Senior IT Security Specialist (GRC/IT Audit) needed for hybrid role in Toronto/Mississauga. 10+ years experience, CISA required.
Responsibilities
The Senior IT Security Specialist will be responsible for assessing audit and regulatory remediation plans, developing sample-based test plans, and performing remediation QA and validation within a regulated enterprise environment. The role requires deep expertise in IT Audit, IT Governance, GRC, and information security control frameworks.
Requirements
10+ years of IT Audit / IT Governance experience; strong experience assessing audit and regulatory remediation plans; expertise in NIST, COBIT, ITIL; remediation QA and validation experience; sample-based test plan development; strong written and verbal communication; experience with RSA Archer, JIRA, Confluence, ServiceNow, SharePoint, Excel; CISA certification mandatory.
Threat Intelligence Analyst investigating telecom security threats and customer deployment data for Enea, a global telecom and cybersecurity software company. Supporting client security reviews and threat intelligence operations.
Information Security Analyst governing End - User Computing risks, controls, and remediation for TD, a major North American bank. Advising stakeholders and supporting governance reporting, audits, and regulatory requirements.
IT Security Analyst II coordinating cybersecurity monitoring, MSP oversight, audits, and incident follow - up. Supporting Veristat’s global life - sciences services and regulated technology environments.
Security Analyst protecting GitLab’s DevSecOps platform through vulnerability triage and CVE operations. Coordinating researchers, customers, and internal teams on secure software response.
SIEM/SOAR cybersecurity analyst monitoring threats, building alerts, and measuring controls. Supporting Wepoint’s digital transformation work for businesses and public sector organizations.
SIEM/SOAR information security analyst supporting Wepoint’s digital transformation services. Developing cybersecurity monitoring cases, alerts, dashboards, and security - control documentation.
Security Analyst II protecting Intact’s insurance operations through incident response and SIEM monitoring. Supporting security platforms, incident resolution, dashboards, and IT security initiatives.