Senior Information Security Specialist, Governance and Compliance

3 weeks ago


Old Toronto, Canada Canadian Tire Corporation Full time

About the Role

We are seeking a seasoned Information Security Specialist to lead our Governance and Compliance team. As Senior Information Security Specialist, Governance and Compliance, you will be responsible for maintaining cyber security policies and standards, responding to regulator and auditor inquiries, and providing advisory services to the business surrounding cyber security governance.

  • Provide senior-level advisory services to cybersecurity, technology teams, and business stakeholders to ensure alignment with cyber security governance requirements.
  • Maintain and develop cyber security policies and standards to ensure compliance with regulatory requirements and industry best practices.
  • Collaborate with external stakeholders, including regulators and auditors, to address inquiries and provide timely and accurate responses.
  • Analyze and assess cyber security-related business scenarios, preparing and presenting position papers with risk-based recommendations to inform leadership decisions.
  • Oversee and provide guidance on cyber security configuration compliance management programs for on-prem and cloud environments.
  • Lead the development and implementation of cyber security vulnerability and patch remediation management programs.
  • Develop and maintain Cloud security compliance management programs to ensure alignment with industry standards and regulatory requirements.
  • Design and perform annual reviews of configuration benchmarks for teams to follow for new and existing systems.
  • Manage the cyber security policy exemption management process, assessing policy exception requests, maintaining exception workflows, and updating the exception database.
  • Stay current with ongoing trends and changes within the cyber security community.

Requirements

  • University degree in an IT-related discipline.
  • CISSP, CISM, CISA, or CRISC designations would be an asset.
  • 8-10+ years of experience in information security, IT audit/compliance, or external audit.
  • Strong understanding of IT, cloud, and cyber security concepts and best practices.
  • Familiarity with security assessment tools, including Tripwire, Nexpose, and MS Defender.
  • Understanding of Agile concepts and practices.
  • Ability to communicate and influence effectively at all levels, from technical staff to leadership.
  • Proven ability to weigh business needs against information security priorities and make sound risk-based judgments.
  • Experience with analyzing and assessing cyber security-related business scenarios, performing risk assessments, and preparing position papers with risk-based recommendations.
  • Experience with cloud security compliance management programs.
  • Experience with developing security baselines based on industry-accepted benchmarks and conducting regular reviews.
  • Technical knowledge of Linux, Windows, AIX, databases, network and security appliances, firewalls/IDS/IPS, web and cloud-based applications, secure coding practices, and cloud security.
  • Proficiency with MS Office suite.

About Us

Canadian Tire Corporation, Limited is a leading Canadian company with over 90 owned brands, 1,700 retail locations, financial services, and e-commerce capabilities.

We value flexibility and have adopted a hybrid work model to support employee outcomes.

We are committed to fostering an inclusive and equitable work environment where diversity, inclusion, and belonging thrive.

We welcome applications from equity-seeking groups, including racialized individuals, Indigenous peoples, 2SLGBTQIA+ individuals, women, people with disabilities, and beyond.



  • Old Toronto, Canada Canadian Tire Corporation Full time

    What you’ll do Reporting to the AVP, Cyber Governance Risk and Compliance, the Senior Information Security Specialist, Governance and Compliance will lead the charge in maintaining cyber security policies and standards, responding to regulator and auditor inquiries, and providing an advisory function to the business surrounding cyber security...


  • Old Toronto, Canada Canadian Tire Corporation Full time

    What you’ll do Reporting to the AVP, Cyber Governance Risk and Compliance, the Senior Information Security Specialist, Governance and Compliance will lead the charge in maintaining cyber security policies and standards, responding to regulator and auditor inquiries, and providing an advisory function to the business surrounding cyber security...


  • Old Toronto, Canada Sportchek Full time

    Senior Information Security Specialist, Governance and ComplianceLocation: Toronto, ONTime Type: Full timePosted On: Posted 2 Days AgoTime Left to Apply: End Date: November 11, 2024 (11 days left to apply)Job Requisition ID: JR134925What you’ll doProvide senior level advisory services to cybersecurity, technology teams, and business team members, as...


  • Old Toronto, Canada Canadian Tire Financial Services Full time

    Senior Information Security Specialist, Governance and ComplianceApplyLocation: Toronto, ONTime Type: Full timePosted on: Posted 2 Days AgoTime left to apply: End Date: November 11, 2024 (11 days left to apply)Job Requisition ID: JR134925What you’ll doProvide senior level advisory services to cybersecurity, technology teams, and business team members, as...


  • Toronto, Canada Norton Rose Fulbright Full time

    Information Security Governance & Compliance Specialist The Team The information security team reports to the global chief information security officer (CISO). The team works with unified principles and processes around the world while maintaining regional stakeholder relationships. High stand


  • Toronto, Canada Canadian Tire Corporation Full time

    What you’ll do Reporting to the AVP, Cyber Governance Risk and Compliance, the Senior Information Security Specialist, Governance and Compliance will lead the charge in maintaining cyber security policies and standards, responding to regulator and auditor inquiries, and providing an advisory function to the business surrounding cyber security...


  • Old Toronto, Canada Canadian Tire Financial Services Full time

    Senior Cybersecurity Specialist, Governance and ComplianceWe are seeking a highly skilled Senior Cybersecurity Specialist to join our team at Canadian Tire Financial Services. This role will provide senior-level advisory services to cybersecurity, technology teams, and business team members, maintaining cyber security policies and standards. The successful...


  • Old Toronto, Ontario, Canada Arthur Grand Technologies Inc Full time

    Job Title: Senior Security Specialist for IT Audits and GovernanceArthur Grand Technologies Inc is seeking a highly skilled Senior Security Specialist for IT Audits and Governance to join our team.The ideal candidate will have 5+ years of experience in various security domains, including third-party risk management, IT audits, and Security Governance, Risk...


  • Toronto, Canada Norton Rose Fulbright Full time

    Role The information security governance & compliance specialist takes responsibility for overseeing responses to support the client bids and client audit process, and the third-party supplier assessment process. The role is a key part of assuring our clients on the technical security measures NRF has in place for protecting client data. Providing...


  • Old Toronto, Ontario, Canada TD Bank Full time

    Senior Manager, Information Security (DevSecOps Governance)Job Summary:TD Bank is seeking a seasoned Senior Manager, Information Security to lead our DevSecOps Governance team. As a key member of our Information Security organization, you will be responsible for developing and implementing security policies, standards, and guidelines for DevSecOps...


  • Old Toronto, Ontario, Canada Arthur Grand Technologies Inc Full time

    Job Title: Security Governance and Compliance Expert - SeniorArthur Grand Technologies Inc is seeking a highly skilled Security Governance and Compliance Expert - Senior to join our team.As a Security Governance and Compliance Expert - Senior, you will be responsible for providing security expertise and facilitating collaboration on various security risk...


  • Old Toronto, Canada Athennian Group Full time

    Athennian increases trust in business. Our products help legal, finance, and tax teams be transaction and audit-ready by organizing business entity and corporate structure information. Over 370,000 business entities in almost every country are managed on Athennian to automate workflows for ownership, company secretarial, governance, tax, and compliance.We...


  • Toronto, Ontario, Canada Norton Rose Fulbright Full time

    Job SummaryNorton Rose Fulbright is seeking an experienced Information Security Governance Specialist to join our team. As a key member of our security team, you will be responsible for overseeing responses to client bids and client audit processes, as well as third-party supplier assessments.Key ResponsibilitiesProvide technical expertise for client bids...


  • Old Toronto, Ontario, Canada TD Full time

    TD - Building a World-Class, Diverse and Inclusive Technology TeamAt TD, we're committed to creating a workplace that's inclusive, diverse, and welcoming to all. As a Senior Information Security Specialist, you'll play a key role in helping us achieve this vision.Job SummaryWe're seeking a highly skilled and experienced Information Security Specialist to...


  • Toronto, Ontario, Canada The Toronto-Dominion Bank (Canada) Full time

    Job SummaryThe Toronto-Dominion Bank (Canada) is seeking a Senior Compliance Governance Specialist to join our team. As a key member of our Compliance Governance department, you will be responsible for ensuring regulatory compliance issues are managed across the enterprise.Key ResponsibilitiesSupport updates to the Enterprise Regulatory Compliance Issues...


  • Old Toronto, Canada Menlo Ventures Full time

    At Menlo Ventures, we are seeking a highly skilled Senior Identity Governance Specialist to join our growing Information Security team.Job Summary:We are looking for an experienced professional to lead the development and implementation of our Identity and Access Management (IAM) strategy across our products, cloud/on-premise infrastructure, and corporate...


  • Toronto, Ontario, Canada Canadian Tire Corporation Full time

    About the RoleThe Senior Information Security Specialist, Governance and Compliance will lead the charge in maintaining cyber security policies and standards, responding to regulator and auditor inquiries, and providing an advisory function to the business surrounding cyber security governance.Key ResponsibilitiesProvide senior level advisory services to...


  • Old Toronto, Canada TD Bank Full time

    Job Title: Information Security Specialist LeadJob Summary:We are seeking a highly skilled Information Security Specialist Lead to join our team at TD Bank. The successful candidate will be responsible for providing expert advice and guidance on technology security and risk management practices. This role involves collaborating with cross-functional teams to...


  • Toronto, Ontario, Canada The Toronto-Dominion Bank (Canada) Full time

    Job Overview: The Toronto-Dominion Bank (Canada) is seeking a highly motivated and experienced Cyber Security Governance Specialist to join our Public Cloud Security Governance team. This role will be responsible for integrating security practices and best practices into our SaaS Security Governance processes, ensuring compliance with regulatory standards,...


  • Toronto, Ontario, Canada The Toronto-Dominion Bank (Canada) Full time

    Job Title: Senior Manager, Information Security ExpertEstimated Salary: $120,000 - $180,000 per yearAbout The Toronto-Dominion Bank (Canada)We are one of the world's leading global financial institutions and a top five bank in North America by branches/stores. Every day, we deliver exceptional customer experiences to over 27 million households and businesses...