Information Security, GRC Analyst:
On behalf of our Enterprise client, Procom is searching for an Information Security, GRC Analyst for a permanent role. This position is a hybrid position with 4 days onsite at our client’s Calgary or Toronto office.
Information Security, GRC Analyst - Job Description:
The Information Security, GRC Analyst will support the implementation and maintenance of the organization’s Governance, Risk, and Compliance (GRC) program. The role focuses on third-party security compliance, security governance, and internal controls, contributing to a risk-based security framework aligned with industry standards such as ISO 27001 and ISO 22301.
Information Security, GRC Analyst - Responsibilities:
- Oversee the cybersecurity compliance program for third parties
- Manage requests related to the security program from clients, prospects, auditors, and others
- Ensure compliance of the Firm's key IT vendors with information security standards
- Track and ensure completion of key internal security tasks
- Maintain security dashboards, metrics, and reports
- Conduct security tasks to maintain ISO 27001 and ISO 22301 certifications
- Conduct limited internal security audits and collaborate to remediate compliance gaps
Information Security, GRC Analyst - Mandatory Skills:
- Bachelor's degree in information technology, computer science, cybersecurity, or related field
- Minimum three years of experience in IT compliance, risk management, or information security
- Knowledge of regulatory frameworks (e.g., ISO 27001, ISO 22301, NIST)
- Experience with security risk management processes and compliance tools
- Outstanding oral and written communication skills
- Excellent interpersonal relationship skills
- High-level of attention to detail and accuracy
Information Security, GRC Analyst – Nice-to-Have Skills:
- Professional certifications such as CISSP, CISA, CISM, CRISC
- SANS/GIAC, CompTIA Security+, CEH
Information Security, GRC Analyst – Assignment Length:
This is a permanent position.
Information Security, GRC Analyst - Start Date:
ASAP.
Information Security, GRC Analyst - Assignment Location:
Calgary or Toronto, ON, hybrid with 4 days in office.