Search jobs > London, ON > It security analyst

IT Security Compliance Analyst

CARFAX
London, Ontario
Full-time

Description

Join Team CARFAX as an IT Security Compliance Analyst

The IT Security Compliance Analyst is responsible for ensuring that the organization’s information systems and practices comply with applicable regulatory requirements, industry standards, and internal policies.

This role involves assessing security controls, evaluating risk, conducting audits, and providing recommendations for improving the security posture of the organization.

The IT Security Compliance Analyst works closely with various departments to ensure that compliance requirements are understood and met.

At CARFAX, we believe in the power of teamwork and value in-person interactions so that we can collaborate and thrive together.

This position will require 2 in office days subject to change with future business needs.

What you’ll be doing :

  • Conduct regular security assessments and audits to ensure compliance with regulatory requirements and internal policies.
  • Monitor and document compliance with standards such as NIST, PCI-DSS, SOX, SOC2 and other relevant frameworks.
  • Manage internal and external security assessments and risk analysis; while identifying, assessing, and documenting information security risks and recommend mitigation strategies.
  • Assist in the development, review, and maintenance of IT security policies, standards and procedures to address compliance requirements.
  • Assist in the investigation of security incidents and breaches to ensure compliance with relevant regulations and standards.
  • Develop and deliver security compliance training programs and materials to ensure employees are aware of their responsibilities.
  • Work with cross-functional teams, including IT, legal, HR, finance, and business units, to address compliance issues and support business objectives.
  • Prepare and deliver compliance reports and presentations to management and relevant stakeholders.

What we’re looking for :

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, Business, or a related field.
  • Professional certifications such as CISSP, CISA, CRISC, CISM, or equivalent preferred.
  • Minimum of 3-5 years of experience in IT security, compliance, audit, or a related field.
  • In-depth knowledge of regulatory requirements, industry standards, and best practices related to information security and compliance.
  • Strong analytical, problem-solving, and critical-thinking skills.
  • Excellent written and verbal communication skills, with the ability to articulate complex compliance issues to diverse audiences.
  • Detail-oriented with strong organizational and project management skills.
  • Ability to work independently and as part of a team in a fast-paced environment.
  • Proficiency with compliance management tools and technologies.

What’s in it for you :

  • Competitive compensation, benefits and generous time-off policies
  • 4-Day summer work weeks and a winter holiday break
  • RRSP matching
  • Annual bonus program
  • Casual, dog-friendly, and innovative office spaces
  • For a comprehensive list of benefits, please visit our website :

Don’t just take our word for it :

  • 10X Virginia Business Best Places to Work
  • 10X Washingtonian Great Places to Work
  • 9X Washington Post Top Workplace
  • 3X Louis Post-Dispatch Best Places to Work
  • 25 days ago
Related jobs
Promoted
freelance.ca
Canada
Remote

The IT Security and Compliance Lead is responsible for leading and overseeing all aspects of IT security and compliance within the organization. IT security principles, and experience with compliance standards. IT security, compliance, strong. This includes leading projects aimed at ensuring complia...

CARFAX
London, Ontario

The IT Security Compliance Analyst works closely with various departments to ensure that compliance requirements are understood and met. The IT Security Compliance Analyst is responsible for ensuring that the organization’s information systems and practices comply with applicable regulatory requirem...

Jobber
Canada
Remote

This opportunity fits those earlier in their security career, new graduates with internship experience, or those looking to pivot into cybersecurity who bring transferrable SaaS skillsets including strong collaboration and communication skills. Our Security Analyst, GRC, focuses on the governance si...

Foilcon
La Gran YajaToronto, Ontario, Canada

Conducts ongoing business analysis activities and analysis within all phases of the project life cycle, including initial technical requirements, detailed plan of business analysis activity, business modeling, analysis of business transformation, new business development and acquired solutions, cont...

N. Harris Computer Corporation - USA
Ontario, Canada
Remote

As the Cloud Security Analyst, you will utilize your wide area of expertise in access control management, cybersecurity, vulnerability management, risk management, incident management, security frameworks and other areas to provide security support for the Harris group of companies. Work with Inform...

Halton Region
Ontario, Ontario, Canada

Reporting to the Digital Senior Security Advisor, the Technology Security Analyst is responsible for the implementation and operation of security controls as defined in five of the six pillars the NIST CSF and relevant industry specific security frameworks (PCI-DSS etc. On going review and investiga...

BizLink
Ontario, Canada , North America

Proven experience as an IT Analyst, preferably with ERP systems. Familiarity with data privacy standards and cybersecurity best practices. We are always looking for positive business relationships and win-win situations and have many decades-long supplier partnerships with global leaders in the vari...

LEA
Canada

Develop project plans by defining project timelines, creating schedules, and cost estimates, and overseeing project progress to make sure deliverables are met on time within the scope and budget, for both internal multi-disciplinary teams and sub-consultants. Coordinate within the design team and se...

TEK-PRO IT SOLUTION INC
London, Ontario

Education: College, CEGEP or other non-university certificate or diploma from a program of 1 year to 2 years. Confer with clients to identify requirements. Assess physical and technical security risks to data, software and hardware. Develop policies, procedures and contingency plans to minimize the ...

Egis
Canada

Acting as a senior project manager on large multidiscipline detail design highway and bridge projects for MTO. Senior Project Manager - Highway Engineer. MTO design projects in highway design and project management. With operations in countries, Egis places the expertise of its 18, employees at the ...