Key Responsibilities
- Assist in the planning, development and operationalization of Technology GRC programs that are consistent with the organization's mission and goals.
- Ensure compliance with internal policies, standards and regulatory or other external requirements.
- Conduct risk assessments and control gap analyses; support the development and implementation of mitigation strategies.Ensure controls are monitored effectively and evidence is appropriately captured.
- Conduct regular compliance audits and risk reviews to ensure alignment with internal policies, industry standards, and applicable laws and regulations.Provide training and guidance to staff on compliance matters.
- Participate in training delivery, communication and outreach on behalf of IT GRC.
- Support partnerships and effective relationships with key internal stakeholders, including audit, business services, finance, human resources, legal services and information security.
- Effectively represent Technology GRC.
- Support IT Service Management (ITSM) practices, including Change Management and Service Request Management.
- Support the IT Measurement Program and the delivery of timely and accurate reporting.
- Identify opportunities for continuous improvement.
- Collaborate with various departments to ensure a cohesive risk management approach.
- Manage the Technology department's budget with direction from Technology Leads, including financial reporting, invoice management and efficient allocation of resources.
- Forecast financial trends and prepare budget reports.
- Ensure efficient allocation of resources and cost management.
Skills, Knowledge & Expertise
- At least 5 to 7 years experience in a technology governance, risk, compliance or service management role.
- Undergraduate degree in Computer Science/Engineering or equivalent experience.
- Certification in risk and/or compliance is preferred .
- Understanding of IT GRC frameworks (e.g., COBiT, ITIL).
- Technical proficiency in working with GRC platforms (e.g., OneTrust, Drata, ServiceNow) .
- Understanding of common IT compliance frameworks (e.g., SOC 2, ISO).
- Superior analytical skills in collecting, interpreting, and using data to support decisions and improve processes.
- Excellent time management and organizational skills, with the ability to prioritize tasks and meet deadlines.
- Strong communication skills, both verbal and written, with the ability to convey ideas clearly and effectively.
- Strong collaboration skills, with the ability to work across multiple stakeholder groups.
- Attention to detail and accuracy, ensuring high-quality and thorough completion of tasks.
- Proficient in problem-solving and critical thinking, with the ability to analyze complex situations and make informed decisions.
- Demonstrates a positive, proactive attitude with the ability to work both independently and collaboratively, quickly becoming a subject matter expert and operating with a high degree of autonomy.
- Experience in procurement an asset.
- Experience with Jira an asset.
- Proficiency in financial management and reporting tools.