19 Aug
|
Equinix
|
Toronto
Who you are
- Minimum of 3 years of progressive experience supporting technology risk or control assessment activities
- Solid understanding of risk and control concepts across cloud platforms, applications, networks, infrastructure, mobile technologies, and emerging technologies
- Working knowledge of technology risk and risk management frameworks such as ISO 27005, NIST CSF, and NIST 800-30 (or equivalent)
- Risk or audit-related certifications (e.g., CRISC, CISA) are considered strong assets
- Ability to clearly communicate risk concepts and findings to non-technical stakeholders
- Strong analytical skills with the ability to assess complex and interconnected technology environments
- Practical problem-solving capabilities with a focus on control effectiveness and risk reduction
- Ability to align risk analysis and recommendations with business objectives and operational constraints
- Strong research abilities related to technology controls, platforms, and risk practices
- Ability to work independently, manage priorities, and meet deadlines in a fast-paced environment
- Excellent written and verbal communication skills
- Collaborative, team-oriented mindset with experience working across multiple stakeholder groups
What the job involves
- The Senior Analyst, Technology Risk supports the organization’s Technology Risk and Governance programs through hands-on analysis, assessment, and reporting activities
- This role works closely with Digital, IT, and business stakeholders to identify technology-related risks, perform detailed risk assessments, recommend practical mitigation approaches, and track risks throughout their lifecycle
- This position requires a technically strong individual contributor with a deep understanding of risk management practices and control environments across diverse technologies and platforms
- The role emphasizes execution, analysis, and operational support rather than enterprise-level risk ownership or strategic leadership
- Identify and assess technology risks that may impact business objectives, operational resilience, and regulatory obligations
- Partner with technology and business teams to evaluate risks associated with applications, infrastructure, platforms, and data processing environments
- Document risk assessments, control observations, and mitigation recommendations in alignment with established risk frameworks
- Support risk owners by developing practical mitigation plans and tracking remediation progress
- Maintain and update risk registers, action plans, and related documentation
- Operate and maintain risk and governance tools to support consistent risk assessment and reporting processes
- Contribute to the development and maintenance of technology risk policies, standards, and procedures
- Support internal and external audit activities, including evidence collection, issue tracking, and validation of remediation efforts
- Stay current on emerging technology risks, control practices, and industry trends; apply insights to ongoing assessments
- Identification, assessment, documentation, and monitoring of technology risks
- Evaluation of existing controls and recommendation of compensating measures to reduce residual risk
- Creation and maintenance of technology risk policies, standards, and governance documentation
- Use and administration of risk and governance tools and reporting platforms
- Ongoing collaboration with technology, operations, and business teams to address risks in a timely manner
- Other responsibilities as assigned by management
📌 IT Risk Management (Toronto)
🏢 Equinix
📍 Toronto