IT GRC Risk Management Specialist

4 weeks ago


Vancouver, British Columbia, Canada Vancity Full time

A key role in our team involves supporting the Senior Manager, Information Security Compliance, in developing and implementing a strategic approach to information security risk management across people, processes, and technology.

  • Develop and maintain Information Security risk and governance KPI's, KRI's, and SLA's. Assist with metrics creation and reporting, and provide regular updates on the status of information security risks to leadership and stakeholders.
  • Participate in third-party and supply chain cybersecurity risk assessments, and maintain the IT risk register on the GRC platform (Onetrust, Auditboard). Perform Security Threat Risk Assessments of all new projects and technology implementations.
  • Develop and maintain IT and Security Risk Assessment processes and documentation. Advise various teams on risk mitigation and compensatory measures to reduce risks to acceptable levels, using knowledge of Vancity policies, technologies, standards, and industry best practices.
  • Foster a risk-aware culture across the organization, and be prepared for other duties as assigned.

Requirements:

  • A bachelor's degree or equivalent in Computer Science, Business, or a related field.
  • 3-5 years of progressive experience in information security risk management, preferably in a mid-sized corporate organization or a financial institution.
  • Information Security Certifications in one or more of the following are desirable: Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), or Certified Information Security Manager (CISM).
  • In-depth understanding of risk management frameworks such as NIST RMF, NIST AI-RMF, ISO 31000, FAIR, and ISO 27001.
  • Strong understanding of regulatory requirements and standards, such as OSFI, BCFSA, PIPA, and PIPEDA.

Desirable skills:

  • Exceptional communication skills, able to communicate with stakeholders across different levels of the organization.
  • Flexible, with the ability to work in a highly flexible environment with multiple competing priorities.
  • Organized, with good multi-tasking skills and the ability to prioritize work based on risk and business needs.


  • Vancouver, British Columbia, Canada Vancity Full time

    About the Role:This is an exciting opportunity to join Vancity as an IT GRC Risk Management Specialist. In this role, you will be responsible for developing and implementing a strategic approach to information security risk management across people, process, and technology.Key Responsibilities:Assist the Senior Manager, Information Security Compliance in...


  • Vancouver, British Columbia, Canada Vancity Full time

    About the Role:We are seeking a highly skilled Risk Management and Compliance Professional to join our team at Vancity. As an IT GRC Risk Management Analyst, you will play a key role in developing and implementing a strategic approach to information security risk management across people, process, and technology.Key Responsibilities:Assist the Senior...


  • Vancouver, British Columbia, Canada Diligent Full time

    Lead GRC Solutions ImplementationDiligent is a global leader in modern governance, providing comprehensive governance, risk, and compliance software solutions. Our platform empowers over 1 million users and 700,000 board members and leaders with a holistic view of their organization's GRC practices, enabling them to make informed decisions, faster.As an...


  • Vancouver, British Columbia, Canada EightSix Network Full time

    Job Summary:EighthSix Network seeks a seasoned IT Governance and Compliance Lead to help establish and mature its IT Risk Management landscape.As part of the 1st line of defense, you will optimize and maintain the IT Risk Program, providing strategic and technical support to effectively manage technology risks.About the Role:You will lead and develop the IT...


  • Vancouver, British Columbia, Canada Victoryoncology Full time

    Job Summary:Victoryoncology is seeking an experienced professional to lead our Risk Management program as Director of Security Architecture and GRC.Main Responsibilities:Establishment of Governance Process: Develop and implement a comprehensive Security Architecture Governance process to ensure effective risk management.Supplier Risk Management: Oversee the...


  • Vancouver, British Columbia, Canada EightSix Network Full time

    Job Title: IT Risk Management LeaderAbout the Role:We are seeking an experienced IT Risk Management Leader to join our team at EightSix Network. As a key member of our Technology Governance, Risk and Compliance function, you will play a crucial role in establishing and maturing our IT Risk Management landscape.Key Responsibilities:Lead and develop the IT...


  • Vancouver, British Columbia, Canada Victoryoncology Full time

    Job OverviewWe are seeking a seasoned Director of Security Architecture and GRC to lead our risk management program.


  • Vancouver, British Columbia, Canada West Fraser Full time

    Job Title: Security SpecialistWest Fraser is seeking a highly skilled Security Specialist to join our Cyber Security team. As a key member of our team, you will play a critical role in ensuring the confidentiality, availability, and integrity of customer, company, and employee information.Key Responsibilities:Proactively identify, assess, and mitigate...


  • Vancouver, British Columbia, Canada Davies Risk Services Full time

    Job Description:Davies Risk Services is seeking a Risk Control Consultant to work on an independent contractor basis. The ideal candidate will have a strong understanding of risk management principles and be able to provide consultative services to clients. Key Responsibilities:Conduct risk assessments and provide recommendations for risk mitigation...


  • Vancouver, British Columbia, Canada Diligent Corporation Full time

    Advisory and Consulting Manager (12 Month Fixed Term Contractor)Diligent Corporation is a modern governance company that provides comprehensive governance software solutions.As a key member of our team, you will lead customer adoption project teams to drive adoption of our GRC solutions and support business development activities.Key Responsibilities:Act as...


  • Vancouver, British Columbia, Canada QDStaff Full time

    About the Role: We are seeking a skilled Risk Management Specialist to join our team. The successful candidate will be responsible for identifying and assessing potential risks to the business, developing and implementing risk mitigation strategies, and ensuring compliance with regulatory requirements.Key Responsibilities:Conduct risk assessments and develop...


  • Vancouver, British Columbia, Canada EightSix Network Full time

    Job OverviewEightSix Network is seeking a highly skilled Chief Technology Risk Officer to join our team. As a key member of our organization, you will play a critical role in establishing and maturing our IT Risk Management landscape.Key ResponsibilitiesOptimize and maintain our IT Risk Program, providing strategic and technical support to manage technology...


  • Vancouver, British Columbia, Canada Ecclesiastical Insurance Group Full time

    About the RoleEcclesiastical Insurance Group is seeking a highly skilled Risk Control Specialist to join our National Risk Control Team in Vancouver. As a key member of our team, you will play a crucial role in identifying potential risks and developing strategies to control and reduce them, ensuring the health and safety of our customers and protecting...


  • Vancouver, British Columbia, Canada Ecclesiastical Insurance Group Full time

    About the RoleEcclesiastical Insurance, a leading specialist insurance company, is seeking an experienced Risk Control Specialist to join its National Risk Control Team in Vancouver.The ideal candidate will have a strong background in risk management, with a focus on identifying and mitigating potential risks to ensure the health and safety of...


  • Vancouver, British Columbia, Canada KPMG Full time

    Job SummaryWe are seeking a highly skilled Technology Risk Services Manager to join our team at KPMG. As a key member of our Risk Services practice, you will be responsible for providing expert advice and guidance to clients on technology risk management and assurance services.Key ResponsibilitiesDevelop and implement engagement and project plans to meet...

  • Advisory Consultant

    3 weeks ago


    Vancouver, British Columbia, Canada Diligent Corporation Full time

    Job SummaryAs a seasoned Advisory Consultant with Diligent Corporation, you will play a pivotal role in driving customer adoption of our comprehensive governance, risk, and compliance (GRC) software solutions. With a proven track record in managing large-scale technology implementations and a deep understanding of business processes, you will leverage your...


  • Vancouver, British Columbia, Canada EightSix Network Full time

    Job Title: Senior Manager, Technology Governance and Compliance ExpertAbout the Role:We are seeking a highly skilled Senior Manager, Technology Governance and Compliance Expert to join our team at EightSix Network. As a key member of our Technology Governance, Risk and Compliance function, you will play a critical role in establishing and maturing our IT...


  • Vancouver, British Columbia, Canada Sierra Space Full time

    About UsAt Sierra Space, we are pioneers in unlocking the future of space exploration. Our mission is to push beyond the boundaries of what is thought possible and create a new frontier for humanity.Job SummaryWe are seeking a skilled Cybersecurity Risk Management Specialist to join our team. As a key member of our cybersecurity department, you will be...


  • Vancouver, British Columbia, Canada Scotiabank Full time

    OverviewScotiabank is a leading financial institution seeking a seasoned Risk Management Insurance Specialist to drive revenue growth in our life insurance division.Salary: $120,000 - $150,000 per year (estimated)Job DescriptionWe are looking for an experienced professional to lead the end-to-end sales process on lifestyle protection solutions and select...


  • Vancouver, British Columbia, Canada Stantec Consulting International Ltd. Full time

    Job Title: Contract Negotiation and Risk Management SpecialistAbout Us: At Stantec Consulting International Ltd., we are committed to providing equal employment opportunities to all qualified employees and applicants. We prohibit discrimination on the grounds of race, color, religion, sex, national origin, age, marital status, genetic information,...