GRC Specialist

Miovision
Canada
$80K-$120K a year (estimated)
Remote
Full-time

Position Summary

The GRC Specialist is a key member of the Miovision Security team and is responsible for managing innovative governance, risk and compliance (GRC) practices to identify and mitigate security risks.

This role is critical to help the company defend our critical information and systems, understand the company’s information security environment, and help take the appropriate measures to protect our business and platforms.

This hands-on position will work closely with all teams across the company to ensure our GRC practices are defined, operated and maintained using leading security practices.

Ultimately, this role will help make Miovision systems and data more secure.

Key Accountabilities

  • Lead the implementation and continual improvement of the Miovision GRC program, and be the subject matter expert on compliance and risk management practices.
  • Achieve and maintain compliance with frameworks relevant to Miovision operations and customers, such as ISO 27001, SOC 2, NIST CSF, and NIST SP 800-53.
  • Lead internal adoption of security policies, procedures, standards and best practices to ensure secure business operations, including vendor assessments, threat and risk analyses, and internal audits.
  • Lead internal security audits and coordinate with external security auditors to review Miovision IT and security processes, risks, controls, and compliance against selected frameworks to assess capability maturity and identify gaps in design and execution.
  • Actively participate in and support the Miovision data governance program.
  • Proactively communicate updates, metrics, issues and recommendations to stakeholders and senior management.
  • Assist with establishing a coordinated response to complex cyber-attacks that threaten the company’s information and assets.
  • Actively participate in security operations, including software updates, patching, and incident response, and be a security subject matter expert to assist others across the organization, as needed.

Skills / Qualifications

  • Working knowledge of and experience with industry compliance and risk management frameworks, including ISO / IEC 27001, SOC 2, NIST CSF, and NIST SP 800-53.
  • Hands-on experience in managing an effective GRC program or related compliance projects, including championing the activities, performing assessments and internal audits, and writing clear documentation (policies, procedures, reports, etc.).
  • Demonstrated analytical and pragmatic approach to cybersecurity, compliance and risk.
  • Proven ability to collaborate and affect change, with a focus on performance excellence and continuous improvement.
  • Excellent written and verbal communication skills, including the ability to communicate effectively across an organization.
  • 2+ years of experience in compliance or risk management roles.
  • 3+ years of experience in cybersecurity roles.

Additional Assets

  • Passion for security and learning.
  • Certified Information Systems Security Professional (CISSP); Certified in Governance, Risk and Compliance (CGRC); Certified in Risk & Information Systems Control (CRISC) or similar certification.

Perks and Benefits

Note : We do offer flexible onsite and remote work options. Our Benefits are designed to reflect this and include :

  • Comprehensive health benefits starting on day one
  • RRSP Matching Plan
  • Variable Incentive Plan

We extend all three-day weekends to four-days and provide a Holiday Shutdown in December

  • Virtual Healthcare Service providing employees and their families access to healthcare providers 24 / 7
  • Internet subsidy and a remote work allowance
  • Enhanced paternity and maternity leaves
  • Unlimited vacation policy
  • Wellness offerings (Fitness, Mindfulness)

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, colour, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

Please indicate if you require accommodation on your application, and our team will work with you to meet your accessibility needs.

To all recruitment agencies : Miovision does not accept agency solicitation or resumes. Please do not forward resumes to our HR alias e-mail address, to any Miovision employee, or to other Miovision e-mail addresses.

Miovision will not pay any fees related to unsolicited resumes.

19 days ago
Related jobs
Miovision
Canada
Remote

The GRC Specialist is a key member of the Miovision Security team and is responsible for managing innovative governance, risk and compliance (GRC) practices to identify and mitigate security risks. This hands-on position will work closely with all teams across the company to ensure our GRC practices...

Markel Canada Limited
Remote Canada Contingents
Remote

The Data Ops goal is to help the business make good choices with dashboards and other tools that show Markel’s business story and give insights to enhance the business results. The successful candidate will have the opportunity to work with cross functional teams across the whole of the business and...

Adal Immigrations
Canada

Drawing up a detailed plan for how to achieve each stage of the project. Selecting and leading a project team. Making sure that each stage of the project is progressing on time and on budget. Reporting regularly on progress to the client or to senior managers. ...

KPMG
Canada, Canada

The Manager, Instructional Design reports to the Project Execution and Resourcing Lead for assigned projects in any function (Global Advisory, Global Audit, Global Cross-functional, Global Tax and Legal, ad hoc Global projects) and is responsible for consulting with the specific project lead for the...

H&R Block
Canada

As a Senior Tax Compliance Analyst reporting to the Lead, Tax Compliance, you will be part of a collaborative, agile team responsible for the end-to-end design, testing, maintenance, compliance, and accuracy of the tax software. Are you passionate about revolutionizing the digital tax preparation so...

Procom
Canada

IT Technical Business Analyst. On behalf of our government client in Edmonton, Procom is searching for an IT Technical Business Analyst for a 5 month remote contract with occasional travel to Edmonton for meetings. IT Technical Business Analyst - Senior Job Details. ...

Scribd
Remote US Canada
Remote

We are seeking a highly skilled and detail-oriented Technical Risk and Payments Fraud Analyst to join our Risk Operations team. Working in Scribd’s Risk Operations team is like being a detective in the matrix—every day presents a new puzzle to solve, a new challenge to overcome. You’ll be at the for...

Donna Cona
Remote, Canada
Remote

Senior Business Analyst, for one of our key government clients. ...

Affirm, Inc.
Canada
Remote

As a Merchant Risk Analyst, you will assess financial risk related to credit, fraud and identity associated with the merchants. You will also coordinate with cross-functional partners to assess non-financial risk - brand, reputational, legal and compliance risk. Assess brand, compliance, fraud and f...

Aritzia
Canada, Canada

As a Senior/ Construction Project Manager you will manage all aspects of the construction of unique projects, partnering closely with both internal and external partners to ensure we successfully deliver projects on time, and on budget. As the Senior/Construction Project Manager you will:. The Senio...