Senior IT Compliance

1 week ago


Toronto, Ontario, Canada Global Technical Talent, an Inc. 5000 Company Full time

Primary Job Title:
Senior IT Compliance & Cyber Risk Analyst

Alternate / Related Job Titles:

  • Senior IT Risk & Compliance Analyst
  • Cybersecurity Compliance Analyst
  • IT GRC Analyst (Senior)
  • Technology Compliance & Audit Analyst
  • Cyber Risk & Audit Lead

Location & Onsite Flexibility:
Toronto, ON —
Hybrid
(ideally 2-3 days onsite per week; flexible/negotiable)

Contract Details

Position Type:
Contract

Contract Duration:
12 Months (Renewable)

Start:
As Soon As Possible

Pay Rate:
$50-$70/hour

Role Overview

Our client is seeking a
Senior IT Compliance & Cyber Risk Analyst
to support enterprise compliance, audit readiness, and risk management initiatives within a regulated environment. This role is primarily functional but requires a strong
technical understanding of GxP/GMP
, cybersecurity controls, and audit frameworks.

The successful candidate will focus heavily on
PCI-DSS and GxP (GMP)
compliance from a technology and cybersecurity perspective, while also supporting third-party risk management (TPRM) and broader cybersecurity governance efforts. This individual will partner closely with IT, Security, and business stakeholders to drive audit readiness, remediation, and compliance maturity.

Key Responsibilities

Compliance, Risk & Audit

  • Serve as a
    subject matter expert
    for
    PCI-DSS and GxP/GMP compliance
    , supporting assessments, remediation tracking, and audit readiness
  • Conduct
    IT and cybersecurity risk assessments
    , including control design, effectiveness testing, and gap analysis
  • Support internal and external audits, including evidence collection, walkthroughs, and issue remediation
  • Perform impact assessments and
    root-cause analysis
    related to cybersecurity incidents and compliance findings
  • Assist in developing and maintaining
    information security, privacy, and technology compliance policies
    , standards, and procedures

Third-Party Risk Management (TPRM)

  • Participate in vendor onboarding and ongoing vendor reviews, including security questionnaires, risk scoring, and remediation follow-ups
  • Evaluate third-party controls related to
    data protection, access management, and regulatory compliance

Training & Enablement

  • Design and deliver
    internal training programs
    on cybersecurity best practices, compliance requirements, and audit readiness
  • Create clear, user-friendly guidance and awareness materials to support enterprise-wide compliance adoption

Reporting & Metrics

  • Develop and maintain
    compliance and risk dashboards
    to report status, trends, and key risk indicators to leadership
  • Monitor emerging regulatory and cybersecurity risks and recommend mitigation strategies

Required Experience & Qualifications

Required (Must-Have)

  • 5+ years of experience in
    IT compliance, cybersecurity risk, or technology audit
    roles
  • Hands-on experience with
    PCI-DSS and GxP (GMP)
    in regulated environments
  • Experience supporting audits, including control testing, documentation, and remediation tracking
  • Proven ability to design and deliver
    cybersecurity and compliance training
  • Strong stakeholder communication skills, with the ability to translate regulatory requirements for non-technical audiences

Preferred Certifications

  • One or more of the following:
    CISA, CISSP, CISM
  • Additional compliance, audit, or risk certifications are considered an asset

Nice-to-Have

  • Experience with
    TPRM programs
    , vendor risk assessments, and security questionnaires
  • Exposure to
    SOX, data privacy regulations
    , or formal GRC tools
  • Experience helping build or mature
    enterprise cybersecurity or compliance programs

What Makes a Strong Fit

  • Deep, practical experience with
    PCI and GxP/GMP
    , not just theoretical knowledge
  • Comfortable working in
    audit-heavy, highly regulated environments
  • Able to balance hands-on compliance execution with
    training and enablement
    responsibilities
  • Strong blend of
    risk management, audit expertise, and communication skills

Client Overview

Our client is an
innovative beauty brand parent company
behind globally recognized names such as NIOD, Hylamide, and The Ordinary. They are passionate about redefining the beauty industry and are always excited to meet individuals who want to bring their creativity and expertise to a fast-growing, forward-thinking organization.

About GTT

GTT is a minority-owned staffing firm and a subsidiary of Chenega Corporation, a Native American-owned company based in Alaska. As a Native American-owned, economically disadvantaged corporation, GTT is deeply committed to
diversity, equity, and inclusion
. Our clients include Fortune 500 organizations across banking, insurance, financial services, technology, life sciences, biotech, utilities, and retail throughout the U.S. and Canada.

Job Number:
#gttca #gttjobs



  • Toronto, Ontario, Canada SPRINT Senior Care Full time

    About SPRINT Senior Care:We began caring for seniors and enabling seniors to care for themselves in 1983. We continue to do so today as an accredited, not-for-profit community support service agency in Toronto by offering a wide range of practical and low-cost services to seniors and their caregivers. Our services help seniors stay safe, connected, and live...


  • Toronto, Ontario, Canada CIBC Full time

    We're building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what's right for our clients.At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and...


  • Toronto, Ontario, Canada IG Wealth Management Full time

    Division: IGM-CPLLocation: Montreal, Winnipeg or TorontoIGM Financial Inc. is a leading wealth and asset management company in Canada, managing approximately $271 billion in assets. It offers financial planning and investment services to over two million Canadians through IG Wealth Management and Mackenzie Investments.Founded in 1926, Investors Group is...


  • Toronto, Ontario, Canada DistillerSR Full time

    Job Title:Senior Specialist, ComplianceDepartment:OperationsReports to:Director of ComplianceTerm:Full-Time ContinuingPrimary Location:Hybrid/RemoteAbout us:Behind every innovative new medical device, new healthcare policy, and research into new treatments, there's a literature review. At DistillerSR Inc., we're changing the way that scientific research is...


  • Toronto, Ontario, Canada Pala Interactive Full time

    THE COMPANYPala Interactive Canada Inc., operating as Boyd Interactive, is a full service real-money and social gaming technology provider and operator which caters to both B2C and B2B markets in Canada and the United States. Boyd Interactive offers a full spectrum of games, including casino, bingo, and poker, across all distribution channels (web, download,...


  • Toronto, Ontario, Canada HOOPP (Healthcare of Ontario Pension Plan) Full time

    Why You'll Love Working Herehigh-performance, people-focused cultureour commitment that equity, diversity, and inclusion are fundamental to our work environment and business success, which helps employees feel valued and empowered to be their authentic selveslearning and development initiatives, including workshops, Speaker Series events and access to...


  • Toronto, Ontario, Canada Manulife Full time US$71,550 - US$119,250

    In this role, the Senior Compliance Consultant will be responsible for ensuring AI governance and compliance across our US Insurance business lines. The Senior Consultant will leverage their expertise in regulatory compliance to guide strategic initiatives, manage cross-functional committees, and oversee Board Reporting. This position offers a unique...


  • Toronto, Ontario, Canada Raymond James Ltd. Full time

    At Raymond James,wedevelop,wecollaborate,wedecide,wedeliver, andweimprove together.Raymond James Ltd. is Canada's leading independent investment dealers offering high quality investment products and services to Canadians seeking customized solutions to their wealth management needs.Senior Compliance Officer, Investigations,Private Client Group (PCG)...


  • Toronto, Ontario, Canada CADRail Full time

    DescriptionThe Senior Compliance and Safety Manager will be responsible and accountable for the correct application and compliance with the Safety and System Assurance standards and the CMERA, for the Metrolinx Legacy Fleet Maintenance operations. This role will report to the Head of Fleet Maintenance and to the head office, and will also support the Project...


  • Toronto, Ontario, Canada Raymond James Ltd. Full time

    At Raymond James,wedevelop,wecollaborate,wedecide,wedeliver, andweimprove together.Raymond James Ltd. is Canada's leading independent investment dealers offering high quality investment products and services to Canadians seeking customized solutions to their wealth management needs.Senior Compliance Officer, Investigations,Private Client Group (PCG)...