Governance and Compliance Manager

3 weeks ago


Toronto, Canada Thentia Full time

About Thentia
Thentia is a fast-growing, venture capital-backed software as a service (SaaS) company that is emerging as a world leader in government technology with a platform that is transforming and modernizing how regulatory organizations are conducting business. A company of builders, thinkers, and owners, Thentia gives employees the opportunity to create amazing solutions, showcase their talents, and benefit from our shared success as we scale up in the U.S., Canadian, and global markets. Further, Thentia’s solutions directly impact public trust and regulatory integrity, helping regulators and agencies meet 21st century standards by leveraging predictive analytics, Big Data, AI, and other innovative capabilities. Internally, our culture fosters collaboration, inclusivity, intellectual curiosity, and professional development.

About The Role:
**Responsibilities**:

- Manage a team to assure efficiency and effective awareness of business risk and operational priorities while consistently learning and sharing advanced skills to foster team excellence.
- Document and formally report assessment, testing, and compliance initiatives, along with providing well written and supported remediation recommendations and validation.
- Create or define templates and strategies for creation and maintenance of documentation specifically required by FedRAMP, NIST 800-53, CJIS, SOC2, ISO 27001, GDPR, etc.
- Work closely with the security operations center (SOC) to leverage intelligence sources, identify new threats in the wild and verify the organization’s security posture against them.
- Assist with responding or facilitating response to customer and auditor requests and questionnaires.
- Occasionally attend and participate in change management policy discussions and meetings.
- Perform other duties as assigned.

Qualifications:

- Bachelor's degree in computer science (preferred), information assurance, MIS or related field.
- At least 5-7 years experience in Information Technology and Security audit or compliance assessments with 1-2 years experience managing an audit or compliance program including administration, monitoring, compliance, and incident response.
- At least 1-2 years in IaaS control reviews/audits.
- Experience with NIST-CSF, CSA-CCM or CAIQ, customer questionnaires.
- Excellent knowledge of operational systems such as Linux, Windows and Mac; proficient with networking protocols.
- Familiarity with technologies such as IPS/IDS, SIEMs, firewalls, EPP, EDR tools, as well as UEBA, OWASP top 10, MITRE ATT&CK framework, and SDLC.
- At least one or more of the following certification is required at a minimum: CISA, CISM, CRISC, CISSP, CEH, CCSP
- Highly organized and efficient with experience coordinating or leading multiple simultaneous projects involving 3 or more contributors.
- Exceptional experience communicating business risk and remediation requirements/
- Excellent strategic thinking, decision-making, business acumen

We thank all applicants in advance for applying. Only individuals selected for interviews will be contacted.

Compensation
Thentia provides employees with a competitive base salary along with:

- Full Health Insurance coverage
- Flexible paid-time-off, including vacation and wellness days
- Parental Leave
- Employee Stock Option Plan
- Year-end bonus potential
- Remote or Hybrid working options (as position allows)
- Professional development & training, including Udemy Business

Our Commitment:



  • Toronto, Ontario, Canada Raymond James Ltd. Full time

    At Raymond James, we develop, we collaborate, we decide, we deliver, and we improve together.Raymond James Ltd. is Canada's leading independent investment dealers offering high quality investment products and services to Canadians seeking customized solutions to their wealth management needs.Manager, Compliance GovernanceHow does the role impact the...


  • Toronto, Canada Raymond James Ltd. Full time

    At Raymond James, we develop, we collaborate, we decide, we deliver, and we improve together. Raymond James Ltd. is Canada's leading independent investment dealers offering high quality investment products and services to Canadians seeking customized solutions to their wealth management needs.Manager, Compliance GovernanceHow does the role impact the...


  • Old Toronto, Canada Fengate Asset Management Full time

    IT Governance, Risk, and Compliance ManagerThis role will have an exciting opportunity to be responsible for the implementation and on-going management of an ISO 27001 program and additional IT policies and procedures.The IT Governance, Risk, and Compliance (GRC) Manager will be responsible for assessing, documenting, and strengthening the institution’s...


  • Old Toronto, Canada Fengate Asset Management Full time

    IT Governance, Risk, and Compliance ManagerThis role will have an exciting opportunity to be responsible for the implementation and on-going management of an ISO 27001 program and additional IT policies and procedures.The IT Governance, Risk, and Compliance (GRC) Manager will be responsible for assessing, documenting, and strengthening the institution’s...


  • Old Toronto, Canada Fengate Asset Management Full time

    IT Governance, Risk, and Compliance ManagerThis role will have an exciting opportunity to be responsible for the implementation and on-going management of an ISO 27001 program and additional IT policies and procedures.The IT Governance, Risk, and Compliance (GRC) Manager will be responsible for assessing, documenting, and strengthening the institution’s...


  • Toronto, ON, Canada Fengate Asset Management Full time

    IT Governance, Risk, and Compliance Manager This role will have an exciting opportunity to be responsible for the implementation and on-going management of an ISO 27001 program and additional IT policies and procedures. The IT Governance, Risk, and Compliance (GRC) Manager will be responsible for assessing, documenting, and strengthening the...


  • Toronto, Canada HashiCorp Full time

    **Manager, Governance, Risk & Compliance**: **About the Role**: We're looking for a GRC manager to lead, develop and mature the commercial compliance (SOC 2 Type 2, ISO 27001/17/18) and policy/controls programs at HashiCorp. This role will be heavily focused on scaling, automating, and managing compliance capabilities across HashiCorp. We're looking for a...


  • Toronto, ON, Canada Mattermost Inc Full time €90,000 - €130,000

    Mattermost provides secure, workflow-centric collaboration for technical and operational teams that need to meet nation-state-level security and trust requirements. Our self-hosted and cloud offerings provide integrated workflow automation, AI-acceleration, ChatOps with team messaging, audio calling and screen share on an open core platform vetted and...


  • Toronto, Canada BGIS Full time

    **ABOUT US** **OUR CULTURE** At BGIS, our culture is built on three foundational pillars: - **Culture of Care**:We deeply care for each other, our clients, partners, and the communities we serve. - **High Performing Teams**:We go Above and Beyond to deliver exceptional services. INTEGRITY, OWNERSHIP, RESPONSIVENESS, INITIATION, VISIBILITY, DRIVE, and...


  • Toronto, Canada Canadian National Railway Full time

    At CN, we work together to move our company-and North America-forward. Be part of our Information & Technology (I&T) team, a critical piece of the engine that keeps us in motion. From enterprise architecture to operational technology, our teams use the agile methodology to automate and digitize our railroad ensuring our operations run optimally and safely...


  • Toronto, Canada Canadian National Railway Full time

    At CN, we work together to move our company—and North America—forward. Be part of our Information & Technology (I&T) team, a critical piece of the engine that keeps us in motion. From enterprise architecture to operational technology, our teams use the agile methodology to automate and digitize our railroad ensuring our operations run optimally and...


  • Toronto, Canada Canadian National Railway Full time

    At CN, we work together to move our company-and North America-forward. Be part of our Information & Technology (I&T) team, a critical piece of the engine that keeps us in motion. From enterprise architecture to operational technology, our teams use the agile methodology to automate and digitize our railroad ensuring our operations run optimally and safely...


  • Toronto, Canada Canadian National Railway Full time

    At CN, we work together to move our company-and North America-forward. Be part of our Information & Technology (I&T) team, a critical piece of the engine that keeps us in motion. From enterprise architecture to operational technology, our teams use the agile methodology to automate and digitize our railroad ensuring our operations run optimally and safely...


  • Toronto, Canada Canadian National Railway Full time

    At CN, we work together to move our company—and North America—forward. Be part of our Information & Technology (I&T) team, a critical piece of the engine that keeps us in motion. From enterprise architecture to operational technology, our teams use the agile methodology to automate and digitize our railroad ensuring our operations run optimally and...


  • Toronto, Canada Canadian National Railway Full time

    At CN, we work together to move our company—and North America—forward. Be part of our Information & Technology (I&T) team, a critical piece of the engine that keeps us in motion. From enterprise architecture to operational technology, our teams use the agile methodology to automate and digitize our railroad ensuring our operations run optimally and...

  • IT Governance Manager

    4 weeks ago


    Toronto, Canada Northbridge Financial Corporation Full time

    Nous sommes la Financière Northbridge. Nous sommes fiers d’être une société canadienne à 100 %, détenue en propriété exclusive par Fairfax Financial. Nous offrons nos services par l’entremise de nos marques Northbridge Assurance, Les assurances Federated et TruShield Assurance. Nous sommes reconnus comme étant l’une des plus importantes...


  • Toronto, Canada BMO Financial Group Full time

    250 Yonge Street Toronto Ontario,M5B 2L7 As Governance, Risk and Compliance specialist, you will support the Cyber Security Center of Excellence in the effective implementation, maintenance and administration of first line of defense (1st LOD) programs (e.g., operational risk, compliance, regulatory, etc. Contributes to a strong risk management culture...


  • Toronto, ON, Canada Canadian National Railway Full time

    At CN, we work together to move our company—and North America—forward. Be part of our Information & Technology (I&T) team, a critical piece of the engine that keeps us in motion. From enterprise architecture to operational technology, our teams use the agile methodology to automate and digitize our railroad ensuring our operations run optimally and...


  • Toronto, ON, Canada Canadian National Railway Full time

    At CN, we work together to move our company—and North America—forward. Be part of our Information & Technology (I&T) team, a critical piece of the engine that keeps us in motion. From enterprise architecture to operational technology, our teams use the agile methodology to automate and digitize our railroad ensuring our operations run optimally and...


  • Old Toronto, Canada BGIS Full time

    Job Description: ABOUT US BGIS is a leading provider of customized facility management and real estate services. With a combined team of over 10,000 professionals worldwide, we relentlessly focus on enabling innovation through the services we deliver. We actively seek new opportunities that drive innovation for our clients' businesses. Globally, we manager...