Recherche d'emploi > Waterloo, ON > Compliance analyst

Principal Security Compliance Analyst - Compliance Strategy

OpenText
Waterloo, ON
75.6K $-95.7K $ / an (estimé)
Temps plein

OPENTEXT - THE INFORMATION COMPANY

As the Information Company, our mission at OpenText is to create software solutions and deliver services that redefine the future of digital.

Be part of a winning team that leads the way in Enterprise Information Management.

The Opportunity

The Principal, Security Compliance Analyst will have the opportunity to make meaningfully contributions to the OpenText Compliance Program in accordance with various security frameworks, including and not limited to SOC1 / 2 / 3, ISO 27001, ISO27017, FedRAMP, SWIFT, HIPAA, and SOC2+HITRUST frameworks.

The Principal Security Analyst plays a key role in the continued development and maturity of an ever-growing Security Compliance Program that supports the delivery of compliance certifications and customer security requirements.

In this role, you will be involved in managing and sustaining the various compliance programs by working collaboratively with Product, Cloud Operations, internal teams, auditors and other stakeholders.

You Are Great At

  • Partner with OpenText stakeholders strategically to increase the Compliance outreach and impact within the company, and better support customer security certification requirements.
  • Collaborate with Product teams to develop new product and compliance certification strategies to support customer commitments.
  • Collaborate with Cloud Operation teams to identify key controls with common ownership, and develop a shared technology report for efficient audit testing across multiple business units and product lines, supporting the "test once, report many" compliance strategy.
  • Develop metrics and dashboards for reporting on assigned compliance programs.
  • Collaborate cross-functionally with technology and business stakeholders to drive, track, and resolve all aspects of compliance readiness and audit execution.
  • Track and maintain the overall compliance scope, including products and services that are within audit scope.
  • Influence and Interface with external auditors, articulating control implementation and impact, and establishing considerations for applying security and compliance concepts to a technical cloud environment.
  • Identify and track process improvement efforts, and articulate impact to customers and contractual commitments.
  • Participating in, or potentially leading, gap assessment, compliance readiness, and compliance monitoring activities.

What It Takes

  • 7+ years of experience in IT audit and / or compliance, with a concentration on leading multiple, simultaneous audit engagements in large Cloud Service Provider environment, encompassing multiple frameworks.
  • Familiar with Information Security principles, knowledge of IT processes (e.g. Change Management, Incident Management, Risk Management, Network and System Administration).
  • Experience collaborating with non-compliance professionals, advocating and educating the organization on compliance values and requirements.
  • Ability to independently research and translate new security frameworks and requirements into impact and effort estimates for the compliance delivery team.
  • Understanding of evaluating the design and effectiveness of IT controls and experience working with auditors / regulators for compliance assessments.
  • Experience leading preparation for and / or managing assessment activities (ISO 27001, SOC reporting, HIPAA / HITRUST, etc.

for assigned cloud services through assessment planning, assessment fieldwork, and final report delivery.

  • Strong technical, analytical, interpersonal, communication and writing skills.
  • Ability to work both independently and within a global team environment.
  • Strong personal characteristics as demonstrated by the following : achievement-oriented, self-controlled, self-confident, collaborative, flexible, approachable, and dedicated.
  • Required industry standard certifications (CISSP, CISA) or equivalent.
  • Bachelor's Degree in Information Technology, Business or related vocations.

OpenText's efforts to build an inclusive work environment go beyond simply complying with applicable laws. Our Employment Equity and Diversity Policy provides direction on maintaining a working environment that is inclusive of everyone, regardless of culture, national origin, race, color, gender, gender identification, sexual orientation, family status, age, veteran status, disability, religion, or other basis protected by applicable laws.

If you need assistance and / or a reasonable accommodation due to a disability during the application or recruiting process, please contact us at [email protected].

Il y a plus de 30 jours
Emplois reliés
OpenText
Waterloo, Ontario

The Principal Security Analyst plays a key role in the continued development and maturity of an ever-growing Security Compliance Program that supports the delivery of compliance certifications and customer security requirements. The Principal, Security Compliance Analyst will have the opportunity to...

Jobber
Canada
Télétravail

Our Security Analyst, GRC, focuses on the governance side of security and is not a technical security operations position requiring specific technical certifications or experience. This role is ideal for entry-to-intermediate level candidates in the security, governance, risk and compliance space. T...

Deel
Canada

There’s never been a more exciting time to join Deel — the market leader in international payroll and compliance. Collaborates with Product Specialists to understand country-specific payroll compliance requirements and translate them into technical specifications for development of the country’s pay...

H&R Block
Canada

As a Senior Tax Compliance Analyst reporting to the Lead, Tax Compliance, you will be part of a collaborative, agile team responsible for the end-to-end design, testing, maintenance, compliance, and accuracy of the tax software. Are you passionate about revolutionizing the digital tax preparation so...

TransUnion LLC
Canada,Remote
Télétravail

La répartition des tâches et responsabilités liées à ce poste comprend, sans s'y limiter :.Soutenir les différentes unités commerciales et l'équipe de Conformité dans le maintien de la conformité à la législation, des obligations contractuelles et des politiques de TransUnion.Aider/consulter les uni...

freelance.ca
Canada
Télétravail

The IT Security and Compliance Lead is responsible for leading and overseeing all aspects of IT security and compliance within the organization. IT security, compliance, strong. IT security principles, and experience with compliance standards. This includes leading projects aimed at ensuring complia...

Genuine Canadian Corporation
Cambridge, Ontario

The Transportation and Customs Compliance Analyst will support the seamless movement of freight through the supply chain including assisting with the classification process, tracking and tracing, updating systems and reporting to internal partners. This role typical reports into Customs Compliance &...

Deloitte
Kitchener, Ontario

The Cybersecurity Controls Compliance Lead Analyst will focus on assessing, testing, and reporting Global and Deloitte Firm compliance with applicable Global Cybersecurity standards at the level of individual controls, and providing subject matter expertise to Global and Deloitte firms to support an...

H&R Block
Canada

As a Senior Tax Compliance Analyst reporting to the Lead, Tax Compliance, you will be part of a collaborative, agile team responsible for the end-to-end design, testing, maintenance, compliance, and accuracy of the tax software. Are you passionate about revolutionizing the digital tax preparation so...

N. Harris Computer Corporation - USA
.,Ontario,Remote
Télétravail

As the Cloud Security Analyst, you will utilize your wide area of expertise in access control management, cybersecurity, vulnerability management, risk management, incident management, security frameworks and other areas to provide security support for the Harris group of companies. Work with Inform...