IT Auditor

4 weeks ago


Toronto, Ontario, Canada Green Shield Canada Full time

About the Role

We are seeking an experienced IT Auditor to join our Internal Audit Services team at Green Shield Canada. As an IT Auditor, you will be responsible for assessing, planning, and executing audits in the areas of Information Technology and Cybersecurity to ensure key risks to achieving objectives have been identified, internal control completeness and effectiveness has been evaluated, and providing value-added advisory services to GSC.

Key Responsibilities

  • Conduct comprehensive IT audits to assess the effectiveness of security controls, compliance with policies, and adherence to regulatory requirements.
  • Review and analyze system configurations, network setups, and security measures to identify vulnerabilities and areas for improvement.
  • Conduct SOC 1 & SOC 2 audits to ensure compliance with Trust Service Criteria (Security, Availability, Processing Integrity, Confidentiality, and Privacy).
  • Conduct process and operational audits to evaluate the efficiency and effectiveness of business operations.
  • Identify and assess business risk areas and research relevant best practices and strategies to develop audit programs for individual internal audits.
  • Work closely with IT, IT Security, and other business units in an advisory capacity on various IT projects, system implementations, and technology initiatives.
  • Provide technical expertise on risk, security, and control matters to support IT and business objectives.
  • Build strong relationships with internal partners.
  • Partner with management to develop recommendations for changes to processes and systems that will mitigate risk, improve performance, and productivity.
  • Accurately and thoroughly document all work performed in line with the IIA's IPPF and the internal audit policy and procedures.
  • Regularly communicate with stakeholders to obtain findings status and verify the successful implementation of recommended changes.

About You

We are looking for a highly organized individual who can make an immediate impact. The successful candidate must have strong business acumen, be innovative, be a problem solver, be comfortable communicating with individuals at all levels of the organization, and be adaptable to changing circumstances.

Requirements

  • Minimum post-secondary degree or diploma in computer science, information systems, business administration, or a related field.
  • A professional designation is considered an asset, such as, Certified Information Systems Auditor (CISA), Certified in Information Risk and Control (CRISC), Certified Information Systems Security Professional (CISSP), or another relevant designation/certificate.
  • Minimum 3 years of experience in IT auditing, cybersecurity, or related fields.
  • Understanding of security frameworks, including NIST, ISO Standards, COBIT, and CIS.
  • Familiarity with cloud services (AWS, Azure, Google Cloud).
  • Experience with SOC 2 audits, process audits, and operational audits.
  • Knowledge of cloud security principles and compliance requirements.
  • Experience working with technology platforms and must be familiar with performing audits of network, operating systems, applications, databases, and other technical areas, including but not limited to Active Directory, Microsoft solutions, Firewall Technology, 3rd Party Management, and Cloud solutions.
  • Motivated to stay current on changes and trends in the IT/cybersecurity fields.
  • Excellent planning, organizing, and time management skills with strong attention to detail.
  • Strong written and verbal communication skills.
  • Strong personal integrity and work ethic.
  • General understanding of the Canadian regulatory environment.
  • Must be a team player with the ability to work independently in a rapidly changing environment.

Nice to Have

  • Bilingualism (English & French).
  • Preference will be given to those who also hold a CIA designation.
  • Experience working in a regulated environment.
  • Additional IT Certifications (ISO 27001 Lead Auditor, CEH, CCAKCCSK, CISM, ITIL, etc.).


  • Toronto, Canada Atlantis IT group Full time

    **Role: Complaince Analyst** **Location: Toronto, ON** **Duration: Long term** **Description**: Organization NextGen environment is currently looking for a Compliance Analyst/Engineer for our SOC2 Certifications (Type 1 and 2) for our Service Offerings. NextGen Cloud provides a highly secure platform which provides differentiation across a Global platform...

  • Bookkeeper

    5 months ago


    Toronto, Canada Truck It Personnel Services Inc Full time

    Truck It Personnel is in collaboration with one of the largest fuel companies in the GTA. We are looking to fill a full time Bookkeeper position for their head office in Toronto. **Job Summary** We are seeking a skilled and detail-oriented Bookkeeper to join our team. The Bookkeeper is a key member of the administrative team and is responsible for all...