Hiring Technology Risk Analyst (Information Security or Technology Risk program delivery in large and complex Banking / Financial Services / Insurance domain IT Environments; Technology Risk Management, Information Security, Identity and Access Management, Governance, Risk, Compliance, and Security frameworks such as ICOFR, NIST, IFRS17, OSFI, SOC2, ISO, CIS, SWIFT, PCI, and System Analysis like process maps and workflow diagrams, RACI matrices, compliance requirements, and gap analysis). Preference will be given to candidates whose resumes clearly meet the required experience and requirements outlined below. Professionals with relevant experience may send their updated resume to Sriram.Parasa@brainhunter.com
Requirement Summary
- Job-Role/Title: Technology Risk Analyst (Minimum 8+ years of relevant experience required)
- Anticipated Start Date: 4 weeks from offer (pending background checks)
- Job Type: Contract Opportunity. Initial contract for 14 months, with good possibilities of further extensions.
- Job Location: Toronto, Ontario - M5G 1R8, Canada.
- Work Style: Hybrid Work - 3 days per week in the office required (Tuesday and Thursday are mandatory).
- Work Hours: 37.5 hours/week, typically Monday-Friday, 9:00 am to 5:00 pm
- Contractor to work extra time or be on-call: Yes, on-call rotation (Monday to Sunday) as required.
- Rate Cap: Up to CA$ 110/Hr. (on Incorp), depending on relevant experience. The final compensation will be negotiated between the contractor and recruiter based on experience and engagement terms.
- Interview: Teams interviews; 2 interviews
Required Experience, Skills, and Qualifications:
- Experience working on Information Security or Technology Risk projects is a must-have asset. These may include projects focused on delivery of solutions related to Technology Risk Management, Information Security, Identity and Access Management, Governance, Risk, and Compliance.
- Experience and proficiency with consolidated internal control frameworks mapped to industry frameworks such as ICOFR, NIST, IFRS17, OSFI, SOC2, ISO, CIS, SWIFT, PCI.
- Experience with ServiceNow IRM is preferred
- 5-10 years’ experience as a business process and/or systems analyst documenting the following: process maps and workflow diagrams, RACI matrices, compliance requirements, and gap analysis
- Experience with IT project methodologies, processes, and practices; experience in both waterfall and agile methodologies is an asset.
- Excellent oral, written, and interpersonal communication skills, with the ability to translate complex technical subject matter into business terms for executive audiences, succinctly and professionally. • Strong analytical and problem-solving skills, particularly critical thinking, with a strong attention to detail.
- Customer-centric approach to problem-solving with the ability to collaborate, resolve conflicts, and reach consensus with others.
- Ability to work in a virtual team environment, facilitating and contributing to work across geographies and across other functional teams
- Strong organizational skills with the ability to manage multiple competing workstreams and priorities under time pressure without compromising quality.
- Ability to adapt to changing priorities.
- Ability to influence and negotiate win-win outcomes among cross-functional teams.
- Ability to grasp concepts quickly and to work independently with minimal direction.
- Certifications/Education: University or College education in Computer Science, Computer Engineering, Management Information Systems, Commerce, Business Administration or a related field, or equivalent combination of education and experience
___________________________________________________________
Position Overview: In this role, the contractor will be a strong collaborator who works closely with project team members, business partners, and technical experts. The contractor will use their strong analysis and critical thinking skills to understand technology risks and control objectives; elicit, document, and communicate control designs; and partner with control owners to test control effectiveness.
- Lead the design, implementation, and testing of technology controls, ensuring alignment with internal standards and external frameworks (e.g., ISO 27001, ICOFR, SOC 2, SWIFT, PCI DSS)
- Identify and document current state control procedures and work with control owners to build the proposed future state by identifying control gaps, improvement opportunities, and impacts due to technology implementations, while assessing impacts to other processes/controls, stakeholders, and systems.
- Lead the development of control test scripts, ensuring alignment with internal standards and external frameworks, and facilitate control test execution
- Support the development of control test automation scripting
- Serve as a subject matter expert across key technology control domains, including information security, IT operations, technology resiliency, and systems delivery
- Support ongoing monitoring of compliance with policies and standards, and assist in promoting and reinforcing adherence across the organization
- Contribute to the identification and assessment of technology risks and controls across the enterprise
- Evaluate the adequacy of issue remediation plans and validate control design and operating effectiveness
- Lead and facilitate stakeholder meetings, walkthroughs, workshops, and reviews of deliverables.
- Develop collaborative partnerships and provide leadership across a variety of stakeholder groups, ensuring that information collected from multiple sources is critically evaluated, conflicts are resolved, information is clearly communicated at the appropriate level of detail, and requests are distinguished from the underlying business needs with the goal of driving to consensus.
___________________________________________________________
How to Apply: Please email your up-to-date Resume/CV to Sriram.Parasa@brainhunter.com
Thank you for your interest in working with us. We'll contact only those candidates who are shortlisted for the next steps in the hiring process.
Thank you, and have a wonderful day!