Information Security Compliance Analyst
5 days ago
D2L is a cloud company that is modernizing education and building the Future of Work. The old models of teaching and learning are in the midst of the largest transformation in history, and D2L is at the heart of that fundamental shift.
New models of teaching and learning enable a personalized, student-centric experience - and deliver improved retention, engagement, satisfaction, and results for learners of all ages - in schools, campuses, and companies.
D2L is disrupting the way the world learns, by providing the next generation learning environment and solutions to engage and inspire learners. And most importantly, by giving customers a platform that is easy, flexible, and smart. No other company provides a solution as robust and innovative as D2L.
D2L has had a singular mission for 20 years and is dedicated to that same mission in the years ahead: to transform the way the world learns - and by doing so, we will help improve human potential globally.
**Job Summary**:
Every day, our software is used by millions of people around the world, and we are looking for individuals who share in our excitement and passion for transforming the way the world learns. At D2L, we believe that learning should be accessible and engaging. Our goal is to create easy, flexible, and smart software that ignites the desire to learn in everyone. To do this, we need to give talented, enthusiastic, and passionate people opportunities to create, develop, and collaborate on projects that revolutionize the learning environment.
As the Information Security Risk and Compliance Manager at D2L, you are a key influencer and contributor to the refinement and delivery of D2L's security and compliance programs. You work to improve our security posture along with meaningful adoption and execution of operating controls and in tandem, delivery on a certification strategy that enables business in new markets and sectors.
**How Will I Make an Impact?**
- Assist in refining and delivering D2L's Security program and ensuring alignment of these to D2L's compliance program.
- Promote a culture of security awareness through training and knowledge campaigns across the organization.
- Improve D2L's posture and transparency on security, privacy and compliance practices, both internally and externally.
- Perform security risk assessments pertaining to governance, people, data, software, hardware, and cloud infrastructure.
- Perform alignment of risk mitigation strategies/plans to industry standards - ISO 27001/NIST 800-53R4 etc.
- Perform third party/vendor/partner security risk assessments.
- Facilitate and manage external audits and conduct internal audits.
- Provide security representation and responses for new deals and proposals.
- Monitor and enforce data privacy policies in partnership with the D2L Legal team.
**What you'll bring to the role**:
- You have demonstrable experience managing large security/compliance programs and projects across multiple organizations with emphasis on ISO 27001/NIST 800-53R4, CSAE 3416/SSAE18; SOC1/2/3.
- You have experience using enterprise-grade governance risk and compliance (GRC) tools.
- You have experience performing audits particularly in a public cloud environment.
- You are excited at the prospect of potentially rolling up your sleeves and getting your hands dirty.
- You have experience building, managing and securing large enterprise, web scale and serverless environments.
- You have a passion for exploring modern technologies and patterns to maintain our customer's privacy and confidentiality and protect D2L's intellectual property.
- You are a fast learner and want to contribute on day one.
**About the team**
- We work daily to enhance our defenses and actively anticipate potential threats to ensure we are protecting the availability, integrity and confidentiality of D2L services and data.
- Our solutions are heavily focused on the native AWS technology stack while also making use of a variety of supporting technologies such as Terraform, Cloud Formation, and Jenkins.
- Our current compliance coverage and road map includes ISO27001/17/18; CSAE 3416/SSAE18; SOC1/2/3; FedRAMP; NIST
- Our team is physically located at D2L's HQ in Kitchener, Ontario Canada but we maintain a strong virtual presence to enable us to collaborate from wherever we may be.
**Why we're awesome**:
At D2L, we are dedicated to providing you with the tools to do the best work of your life. While some of our perks and benefits may vary depending on location or employment type, we are proud to provide employees with the following;
- Impactful work transforming the way the world learns
- Flexible work arrangements
- Learning and Growth opportunities
- Tuition reimbursement of up to $4,000 CAD for continuing education through our Catch the Wave Program
- 2 Paid Days off for Catch the Wave related activities like exams or final assignments
- Employee wellbeing (Access to mental health services, EFAP program, financial planning and more)
-
Information Security Compliance Analyst
5 days ago
Kitchener, Canada D2L Full timeEvery day, our software is used by millions of people around the world, and we are looking for individuals who share in our excitement and passion for transforming the way the world learns. At D2L, we believe that learning should be accessible and engaging. Our goal is to create easy, flexible, and smart software that ignites the desire to learn in everyone....
-
Head of Information Security — Cloud
3 weeks ago
Kitchener, Canada Course Merchant Full timeA leading educational technology firm in Kitchener is seeking an experienced Information Security Leader to spearhead their security and compliance programs. This role involves managing security services, promoting security awareness, and enhancing defenses against potential threats utilizing AWS and Azure technologies. Ideal candidates should have deep...
-
Security and Compliance Specialist
1 week ago
Kitchener, Canada Cloud DX, Inc. Full timeCompany Description **About Cloud DX** Cloud DX is an industry leader in digital health care, virtual care, remote patient monitoring hardware and software. The company's award-winning solutions enable chronically ill patients to stay at home and out of the hospital, drastically improving health outcomes while, at the same time, significantly reducing costs...
-
Director, Information Security
3 weeks ago
Kitchener, Canada D2L Full timeJOB SUMMARY As the Information Security Leader you are a key leader in establishing refining and executing on D2Ls security and compliance programs with the mandate to improve the security posture of D2L. HOW WILL I MAKE AN IMPACT Be the central point of contact for all things Information Security related at D2L. Together with your team provide Security...
-
Information Technology Security Analyst
5 days ago
Kitchener, Canada Randstad Digital Full timeVulnerability Management Analyst - Info Sec (Contract Position)Number of Positions: 2Duration: 6 monthsLocation: Toronto, ON, CAMust be eligible to work in CanadaHybrid position, 3 days/week onsite either in Kitchener or DT Toronto officeRoles and Responsibilities:Looking to hire a Junior to intermediate talent that would be interested in converting to perm...
-
Director, Information Security
2 weeks ago
Kitchener, Canada D2L Full timeD2L is a cloud company that is modernizing education and building the Future of Work. The old models of teaching and learning are in the midst of the largest transformation in history, and D2L is at the heart of that fundamental shift. New models of teaching and learning enable a personalized, student-centric experience – and deliver improved retention,...
-
Director, Information Security
2 weeks ago
Kitchener, Canada D2L Full timeD2L is a cloud company that is modernizing education and building the Future of Work. The old models of teaching and learning are in the midst of the largest transformation in history, and D2L is at the heart of that fundamental shift. New models of teaching and learning enable a personalized, student-centric experience – and deliver improved retention,...
-
Director, Information Security
3 weeks ago
Kitchener, Canada Course Merchant Full timeD2L is a cloud company that is modernizing education and building the Future of Work. The old models of teaching and learning are in the midst of the largest transformation in history, and D2L is at the heart of that fundamental shift. New models of teaching and learning enable a personalized, student-centric experience – and deliver improved retention,...
-
Director, Information Security
6 days ago
Kitchener, Ontario, Canada D2L Full time $120,000 - $180,000 per yearD2L is a cloud company that is modernizing education and building the Future of Work. The old models of teaching and learning are in the midst of the largest transformation in history, and D2L is at the heart of that fundamental shift.New models of teaching and learning enable a personalized, student-centric experience – and deliver improved retention,...
-
Director, Information Security
3 weeks ago
Kitchener, Canada D2L Full timeA technology company in Kitchener is seeking an Information Security Leader to oversee security programs and enhance overall security posture. The ideal candidate will manage security services, promote security awareness, and effectively respond to evolving threats. Proven experience in AWS security and knowledge of compliance standards like ISO27001 is...