Senior GRC Analyst evaluating cybersecurity controls, privacy, and enterprise risk for Arctic Wolf’s security operations platform.
Leading assurance reviews and compliance improvements across global cross-functional teams.
Responsibilities
Evaluate and report on the adequacy and effectiveness of system designs and controls against business, operational, and control objectives
Lead discovery sessions with cross-functional teams to identify, document, and improve industry-wide compliance and control design and implementation
Plan and execute technical security and privacy assessments across enterprise information systems using industry frameworks
Plan, execute, and report on governance and assurance reviews, including post-remediation validations
Conduct ongoing control and risk assessments and help develop and execute assurance plans for high-risk areas
Lead improvements and innovative design of industry-wide compliance and controls
Lead compliance-related change management initiatives within the team and across the organization
Support management with complex issues involving internal and external auditors and external regulators
Create and communicate data-driven reports and updates to influence internal decisions and outcomes
Coordinate with Engineering, IT, Product, R&D, Finance, Legal, Internal Audit, and other cross-functional teams
Requirements
10+ years of experience in governance, risk management, or compliance
Exposure to management consulting, the technology industry, financial services, and/or project management
Knowledge of privacy and security frameworks and standards, including ISO 27001, SOC 2, CMMC, and PCI
Hands-on experience with GRC automation platforms and tools
Knowledge of accepted enterprise risk management frameworks
Understanding of cloud security controls and general application controls
Analytical capacity and experience adding structure in complex, ambiguous environments
Cross-group collaboration skills, conflict resolution experience, and ability to influence cross-functionally and with executive-level audiences
Ability to adapt quickly to shifting priorities, demands, and timelines
Technical knowledge and experience working in a SaaS environment
Ability to work under pressure with multiple teams and stakeholders
Bachelor’s Degree
Bachelor’s degree in Business, Information Systems, Computer Science, or a related field preferred
CIA, CISA, CRISC, CISM, CISSP, or equivalent certification preferred
Background checks are required
Must satisfy applicable authorization requirements to receive software or technology controlled under U.S. export control laws and regulations, if applicable
Candidates interviewing remotely are expected to be on camera during all video interviews, subject to accommodations
Benefits
Equity for all employees
Flexible time off and paid volunteer days
RRSP and 401k match
Training and career development programs
Comprehensive private benefits plan including medical, mental health, dental, disability, life and AD&D, and value-added services
Robust Employee Assistance Program (EAP) with mental health services
Fertility support and paid parental leave
Variable incentive compensation
New hire equity grants
Accommodations for candidates and employees with disabilities and/or other specific needs where possible
Sun Life compliance director overseeing CIRO trade supervision and risk - based monitoring across mutual fund and securities businesses. Leading regulatory oversight, transformation, reporting, and a high - performing compliance team.
Compliance Manager advising Affirm’s consumer card program on U.S. financial regulations. Reviewing card products, marketing, disputes, and remediation for compliant growth.
Compliance Manager owning risk - based advisory for Affirm Card at Affirm, which provides transparent pay - over - time financial products. Reviewing card compliance, remediation, and regulatory requirements.
Sun Life AVP leading strategic programs, innovation, insights and regulatory operations. Integrating governance, modernization, analytics and change across Canadian wealth and insurance businesses.
Regulatory labeling manager overseeing global IMP labeling for Telix’s precision radiopharmaceuticals. Supporting clinical trials and regulatory compliance for cancer and rare - disease treatments.
Quality and compliance specialist overseeing GMP, accreditation, QMS and pharmacovigilance for Shared Health Diagnostic Services in Manitoba. Ensuring regulatory compliance across provincial healthcare sites.
Compliance officer investigating energy - sector violations for British Columbia’s energy regulator. Conducting inspections, enforcement actions, emergency response, and administrative case preparation.
Senior Compliance Consultant strengthening Sun Life’s Canadian disability - management governance and risk controls. Leading audits, risk validation, business continuity, and compliance initiatives for Group Disability.
Regulatory intelligence leader monitoring global rules for Telix Pharmaceuticals, a precision radiopharmaceutical company. Translating regulatory developments into strategies, communications, and cross - functional actions.