Talent.com
Lumentum
IT Governance, Risk & Compliance (GRC) Analyst 1Lumentum • Ahuntsic North, ca
IT Governance, Risk & Compliance (GRC) Analyst 1

IT Governance, Risk & Compliance (GRC) Analyst 1

Lumentum • Ahuntsic North, ca
Il y a 3 jours
Type de contrat
  • Temps plein
Description de poste
It's fun to work in a company where people truly BELIEVE in what they're doing!

We're committed to bringing passion and customer focus to the business.

If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us!

Lumentum Canada was awarded the 2022 National Capital Region’s Top Employers for the 6th consecutive year and the 2022 Career Directory Canada’s Best Employers for Recent Graduates for the 5th consecutive year.

Position Title: IT Governance, Risk & Compliance (GRC) Analyst 1

Employment Type:

Full-time, Existing vacancy

Location:

Ottawa (On-Site)

About Lumentum At Lumentum, we’re building the tech behind the world’s fastest networks and most advanced systems. Our optical and photonic solutions power everything from AI and cloud computing to data centers, telecom, and advanced manufacturing.

We’re a global team of innovators working where light meets technology, solving big challenges that keep the world connected and moving forward. If shaping the future of connectivity excites you, you’ll fit right in.

Why You’ll Love This Role At Lumentum, we are searching for Canada’s brightest young minds engineers and innovators who want to build the next generation of optical technology. If you are driven by curiosity, eager to solve real-world challenges, and excited about developing groundbreaking optical systems, this is your opportunity.

Join us in designing the future of optical cloud & networking technology our advanced photonic modules power the world’s voice and internet traffic, and we need your expertise to take them to the next level. This is not just another job; this is your chance to define & design what’s next in photonics.

What You’ll Be Doing The IT Governance, Risk & Compliance (GRC) Analyst I supports the organization’s information security governance, risk management, compliance, audit, and third-party risk management (TPRM) programs. This role assists in maintaining security policies, conducting risk assessments, supporting internal and external audits, evaluating third‑party security risks, and ensuring compliance with applicable regulatory and industry frameworks. This role works closely with IT, Security, Legal, Procurement, Privacy, Internal Audit, and business stakeholders to ensure that information systems, processes, and controls align with organizational policies, industry standards, and regulatory requirements.

The ideal candidate is a proactive, detail‑oriented professional with strong analytical and organizational skills and a strong understanding of cybersecurity, governance, risk management, and compliance principles. They communicate effectively with both technical and non-technical stakeholders, demonstrate a collaborative mindset, and are committed to continuous learning and professional growth in cybersecurity governance and risk management.

Governance & Policy Management

Assist with maintaining information security policies, standards, and procedures.

Help keep governance documentation and policy records up to date.

Support governance initiatives and promote security best practices.

Track policy exceptions and follow up on remediation activities.

Risk Management

Assist with IT and cybersecurity risk assessments.

Help identify, document, and track security risks and remediation efforts.

Maintain the IT risk register and support periodic risk reporting.

Work with stakeholders to monitor risk mitigation activities.

Compliance & Regulatory Support

Support compliance activities for frameworks such as ISO 27001, NIST CSF, SOC 2, GDPR, and CMMC.

Assist with compliance assessments, evidence collection, and documentation.

Help track remediation activities to address compliance findings.

Support internal and external compliance reviews and audits.

Third‑Party Risk Management

Assist with vendor security assessments during onboarding and periodic reviews.

Review vendor security documentation, including questionnaires and audit reports.

Track vendor risk findings and remediation activities.

Maintain third‑party risk records on the GRC platform.

Audit Support

Coordinate audit evidence requests and documentation.

Track audit findings and remediation activities.

Help maintain audit readiness across teams.

Program Improvement

Support governance, risk, and compliance initiatives across IT and Security.

Help monitor compliance metrics, risks, and remediation progress.

Assist with identifying process improvements and updating documentation.

Perform other duties in support of the Information Security team.

What We’re Looking For

Bachelor’s degree in information technology, Cybersecurity, Information Systems, Risk Management, Business Administration, or a related field.

Equivalent combination of education and experience may be considered.

Preferred Certifications One or more of the following certifications (or willingness to obtain) is preferred:

CompTIA Security+

Certified Information Systems Auditor (CISA) (or pursuing)

Certified in Risk and Information Systems Control (CRISC) (or pursuing)

Certified Information Security Manager (CISM)

ISO 27001 Lead Implementer or Lead Auditor

Security+ or equivalent cybersecurity certification

Experience

2 – 5 years of internship or entry-level experience in IT governance, risk management, compliance, cybersecurity, IT audit, or related fields.

Experience supporting audits and compliance assessments.

Familiarity with risk assessment methodologies and control frameworks.

Technical Knowledge

Working knowledge of:

Information Security principles

Risk assessment methodologies

Governance and compliance processes

Security frameworks such as NIST CSF, ISO 27001, and SOC 2

Microsoft Office Suite (Excel, Word, PowerPoint) or similar

Preferred experience with GRC platforms such as:

ServiceNow GRC

Archer

OneTrust

AuditBoard

Key Competencies

Analytical and problem-solving skills

Attention to detail and organizational skills

Effective written and verbal communication

Ability to work independently and as part of a team

Basic understanding of risk, compliance, and governance principles

Customer-focused with strong stakeholder relationship skills

Ability to manage multiple priorities in a fast-paced environment

Willingness to learn and continuously develop GRC knowledge

Success Measures

Timely completion of assigned risk assessments, compliance activities, and vendor reviews.

Accurate, organized, and complete documentation and reporting.

Effective support of internal and external audits, including timely evidence collection.

Consistent tracking and follow-up of risk, audit, and compliance remediation activities.

Positive collaboration with business and technical stakeholders.

Demonstrated growth in GRC knowledge, skills, and professional development.

Perks You’ll Love

Flexible time off

Health and wellness benefits (physical and mental)

Tuition reimbursement and career growth support

A workplace built for you: free gym, games room, prayer room

Subsidized meals, free coffee/tea

Employee stock options and incentive plans

A collaborative, innovative, and inclusive culture

Working Conditions

May require coordination across multiple time zones and business units.

Salary Range: $55,000 - $80,000 CAD (flexible).

Final compensation will be determined based on factors such as experience, skills, and qualifications. In line with our commitment to being a great place to work, Lumentum offers competitive total rewards which may include annual bonus, equity, and comprehensive health and welfare benefits.

Join a Team That’s Shaping the Future At Lumentum, we’re more than just a workplace—we’re a launchpad for creativity and innovation. We’re committed to celebrating your unique talents and helping you grow. Our guiding principles—Innovate, Engage, Deliver, Excel, and Win—aren’t just words; they’re the heart of what we do.

Let’s Build a Brighter Future Together! We’re committed to building an inclusive workplace where everyone feels valued and empowered. We welcome applicants from all backgrounds and provide accommodations for individuals with disabilities throughout the hiring process. Your uniqueness makes us stronger, sparks creativity, and drives our success.

Please contact us at talentacquisition@lumentum.com to request accommodation.

Join us—your future starts here!

#J-18808-Ljbffr
Créer une alerte emploi pour cette recherche

IT Governance, Risk & Compliance (GRC) Analyst 1 • Ahuntsic North, ca

Offres similaires

IT Security Risk Analyst

Onico SolutionsMontreal (administrative region), QC, CA
Permanent

The IT Security Risk Analyst supports the Information Security Risk Management and Governance programs.They work with technology and business stakeholders to identify Information Security risks, co... Voir plus

 • Offre sponsorisée

Senior Analyst, Information Security (GRC) and Crisis Management

PSP’s Private Debt & Credit Investment (PDCI) groupMontreal (administrative region), QC, CA
Temps plein

We’re one of Canada’s largest pension investors, with CAD$299.We invest funds for the pension plans of the federal public service, the Canadian Forces, the Royal Canadian Mounted Police and the Res... Voir plus

 • Offre sponsorisée

Senior Auditor - IT Governance Specialist

Groupe Dynamite, Inc GarageMount Royal, Montreal (administrative region), CA
Temps plein

Shape IT compliance practices with Groupe Dynamite as a Senior IT Auditor.This role is essential for overseeing risk management and governance in a dynamic retail environment.This Senior IT Auditor... Voir plus

 • Offre sponsorisée

Senior Manager IT Risk Management and Cybersecurity (Hybrid)

National BankMontreal, Quebec
Temps plein +2

Information technology, Risk management .A career as a Senior Manager or Senior Manager for Cybersecurity in the it and Cybersecurity risk Management team at National Bank means acting as a strateg... Voir plus

Interactive Brokers Compliance Analyst Role

Interactive BrokersMontreal (administrative region), QC, CA
Temps plein

Become part of Interactive Brokers as a Compliance Analyst in their Montreal office.This hybrid role combines the analysis of financial crimes with proactive client activity monitoring to uphold re... Voir plus

 • Offre sponsorisée

Expert Analyst in Healthcare IT Infrastructure and Security

CIUSSS de l'Ouest-de-l'Île-de-MontréalMontreal-Ouest
Temps plein +1

Shape the future of healthcare IT as an Expert Analyst specializing in infrastructure and security systems.Manage high-availability systems and ensure robust network operations tailored to healthca... Voir plus

 • Offre sponsorisée

Strategic IT Risk & Governance Analyst

ALLTECH CONSULTING SVC INCMontreal (administrative region), QC, CA
Temps plein

A consulting firm based in Canada is seeking an experienced individual to manage technology risk initiatives effectively.The role involves developing strong relationships with stakeholders, monitor... Voir plus

 • Offre sponsorisée

Analyste des risques et du contrôle de la gestion des actifs IT (IT Asset Management Risk & Con[...]

AstekMontreal (administrative region), QC, CA
Temps plein

Offre d’emploi : Analyste des risques et des contrôles en gestion des actifs TI (IT Asset Management Risk & Control Analyst).Mode de travail : Hybride (1ère journée en présentiel, ensuite en présen... Voir plus

 • Offre sponsorisée

Senior Security Analyst - GRC Focus

PSP’s Private Debt & Credit Investment (PDCI) groupMontreal
Temps plein

Elevate your career with PSP Investments as a Senior Analyst in Information Security GRC in Ottawa.Enhance security governance and compliance, while preparing for crisis management challenges withi... Voir plus

 • Offre sponsorisée

Senior Analyst, Information Security (GRC) and Crisis Management

PSP Investments | Investissements PSPMontreal (administrative region), QC, CA
Temps plein

We’re one of Canada’s largest pension investors, with CAD$299.We invest funds for the pension plans of the federal public service, the Canadian Forces, the Royal Canadian Mounted Police and the Res... Voir plus

 • Offre sponsorisée

Remote IT Security Risk Analyst: Governance & Risk

Onico SolutionsMontreal (administrative region), QC, CA
Télétravail
Permanent

A leading IT security firm in Richmond Hill is looking for an IT Security Risk Analyst to support their Information Security Risk Management programs.The role requires expertise in risk assessments... Voir plus

 • Offre sponsorisée

Security Governance, Risk and Compliance Specialist

Tecsys Inc.Montreal, Montreal (administrative region), CA
Temps plein +1

Security Governance, Risk and Compliance Specialist.Having recognized the advantages of remote work, such as improved employee morale, increased productivity, and positive impacts on both employee ... Voir plus

 • Offre sponsorisée

Governance, Risk & Compliance Consultant

MalleumMontreal (administrative region), QC, CA
Temps plein

Governance, Risk & Compliance Consultant.Governance, Risk & Compliance Consultant.We are a premier cybersecurity consultancy, blending advanced offensive and defensive strategies to safeguard our c... Voir plus

 • Offre sponsorisée

Senior IT Compliance & Audit Lead — Remote

P2PMontreal (administrative region), QC, CA
Télétravail
Temps plein

A leading crypto firm is seeking a senior IT audit professional.This fully remote role emphasizes managing SOC examinations and establishing audit rigor.Ideal candidates will have over 5 years of e... Voir plus

 • Offre sponsorisée

Technology Risk Management Lead — Drive It Risk - $73,000 - $109,500 A Year

KPMG CanadaCandiac, Canada
Temps plein

Overseeing technology risks and ensuring adherence to risk management processes. Voir plus

 • Offre sponsorisée

Montreal Technology Risk Governance Analyst

Compunnel, Inc.Montreal (administrative region), QC, CA
Temporaire

Step into an impactful role as a Technology Risk Metrics Governance Analyst, located in Montreal.This intermediate, fixed-term contract requires onsite presence three days per week and focuses on r... Voir plus

 • Offre sponsorisée

Advisor Technology Risk Governance

National Bank of CanadaMontreal (administrative region), QC, CA
Temps plein

A career as a risk Governance Advisor in the Technology, Cybersecurity and Data risk Management team at National Bank means acting as a technology, cybersecurity and data risk governance specialist... Voir plus

 • Offre sponsorisée

GRC Specialist in Remote Role at Tecsys

Tecsys Inc.Montreal (administrative region), QC, CA
Télétravail
Temps plein

Tecsys seeks a Security Governance, Risk and Compliance Specialist in a remote setting to advance our security initiatives.You will play a critical role in managing compliance and addressing securi... Voir plus

 • Offre sponsorisée

Technology Risk Governance Analyst

Compunnel, Inc.Montreal
Temps plein +1

This role is a Technology Risk Metrics Governance Analyst at an intermediate level, with 2-5 years of experience.The position is a fixed-term contract (FTC) based in Montreal, requiring a day one o... Voir plus

 • Offre sponsorisée

Senior Director, IT Compliance and Risk Management

IntactMontreal (administrative region), QC, CA
Temps plein

Join Intact as a Senior Director of IT Financial Controls, where you will manage compliance and risk initiatives in a hybrid setting.Use your strategic insight to lead a high-performing team.In thi... Voir plus