Manager, IT Governance, Risk and Compliance

2 weeks ago


Markham, Canada Pet Valu Full time

Manager, IT Governance, Risk and Compliance page is loaded## Manager, IT Governance, Risk and Complianceremote type: Hybridlocations: 0001 – Markham Officetime type: Full timeposted on: Posted Todayjob requisition id: R24922Hybrid: Markham, Ontario**Job Description:****Job Overview**The Manager, IT Governance, Risk and Compliance is the IT owner for ICFR, PCI-DSS, NIST Cybersecurity Framework (CSF) 2.0, and Third-Party Risk Management (TPRM). This hands-on leadership role delivers IT controls, evidence, remediation, policy governance, the IT Security Risk Register, and the full TPRM lifecycle while partnering with Finance, Payments, Security, Procurement, and Legal.Salary Range: $125,000-$135,000**Essential Duties*** Act as the primary IT point of contact for internal and external audit partners on ICFR/ITGC, PCI-DSS, and NIST CSF 2.0 audits.* Own the IT General Controls (ITGC) portion of the annual ICFR program: scoping, documentation, evidence, walkthroughs, testing support, and remediation.* Manage the PCI-DSS IT compliance program (Requirements 1–12, A1–A3), including evidence, QSA support, and remediation.* Lead IT-side implementation and maturity of NIST CSF 2.0 across all six functions.* Develop, maintain, and govern all IT policies, standards, procedures, and process documentation aligned with ICFR, PCI, and NIST CSF.* Own and maintain the IT Security Risk Register (identification, assessment, treatment plans, monitoring, and reporting).* Lead the IT Third-Party Risk Management (TPRM) program: vendor risk assessments, due diligence, ongoing monitoring, contract reviews, scoring, and off-boarding for all technology and cloud vendors in scope for ICFR, PCI, or NIST.* Coordinate and deliver evidence and responses during internal/external audits and regulatory reviews.* Track and drive remediation of IT-related findings from audits and TPRM assessments.* Maintain centralized IT controls library and automated evidence repository.* Perform regular control self-assessments and continuous monitoring.* Report compliance status, risk register, and TPRM metrics to IT leadership, Finance, Procurement, and the Audit Committee.* Stay current on regulatory changes and translate them into actionable IT and vendor requirements.* Other tasks as assigned.**Skills, Experience, Education, Certifications*** 8+ years of progressive IT governance, risk, compliance, or audit experience.* Minimum 4 years in a leadership role.* Direct, hands-on experience delivering IT evidence and remediation for **ICFR/ITGC**, **PCI-DSS**, **NIST CSF**, and **Third-Party Risk Management** programs.* Proven ability to work successfully with internal/external audit partners and vendors.* Professional certification required (one or more): CISA, CISM, CRISC, CISSP-ISSAP, PCIP, or equivalent.* Strong policy, process documentation, and risk register management skills.* Hands-on experience running a TPRM program and using vendor risk platforms**Competencies*** Mastery of ICFR/ITGC, PCI-DSS, NIST CSF 2.0, and TPRM* Policy and process documentation excellence* IT risk register and vendor risk lifecycle ownership* Audit coordination and evidence delivery* Cross-functional partnership (Finance, Security, Payments, Procurement, Legal)* Calm execution under tight audit and vendor review timelinesThis posting is for an existing vacancy. As part of the application process, AI may be used to assist with screening, or assessing job applicants .
#J-18808-Ljbffr



  • Markham, Canada Pet Valu Full time

    Manager, IT Governance, Risk and Compliance page is loaded## Manager, IT Governance, Risk and Complianceremote type: Hybridlocations: 0001 – Markham Officetime type: Full timeposted on: Posted Todayjob requisition id: R24922Hybrid: Markham, Ontario**Job Description:****Job Overview**The Manager, IT Governance, Risk and Compliance is the IT owner...


  • Markham, Canada SE Health Full time

    At SE Health, our people are everything—and our Home Office is an important part of that culture. When you choose to join SE Health, you become part of a caring, purpose-driven team that’s making a real difference across the country. Our Home Office is where innovation meets impact—supporting our direct care teams, driving strategic growth, and helping...


  • – Markham, Canada Pet Valu Full time

    Hybrid: Markham, OntarioJob Description:Job Overview The Manager, IT Governance, Risk and Compliance is the IT owner for ICFR, PCI-DSS, NIST Cybersecurity Framework (CSF) 2.0, and Third-Party Risk Management (TPRM). This hands-on leadership role delivers IT controls, evidence, remediation, policy governance, the IT Security Risk Register, and the full TPRM...

  • Governance, Risk

    2 weeks ago


    Markham, Canada The Security Centre Limited Full time

    Position Overview:We are seeking a Governance, Risk & Compliance (GRC) Analyst to join our GRC team on a temporary contract through December 2026. This role has the potential to transition to full-time based on performance, business needs, and mutual fit.This entry-level role is ideal for someone with foundational security experience looking to grow in a...

  • Governance, Risk

    5 days ago


    Markham, Canada The Security Centre Limited Full time

    Position Overview: We are seeking a Governance, Risk & Compliance (GRC) Analyst to join our GRC team on a temporary contract through December 2026. This role has the potential to transition to full-time based on performance, business needs, and mutual fit. This entry-level role is ideal for someone with foundational security experience looking to grow in a...

  • Governance, Risk

    7 days ago


    Markham, Canada Lyrical Security Full time

    Position Overview We are seeking a Governance, Risk & Compliance (GRC) Analyst to join our GRC team on a temporary contract through December 2026. This role has the potential to transition to full‑time based on performance, business needs, and mutual fit. This entry‑level role is ideal for someone with foundational security experience looking to grow in...


  • Markham, Canada Allstate Canada Full time

    **Who is Allstate**: Allstate Insurance Company of Canada is a leading home and auto insurer focused on providing its customers prevention and protection products and services for every stage of life. The company is proud to have been named a Best Employer in Canada for nine consecutive years and prioritizes supporting employees and fostering an inclusive,...


  • Markham, Canada The Toronto-Dominion Bank (Canada) Full time

    Description :General Responsibilities:Serve as the point of contact/ lead manager PEA, Risk Assessment Governance, and TrainingProvide strategic input into the design and improvement of risk reporting routines and management-level governance processes.Develop executive level presentationsManage and coach junior team members, providing regular feedback,...


  • Markham, Ontario, Canada TD Full time $96,900 - $136,800

    Work Location:Markham, Ontario, CanadaHours:37.5Line of Business:CompliancePay Details:$96,900 - $136,800 CADTD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been...

  • Avp Enterprise Risk

    15 hours ago


    Markham, Canada Aviva Full time

    Individually we are people, but together we are Aviva. Individually these are just words, but together they are our Values - Care, Commitment, Community, and Confidence. We are looking for an AVP Enterprise Risk & Governance to join our team and set the strategic direction and implementation roadmap for Enterprise Risk Management. This includes leading risk...