Key responsibilities include leading GRC initiatives end-to-end (from design through implementation), developing and maintaining governance and risk frameworks, supporting risk assessments and audits, and partnering with stakeholders across the organization to embed GRC practices into day-to-day operations.
The role also involves contributing to reporting, metrics, and ongoing program maturity.
What you must have: Proven experience leading GRC initiatives end-to-end (not just participating) Strong background in IT GRC with at least 5+ years in GRC and 7+ years across IT, cybersecurity, or enterprise risk Hands-on experience building or enhancing GRC frameworks, controls, and processes Solid knowledge of industry frameworks such as COBIT (preferred), NIST, ISO 27001, or similar Experience with risk assessments, control implementation,
and audit/compliance activities Ability to communicate clearly and effectively with both technical and non-technical stakeholders Demonstrated experience influencing stakeholders, including senior leadership Strong problem-solving skills and ability to operate independently in a small, evolving team Nice to have: Relevant certifications such as COBIT, CRISC, CISA, CISM, CISSP, or ISO 27001 Salary/Rate Range: $110,000.00 - $115,000.00 This is an opportunity to join a collaborative team with strong executive support, where you will play a key role in shaping and advancing the organizations GRC capabilities while gaining exposure to enterprise-level initiatives.
Thank you for your interest in this opportunity.
If you are selected to move forward in the process, we will contact you directly.
If you do not hear from us, we encourage you to continue visiting our website for other roles that may be a good fit.
📌 Senior Manager IT GRC (Toronto)
🏢 TEEMA
📍 Toronto