IT Security, Risk and Compliance Manager - EZRA
Toronto, Canada Apply for RoleAn important component of this role will be to respond to client questionnaires and contract reviews relating to IT Security, Risk and Compliance, and conduct IT Security reviews for proposed IT vendors. The successful candidate will manage communication with clients and colleagues relating to this work and be responsible for achieving and reporting against Service Level Agreements They will maintain a library of resources to ensure that responses to common questions are managed efficiently. As part of the process, remediation requirements will be recorded and tracked.
This role will act as an advisor and be responsible for IT security oversight of EZRA’s IT operations and applications, with particular emphasis on the use of AI.
The successful candidate will also support and co-ordinate activities to maintain ISO 27001 certification as part of the Group’s program, and initiate and maintain System and Organization Controls (SOC reporting) as required.
The job holder will monitor and manage all security incidents for EZRA, lead investigations on behalf of IT Leaders and co-ordinate remedial actions to prevent recurrence wherever possible.
- Be the recognized expert in the field of Information Security within the EZRA organization.
- Provide oversight and guidance for appropriate security controls of AI technologies in EZRA.
- Act as the main point of contact and coordination for all client IT Security questionnaires, contract reviews and IT vendor reviews for EZRA.
- Complete responses to client questionnaires in a timely manner and ensure that service level agreements are achieved.
- Review and mark-up IT security components of client contracts in a timely manner to ensure that service level agreements are achieved.
- Join discussions with clients to explain EZRA’s security posture and support client audits.
- Review and document outcomes for IT Security reviews of vendors in a timely manner and ensure that service level agreements are achieved.
- Considering feedback from stakeholders, maintain and develop the processes to receive, prioritize, complete and communicate responses to client IT Security questionnaires, IT Security reviews of client contracts and proposed IT vendor reviews.
- Maintain records of client remediation requirements and progress towards resolution.
- Prioritize incoming questionnaires and vendor reviews based on business value, reputational importance and project deliverables.
- Continuously improve the library of resources containing common responses to standard questions and supporting evidence for client questionnaires.
- Prepare reports and analyses documenting progress and adverse trends, make appropriate recommendations and draw conclusions when needed.
- Liaise with other Assurance functions (Internal and External Auditor), coordinate security audits and ensure that remediation plans are defined and implemented in line with agreed dates.
- Participate in discussions around new/existing initiatives, assessing and consulting from Security, Compliance and Risk perspectives.
- Provide support as required for all other security related matters as reasonably requested by the Line Manager.
- University degree preferably in a technical subject or comparable education
- CISSP, CISA, CISM or similar certification preferred
- 3-5 years’ experience in a similar role within a Global Organization
- Demonstrable knowledge of Risk Management frameworks and Information Security standards (such as NIST 2, ISO 27001, SOC2, COBIT).
- Demonstrated experience and exposure in the international Security, Risk and Compliance arena.
- Ability to communicate technical issues in simple terms to support a variety of technical and non-technical business roles.
- Strong collaborator, ability to build pro-active, co-operative working relationships with customers, peers and key stakeholders based on respect and teamwork.
- Able to share feedback in a constructive manner to cultivate a continuous improvement culture.
- Ability to deliver successful outcomes under pressure and to manage crisis situations effectively.
- Able to evaluate information, identify key issues and formulate conclusions based on sound, practical judgment, experience and common sense.
- Experience with, and sensitivity for, diverse cultures.
- Ability to conduct both written and verbal business communication effectively in English is essential.
- Any additional language is a plus especially French, Spanish, German or Italian.
Posting date: 11-12-2024
Get to Know Us
Bringing together the complementary strengths of our various brands, our team unites through a powerful mission – to match the right talent with the right opportunity. We create synergies that meet the Talent needs of our customers wherever they are in their journey delivered in a technology-enabled and human-driven experience. At LHH, you’ll be empowered to deliver on our purpose of future-proofing organizations and careers, enabling workforce transformation.
Diversity & Inclusion at LHH
We are committed to making the future work for everyone. As a people business focused on providing talent solutions and advisory services, we envision a world in which everyone has the chance to participate in the world of work. Our aim is to acknowledge and appreciate diverse perspectives, encouraging inclusive decision-making processes that value each colleague's contributions, skills, experience, and potential. We work actively to create the conditions that support a culture and work environment of belonging, trust, and participation. Our approach to diversity and inclusion is built around several pillars that underpin our work, including structural and conscious inclusion, leadership, and accountability.
Culture
We are a high-performing and diverse team of people from all over the world, working together to make the future work for everyone. Our culture is shaped by our people, who are the key to our success. It is our people that give us the ability to influence the changing world of work on a global level with solutions that are grounded in the understanding and experience of local contexts. Together we offer exciting career paths to candidates and bring the best talent to our clients. To make this possible, investing in our people, an open culture of communication, and individual opportunities for development are essential to us. There is a world of opportunity out there.
Learn more about LHH
We are the talent solutions business at the Adecco Group, an end-to-end solutions partner, addressing the skills and transformation needs of our customers to drive growth. Our mission is to match the right talent with the right opportunity. Bringing together the complementary strengths of our various brands, we create synergies that meet the needs of our customers wherever they are in their transformation journeys. As a member of the team, you’ll be empowered, inspired and energized to deliver on our purpose to future-proof organizations and careers by building the right capabilities and enabling workforce transformation. We reach high and strive for excellence because we know our work makes a difference.
Success profile
Are we the right fit for each other? Have a look at the traits we're looking for. (1 Beginner – 10 Expert)
-
Evolve with purpose Being passionate about meaningful work and ready to change the world.10
-
Win together Being able to build relationships through trust, transparency, and collaboration so that together we all succeed.8
-
Own it Being empowered to make decisions and take accountability for the results.10
-
Reach high Agile and adaptable - fast mover - ability to anticipate future client and candidates needs.9
-
Make it fun Delivering our purpose, staying energized and inspired, while having fun with colleagues.8
Join our Global Talent Community
When opportunity knocks make sure you hear it! Enter your details to join our talent community and sign up to automatic job alerts.
Our Terms of Use, Cookie Policy and Privacy Policy explain how we collect and use information about you and the rights you have. By submitting your information you acknowledge you have read those documents and consent to receive communications and email job alerts from the Adecco Group.
Our Terms of Use, Cookie Policy and Privacy Policy explain how we collect and use information about you and the rights you have. By submitting your information you acknowledge you have read those documents and consent to receive communications and email job alerts from the Adecco Group.