IT Security Specialist V – IT Risk & GRC
**Location:** Toronto or Mississauga, ON – Hybrid
**Duration:** 6 Months
**Industry:** Banking / Financial Services
## About the Role
- We are seeking a senior **IT Risk / GRC professional** to support Technology Risk, Governance, Audit, Regulatory, and Information Security initiatives within a regulated financial-services environment. This is an individual contributor role focused on **audit/regulatory issue remediation, control oversight, risk assessment, and independent challenge**.
## Key Responsibilities
- Lead assessment and validation of **audit and regulatory findings and remediation plans**.
- Provide independent challenge and oversight of **IT Risk, GRC, and Information Security controls**.
- Evaluate remediation evidence, perform **control testing and operating effectiveness assessments**, and support issue closure.
- Conduct **root cause analysis, risk assessments, and control design reviews**.
- Partner with Technology, Risk, Audit, Compliance, and senior stakeholders across the **Three Lines of Defense
- Identify emerging technology risk themes and provide governance and risk insights to management.
- Support continuous improvement initiatives using **Agile/Lean, Power BI/Apps, Python, AI/ML, or other automation tools** where applicable.
- Prepare clear, concise **risk, governance, audit, and management reporting**.
## Must-Have Skills
- **10+ years of IT Risk, Technology Risk, IT Audit, or GRC experience**.
- Strong experience within **banking, financial services, or other regulated industries**.
- Strong knowledge of **IT Governance, Risk & Compliance (GRC)** frameworks.
- Hands-on experience with **audit/regulatory finding remediation and validation**.
- Strong understanding of **audit testing, evidence evaluation, control testing, and operating effectiveness**.
- Experience with **root cause analysis and issue management**.
- Excellent **written and verbal communication** skills.
- Strong attention to detail and ability to manage multiple stakeholders and priorities.
- University degree or equivalent relevant experience.
- ## Certification Required/Preferred:**
- * CRISC / CISM / CISA or equivalent experience
**Nice to Have:**
- ServiceNow / ServiceNow GRC or IRM
- AI Security / AI Risk experience
## Why This Role?
- Join a highly collaborative Technology Risk and Security environment where you will work closely with **Technology, Risk, Audit, Compliance, and senior leadership** to strengthen governance, controls, and risk-management practices.