Назад
Company hidden
5 дней назад

Information Security Consultant I

80 000 - 100 000CAD
Формат работы
hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Canada
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Information Security Consultant I (Audit & Compliance): Coordinating SOC 2 Type II and PCI DSS audits, validating controls, maintaining evidence, and tracking remediation activities for financial technology products with an accent on audit readiness, regulatory requirements, and customer assurance. Focus on testing control effectiveness, supporting regulatory and customer assessments, and building accurate compliance reporting across business units.

Location: Hybrid Waterloo office, Canada

Salary: 80,000–100,000 CAD per year

Company

hirify.global develops API-first digital banking, account opening, and branch solutions for financial institutions.

What you will do

  • Support assigned compliance programs, audit engagements, and annual SOC 2 Type II and PCI DSS assessments.
  • Coordinate audit evidence collection, documentation, workpapers, repositories, and compliance libraries.
  • Partner with control owners to validate control design and operating effectiveness.
  • Track audit findings, risks, corrective actions, and remediation activities through closure.
  • Assist with customer security assessments, due diligence requests, compliance questionnaires, regulatory examinations, and internal reviews.
  • Prepare audit status reports, compliance metrics, and management reporting while supporting continuous compliance improvement.

Requirements

  • Bachelor’s degree in Information Systems, Cybersecurity, Business, Accounting, Finance, or a related field.
  • 3–7 years of experience in audit, compliance, information security, risk management, or governance.
  • Experience supporting or managing SOC 2 Type II audits and PCI DSS compliance assessments.
  • Knowledge of banking and financial services regulatory requirements, including FFIEC guidance and GLBA.
  • Understanding of control testing, evidence collection, and audit readiness processes.
  • Ability to work in a hybrid Waterloo office environment, with strong organization and communication skills.

Nice to have

  • Experience in banking, fintech, or financial technology organizations.
  • Certifications such as CISA, PCI ISA, CRISC, CISM, or CIA.
  • Experience with customer-facing compliance and assurance activities.
  • Familiarity with NIST CSF, SOC 2 Trust Services Criteria, and PCI DSS control frameworks.

Culture & Benefits

  • Collaborate with Information Security, Technology, Product, Legal, Operations, auditors, control owners, and business stakeholders.
  • Contribute to building trust with customers, auditors, and regulators.
  • Help strengthen the security, compliance, and resilience of products and services used by financial institutions.
  • Support accurate reporting, timely remediation, and strong audit readiness across business units.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →