-
Hays

Information Technology Security Analyst

Hays
Canada · Full-time · Mid-Senior

Job Title: IT Risk & Compliance Analyst (Senior)

Work Model: Hybrid – 3 days onsite

Location: Mississauga, ON

Role Type: Full Time

Pay Range: 100k-120k


Role Overview


Looking for a senior IT Risk & Compliance professional to help run and strengthen its enterprise IT risk and compliance program. This role works closely with leadership to ensure technology risks are identified, controlled, and compliant with regulatory, internal, and client requirements in a highly regulated environment.


Key Responsibilities

  • Lead execution of the IT Risk & Compliance program across infrastructure, applications, and cloud platforms.
  • Maintain the IT risk register and ensure risks, controls, and trends are current and well documented.
  • Prepare IT risk reporting, including dashboards, KRIs, KPIs, and audit materials.
  • Perform control testing, identify gaps, and validate remediation actions.
  • Act as the main IT risk contact for internal audits, external audits, client assessments, and third‑party reviews (PCI DSS, ISO 27001, CCM, etc.).
  • Review audit evidence to ensure accuracy, completeness, and traceability.
  • Execute ongoing compliance activities such as access reviews, firewall reviews, SOC reports, and exception tracking.
  • Review results of penetration tests and vulnerability assessments and track issues to closure.
  • Collaborate with Legal, Privacy, Vendor Management, Security, and Enterprise Risk teams.
  • Review IT policies and solution designs to ensure alignment with security and control requirements.


What You Need

  • 5+ years of hands‑on experience in IT Risk, IT Compliance, IT Audit, or Information Security.
  • Experience working in banking, financial services, or other regulated environments.
  • Strong knowledge of IT risk and control frameworks (PCI DSS, NIST, ISO 27001, COBIT, SOC 2, CSA CCM).
  • Experience with control testing, audit support, and risk reporting.
  • Familiarity with GRC tools for risk, controls, and issue management.
  • Relevant certifications (CISA, CISSP, CISM, CRISC, etc.) are a strong plus.

Key Skills

Ranked by relevance

pci dss dss firewall cissp cloud cisa cism nist
Login to Apply
Posted
Apr 16, 2026
Type
Full-time
Level
Mid-Senior
Location
Mississauga
Company
Hays

Industries

IT Services IT Consulting

Categories

Information Technology

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
Atruvia AG
Related

System Engineer/Site Reliability Engineer (m/w/d)

2026-06-09

Full-time
Not Applicable
Germany
IT Services
Engineering
View Job Details
Thinkport GmbH
Related

DevOps Engineer (all genders)

2026-05-29

Full-time
Associate
Germany
IT Services
Information Technology
View Job Details
STACKIT
Related

Fullstack Engineer (m/w/d) - Android & Kotlin

2026-05-22

Full-time
Not Applicable
Germany
IT Services
Engineering