Cyber Security Controls Tester
6 days ago
Duration: Contract, 6 months to start -
The role:
We currently have an opportunity for a contract Cyber Security Controls Tester & Consultant working for one of our consulting clients.
-
About the Role:
Our client is seeking an experienced IT Security Controls Tester & Consultant to support the identification and mitigation of operational, IT, and regulatory risks. This role is essential in implementing enterprise-wide risk management initiatives, improving IT security controls, and ensuring compliance with industry standards. As a key player in cybersecurity and risk management, you will work across multiple business units, driving strategic security improvements and ensuring that technology risks are managed effectively.
This is a senior-level position, offering exposure to enterprise-wide risk programs, and providing opportunities to influence IT security strategies and regulatory compliance efforts.
Key Responsibilities - Control Testing & Risk Assessment Execute risk-based control assessments to evaluate the design, implementation, and effectiveness of IT and operational controls. Participate in all phases of the internal control monitoring process, including planning, testing, risk evaluation, and mitigation strategies. Perform concurrent control testing engagements, ensuring quality standards, timelines, and best practices are met. Document control testing results, issues, and recommendations in a clear and concise manner. - Stakeholder Collaboration & Reporting Establish and maintain strong working relationships with business units, IT teams, and risk management functions. Act as a trusted advisor, guiding teams on control documentation and compliance best practices. Collaborate with 2nd and 3rd Lines of Defense (2LOD & 3LOD), including internal audit teams, to align security controls with regulatory expectations. Aggregate, analyze, and articulate findings and recommendations to senior leadership and regulatory bodies. - Control Deficiency Management & Risk Mitigation Coordinate with stakeholders to log, manage, and track control deficiencies, ensuring timely remediation. Assess remediation plans to confirm they are designed to effectively reduce risk and align with organizational risk appetite. Verify corrective actions and provide oversight to ensure risk mitigation strategies are successfully implemented. - Industry & Regulatory Compliance Maintain an in-depth understanding of IT security frameworks, cybersecurity regulations, and industry best practices, including: ISO 27001, NIST 800-53, NIST CSF, NIST 800-171, COBIT, SOC 2 OSFI, FINRA, SEC, OCC, FRBNY, and other financial services regulations Support regulatory examinations and audits, providing expertise on IT control environments. Ensure IT security controls align with financial services regulations, hybrid cloud security requirements, and risk management expectations. What You Need to Succeed Bachelor's degree in Computer Science, Engineering, Information Security, or a related field. Preferred Certifications like: CRISC, CISA, CISSP 5+ years of experience in IT Security, IT Risk Management, IT Audit, or Cybersecurity, with at least 3 years focused on controls testing, compliance, or security assessments. Experience within financial services, public accounting (Big 4), or IT regulatory environments.Technical Skills & Knowledge:
Strong understanding of IT risk management, cybersecurity frameworks, and regulatory compliance requirements. Experience with control testing methodologies for Cybersecurity, Cloud Security, IT Operations, and Network Security. Familiarity with hybrid cloud environments and enterprise security controls. Nice-to-Have Qualifications:Industry Frameworks & Regulations:
Experience working with ISO 27001, NIST 800-53, NIST CSF, NIST 800-171, COBIT. Knowledge of financial sector compliance (OSFI, FINRA, SEC, OCC). Understanding of hybrid cloud security requirements and enterprise risk management.Additional Experience:
Big 4 consulting or IT risk audit experience (Nice to Have) Prior experience working in cybersecurity or IT risk management teams.--
CorGTA is an equal opportunity employer, please apply with an updated resume and ensure the required skills you are able to speak to for this position are included.
For more roles like this please go to www.corgta.com/find-a-job/
-
Cyber Security Manager
4 days ago
Toronto, Ontario, Canada Cyber Crime Full timeCyber Security Manager Job DescriptionBDO is a firm built on a foundation of positive relationships with our people and our clients. Our professionals provide exceptional service, helping clients with advice and insight they can trust.Our growing Cyber Security team is seeking an experienced Manager to contribute to the rapidly expanding Cyber Threat...
-
Cyber Security Leader
5 days ago
Toronto, Ontario, Canada Cyber Crime Full timeJob DescriptionCyber Crime, a leading global organization, is seeking a highly experienced and skilled Cyber Security Leader to join our team. As a key member of our leadership team, you will be responsible for developing and implementing strategies to mitigate cyber threats and ensure the security of our systems and data.The successful candidate will have a...
-
Manager of Cyber Operations
4 days ago
Toronto, Ontario, Canada Cyber Crime Full timeCyber Operations Manager RoleBDO Digital is a firm that fosters a people-first culture with a high priority on personal and professional growth. We offer an award-winning environment where professionals can develop their skills and expertise.The Cyber Security Operations Centre is seeking an experienced Manager to join our growing Cyber Security team. You...
-
Cyber Security Identity Manager
4 days ago
Toronto, Ontario, Canada Cyber Crime Full timeAbout the JobWe are seeking an experienced Cyber Security Identity Manager to join our team in Toronto. The successful candidate will be responsible for managing user identities, access rights, and access control within our Enterprise Environment.Main ResponsibilitiesManage user identities, access rights, and access control within the Enterprise...
-
Toronto, Ontario, Canada Cyber Crime Full timeManager, Cyber Security Operations CentreBDO is a firm built on a foundation of positive relationships with our people and our clients. Each day, our professionals provide exceptional service, helping clients with advice and insight they can trust. In turn, we offer an award-winning environment that fosters a people-first culture with a high priority on your...
-
Director of Cyber Governance
5 days ago
Toronto, Ontario, Canada Cyber Crime Full timeAbout the JobWe are seeking a highly experienced and skilled Director of Cyber Governance to join our team. As a key member of our leadership team, you will be responsible for developing and implementing strategies to govern cybersecurity and identity access management within our organization.The successful candidate will have a minimum of 10 years'...
-
Toronto, Ontario, Canada Cyber Crime Full timeLogical Access Control SpecialistThe Cyber Crime team at Scotiabank is seeking a highly skilled Specialist, Identity Access Management Operations to join our ranks. In this role, you will be responsible for supporting the achievement of our information security objectives by ensuring logical access control is effectively implemented across the Enterprise....
-
Cyber Security Platforms Manager
3 days ago
Toronto, Ontario, Canada Cyber Crime Full timeAbout UsWe are a leading organization in the field of Cyber Security, providing cutting-edge solutions to protect sensitive data and comply with organizational security policies.We are committed to hiring talented individuals who share our vision and passion for innovation and excellence.ResponsibilitiesOverseeing the technical support team responsible for...
-
Toronto, Ontario, Canada Compass Security Deutschland GmbH Full timeCompass Security is an innovative Swiss Company with over 70 employees in Switzerland and Germany, founded in 1999. Compass Security has become a leading, technically outstanding, and globally recognized IT Security Company since its inception. In addition to traditional security consulting services such as penetration testing, red-teaming, and incident...
-
Cyber Security Leader
4 days ago
Toronto, Ontario, Canada Women in Payments Full timeLead Cyber Security PracticeThe Vice President, Information Security, will lead the cyber security practice at Women in Payments with focus on perimeter protection, data protection standards and techniques, PCI and security compliance, access and identity management, social engineering awareness and testing. This leader will build a world-class team of...
-
Director, Cyber Security
6 days ago
Toronto, Ontario, Canada Ontario Teachers' Pension Plan Full timeAs the Director, Cyber Security, you will be responsible for leading and overseeing the cyber security strategy, architecture, governance, and program delivery for Ontario Teachers' Pension Plan (OTPP), one of the world's largest and most innovative pension funds. You will ensure that OTPP's cyber security posture is aligned with its business objectives,...
-
Information Security Specialist
4 days ago
Toronto, Ontario, Canada Cyber Crime Full timeJob DescriptionCyber Crime is seeking a highly skilled Information Security Specialist to enhance our access management framework. As an experienced professional in Identity and Access Management (IAM), you will work with internal clients and technology teams to identify and define Segregation of Duties (SOD) policies and design automated solutions to...
-
Senior Cyber Security Sales Specialist
3 days ago
Toronto, Ontario, Canada Compass Security Deutschland GmbH Full timeCybersecurity threats continue to evolve, requiring innovative solutions to stay ahead. At Compass Security Deutschland GmbH, we are seeking a Senior Cyber Security Business Development Specialist to lead our expansion into the North American market.This exciting opportunity involves building and developing the Canadian cyber security business from the...
-
Cyber Security Risk Manager
4 days ago
Toronto, Ontario, Canada Scotiabank Full timeScotiabank is committed to results in an inclusive and high-performing culture. As a Senior Manager, Cyber Security and IT Risk, you will contribute to the successful development and execution of a second line of defense program for Cyber Security and IT Risk.You will perform assessments of risk management practices carried out by the first lines of defense...
-
Senior Information Security Specialist
4 days ago
Toronto, Ontario, Canada Cyber Crime Full timeSenior Information Security Specialist PositionBDO is a firm that prides itself on its ability to adapt to the ever-changing landscape of cyber threats. Our growing Cyber Security team is seeking an experienced Senior Information Security Specialist to contribute to the rapidly expanding Cyber Threat Management and Response (CTMR) team.The Senior Information...
-
Cyber Security Business Development Expert
3 days ago
Toronto, Ontario, Canada Compass Security Deutschland GmbH Full timeCompass Security is a leading IT Security Company with over 70 employees in Switzerland and Germany, founded in 1999. We have become a technically outstanding and globally recognized company since our inception. In addition to traditional security consulting services such as penetration testing, red-teaming, and incident response, our portfolio also includes...
-
Enterprise Cyber Security Lead
4 days ago
Toronto, Ontario, Canada Scotiabank Full timeWe are seeking a talented Enterprise Cyber Security Lead to join our team at Scotiabank. In this role, you will be responsible for providing advisory services to Technology Groups and business lines regarding data protection controls.The successful candidate will collaborate with multiple technology teams to assess controls and remediation actions on the...
-
Cyber Security Specialist
4 days ago
Toronto, Ontario, Canada ipss inc. Full timeCyber Security Specialist - Threat AssessmentAt ipss inc., we are seeking a highly skilled Cyber Security Specialist to join our team. The successful candidate will be responsible for conducting comprehensive cyber security compliance assessments across the organization, identifying potential vulnerabilities, gaps in cyber security posture, and areas of...
-
Chief Cyber Risk Manager
4 days ago
Toronto, Ontario, Canada Cyber Crime Full timeAbout Us\BDO Canada is a firm built on a foundation of positive relationships with our people and clients. We strive to provide exceptional service, helping clients navigate complex risk landscapes with trust.\We are seeking a Cyber Crime expert to lead and execute IT risk and compliance assessments for our clients. This role requires exceptional...
-
Cyber Crime Assurance Manager
4 days ago
Toronto, Ontario, Canada Cyber Crime Full timeCyber Crime is a leading firm built on a foundation of positive relationships with our people and clients. Our professionals provide exceptional service, helping clients with advice and insight they can trust. We offer an award-winning environment that fosters a people-first culture with a high priority on personal and professional growth.Our National Risk...