Senior/Manager - Digital Risk DevOps
- Toronto, ON
- Permanent
- Full-time
- Design, implement, and optimize IT risk, compliance, and control frameworks.
- Assess technology environments, IT processes, and controls, including remediation and control implementation.
- Execute IT internal audits and compliance assessments (e.g., NIST, NI 52-109, SOX 404), evaluating control design and operating effectiveness.
- Support IT General Controls, automated business controls, and Information Produced by the Entity (IPE).
- Apply data-driven risk solutions across DevSecOps, data governance, data quality, data security, and data platforms.
- Use analytics and visualization tools to develop scalable insights and risk solutions.
- Support adoption of emerging technologies, including cloud platforms, automation, and Generative AI.
- Partner with Product, Engineering, Operations, and Audit teams to improve control environments through automation and process improvement.
- Establish appropriate risk and control frameworks for new products and business changes.
- Engage directly with clients and engagement leadership in both in-person and virtual settings.
- Experience with internal controls readiness assessments and control implementation
- Proficiency in NI 52-109 and SOX standards
- Experience in data architecture, data management, data engineering, data science or data analytics
- Experience in building analytical queries and dashboards using SQL, noSQL, Python etc.
- Proficient in SQL and quantitative analysis, you can deep dive into large amounts of data, draw meaningful insights, dissect business issues and draw actionable conclusions
- Knowledge of tools in the following areas:
- Scripting and Programming (e.g., Python, SQL, R, Java, Scala, etc.)
- Big Data Tools (e.g., Hadoop, Hive, Pig, Impala, Mahout, etc.)
- Data Management (e.g., Informatica, Collibra, SAP, Oracle, IBM etc.)
- Predictive Analytics (e.g., Python, IBM SPSS, SAS Enterprise Miner, RPL, Matl, etc.)
- Data Visualization (e.g., Tableau, PowerBI, TIBCO-Spotfire, CliqView, SPSS, etc.)
- Data Mining (e.g., Microsoft SQL Server, etc.)
- Cloud Platforms (e.g., AWS, Azure, or Google Cloud)
- Ability to analyze complex processes to identify potential financial, operational, systems and compliance risks across major finance cycles
- Ability to assist management with the integration of security practices in the product development lifecycle (DevSecOps)
- Experience with identifying potential security risks in platform environments and developing strategies to mitigate them
- Experience managing IT audits, internal controls, or technical data initiatives.
- Experience with process redesign, automation, or optimization.
- Experience securing cloud-based applications and services.
- Bachelor's or Master's degree in a relevant discipline.
- Professional certification preferred (e.g., CISA, CISSP, CISM, CPA, CA).
- Minimum 3 years of relevant experience in IT risk, audit, data analytics, or compliance.
- Willingness to travel up to 50% and work extended hours when required.
- Successful candidates must be willing to work in excess of standard hours when necessary.
- Valid passport.
- Support and coaching from some of the most engaging colleagues in the industry
- Learning opportunities to develop new skills and progress your career
- The freedom and flexibility to handle your role in a way that's right for you
- Toronto: $110, 000 to $160, 000