Security & Compliance Analyst
5 days ago
**Role**: Security Compliance Analyst
**Department**: Risk and Compliance
**Introduction**:
Our goal at Pivotree is to help accelerate the future of frictionless commerce. We will help lead this change over the next decade because we believe a future where technology is embedded intimately into all aspects of our everyday lives can benefit everyone and will shape the interactions with the brands we love. We will help shape the future of frictionless commerce by working together with some of the best brands in the world and some of the best people in the industry to leverage converging technologies that will make it possible to accelerate frictionless commerce faster than ever.
This is a journey of technology acceleration combined with consumer readiness and adoption. We are looking for people capable of adapting relentlessly to the rapidly evolving world around us.
**Position Summary**:
As Security Compliance Analyst, you would be a member of an agile team that is focused on how to maintain and iterate cybersecurity policies and standards, evaluate control effectiveness, and comply with emerging laws and regulations at the scale and speed necessary to protect Pivotree’s people, data, and reputation by ensuring information security best practices are implemented and followed. You will have the opportunity to influence the controls designed to manage, develop, deploy, and support security requirements globally, as well as evaluate the effectiveness over those controls.
**Roles & Responsibilities**:
- Map security controls as per policy/process of different frameworks
- Facilitates third party external audits, such as, PCI, SOC1/2/3, ISO 27001 etc.
- Maintains central repository of Pivotree ISMS documentation, communicating and training staff on industry standards.
- Coordinate with different team members for evidence collection related to corporate compliances.
- Respond to security questionnaires from clients and business partners.
- Proactively identifies and resolves issues in controls and determines new controls to be put in place to address gaps.
- Manage and administer LMS environment, Oversee cybersecurity awareness and other associated training to maintain compliance.
- Monitors changes in regulations to ensure security controls remain in compliance.
- Support the enforcement of Corporate Security policies, procedures, and standards.
- Assists different BUs in risk identification, mitigation strategies, control documentation, evaluation of control design, evaluation of control operation, reporting of control deficiencies, and remediation strategies.
- Risk assessments and vendor security assessments
- Create cyber security reports and dashboards to highlight the effectiveness of the cybersecurity program.
- Effectively communicates technical and non-technical content to diverse audiences.
- Researches and evaluates security compliance risk in order to factor that information into the development of security standards, procedures, and controls to manage that risk, with a mindset of continuous process improvement.
- Assist with maintaining Risk Register
**Key Skills & Competencies**:
- A degree in Computer Science, Information Security, Cyber Security, Risk Management, or Information Technology or equivalent experience and accredited compliance management certification preferred
- Prior experience with GRC, LMS, VMS(what is this)? tools and platforms is required.
- Must be certified in a security discipline example CISA, CISM, CISSP etc.
- Understanding and experience of handling audits of cybersecurity risk and governance standards, with NIST, ISO27001, SOC1/2 and PCI/DSS experience is mandatory
- Good analytical abilities to prepare reports and assessments.
- Experience in identifying and performing data classification with the intent to ensure appropriate control and authorization are present.
- Quantitative Risk Management: Experience implementing quantitative risk methodologies and integrating them into business activities
- Must have adequate experience in completing 3rd party risk assessments.
- Respond to customer’s security questionnaires.
- Strong work ethic with attention to detail.
- Must be an initiator / self-starter and have the ability to work with mínimal supervision, be able to prioritize tasks, and manage their time to meet deadlines.
Pivotree is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive and accessible workplace.
-
Information Security Compliance Analyst
1 week ago
Vancouver, Canada University of British Columbia Full timeStaff - Non Union Job Category M&P - AAPS Job Profile AAPS Salaried - Information Systems and Technology, Level D Job Title Information Security Compliance Analyst Department Information Security | Dean's Office | Faculty of Medicine Compensation Range $8,305.08 - $12,952.33 CAD Monthly The Compensation Range is the span between the minimum and...
-
asset management program analyst
5 days ago
Vancouver, British Columbia, Canada Co-operative Housing Federation BC Full time $64,331 - $79,516About the organizationCHFBC is a non-profit organization and the parent company that serves as the umbrella organization for this group of related enterprises, i.e. COHO Management Services and Community Land Trust (CLT). Our mission is to unite, represent, and serve our members to promote better housing conditions in BC. Our programs includes Member...
-
IT Compliance Analyst
2 weeks ago
Vancouver, Canada BC Hydro Full time**A workplace powered by you** At BC Hydro, we’re working towards creating a cleaner and more sustainable future for all British Columbians and need people like you to help us. A career at BC Hydro is meaningful and provides you the opportunity to be part of a talented, inclusive, and diverse team. We offer a healthy work-life balance, competitive wages,...
-
Remote GRC Analyst: AI Security
12 hours ago
Vancouver, Canada Alignerr Full timeA leading AI partnership firm is seeking a Governance, Risk & Compliance (GRC) Analyst for a remote hourly contract role. Responsibilities include reviewing security policies, assessing compliance scenarios, and validating AI training data. Applicants should have over 2 years in GRC, with familiarity with SOC2 and ISO frameworks. This position offers...
-
IT Compliance Analyst
2 weeks ago
Vancouver, Canada BC Hydro Full timePowered by water... and by people like you Providing clean electricity to 4 million customers takes a diverse workforce and that’s where you come in. We need your talent to help us build major projects to meet growing demand. To help our customers find clean energy solutions for their homes and businesses and to be ready to respond during storms and...
-
Security Analyst
3 days ago
Vancouver, Canada Emily Carr University of Art + Design Full time**Job Title** - Security Analyst **Permanent Full-Time Excluded Position** **8:30am to 4:30pm / Monday to Friday** **(Telecommuting Options Available)** **Grade 9 ($79,731 to $106,308 per annum)** - Emily Carr University of Art + Design is a school of students, faculty, thinkers and makers unlike any other. Established in 1925, we are the only specialized,...
-
asset management program analyst
4 days ago
Vancouver, BC VL Y, Canada Co-operative Housing Federation of BC Full timeAbout the organizationCHFBC is a non-profit organization and the parent company that serves as the umbrella organization for this group of related enterprises, i.e. COHO Management Services and Community Land Trust (CLT). Our mission is to unite, represent, and serve our members to promote better housing conditions in BC. Our programs includes Member...
-
Compliance Analyst
2 weeks ago
Vancouver, Canada Connor, Clark & Lunn Financial Group Full time**Compliance Analyst** **Connor, **Clark & Lunn Investment Management Ltd.** **Vancouver, BC** We are looking for a Compliance Analyst to join our growing Compliance Team at Connor, Clark & Lunn Investment Management. Compliance plays a critical role in our firm and in this position, you will have the opportunity to work with our Chief Compliance Officer,...
-
Cyber Security Analyst II
1 week ago
Vancouver, British Columbia, Canada Hostway Full timePlease note that this is a hybrid role based at our Vancouver, BC, Canada site, with working hours from Monday to Friday, 11 AM – 7 PM PT.ABOUT US:With over two decades of successfully operating, managing, and securing private, public, and hybrid cloud environments, Ntirety has led enterprises across industries through the volatile early days of data...
-
IT Security Analyst
3 days ago
Vancouver, Canada Vancouver Police Department Full time**Vancouver Police Department**: **IT Security Analyst**: **COMPETITION: #2584-50178295** **SECTION**:Information & Communication Technology **LOCATION**:3585 Graveley Street, Vancouver **STATUS**:Temporary full-time (EXEMPT) **DURATION**:Approximately one year - may be extended or reduced for operational needs **HOURS OF WORK**:Monday to Friday, 8:00 a.m....