Senior IT Compliance
1 week ago
Primary Job Title:
Senior IT Compliance & Cyber Risk Analyst
Alternate / Related Job Titles:
- Senior IT Risk & Compliance Analyst
- Cybersecurity Compliance Analyst
- IT GRC Analyst (Senior)
- Technology Compliance & Audit Analyst
- Cyber Risk & Audit Lead
Location & Onsite Flexibility:
Toronto, ON —
Hybrid
(ideally 2-3 days onsite per week; flexible/negotiable)
Contract Details
Position Type:
Contract
Contract Duration:
12 Months (Renewable)
Start:
As Soon As Possible
Pay Rate:
$50-$70/hour
Role Overview
Our client is seeking a
Senior IT Compliance & Cyber Risk Analyst
to support enterprise compliance, audit readiness, and risk management initiatives within a regulated environment. This role is primarily functional but requires a strong
technical understanding of GxP/GMP
, cybersecurity controls, and audit frameworks.
The successful candidate will focus heavily on
PCI-DSS and GxP (GMP)
compliance from a technology and cybersecurity perspective, while also supporting third-party risk management (TPRM) and broader cybersecurity governance efforts. This individual will partner closely with IT, Security, and business stakeholders to drive audit readiness, remediation, and compliance maturity.
Key Responsibilities
Compliance, Risk & Audit
- Serve as a
subject matter expert
for
PCI-DSS and GxP/GMP compliance
, supporting assessments, remediation tracking, and audit readiness - Conduct
IT and cybersecurity risk assessments
, including control design, effectiveness testing, and gap analysis - Support internal and external audits, including evidence collection, walkthroughs, and issue remediation
- Perform impact assessments and
root-cause analysis
related to cybersecurity incidents and compliance findings - Assist in developing and maintaining
information security, privacy, and technology compliance policies
, standards, and procedures
Third-Party Risk Management (TPRM)
- Participate in vendor onboarding and ongoing vendor reviews, including security questionnaires, risk scoring, and remediation follow-ups
- Evaluate third-party controls related to
data protection, access management, and regulatory compliance
Training & Enablement
- Design and deliver
internal training programs
on cybersecurity best practices, compliance requirements, and audit readiness - Create clear, user-friendly guidance and awareness materials to support enterprise-wide compliance adoption
Reporting & Metrics
- Develop and maintain
compliance and risk dashboards
to report status, trends, and key risk indicators to leadership - Monitor emerging regulatory and cybersecurity risks and recommend mitigation strategies
Required Experience & Qualifications
Required (Must-Have)
- 5+ years of experience in
IT compliance, cybersecurity risk, or technology audit
roles - Hands-on experience with
PCI-DSS and GxP (GMP)
in regulated environments - Experience supporting audits, including control testing, documentation, and remediation tracking
- Proven ability to design and deliver
cybersecurity and compliance training - Strong stakeholder communication skills, with the ability to translate regulatory requirements for non-technical audiences
Preferred Certifications
- One or more of the following:
CISA, CISSP, CISM - Additional compliance, audit, or risk certifications are considered an asset
Nice-to-Have
- Experience with
TPRM programs
, vendor risk assessments, and security questionnaires - Exposure to
SOX, data privacy regulations
, or formal GRC tools - Experience helping build or mature
enterprise cybersecurity or compliance programs
What Makes a Strong Fit
- Deep, practical experience with
PCI and GxP/GMP
, not just theoretical knowledge - Comfortable working in
audit-heavy, highly regulated environments - Able to balance hands-on compliance execution with
training and enablement
responsibilities - Strong blend of
risk management, audit expertise, and communication skills
Client Overview
Our client is an
innovative beauty brand parent company
behind globally recognized names such as NIOD, Hylamide, and The Ordinary. They are passionate about redefining the beauty industry and are always excited to meet individuals who want to bring their creativity and expertise to a fast-growing, forward-thinking organization.
About GTT
GTT is a minority-owned staffing firm and a subsidiary of Chenega Corporation, a Native American-owned company based in Alaska. As a Native American-owned, economically disadvantaged corporation, GTT is deeply committed to
diversity, equity, and inclusion
. Our clients include Fortune 500 organizations across banking, insurance, financial services, technology, life sciences, biotech, utilities, and retail throughout the U.S. and Canada.
Job Number:
#gttca #gttjobs
-
Privacy and Security Compliance Analyst
7 days ago
Toronto, Ontario, Canada SPRINT Senior Care Full timeAbout SPRINT Senior Care:We began caring for seniors and enabling seniors to care for themselves in 1983. We continue to do so today as an accredited, not-for-profit community support service agency in Toronto by offering a wide range of practical and low-cost services to seniors and their caregivers. Our services help seniors stay safe, connected, and live...
-
Senior Manager Compliance
12 hours ago
Toronto, Ontario, Canada CIBC Full timeWe're building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what's right for our clients.At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and...
-
Senior Manager, Compliance
7 days ago
Toronto, Ontario, Canada IG Wealth Management Full timeDivision: IGM-CPLLocation: Montreal, Winnipeg or TorontoIGM Financial Inc. is a leading wealth and asset management company in Canada, managing approximately $271 billion in assets. It offers financial planning and investment services to over two million Canadians through IG Wealth Management and Mackenzie Investments.Founded in 1926, Investors Group is...
-
Senior Compliance Specialist
2 weeks ago
Toronto, Ontario, Canada DistillerSR Full timeJob Title:Senior Specialist, ComplianceDepartment:OperationsReports to:Director of ComplianceTerm:Full-Time ContinuingPrimary Location:Hybrid/RemoteAbout us:Behind every innovative new medical device, new healthcare policy, and research into new treatments, there's a literature review. At DistillerSR Inc., we're changing the way that scientific research is...
-
Senior Compliance Analyst
3 days ago
Toronto, Ontario, Canada Pala Interactive Full timeTHE COMPANYPala Interactive Canada Inc., operating as Boyd Interactive, is a full service real-money and social gaming technology provider and operator which caters to both B2C and B2B markets in Canada and the United States. Boyd Interactive offers a full spectrum of games, including casino, bingo, and poker, across all distribution channels (web, download,...
-
Senior Director, Enterprise Compliance
2 hours ago
Toronto, Ontario, Canada HOOPP (Healthcare of Ontario Pension Plan) Full timeWhy You'll Love Working Herehigh-performance, people-focused cultureour commitment that equity, diversity, and inclusion are fundamental to our work environment and business success, which helps employees feel valued and empowered to be their authentic selveslearning and development initiatives, including workshops, Speaker Series events and access to...
-
Senior Compliance Consultant
1 week ago
Toronto, Ontario, Canada Manulife Full time US$71,550 - US$119,250In this role, the Senior Compliance Consultant will be responsible for ensuring AI governance and compliance across our US Insurance business lines. The Senior Consultant will leverage their expertise in regulatory compliance to guide strategic initiatives, manage cross-functional committees, and oversee Board Reporting. This position offers a unique...
-
Senior Compliance Officer, Investigations
7 days ago
Toronto, Ontario, Canada Raymond James Ltd. Full timeAt Raymond James,wedevelop,wecollaborate,wedecide,wedeliver, andweimprove together.Raymond James Ltd. is Canada's leading independent investment dealers offering high quality investment products and services to Canadians seeking customized solutions to their wealth management needs.Senior Compliance Officer, Investigations,Private Client Group (PCG)...
-
Senior Manager Compliance and Safety
2 weeks ago
Toronto, Ontario, Canada CADRail Full timeDescriptionThe Senior Compliance and Safety Manager will be responsible and accountable for the correct application and compliance with the Safety and System Assurance standards and the CMERA, for the Metrolinx Legacy Fleet Maintenance operations. This role will report to the Head of Fleet Maintenance and to the head office, and will also support the Project...
-
Senior Compliance Officer, Investigations
7 days ago
Toronto, Ontario, Canada Raymond James Ltd. Full timeAt Raymond James,wedevelop,wecollaborate,wedecide,wedeliver, andweimprove together.Raymond James Ltd. is Canada's leading independent investment dealers offering high quality investment products and services to Canadians seeking customized solutions to their wealth management needs.Senior Compliance Officer, Investigations,Private Client Group (PCG)...