Senior Analyst, Compliance and Risk Management

2 months ago


Markham, Canada Enercare Inc. Full time
h3>Senior Analyst – IT Governance, Risk and Compliance

Markham, ON, Canada

Job Description

Posted Monday, June 10, 2024 at 4:00 AM

Proudly Canadian-owned, Enercare is committed to providing the best services, solutions and advice to make customer’s homes as comfortable as they can be. With Enercare Advantage, we provide affordable clean air and water solutions for homes and workplaces. We are committed to operating in an environmentally responsible way, including keeping as much waste out of landfills as possible, and giving back to the communities where we live and work. Enercare is about putting people first by listening to our customers, continuous improvement and making our organization a destination for building people’s careers.

Role: Senior Analyst – IT Governance, Risk and Compliance

Status: Regular, Full-Time

Department: Information Technology

Reports: Director, IT Governance, Risk and Compliance

Location: Hybrid - Markham

Summary:

The Senior Analyst – IT Governance, Risk and Compliance (IT GRC) will manage activities within Canada and US, as part of the IT GRC team, and report directly to the Director, IT GRC. The person will be instrumental in collaborating across IT, business, and internal / external audit teams especially for the compliance process.

A great fit for this role is someone with working experience in the field and who has assisted in planning, testing, execution and reporting on IT Governance, Risk and Compliance, especially processes and controls for Sarbanes-Oxley (SOX), Payment Card Industry (PCI) Data Security Standards (DSS) and/or compliance programs.

IT Governance

  • Responsible for, where required, writing, or advising on IT Policies, Standards, Guidelines, Procedures, Plans, Playbooks & Standard Operating Procedures (SOPs) and ensure alignment to industry standards, best practices, regulatory requirements, IT enterprise policy framework & management requirements.
  • Ensuring policies are reviewed on schedule & communicated to all relevant parties in compliance with processes and at times could include reviewing and contributing to non-IT owned policies.
  • Ensure that IT procedures, controls and documentation are sufficient across IT, provide advice on gaps and support or guide teams in filling those gaps.
  • Responsible for performing gap analysis of IT governance and remediating gaps or working with department management to remediate gaps.
  • Supporting the Data Governance program and records information management programs.
  • Performing all aspects of an IT risk management program. This includes assessing risk (to industry frameworks and in line with Enterprise risk tolerance and appetite), documenting technical details as well as documenting risk in a way that is easily understood by non-technical people.
  • Reviewing & assessing management responses, ensuring that risks are sufficiently mitigated, and documenting justification and reasoning.
  • Performing risk assessments of vendors that the Company works with and providing advice on any iterative improvements to that process.
  • Facilitating periodic risk review sessions with IT leadership, performing assessments and to ensure consistent patterns of risk management processes across the Company.
  • Manage the third-party risk management process for external vendors.

IT Compliance

  • Assist with the IT Compliance programs (e.g., SOX, PCI DSS) including planning, testing, execution, monitoring and reporting of new and existing processes and controls.
  • Participate in annual and ongoing IT Compliance (e.g., SOX) scoping to identify any changes to the systems, applications, and automated controls considered to be in-scope for the current fiscal year.
  • Manage IT Compliance readiness, such as control identification and testing for new systems, applications, and automated controls.
  • Lead IT General Control (ITGC), and application control (ITAC) (as applicable), walkthroughs for new or complex processes and systems.
  • Develop, update and/or review IT process documentation for accuracy, completeness and relevance and update as necessary.
  • Coordinate IT SOX program testing for ITGC, and ITAC (as applicable) with co-sourced internal audit IT team members, external audit IT team members, control owners, managers and executive management.
  • Evaluate IT control deficiencies for impact and perform root cause analysis to determine appropriate management actions.
  • Provide regular IT Compliance program status reporting to the IT team, Internal Audit and Senior IT management (as needed).
  • Assisting with benchmarking and other initiatives to improve controls, make processes more efficient, effective, and/or reduce cycle time for IT SOX and PCI DSS compliance.
  • Work closely with cross-functional teams including IT Operations, Accounting/Finance, and Internal/External Audit.
  • Collaborate with internal and external auditors to ensure IT SOX and other compliance program requirements are being met.
  • Ensure new software programs meet compliance requirements before they are made operational.
  • Support and manage detailed testing of controls to ensure risks are appropriately identified, associated audit procedures are applied, and related controls are designed and operating to mitigate the identified risks.
  • Training of IT GRC to the IT and Business teams.
  • Build trust and positive working relationships with auditors, business stakeholders, IT teams, and senior management to ensure alignment between IT strategy and business objectives.
  • Collaborating with Project, IT development and operations teams to identify, collect and optimize IT resources to meet business requirements.

Qualifications:

  • Bachelor’s degree or higher, preferably in Information Technology (IT), Information Security, Computer Science or other technical discipline; li>
  • 5+ years of progressive experience in IT Governance, Risk Management, Compliance and/or Audit (e.g., Operations, Financial, IT); Project management experience is desired.
  • CISSP, GIAC, CGEIT, CRISC, CISM, CDPSE, ISO 27001 are an asset.
  • Demonstrate previous success working with IT GRC programs.
  • Possess strong communication and collaboration skills, to provide solutions and translate in both technical and non-technical manners.
  • Illustrated ability to deliver projects on time and within budget in fast moving environment and competence in managing several projects.
  • Experience in supporting compliance with applicable privacy laws, is an asset.


  • Markham, Canada BGIS Full time

    h3>Physical Security Threat and Risk Assessment (TRA) Analyst (6-9 month contract)BGIS is a leading provider of customized facility management and real estate services. With our combined team of over 6,500 globally, we relentlessly focus on enabling innovation through the services we deliver. Globally, we manage over 320 million square feet of client...


  • Markham, Ontario, Canada Enercare Inc. Full time

    About Enercare Inc.Enercare Inc. is a Canadian-owned company committed to providing exceptional services, solutions, and advice to make customers' homes as comfortable as possible.Our company operates in an environmentally responsible way, reducing waste and giving back to the communities where we live and work.We prioritize people-first initiatives,...


  • Markham, Ontario, Canada LEBANC DEVELOPMENT INC. Full time

    Company OverviewLEBANC DEVELOPMENT INC. is a reputable property development company seeking an experienced Senior Portfolio Risk Analyst to join our team.Salary: $60,000 - $80,000 per yearJob DescriptionAs a Senior Portfolio Risk Analyst, you will be responsible for evaluating financial risk and advising on the financial aspects of contracts and calls for...


  • Markham, Ontario, Canada Tomato Pay Inc. Full time

    Job SummaryWe are seeking a highly skilled Senior Financial Risk Analyst to join our team at Tomato Pay Inc. This role will play a critical part in evaluating financial risk and managing debt portfolios.About the RoleThis is a 1-2 year contract position that requires on-site work at our office. The ideal candidate will have a Bachelor's degree and excellent...


  • Markham, Canada Aviva Full time

    Individually we are people, but together we are Aviva. Individually these are just words, but together they are our Values – Care, Commitment, Community, and Confidence. Reporting to the Third Party Risk Management (TPRM) Expertise Lead, the Risk Analyst is responsible for managing the operational execution of due diligence activities for select risk...


  • Markham, Ontario, Canada Honda Canada Full time

    Honda Canada is seeking a skilled Senior Risk Management Specialist to join its team in Markham. This full-time position offers a competitive salary of $85,000 - $105,000 per year, commensurate with experience.Job DescriptionThe Senior Risk Management Specialist will be responsible for evaluating the effectiveness of Honda Canada's internal controls, risk...


  • Markham, Ontario, Canada Sienna Senior Living Full time

    About UsSienna Senior Living is a leading provider of seniors' residences and care services in Canada. We offer a range of support, services, and housing options for seniors and their families.Job SummaryWe are seeking a highly skilled Senior Financial Analyst to join our Finance Team as a Treasury & Insurance Expert. As a key member of our team, you will be...


  • Markham, Canada Aviva plc Full time

    h3>Senior Financial Analyst, MI ReportingIndividually we are people, but together we are Aviva. Individually these are just words, but together they are our Values – Care, Commitment, Community, and Confidence.The Senior Financial Analyst is accountable for the design and delivery of MI reports and QLIK dashboards to support finance and MI reporting...

  • Security Risk Analyst

    2 weeks ago


    Markham, Canada AECOM Full time

    p>At AECOM, we're delivering a better world. Whether improving your commute, keeping the lights on, providing access to clean water, or transforming skylines, our work helps people and communities thrive. We are the world's trusted infrastructure consulting firm, partnering with clients to solve the world’s most complex challenges and build legacies for...


  • Markham, Ontario, Canada Vaco Full time

    About the RoleWe are seeking a Senior Financial Risk Manager to join our team in the Greater Toronto Area. This is an excellent opportunity for someone with experience in risk management, internal audit, or regulatory compliance to work with a leading financial institution.Key Responsibilities:Promote risk awareness in Finance and Treasury Business...


  • Markham, Canada Quantum Management Services Ltd. Full time

    Position: Healthcare Compliance SpecialistLocation: Markham, ON – Hybrid (On-site full-time for first 2 months, then 3 days on-site ongoing)Salary: Up to $31/hourStart Date: January 27, 2025Job Type: 1-year contract, with potential extension based on performance and business needsAbout the Role:We’re seeking a highly organized and collaborative...


  • Markham, Canada Quantum Management Services Ltd. Full time

    Position: Healthcare Compliance SpecialistLocation: Markham, ON – Hybrid (On-site full-time for first 2 months, then 3 days on-site ongoing)Salary: Up to $31/hourStart Date: January 27, 2025Job Type: 1-year contract, with potential extension based on performance and business needsAbout the Role:We’re seeking a highly organized and collaborative...


  • Markham, Canada Quantum Management Services Ltd. Full time

    Position: Healthcare Compliance Specialist Location: Markham, ON – Hybrid (On-site full-time for first 2 months, then 3 days on-site ongoing) Salary: Up to $31/hour Start Date: January 27, 2025 Job Type: 1-year contract, with potential extension based on performance and business needs About the Role: We’re seeking a highly organized and...


  • Markham, Canada AECOM Full time

    h3>Junior Security Risk Analyst - Transit & RailAt AECOM, we're delivering a better world. Whether improving your commute, keeping the lights on, providing access to clean water, or transforming skylines, our work helps people and communities thrive. We are the world's trusted infrastructure consulting firm, partnering with clients to solve the world’s...


  • Markham, Ontario, Canada Quantum Management Services Ltd. Full time $31

    We are seeking a highly organized and collaborative Regulatory Compliance Specialist to join our client's team in Markham, ON. Reporting to the Senior Manager of Compliance, you will be pivotal in implementing and supporting compliance projects, developing training materials, and providing strategic guidance on compliance matters.Key Responsibilities:Lead...


  • Markham, Ontario, Canada Sienna Senior Living Full time

    Job TitleFinancial Record AnalystAbout the RoleWe are seeking an experienced Financial Record Analyst to join our team at Sienna Senior Living. This is a permanent, full-time position with a salary of $55,000 - $65,000 per year.Job DescriptionThe successful candidate will be responsible for maintaining accurate and up-to-date financial records, including...


  • Markham, Canada Extendicare Full time

    **Job Description**: Reporting to the Manager Finance, the Insurance & Risk Analyst will serve as a business partner to corporate teams, responsible for handling end to end insurance matters, including claims handling, management, cost tracking, budgeting, forecasting, accurate and timely accounting, and reporting, while ensuring that the company’s...


  • Markham, Ontario, Canada Sienna Senior Living Full time

    Join Sienna Senior Living as a Financial Analyst, Treasury and Insurance ExpertWe are seeking a highly detail-oriented and proactive Financial Analyst, Treasury and Insurance to join our Finance Team in Markham. As a key member of our team, you will be responsible for preparing cash flow projections, identifying opportunities for cash flow improvement, and...


  • Markham, Ontario, Canada Quantum Management Services Ltd. Full time

    **Company Overview:**We are a professional services firm that provides expert solutions to businesses across various sectors. Our team of dedicated professionals is passionate about delivering high-quality services that meet our clients' needs.**Job Description:**We are seeking a highly skilled and organized Regulatory Compliance Officer to join our...


  • Markham, Ontario, Canada Aviva Full time

    Overview At Aviva, we recognize the importance of effective risk management in ensuring business continuity and success. As a leading insurance company, we are committed to identifying, assessing, and mitigating risks that could impact our operations. This is where you come in – as a Risk Analyst, you will play a crucial role in our Third Party Risk...