Senior Compliance Analyst, Corporate Security Management (GLOBAL SECURITY)
On-site · Toronto, Ontario, Canada
Job Summary
Senior Compliance Analyst responsible for design and execution of compliance testing, control validation, and evidence management across Physical Security and Insider Risk domains; monitors adherence to enterprise policies and standards, prepares audit-ready reporting, and collaborates with global teams to align with OSFI, ISO 27001, NIST, SOC 2, GDPR, CSA, PIPEDA, and SOX requirements while driving remediation and governance improvements.
Required Qualifications
- 4+ years of compliance, internal audit, Governance or Risk experience in financial services or banking
- Experience with control design, compliance testing methodology, and evidence documentation
- Knowledge of regulatory frameworks relevant to physical security, insider risk, and/or vendor risk management (OSFI, ISO 27001, NIST, SOC 2, and GDPR, CSA, PIPEDA, SOX, or equivalent)
- Familiarity with enterprise-level GRC and supplier risk tools (e.g., Archer, ServiceNow, or similar)
- Strong written and oral communication skills; ability to translate technical compliance concepts for diverse audiences
- Detail-oriented with strong organizational and project management capabilities
- Experience in a corporate security or physical security compliance environment
- Experience working in a matrixed organization with global teams and varied regulatory jurisdictions
Desired Qualifications
- CIA (Certified Internal Auditor) or CISA or equivalent
- 4+ years of compliance, internal audit, governance or risk experience
- experience with regulatory frameworks relevant to physical security, insider risk, and/or vendor risk management (OSFI, ISO 27001, NIST, SOC 2, GDPR, CSA, PIPEDA, SOX, or equivalent)
- Familiarity with enterprise-level GRC tools (e.g., Archer, ServiceNow, or similar)
- strong written and oral communication skills; ability to translate technical compliance concepts for diverse audiences
- experience working in a matrixed organization with global teams and varied regulatory jurisdictions
- Nice to have CIA, CISA, or equivalent professional certification
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.