Talent.com
Cybersecurity Controls Compliance Lead Analyst, Deloitte Global Technology
Cybersecurity Controls Compliance Lead Analyst, Deloitte Global TechnologyDeloitte • Kitchener, ON
Cybersecurity Controls Compliance Lead Analyst, Deloitte Global Technology

Cybersecurity Controls Compliance Lead Analyst, Deloitte Global Technology

Deloitte • Kitchener, ON
30+ days ago
Job type
  • Permanent
Job description

Job Type: Permanent
Work Model:
Hybrid
Reference code:
127621
Primary Location:
Toronto, ON
All Available Locations:
Edmonton, AB; Halifax, NS; Kitchener, ON; Regina, SK; Toronto, ON

Our Purpose

At Deloitte, we are driven to inspire and help our people, organization, communities, and country to thrive. Our Purpose is to build a better future by accelerating and expanding access to knowledge. Purpose defines who we are and gives us reason to exist as an organization.

By living our Purpose, we will make an impact that matters.

  • Enjoy flexible, proactive, and practical benefits that foster a culture of well-being and connectedness.
  • Experience a firm where wellness matters.
  • Be expected to share your ideas and to make them a reality.

--

Deloitte Global is the engine of the Deloitte network. Our professionals reach across disciplines and borders to develop and lead global initiatives. We deliver strategic programs and services that unite our organization.

What will your typical day look like?

The Cybersecurity Controls Compliance Lead Analyst will focus on assessing, testing, and reporting Global and Deloitte Firm compliance with applicable Global Cybersecurity standards at the level of individual controls, and providing subject matter expertise to Global and Deloitte firms to support and enhance compliance efforts. Additionally:

  • Actively participate in the planning and development of the technology and cybersecurity controls assurance process and lifecycle.
  • Execute the design and implementation of an integrated controls library, enabling the mapping of controls to Deloitte’s internal policies and standards, and external authoritative sources such as ISO27001, ISO22301, NIST, and other frameworks.
  • Conduct deep dive assessments to verify the effectiveness of specific Deloitte Firm and Global Shared Services controls in agreement with other team members, and provide constructive recommendations, findings and observations where required.
  • Support and execute assessment activities using the GRC platform Service Now.
  • Update the Integrated Controls Library (ICL) by liaising with other team members and relevant governance bodies as needed.
  • Monitor the effectiveness of the compliance assessment process in accordance with agreed metrics and performance measures to drive continuous improvements.
  • Develop and implement a compliance controls assurance process, assisting in the implementation of this process using the compliance tool (ServiceNow GRC).
  • Develop and implement reporting and metrics on compliance using the ServiceNow GRC tool and support the generation of specific compliance reports and dashboards.
  • Develop and maintain relationships with senior cybersecurity, technology, legal, and risk leaders within DTTL and across Deloitte firms.
  • Develop and maintain relationships with DTTL service teams to ensure collaboration and alignment, to understand strategic and tactical priorities, and deliver continuous improvement.
  • Work with other Governance, Risk, and Compliance groups and participate in technology and risk working groups as required.
  • Participate in the development and implementation of global strategies and provide programs and services that unite the Deloitte network.
  • Be proactive in seeking out areas for improvement and offer insightful advice and value-added guidance on process and control enhancements.

About the team

Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in "what is" but rather "what can be" to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived.

Enough about us, let’s talk about you

Do you possess the following?:

Education:

Bachelor’s degree in business administration, a technology-related field, or equivalent education-related experience.

Experience:

  • Minimum of 5 years of combined experience in the Information Security/Cybersecurity domain with a focus on cybersecurity and compliance.
  • Experience developing compliance programs, including assessing and managing compliance against agreed standards at the level of individual security controls (administrative, technical/logical, physical) for multiple organizations or business units.
  • Experience interacting, presenting, and working with C-level executives (CEO, CIO, etc.).
  • Proven track record of organizing and carrying out several risk and compliance projects.
  • Experience with GRC (Governance, Risk, and Compliance) management tools such as ServiceNow, or similar GRC management tools.
  • Sound knowledge of information/cybersecurity risk management and governance.
  • Knowledge of common information security management frameworks, such as ISO/IEC 27001, and NIST (including 800-53 and the Cybersecurity Framework).
  • Excellent written and verbal communication skills and the capability to communicate with cross-functional teams.
  • Strong interpersonal and collaborative skills.
  • Ability to communicate strategic information security topics, policies, standards, and risk-related concepts to both technical and non-technical audiences at various hierarchical levels.
  • Preferred certifications: Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), ISO27001 Lead Auditor or other similar, credentials, Certified Information Systems Security Professional (CISSP)

Total Rewards


The salary range for this position is $69,000 - $114,000, and individuals may be eligible to participate in our bonus program. Deloitte is fair and competitive when it comes to the salaries of our people. We regularly benchmark across a variety of positions, industries, sectors, targets, and levels. Our approach is grounded on recognizing people's unique strengths and contributions and rewarding the value that they deliver.

Our Total Rewards Package extends well beyond traditional compensation and benefit programs and is designed to recognize employee contributions, encourage personal wellness, and support firm growth. Along with a competitive base salary and variable pay opportunities, we offer a wide array of initiatives that differentiate us as a people-first organization. Some representative examples include: $4,000 per year for mental health support benefits, a $1,300 flexible benefit spending account, 38+ days off (including 10 firm-wide closures known as "Deloitte Days"), flexible work arrangements and a hybrid work structure.

Our promise to our people: Deloitte is where potential comes to life.

Be yourself, and more.

We are a group of talented people who want to learn, gain experience, and develop skills. Wherever you are in your career, we want you to advance.

You shape how we make impact.

Diverse perspectives and life experiences make us better. Whoever you are and wherever you’re from, we want you to feel like you belong here. We provide flexible working options to support you and how you can contribute.

Be the leader you want to be

Some guide teams, some change culture, some build essential expertise. We offer opportunities and experiences that support your continuing growth as a leader.

Have as many careers as you want.

We are uniquely able to offer you new challenges and roles – and prepare you for them. We bring together people with unique experiences and talents, and we are the place to develop a lasting network of friends, peers, and mentors.

Create a job alert for this search

Cybersecurity Controls Compliance Lead Analyst, Deloitte Global Technology • Kitchener, ON

Similar jobs

Associate director, Compliance programme manager - Technology (Global role – in a virtual working environment) - Grant Thornton International Ltd

Grant Thornton International Ltdguelph, on, ca
Full-time

Grant Thornton is one of the world’s leading professional services networks with member firms in over 150 countries, 80,000 people and global revenues of $8.Member firms offer audit, tax, and advis...Show more

 • Promoted

Global IT Project Manager & ERP Lead

Linamar CorporationGuelph, ON, CA
Full-time

A global manufacturing company is seeking a Project Manager, IT to oversee planning, design, and execution of IT projects.This role involves managing project budgets, coordinating with stakeholders...Show more

 • Promoted

Gestionnaire de projet, Cybersécurité | Project Manager, Cybersecurity - Hitachi Cyber

Hitachi Cyberguelph, on, ca
Full-time

Diriger plusieurs projets complexes de bout en bout, dans le respect des délais et des budgets;.Concevoir et exécuter des plans opérationnels, gérer les échéanciers, les budgets et les ressources;....Show more

 • Promoted

Data Security Services Compliance Manager

Entrustguelph, on, ca
Full-time

At Entrust, we’re shaping the future of identity centric security solutions.From our comprehensive portfolio of solutions to our flexible, global workplace, we empower careers, foster collaboration...Show more

 • Promoted

Developer for D365 F&O (Dynamics 365 - Finance and Operations) - guelph

PrecisionERP / PrecisionITguelph, on, ca
Full-time

PrecisionERP / PrecisionIT is seeking a Dynamics 365 F&O Application Developer, who will be responsible for designing, developing, and maintaining customizations and integrations within the Microso...Show more

 • Promoted

URGENT - Lead Business Analyst, Technology Integration (Salesforce/SAP) - VTRAC Consulting Corporation (WBE)

VTRAC Consulting Corporation (WBE)guelph, on, ca
Permanent

Thank you for applying to VTRAC opportunities.Please email your resume as a MS-WORD document in confidence.Subject: Lead Business Analyst, Technology Integration (Salesforce/SAP), PERMANENT Hybrid....Show more

 • Promoted

Enhanced Due Diligence Associate

BET99kitchener, on, ca
Full-time

BET99 is Canada's Premiere Online Sportsbook and Casino.Launched in 2020, we have consistently innovated the online gaming landscape every step of the way, exponentially growing our customer base a...Show more

 • Promoted

Operational Risk Consultant - Insight Global

Insight Globalcambridge, on, ca
Full-time

Insight Global is looking for an experienced Operational Risk Consultant to support a risk management function on a contract basis.The ideal candidate brings hands‑on expertise in conducting risk a...Show more

 • Promoted

Customs Compliance Team Leader

Elby Professional RecruitmentCambridge, Region of Waterloo, CA
Full-time

Elevate your career as a Customs Compliance Supervisor with a leading transportation firm.This role emphasizes leadership and requires a strong understanding of customs regulations to efficiently m...Show more

 • Promoted

Digital Systems Innovation Lead

Aecon Group Inc.Cambridge, Region of Waterloo, CA
Full-time

Lead digital transformation initiatives in nuclear power as a Systems and Automation Lead.Drive AI integration and automation strategies while collaborating with stakeholders to enhance operational...Show more

 • Promoted

Workday Integrations Lead

Focus on WDguelph, on, ca
Full-time

Here at Focus Cloud, we are looking for a Workday Integrations Lead to join our customer on an exciting new project on a Contract basis.We’re supporting a major Workday programme and are seeking a....Show more

 • Promoted

Cybersecurity Instructor

ABM CollegeKitchener, Region of Waterloo, CA
Part-time

Edison College Canada is a renowned institution dedicated to providing high-quality education and industry-relevant training across various sectors.We are seeking an energetic and detail-oriented I...Show more

 • Promoted

Senior Treasury Lead — Drive Donor Funds & Compliance

University of GuelphGuelph, ON, CA
Full-time

A leading educational institution is seeking a Senior Treasury Lead to manage donations and ensure compliance with regulations.The role involves mentoring staff, analyzing financial data, and overs...Show more

 • Promoted

IT Auditor: Controls & Risk Analyst

ATS CorporationCambridge, Region of Waterloo, CA
Full-time

A leading automation solutions provider in Cambridge is seeking a Corporate IT Auditor to analyze and assess IT landscape, ensuring data and processes run efficiently.Candidates should have 2-4 yea...Show more

 • Promoted

Senior Business Analyst - Agile IT & Backlog Lead

Rubicon PathGuelph, ON, CA
Full-time

A leading consulting company is seeking a Senior Business Analyst in Guelph.The role involves providing comprehensive business analysis services, facilitating requirements gathering sessions, and c...Show more

 • Promoted

Manager, Governance Risk and Compliance

KPMG LLP CanadaKitchener, Region of Waterloo, CA
Full-time

We are looking for dynamic professionals to join our growing Governance, Risk and Compliance Services (GRCS) practice at the Manager level.Our Risk Services - Governance, Risk and Compliance Servic...Show more

 • Promoted

Information Technology Security Analyst

Randstad DigitalKitchener, Region of Waterloo, CA
Full-time

Vulnerability Management Analyst - Info Sec (Contract Position).Must be eligible to work in Canada.Hybrid position, 3 days/week onsite either in Kitchener or DT Toronto office.Looking to hire a Jun...Show more

 • Promoted

Dynamic IT Director Shaping ERP and Digital Transformation

Snackruptors Inc.Cambridge, Region of Waterloo, CA
Full-time

Transform the technology landscape as an IT Director focusing on ERP and infrastructure.Oversee operations, drive digital initiatives, and ensure organizational success with scalable solutions.As t...Show more