
Sr. Security Compliance Analyst
- Waterloo, ON
- Permanent
- Full-time
- Continuously monitor the ongoing effectiveness of the organization’s control environment with the team’s quarterly cadence, ensuring work contributes to operational improvement.
- Be a key contributor in the delivery of security compliance certification projects, supporting customer and regulatory requirements.
- Model integrity and excellence, influencing best practices within the team and leveraging expertise.
- Serve as a technical lead, recognized for growing domain expertise, embracing change, and navigating ambiguity with resiliency.
- Advise internal stakeholders by translating complex compliance framework requirements into practical implementations in a technical cloud environment.
- Keep customer value in focus, using input from others to determine appropriate technical solutions and making timely decisions without compromising trust
- Possess 5-8 years of previous professional experience.
- Compliance Frameworks: ISO 27001/27017/27018, SOC 1/2/3, HIPAA, NIST 800-53, PCI-DSS
- Information Security Principles: Change Management, Identity Access Management, Risk Management, Incident Management, Encryption
- GRC Solutions: Archer, MetricStream, ServiceNow, Onspring, OneTrust
- Databases: SQL, Oracle, PostgreSQL, MongoDB, MySQL, NoSQL, Cassandra, Elasticsearch
- Cloud-Based Technologies: AWS, GCP, Azure, SaaS and PaaS
- CI/CD: GitLab; Jenkins; Kubernetes, Docker