$105k - $130k per year
...greener and smarter mobility worldwide, connecting cities as we reduce carbon and replace cars. Could you be the full-time Security Manager in Toronto, ON we’re looking for? Your future role Take on a new challenge and apply your security and risk management...Long term contractFull timeFor contractorsLocal areaWorldwideFlexible hours$140k - $175k per year
...evolving business needs. Are you excited by the opportunity to secure products used by millions of professionals around the world? Join... ...product engineering, platform engineering, Security Architecture, GRC, IAM, Detection & Response, and business leaders to make security...Full timeWork at officeLocal areaFlexible hours2 days per week3 days per week$100 - $130 per hour
...Deep exposure to one or more enterprise practice areas: M&A , securities, regulatory, employment, IP , privacy, or commercial contracting... ...platforms ( Ironclad , Agiloft , Icertis ) and enterprise GRC tooling. ~ JD with active bar admission. Preferred...Remote jobHourly payWeekly payContract workFor contractorsSummer work- ...Role Responsibilities Review and evaluate AI-generated outputs related to threat analysis, vulnerability assessment, and security architecture recommendations. Create realistic scenarios based on cybersecurity workflows such as incident response runbooks, threat...Remote jobHourly payContract workSummer work
$90k - $120k per year
.... Could you be the full-time Installation Engineering Specialist in Toronto, ON we're looking for? Your future role Take... ...career free from monotonous routines. Work with cutting-edge security standards for rail signalling. Collaborate with diverse and...Long term contractFull timeFor subcontractorWorldwideFlexible hoursNight shift$21.71 per hour
...Ready to suit up as a Tactical Security Guard What matters most in a role like this is your ability to read the environment, anticipate... ...environment, you’ll be a key player in maintaining a safe and secure atmosphere for staff, students, and visitors. Duties include:...Hourly payFull timeCasual workLocal areaShift workNight shift2 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security GRC Specialist. Be the first to apply!
- conseiller santé sécurité Toronto, ON
- physical security specialist Toronto, ON
- security systems specialist Toronto, ON
- physical security analyst Toronto, ON
- conseiller en sécurité financière Toronto, ON
- junior security analyst Toronto, ON
- spécialiste en sécurité Toronto, ON
- spécialiste en sécurité informatique Toronto, ON
- security operations specialist Toronto, ON
- security analyst - soc Toronto, ON
