We are seeking a Senior Cyber Security Risk Analyst to join our Toronto client's team. In this ... Drive GRC Excellence: Document, track, and manage the lifecycle of risks, treatment plans, and ...
We are seeking a Senior Cyber Security Risk Analyst to join our Toronto client's team. In this ... Drive GRC Excellence: Document, track, and manage the lifecycle of risks, treatment plans, and ...
The GRC analyst will be responsible for leading the day-to-day cyber compliance, data governance, and cyber risk management functions. * The role will include responsibility for defining, creating ...
The GRC analyst will be responsible for leading the day-to-day cyber compliance, data governance, and cyber risk management functions. * The role will include responsibility for defining, creating ...
Operational Risk Analyst
Toronto, ON · Hybrid
CA$60K - CA$80K/yr
Reporting to the Head of Risk, TSX Trust, the Operational Risk Analyst is a critical second-line ... Proficiency in GRC tools (preferably Resolver ) and data visualization tools (e.g., Tableau or ...
Operational Risk Analyst
Toronto, ON · Hybrid
CA$60K - CA$80K/yr
Reporting to the Head of Risk, TSX Trust, the Operational Risk Analyst is a critical second-line ... Proficiency in GRC tools (preferably Resolver ) and data visualization tools (e.g., Tableau or ...
Manager, GRC
Toronto, ON · On-site
Define enterprise GRC target architecture and solution blueprints (data models, taxonomy, control ... Knowledge of FAIR risk quantification, BI/analytics (Power BI/Tableau), continuous control ...
Manager, GRC
Toronto, ON · On-site
Define enterprise GRC target architecture and solution blueprints (data models, taxonomy, control ... Knowledge of FAIR risk quantification, BI/analytics (Power BI/Tableau), continuous control ...
Knowledge of GRC tools such as Archer or ServiceNow * Experience in large, matrixed organizations ... ) Risk, Operational Risks, Problem Management, Reporting and Analysis, Standards Compliance ...
Knowledge of GRC tools such as Archer or ServiceNow * Experience in large, matrixed organizations ... ) Risk, Operational Risks, Problem Management, Reporting and Analysis, Standards Compliance ...
Senior Manager GRC
Toronto, ON · On-site
... Risk Analytics. * Perform hands-on configuration/customization across enterprise GRC technologies ... including custom objects, forms, workflows, reporting. Technical Implementation and Integration
Senior Manager GRC
Toronto, ON · On-site
... Risk Analytics. * Perform hands-on configuration/customization across enterprise GRC technologies ... including custom objects, forms, workflows, reporting. Technical Implementation and Integration
Director, Enterprise Risk Management - IT Security & Cyber Risk
Oakville, ON · On-site
$140 - $210/hr
Conduct analysis of threat and vulnerability scenarios which may impact IT systems and business ... Experience using GRC risk management tools. Professional certifications and membership of ...
Director, Enterprise Risk Management - IT Security & Cyber Risk
Oakville, ON · On-site
$140 - $210/hr
Conduct analysis of threat and vulnerability scenarios which may impact IT systems and business ... Experience using GRC risk management tools. Professional certifications and membership of ...
Cybersecurity GRC Analyst
Toronto, ON · On-site
The Cybersecurity GRC Analyst advances the OMA's strategic vision by fostering cross-functional ... Cyber Risk Governance & Reporting: * Maintaining the enterprise cybersecurity risk register ...
Quick apply
Cybersecurity GRC Analyst
Toronto, ON · On-site
The Cybersecurity GRC Analyst advances the OMA's strategic vision by fostering cross-functional ... Cyber Risk Governance & Reporting: * Maintaining the enterprise cybersecurity risk register ...
Director, Governance, Risk and Compliance (GRC) We're seeking a Director, Governance, Risk and Compliance (GRC) to lead and operate MFSG's cybersecurity governance, cyber risk management, compliance ...
Director, Governance, Risk and Compliance (GRC) We're seeking a Director, Governance, Risk and Compliance (GRC) to lead and operate MFSG's cybersecurity governance, cyber risk management, compliance ...
Expertise in common security tool use and GRC platforms. * High accuracy and meticulous attention ... Strong analytical skills with the ability to problem-solve with well-judged decisions. * Strategic ...
Expertise in common security tool use and GRC platforms. * High accuracy and meticulous attention ... Strong analytical skills with the ability to problem-solve with well-judged decisions. * Strategic ...
Senior SAP GRC Security Consultant (SAP S/4HANA, SAP Security, Identity Access Governance) Location ... Access Risk Analysis (ARA) * Emergency Access Management (EAM) * Business Role Management (BRM ...
Quick apply
Senior SAP GRC Security Consultant (SAP S/4HANA, SAP Security, Identity Access Governance) Location ... Access Risk Analysis (ARA) * Emergency Access Management (EAM) * Business Role Management (BRM ...
A key member of the Enterprise Risk Management (ERM) team, this position may also support adhoc ... Experience with GRC Platforms (ie. Resolver, ServiceNow), designing workflows * Experience ...
A key member of the Enterprise Risk Management (ERM) team, this position may also support adhoc ... Experience with GRC Platforms (ie. Resolver, ServiceNow), designing workflows * Experience ...
A key member of the Enterprise Risk Management (ERM) team, this position may also support adhoc ... Experience with GRC Platforms (ie. Resolver, ServiceNow), designing workflows * Experience ...
A key member of the Enterprise Risk Management (ERM) team, this position may also support adhoc ... Experience with GRC Platforms (ie. Resolver, ServiceNow), designing workflows * Experience ...
IRM/GRC Technologies Senior Associate
Toronto, ON · On-site
CA$65K - CA$109K/yr
Those in governance, risk, controls and compliance at PwC will be responsible for confirming ... Use a broad range of analytics tools, technology, digital solutions, and techniques to extract ...
IRM/GRC Technologies Senior Associate
Toronto, ON · On-site
CA$65K - CA$109K/yr
Those in governance, risk, controls and compliance at PwC will be responsible for confirming ... Use a broad range of analytics tools, technology, digital solutions, and techniques to extract ...
Specialize in ServiceNow Governance, Risk, and Compliance (GRC) or ServiceNow SecOps product suite ... Excellent verbal/written communication, problem solving, analytical, and independent judgment ...
Quick apply
Specialize in ServiceNow Governance, Risk, and Compliance (GRC) or ServiceNow SecOps product suite ... Excellent verbal/written communication, problem solving, analytical, and independent judgment ...
Manager Technology Risk
CA$107K - CA$157K/yr
Provide independent oversight and analysis of current and emerging risks identified and assessed by ... Experience with ServiceNow GRC or other GRC platforms is an asset The base salary for this position ...
Manager Technology Risk
CA$107K - CA$157K/yr
Provide independent oversight and analysis of current and emerging risks identified and assessed by ... Experience with ServiceNow GRC or other GRC platforms is an asset The base salary for this position ...
Leader, Governance, Risk and Compliance (GRC) will be responsible for establishing the GRC mandate ... Proven ability to identify, analyze and translate risk in the context of what it means to achieving ...
Leader, Governance, Risk and Compliance (GRC) will be responsible for establishing the GRC mandate ... Proven ability to identify, analyze and translate risk in the context of what it means to achieving ...
Content Strategist
Toronto, ON · On-site +1
... product, analysts, and Kroll to source insight and ensure technical accuracy. * Turn complex GRC and S&I topics into clear, compelling narratives that resonate with the people who own risk ...
Content Strategist
Toronto, ON · On-site +1
... product, analysts, and Kroll to source insight and ensure technical accuracy. * Turn complex GRC and S&I topics into clear, compelling narratives that resonate with the people who own risk ...
Consultant, GRC Technology
Toronto, ON · On-site
CA$68K - CA$102K/yr
As a Consultant in our Risk Tech and Data Team, you will support and advise on a range of projects ... If you love tech, data analytics, strategy, and solving real-world business problems, this is the ...
Consultant, GRC Technology
Toronto, ON · On-site
CA$68K - CA$102K/yr
As a Consultant in our Risk Tech and Data Team, you will support and advise on a range of projects ... If you love tech, data analytics, strategy, and solving real-world business problems, this is the ...
Design and implement SAP GRC Access Control (ARM, ARA, BRM, EAM) and Process Control solutions. * Conduct SoD analysis, mitigating control definition, and role risk assessments. * Configure workflows ...
Design and implement SAP GRC Access Control (ARM, ARA, BRM, EAM) and Process Control solutions. * Conduct SoD analysis, mitigating control definition, and role risk assessments. * Configure workflows ...
Grc Risk Analyst information
What is the difference between Grc Risk Analyst vs Compliance Analyst?
| Aspect | Grc Risk Analyst | Compliance Analyst |
|---|---|---|
| Certifications | ISO 31000, FRM, CRISC | ISO 19600, CCEP, CISA |
| Work Environment | Risk management teams, corporate offices | Regulatory departments, corporate offices |
| Industry Usage | Finance, banking, insurance, corporate risk | Financial services, healthcare, manufacturing |
| Job Focus | Identifying, assessing, and mitigating risks across enterprise | Ensuring compliance with laws and regulations |
While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.
What is a GRC Risk Analyst?
What are the key skills and qualifications needed to thrive as a GRC Risk Analyst?
What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?

Full-time
Re-posted 7 days ago
Job description
Job Description We are seeking a Senior Cyber Security Risk Analyst to join our Toronto client's team. In this pivotal role, you will lead the creation of comprehensive cyber system risk reports, translating complex technical findings from penetration tests and Threat and Risk Assessments (TRAs) into actionable business insights for senior stakeholders. As a senior member of the team, you will champion industry-standard frameworks and leverage ServiceNow GRC to maintain, mature, and safeguard the organization's overall cyber risk posture.
Key Responsibilities Lead Risk Reporting: Oversee and manage the cyber risk reporting queue, ensuring the delivery of high-quality, executive-ready risk assessments. Apply Standard Methodologies: Utilize NIST and HTRA methodologies to rigorously assess, quantify, and communicate technical risks. Drive GRC Excellence: Document, track, and manage the lifecycle of risks, treatment plans, and remediation efforts within ServiceNow GRC.
Translate Tech to Business: Bridge the gap between engineering and the boardroom by converting complex technical vulnerabilities into clear, high-impact business risk statements for non-technical leadership. Support Governance & Audits: Act as a trusted advisor during governance forums and internal audits, providing articulate verbal and written risk communications. Innovate Securely: Leverage AI-assisted tools to streamline content generation and report optimization, while strictly maintaining data confidentiality and privacy boundaries.
Education & Experience Education: University Degree or College Diploma in Computer Science, Information Security, Risk Management, or a related field. Experience: 5+ years of progressive experience in cyber security, IT audit, or technology risk management. Executive Reporting: 3+ years of dedicated experience crafting executive-grade risk reports and presentations for C-suite or steering committees.
Technical & Core Competencies Framework Expertise: Deep practical experience applying NIST frameworks (e.g., CSF, 800-53) and HTRA methodologies. Tooling: Hands-on, administrative, or advanced user experience with ServiceNow GRC (Integrated Risk Management). Vulnerability Acumen: A strong understanding of common technical vulnerabilities (OWASP Top 10, CVEs) and the unique ability to map them to operational and financial business impacts
Communication: Exceptional communication and storytelling skills, with the ability to influence stakeholders and defend risk ratings with data-driven logic. Relevant professional certifications (e.g., CRISC, CISM, CISSP, or CISA). Experience integrating AI workflows into daily risk analysis safely.