IT Risk and control Analyst
Hybrid – 3 days onsite
Location : Markham, ON
About the Position
Client is looking for a Analyst which is a pillar of IT Risk and Compliance function. In this role, you will be responsible for designing, maintaining, monitoring technology controls. You will partner with IT leaders to transform / evolve existing IT processes and controls to ensure effectiveness and efficiency. You will also work with multiple IT functional teams as well as 2nd and 3rd lines of defence to identify and remediate control issues to ensure IT risks are within client’s tolerance.
Key Responsibilities
- Understand Enterprise IT risks, control objectives and standard requirements
- Designs IT controls, sets thresholds and MI (Management Information) to measure control effectiveness, and reviews and gains agreement with Control Owners
- Work with IT leaders to implement, rollout and maintain IT controls
- Ensure MI is in place to support continuous monitoring and a holistic view of IT control environment
- Coordinate IT audits and control reviews end-to-end (., questionnaires, ad-hoc requests,
- Provide control walkthrough and evidence upon request (., audits, compliance, findings and other risk and governance group requests)
- Build remediation plans and remediate control issues on behalf of IT Control Owners
- Report and escalate the status of the relevant controls and issues as appropriate
- Support a strong and continuous improving control environment by conducting process and control trainings across IT
- Maintain appropriate records in client’s Risk Management systems
- Maintain knowledge of industry trends, developments, and regulatory changes
Qualifications
Bachelor's degree in Computer Science, Computer Engineering, Management Information Systems, or similarExperience in IT risk and compliance, audit, or Information SecurityExperience with IT Infrastructure and / or application standards and processesDemonstrated proficiency in leading technology control relative initiatives, managing multiple and changing priorities and delivering results in a matrixed environmentProficiency and resourcefulness in identifying and analyzing relevant data and information and defining critical issues and alternativesPossess excellent interpersonal skills, including relationship management and communication skillsPreference will be given to candidates with CISA, ITIL and / or CISSP designations