GRC Specialist

Miovision
Canada
$80K-$120K a year (estimated)
Remote
Full-time

Position Summary

The GRC Specialist is a key member of the Miovision Security team and is responsible for managing innovative governance, risk and compliance (GRC) practices to identify and mitigate security risks.

This role is critical to help the company defend our critical information and systems, understand the company’s information security environment, and help take the appropriate measures to protect our business and platforms.

This hands-on position will work closely with all teams across the company to ensure our GRC practices are defined, operated and maintained using leading security practices.

Ultimately, this role will help make Miovision systems and data more secure.

Key Accountabilities

  • Lead the implementation and continual improvement of the Miovision GRC program, and be the subject matter expert on compliance and risk management practices.
  • Achieve and maintain compliance with frameworks relevant to Miovision operations and customers, such as ISO 27001, SOC 2, NIST CSF, and NIST SP 800-53.
  • Lead internal adoption of security policies, procedures, standards and best practices to ensure secure business operations, including vendor assessments, threat and risk analyses, and internal audits.
  • Lead internal security audits and coordinate with external security auditors to review Miovision IT and security processes, risks, controls, and compliance against selected frameworks to assess capability maturity and identify gaps in design and execution.
  • Actively participate in and support the Miovision data governance program.
  • Proactively communicate updates, metrics, issues and recommendations to stakeholders and senior management.
  • Assist with establishing a coordinated response to complex cyber-attacks that threaten the company’s information and assets.
  • Actively participate in security operations, including software updates, patching, and incident response, and be a security subject matter expert to assist others across the organization, as needed.

Skills / Qualifications

  • Working knowledge of and experience with industry compliance and risk management frameworks, including ISO / IEC 27001, SOC 2, NIST CSF, and NIST SP 800-53.
  • Hands-on experience in managing an effective GRC program or related compliance projects, including championing the activities, performing assessments and internal audits, and writing clear documentation (policies, procedures, reports, etc.).
  • Demonstrated analytical and pragmatic approach to cybersecurity, compliance and risk.
  • Proven ability to collaborate and affect change, with a focus on performance excellence and continuous improvement.
  • Excellent written and verbal communication skills, including the ability to communicate effectively across an organization.
  • 2+ years of experience in compliance or risk management roles.
  • 3+ years of experience in cybersecurity roles.

Additional Assets

  • Passion for security and learning.
  • Certified Information Systems Security Professional (CISSP); Certified in Governance, Risk and Compliance (CGRC); Certified in Risk & Information Systems Control (CRISC) or similar certification.

Perks and Benefits

Note : We do offer flexible onsite and remote work options. Our Benefits are designed to reflect this and include :

  • Comprehensive health benefits starting on day one
  • RRSP Matching Plan
  • Variable Incentive Plan

We extend all three-day weekends to four-days and provide a Holiday Shutdown in December

  • Virtual Healthcare Service providing employees and their families access to healthcare providers 24 / 7
  • Internet subsidy and a remote work allowance
  • Enhanced paternity and maternity leaves
  • Unlimited vacation policy
  • Wellness offerings (Fitness, Mindfulness)

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, colour, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

Please indicate if you require accommodation on your application, and our team will work with you to meet your accessibility needs.

To all recruitment agencies : Miovision does not accept agency solicitation or resumes. Please do not forward resumes to our HR alias e-mail address, to any Miovision employee, or to other Miovision e-mail addresses.

Miovision will not pay any fees related to unsolicited resumes.

19 days ago
Related jobs
Miovision
Canada
Remote

The GRC Specialist is a key member of the Miovision Security team and is responsible for managing innovative governance, risk and compliance (GRC) practices to identify and mitigate security risks. This hands-on position will work closely with all teams across the company to ensure our GRC practices...

Promoted
Procom
Canada

IT Technical Business Analyst. On behalf of our government client in Edmonton, Procom is searching for an IT Technical Business Analyst for a 5 month remote contract with occasional travel to Edmonton for meetings. IT Technical Business Analyst - Senior Job Details. ...

WONESE.
Canada

Preference is a Senior PM with experience on Client Service projects (not internal projects which are typical with PMs that work with Banks) – preference is with Outsourcing firms if possible. Require a Senior PM with Application Project experience with some Infrastructure PM experience (for example...

Macropus Global
Canada

Release planning, business systems analysis and documentation, business process reengineering, and business case development and status reporting. Business Systems Analyst (BSA) – All Levels, Full Time Permanent or Contract. Business Systems Analyst (BSA) – Full Time Permanent or Contract to:. Repor...

Affirm, Inc.
Canada
Remote

As a Merchant Risk Analyst, you will assess financial risk related to credit, fraud and identity associated with the merchants. You will also coordinate with cross-functional partners to assess non-financial risk - brand, reputational, legal and compliance risk. Assess brand, compliance, fraud and f...

BMO
Canada, Canada

Provides leadership within IAM Security Governance and Security best practice in support of businesses/groups and BMO overall. Identifies opportunities to strengthen the capability of the information security organization at BMO, such as: sharing expertise to promote technical development, mentoring...

National Port Security Services Inc.
CA

Education: Secondary (high) school graduation certificate.Experience: 7 months to less than 1 year.Be the point of contact when in need to handle emergency situations.Prepare and submit progress and other reports.Resolve work problems, provide technical advice and recommend measures to improve produ...

Ciena Canada, Inc.
Canada,Remote
Remote

Reporting to the Senior Manager of Field Service Project Management, as the Services Project Manager, you will be responsible for overall management of implementation of medium to large size EF&I projects, with medium/high complexity, within a Customer network. Maintain project in project management...

Deel
Canada

There’s never been a more exciting time to join Deel — the market leader in international payroll and compliance. Collaborates with Product Specialists to understand country-specific payroll compliance requirements and translate them into technical specifications for development of the country’s pay...

LEVIO
Remote, Canada
Remote

Have a minimum of 4 years of experience as a business analyst, project manager or equivalent. Ensure the different key stages of the project's completion: needs analysis, translation of business requirements into technical specifications, design of the solution, documentation, delegation of tasks, c...