Assess and manage third-party and vendor security risk including vendor assessments and ongoing monitoring. * Collaborate with and advise internal departments to improve security-related risks and ...
Assess and manage third-party and vendor security risk including vendor assessments and ongoing monitoring. * Collaborate with and advise internal departments to improve security-related risks and ...
Manager, Information Security Risk
CA$124K - CA$152K/yr
This role is accountable for leading Threat Risk Assessments, AI security reviews, vendor and solution risk assessments, and architecture risk reviews to ensure technology initiatives are designed ...
Manager, Information Security Risk
CA$124K - CA$152K/yr
This role is accountable for leading Threat Risk Assessments, AI security reviews, vendor and solution risk assessments, and architecture risk reviews to ensure technology initiatives are designed ...
Contributes to the overall success of the Technology, Risk and Control Self-Assessment program ... Proficiency in data security, risk management & controls, security governance, and analytical ...
Contributes to the overall success of the Technology, Risk and Control Self-Assessment program ... Proficiency in data security, risk management & controls, security governance, and analytical ...
Conduct formal technology security risk assessments using Deloitte-aligned methodologies and industry standards (ISO 27005, NIST CSF, FAIR where appropriate). * Ensure risks are clearly documented ...
Conduct formal technology security risk assessments using Deloitte-aligned methodologies and industry standards (ISO 27005, NIST CSF, FAIR where appropriate). * Ensure risks are clearly documented ...
The Risk & Control Assessment function within GITR is responsible for identifying and assessing ... Security Management, Information Technology Security, Interpersonal Relationship Management, IT ...
The Risk & Control Assessment function within GITR is responsible for identifying and assessing ... Security Management, Information Technology Security, Interpersonal Relationship Management, IT ...
Risk Assessment Insurance Specialist
Toronto, ON · On-site
CA$55K - CA$90K/yr
As a Risk Assessment Insurance Specialist within RBC Wealth Management Financial Services Inc. (RBC ... Securities Investment Advisors (IA) with their insurance policy reviews. You will be a proactive ...
Risk Assessment Insurance Specialist
Toronto, ON · On-site
CA$55K - CA$90K/yr
As a Risk Assessment Insurance Specialist within RBC Wealth Management Financial Services Inc. (RBC ... Securities Investment Advisors (IA) with their insurance policy reviews. You will be a proactive ...
Information Security Specialist - Technology Asset Governance and Risk Management
Toronto, ON · Hybrid
CA$96K - CA$136K/yr
Position Overview The Information Security Specialist defines, develops and/or implements ... Experience working with technology and cyber risk frameworks, control assessments, key risk ...
Information Security Specialist - Technology Asset Governance and Risk Management
Toronto, ON · Hybrid
CA$96K - CA$136K/yr
Position Overview The Information Security Specialist defines, develops and/or implements ... Experience working with technology and cyber risk frameworks, control assessments, key risk ...
Director, Offensive Security
Toronto, ON · On-site
CA$138K - CA$181K/yr
Build scalable approaches for AI security testing, validation, and risk assessment. Improve Vulnerability Management * Drive vulnerability triage, prioritization, remediation, and retesting.
Director, Offensive Security
Toronto, ON · On-site
CA$138K - CA$181K/yr
Build scalable approaches for AI security testing, validation, and risk assessment. Improve Vulnerability Management * Drive vulnerability triage, prioritization, remediation, and retesting.
Senior Consultant, Information Risk
Toronto, ON · Hybrid
CA$113K - CA$163K/yr
Experience conducting security assessments, risk evaluations, IT controls reviews, or audit activities. * Strong understanding of cloud security and IaaS, PaaS, and SaaS environments. * Knowledge of ...
Senior Consultant, Information Risk
Toronto, ON · Hybrid
CA$113K - CA$163K/yr
Experience conducting security assessments, risk evaluations, IT controls reviews, or audit activities. * Strong understanding of cloud security and IaaS, PaaS, and SaaS environments. * Knowledge of ...
Director, Offensive Security
Toronto, ON · On-site
Build scalable approaches for AI security testing, validation, and risk assessment. Improve Vulnerability Management * Drive vulnerability triage, prioritization, remediation, and retesting.
Quick apply
Director, Offensive Security
Toronto, ON · On-site
Build scalable approaches for AI security testing, validation, and risk assessment. Improve Vulnerability Management * Drive vulnerability triage, prioritization, remediation, and retesting.
Our team performs risk-based information security assessments for new technologies and changes to existing IT-based solutions; we are accountable to identify threats for both the cloud-based and on ...
Our team performs risk-based information security assessments for new technologies and changes to existing IT-based solutions; we are accountable to identify threats for both the cloud-based and on ...
Technology Risk Assessment & Monitoring * Provide risk oversight, guidance, and effective challenge of technology and information security risk assessments conducted by Technology, Information ...
Quick apply
Technology Risk Assessment & Monitoring * Provide risk oversight, guidance, and effective challenge of technology and information security risk assessments conducted by Technology, Information ...
Utilize NIST and HTRA methodologies to rigorously assess, quantify, and communicate technical risks ... University Degree or College Diploma in Computer Science, Information Security, Risk Management, or ...
Utilize NIST and HTRA methodologies to rigorously assess, quantify, and communicate technical risks ... University Degree or College Diploma in Computer Science, Information Security, Risk Management, or ...
Manager, IT GRC
CA$160K - CA$185K/yr
Conduct risks assessments. Further enhance and mature the existing security and awareness framework to strengthen enterprise risk management, security & awareness, and compliance. Assist with ...
Manager, IT GRC
CA$160K - CA$185K/yr
Conduct risks assessments. Further enhance and mature the existing security and awareness framework to strengthen enterprise risk management, security & awareness, and compliance. Assist with ...
Risk Management * Participate in enterprise and IT risk assessments, including risk identification, scoring, documentation, and mitigation tracking. * Support risk workshops, maintain risk registers ...
Risk Management * Participate in enterprise and IT risk assessments, including risk identification, scoring, documentation, and mitigation tracking. * Support risk workshops, maintain risk registers ...
Perform security assessments for technical solution designs. Identify threat scenarios and evaluate risk rating based on a thorough review of the solution design by working closely with SMEs. Support ...
Perform security assessments for technical solution designs. Identify threat scenarios and evaluate risk rating based on a thorough review of the solution design by working closely with SMEs. Support ...
Lead security risk assessments for applications, infrastructure, cloud, network, and enterprise technology initiatives using ISO 27001, NIST, PCI DSS, SOC 2, and internal security standards to ...
Lead security risk assessments for applications, infrastructure, cloud, network, and enterprise technology initiatives using ISO 27001, NIST, PCI DSS, SOC 2, and internal security standards to ...
Senior IT Security Advisor (Application Security)
Mississauga, ON · On-site
CA$141K - CA$154K/yr
Lead security risk assessments for applications, infrastructure, cloud, network, and enterprise technology initiatives using ISO 27001, NIST, PCI DSS, SOC 2, and internal security standards to ...
Quick apply
Senior IT Security Advisor (Application Security)
Mississauga, ON · On-site
CA$141K - CA$154K/yr
Lead security risk assessments for applications, infrastructure, cloud, network, and enterprise technology initiatives using ISO 27001, NIST, PCI DSS, SOC 2, and internal security standards to ...
Help conduct threat modeling and security assessments for applications and infrastructure. * Review ... Keep accurate records in risk tracking repositories. * Aid continuous improvement of threat ...
Help conduct threat modeling and security assessments for applications and infrastructure. * Review ... Keep accurate records in risk tracking repositories. * Aid continuous improvement of threat ...
Risk Assessment & Monitoring: Designing and implementing frameworks to identify, assess, and ... Security Architecture, Performance Management (PM) Additional Job Details Address: 16 YORK ST:
Risk Assessment & Monitoring: Designing and implementing frameworks to identify, assess, and ... Security Architecture, Performance Management (PM) Additional Job Details Address: 16 YORK ST:
Freelance Security Risk Assessment information
What is the difference between Freelance Security Risk Assessment vs Security Consultant?
| Aspect | Freelance Security Risk Assessment | Security Consultant |
|---|---|---|
| Credentials | Certifications like CISSP, CISA, or CEH often required | Similar certifications, often with additional experience requirements |
| Work Environment | Independent, project-based, often remote or on-site at client locations | Typically employed by firms or consulting agencies, may work on multiple projects |
| Industry Usage | Used by organizations seeking independent risk assessments | Engaged for broader security strategy, policy development, and consulting |
While both roles involve assessing security risks, Freelance Security Risk Assessments focus on independent, project-specific evaluations, whereas Security Consultants often provide ongoing security advice and strategy within organizations or consulting firms.
What are the most commonly searched types of Security Risk Assessment jobs in Toronto, ON?
The most popular types of Security Risk Assessment jobs in Toronto, ON are:
What are popular job titles related to Freelance Security Risk Assessment jobs in Toronto, ON?
For Freelance Security Risk Assessment jobs in Toronto, ON, the most frequently searched job titles are:
What job categories do people searching Freelance Security Risk Assessment jobs in Toronto, ON look for?
The top searched job categories for Freelance Security Risk Assessment jobs in Toronto, ON are:

Full-time
Medical, Dental, Retirement
Posted 22 days ago
Job description
The Senior Information Security, Risk and Compliance Specialist collaborates with cross-functional teams at Geotab to ensure security compliance, promote security best practices, and mitigate security risk throughout the organization. Key accountabilities include leading and overseeing internal and external security audits against systems, processes, and network infrastructure, managing compliance with regulatory frameworks including SOC 2 Type 2, ISO 27001, NIST SP 800-53, and FedRAMP, developing and maintaining security policies, standards, and governance documentation, conducting hands-on technical security risk and supply chain risk assessments, assessing and managing third-party and vendor security risk across the organization.
What you'll do:The Senior Information Security, Risk and Compliance Specialist collaborates with cross-functional teams at Geotab to ensure security compliance, promote security best practices, and mitigate security risk throughout the organization. Key accountabilities include leading and overseeing internal and external security audits against systems, processes, and network infrastructure, managing compliance with regulatory frameworks including SOC 2 Type 2, ISO 27001, NIST SP 800-53, and FedRAMP, developing and maintaining security policies, standards, and governance documentation, conducting hands-on technical security risk and supply chain risk assessments, assessing and managing third-party and vendor security risk across the organization.
How you'll make an impact:Provide information assurance and subject matter expertise in support of panels, committees, and working groups.
Ensure security compliance with legal and regulatory standards including SOC 2 Type 2, ISO 27001, NIST SP 800-53, NIST SP 800-171, and FedRAMP.
Lead and oversee internal and external security audits against systems, processes, and network infrastructure; coordinate evidence collection, auditor liaison, and remediation tracking.
Develop, update, and revise information security policies, standards, and procedures.
Serve as a subject matter expert in security risk management with hands-on experience in technical security risk assessments and supply chain risk assessments.
Assess and manage third-party and vendor security risk including vendor assessments and ongoing monitoring.
Collaborate with and advise internal departments to improve security-related risks and embed security controls into business processes.
Act as a technical mentor and SME to junior team members; serve as a point of escalation for complex security issues and initiatives.
Continuously develop expertise across Geotab's security programs, internal systems, and data infrastructure, leveraging that knowledge to provide informed, practical security consulting to business and technical stakeholders.
Adopt and champion the use of AI tools and techniques to enhance security workflows, automate compliance tasks, and improve risk analysis capabilities; proactively learn and apply evolving AI capabilities.
Support Geotab global strategic initiatives and contribute to the maintenance of the departmental SOPs.
Consistently demonstrate Geotab's Core Values in all daily work and interactions.
5-8 years of experience in security evaluation/analysis and/or risk assessments within a technology-focused industry.
Working knowledge of system and network security engineering best practices.
Deep familiarity with security compliance frameworks including SOC 2 Type 2, ISO 27001, NIST SP 800-53, NIST SP 800-171, and FedRAMP; including certification/accreditation processes and industry reporting requirements.
Experience leading end-to-end security audits including planning, evidence collection, auditor liaison, and remediation tracking.
Demonstrated experience in third-party and supply chain risk management programs.
Expertise in common security tool use and GRC platforms.
High accuracy and meticulous attention to detail; able to work under pressure and respond to fast-changing priorities and deadlines.
Highly organized with the ability to manage multiple tasks and projects simultaneously.
Excellent verbal and written communication skills, including comfort with delivering presentations and training.
Strong interpersonal and relationship-building skills; a strong team player able to engage with all levels of the organization.
Strong analytical skills with the ability to problem-solve with well-judged decisions.
Strategic mindset with a keen sense of priorities and the ability to pivot as the landscape changes.
Technical competence using software programs including Google Suite for Business (Sheets, Docs, Slides).
Entrepreneurial mindset; comfortable in a flat organization.
Willingness to adopt and learn AI tools to streamline security and compliance workflows; open to integrating AI-driven insights into risk analysis, audits and decision-making.
Post-Secondary Diploma/Degree specialization in Computer Science, Engineering, or a related field.
Equivalent combination of education and/or work experience in related field may be substituted.
Professional certification in Information Security from a reputable institution highly valued (e.g., CISSP, CISM, CRISC, CISA, ISO 27001 Lead Auditor, ISO 42001, certifications).
5-8 years of required previous experience in security evaluation/analysis, risk assessments, and/or compliance within a technology-focused industry.
Flex working arrangements
Home office reimbursement program
Baby bonus & parental leave top up program
Online learning and networking opportunities
Electric vehicle purchase incentive program
Competitive medical and dental benefits
Retirement savings program
*The above are offered to full-time permanent employees only