Senior Governance, Risk and Compliance Specialist
3 weeks ago
Senior GRC/S Specialist - Information Security Assurance & Automation Broadsign is a growing software company with a mission to make buying, selling, and delivering out-of-home media easier than ever. Our software is operated by some of the most successful out-of-home businesses and powers impactful, compelling campaigns seen across the world. Come light up the world as a Senior GRC/S Specialist in Montreal (Hybrid) What to expect We are seeking a highly motivated, experienced, and senior-level GRC/S (Governance, Risk, and Compliance/Security) Specialist to join our dynamic team. In this critical senior role, you will play a pivotal part in shaping and executing our security assurance programs, primarily focusing on leading our SOC (Service Organization Control) and other audit processes and managing complex third-party security questionnaires and assessments. A significant aspect of this role will be driving the identification, implementation, and optimization of automation opportunities to enhance efficiency, accuracy, and scalability across our GRC/S functions. Key Responsibilities SOC Audit Leadership: Coordinate all phases of SOC 1 & 2 audits, acting as the primary point of contact for auditors and internal stakeholders. Drive the collection of audit evidence and oversee the tracking and management of audit findings, ensuring timely remediation. Advanced Third-Party Security Program Management: Lead the comprehensive management and response to complex incoming third-party security questionnaires from key customers and partners, and maintain a centralized repository of standardized responses. Design and execute thorough security assessments of third-party vendors, evaluating their security posture and contractual compliance, and maintain a centralized repository of detailed vendor assessment findings. Automation and Process Improvement: Champion and lead initiatives to automate repetitive GRC/S tasks, focusing on evidence collection and intelligent response generation. Optimize advanced GRC/S automation tools and drive the continuous improvement of GRC/S processes. Contribute to the development and evolution of the overall GRC/S strategy and roadmap. Provide expert knowledge transfer to team members and stay abreast of the latest industry trends and regulatory changes. What you need to perform in this job 5+ years of progressive experience in a GRC, Information Security, or IT Audit role, with a strong emphasis on security compliance and assurance. Relevant industry certifications such as CISA, CRISC, CISM, CISSP, or equivalent. Demonstrated leadership in managing and successfully completing SOC 1 & 2 audits, including planning, execution, and remediation oversight. Extensive experience managing and responding to complex third-party security questionnaires and conducting in-depth vendor security assessments. Practical experience leading the implementation and optimization of GRC automation tools and platforms (e.g., Vanta, Drata, LogicManager, MetricStream, Archer, ServiceNow GRC, OneTrust, RiskRecon, or similar). Expert-level familiarity with common security frameworks and standards (e.g., NIST CSF, ISO 27001, SOC 1 and SOC 2). Exceptional written and verbal communication skills, with the ability to articulate complex security and compliance concepts clearly and persuasively to senior leadership, auditors, and technical teams. Strong analytical, critical thinking, and advanced problem-solving abilities, with a proactive and results-oriented approach. Client-oriented approach. Self-motivated, positive attitude, and a team player. Bachelor's degree in Information Security, Computer Science, Information Systems, or a related field, or equivalent practical experience. Experience with leading Privacy regimes such as GDPR and/or certifications such as CDPSE. Experience in a leadership, project management, or mentoring capacity. Demonstrated experience working in a fast-paced, high-growth, agile environment. Knowledge of cloud security principles and experience with major cloud platforms (AWS, Azure, GCP). Strong Change Management experience, adept at managing changes to minimise risk and ensure compliance. Should know ITIL-aligned processes, tools, and best practices, and collaborate effectively with teams to facilitate smooth transitions. What we bring to the table Wellness: $500 annual Wellness fund for mental/physical health and office-related expenses. Comprehensive Benefits: Complete company insurance plan (health, dental, vision, travel) effective from day one (100% employer-paid). $500 annual Health Care Savings Account (HCSA) for additional health-related expenses. Unlimited access to virtual healthcare platform (Telus Health). Paid Time Off: Minimum 3 weeks vacation, plus an additional week off during the holidays, 5 sick/personal days, and 2 volunteer days. Retirement Savings: Group RRSP with a 50% employer matching up to 4% of your salary. Financial Perks: Transportation reimbursement for travel to a Broadsign office. Family Support: Parental leave salary supplement. Growth Opportunities: Training & development opportunities with a yearly budget to support professional growth. At Broadsign, we value the varied social identities that make up our community. We recognize talent comes in different forms and encourage applications that reflect different backgrounds and experiences. Our promise is to be an inclusive employer and partner, open to learning, with thoughtful strategies and practices that amplify the different voices of our industry. Knowledge of French is required for positions permanently located in Quebec so incumbents can communicate with their colleagues and partners in Quebec as necessary. French-language training is offered to all incumbents in permanent positions in Quebec who do not have a good knowledge of French. Fluent English is required for this position in order to communicate with colleagues, clients and partners (or suppliers) located outside Quebec and to understand the technical and scientific documentation used in our industry. Seniority level Mid-Senior level Employment type Full-time Job function Information Technology Industries Software Development and Advertising Services #J-18808-Ljbffr
-
Governance, Risk, and Compliance
3 weeks ago
, , Canada WELLSTAR Full timeWho we are At WELLSTAR, we are committed to reshaping Canadian healthcare by leveraging technology to address the administrative burdens that pull physicians away from their true calling—patient care. Our mission is focused on supporting providers and patients, shifting the emphasis back to quality, time, and positive outcomes. With a comprehensive suite...
-
Senior Manager, Governance, Risk, and Compliance
3 weeks ago
, , Canada D-Wave Quantum Inc. Full timeSenior Manager, Governance, Risk, and Compliance (GRC) D-Wave (NYSE: QBTS) , D-Wave is a leader in the development and delivery of quantum computing systems, software, and services. We are the world’s first commercial supplier of quantum computers, and the only company building both annealing and gate-model quantum computers. Our mission is to help...
-
Senior Risk and Compliance Engineer I
2 weeks ago
, , Canada Instacart Full timeJoin to apply for the Senior Risk and Compliance Engineer I role at Instacart. We're transforming the grocery industry At Instacart, we invite the world to share love through food because we believe everyone should have access to the food they love and more time to enjoy it together. Where others see a simple need for grocery delivery, we see exciting...
-
Senior Risk and Compliance Engineer I
1 week ago
, , Canada Instacart Full timeWe're transforming the grocery industry At Instacart, we invite the world to share love through food because we believe everyone should have access to the food they love and more time to enjoy it together. Where others see a simple need for grocery delivery, we see exciting complexity and endless opportunity to serve the varied needs of our community. We...
-
Senior Risk and Compliance Engineer I
2 weeks ago
, , Canada Instacart Full timeWe’re transforming the grocery industry At Instacart, we invite the world to share love through food because we believe everyone should have access to the food they love and more time to enjoy it together. Where others see a simple need for grocery delivery, we see exciting complexity and endless opportunity to serve the varied needs of our community. We...
-
Canada IGM Financial Full time $120,000 - $180,000 per yearDivision: IGM-TechLocation: WinnipegIGM Financial Inc. is one of Canada's leading diversified wealth and asset management companies with approximately $271 billion in total assets under managements. The company provides a broad range of financial planning and investment management services to help more than two million Canadians meet their financial...
-
Compliance Manager
1 week ago
Avenue Southwest, Calgary, Alberta, Canada, TP G Phantom Compliance Full time $70,000 - $85,000 per yearCompliance Manager Reports To: Chief Operating Officer Position Type: Full-Time, 1 vacancy Location: Calgary, Alberta Hours of Work: Monday to Friday, 9:00 am to 5:00pm, 37.5 hours per week, MST Salary: $70,000 to start About the Company We are a one‑stop compliance powerhouse trusted by clients who expect precision, agility, and results. We run...
-
Associate - Fund Governance
1 day ago
Waterloo, Ontario, NVK, Canada Waystone Governance Ltd. Full time $60,000 - $90,000 per yearWaystone leads the way in specialist services for the asset management industry. Partnering institutional investors, investment funds and asset managers, Waystone builds, supports and protects investment structures and strategies worldwide. With over 20 years' experience and a comprehensive range of specialist services to its name, Waystone is now serving...
-
Director, Technology Risk Governance
4 days ago
, , Canada Mackenzie Investments Full timeJoin to apply for the Director, Technology Risk Governance role at Mackenzie Investments . IGM Finance Inc. is one of Canada's leading diversified wealth and asset management companies with approximately $271 billion in total assets under management. The company provides a broad range of financial planning and investment management services to help more than...
-
Director, Technology Risk Governance
6 days ago
, , Canada Mackenzie Investments Full timeJob Description Grade: P9 | Referral Level: Level 1 | Division: IGM-Tech IGM Financial Inc. is one of Canada's leading diversified wealth and asset management companies with approximately $271 billion in total assets under management. The company provides a broad range of financial planning and investment management services to help more than two million...