Sponsored

Manager, IT Governance, Risk and Compliance

Pet Valu Markham

Job Description

Manager, IT Governance, Risk and Compliance page is loaded## Manager, IT Governance, Risk and Complianceremote type: Hybridlocations: 0001 – Markham Officetime type: Full timeposted on: Posted Todayjob requisition id: R24922Hybrid: Markham, Ontario**Job Description:****Job Overview**The Manager, IT Governance, Risk and Compliance is the IT owner for ICFR, PCI-DSS, NIST Cybersecurity Framework (CSF) 2.0, and Third-Party Risk Management (TPRM). This hands-on leadership role delivers IT controls, evidence, remediation, policy governance, the IT Security Risk Register, and the full TPRM lifecycle while partnering with Finance, Payments, Security, Procurement, and Legal.Salary Range: $125,000-$135,000**Essential Duties*** Act as the primary IT point of contact for internal and external audit partners on ICFR/ITGC, PCI-DSS, and NIST CSF 2.0 audits.* Own the IT General Controls (ITGC) portion of the annual ICFR program: scoping, documentation, evidence, walkthroughs, testing support, and remediation.* Manage the PCI-DSS IT compliance program (Requirements 1–12, A1–A3), including evidence, QSA support, and remediation.* Lead IT-side implementation and maturity of NIST CSF 2.0 across all six functions.* Develop, maintain, and govern all IT policies, standards, procedures, and process documentation aligned with ICFR, PCI, and NIST CSF.* Own and maintain the IT Security Risk Register (identification, assessment, treatment plans, monitoring, and reporting).* Lead the IT Third-Party Risk Management (TPRM) program: vendor risk assessments, due diligence, ongoing monitoring, contract reviews, scoring, and off-boarding for all technology and cloud vendors in scope for ICFR, PCI, or NIST.* Coordinate and deliver evidence and responses during internal/external audits and regulatory reviews.* Track and drive remediation of IT-related findings from audits and TPRM assessments.* Maintain centralized IT controls library and automated evidence repository.* Perform regular control self-assessments and continuous monitoring.* Report compliance status, risk register, and TPRM metrics to IT leadership, Finance, Procurement, and the Audit Committee.* Stay current on regulatory changes and translate them into actionable IT and vendor requirements.* Other tasks as assigned.**Skills, Experience, Education, Certifications*** 8+ years of progressive IT governance, risk, compliance, or audit experience.* Minimum 4 years in a leadership role.* Direct, hands-on experience delivering IT evidence and remediation for **ICFR/ITGC**, **PCI-DSS**, **NIST CSF**, and **Third-Party Risk Management** programs.* Proven ability to work successfully with internal/external audit partners and vendors.* Professional certification required (one or more): CISA, CISM, CRISC, CISSP-ISSAP, PCIP, or equivalent.* Strong policy, process documentation, and risk register management skills.* Hands-on experience running a TPRM program and using vendor risk platforms**Competencies*** Mastery of ICFR/ITGC, PCI-DSS, NIST CSF 2.0, and TPRM* Policy and process documentation excellence* IT risk register and vendor risk lifecycle ownership* Audit coordination and evidence delivery* Cross-functional partnership (Finance, Security, Payments, Procurement, Legal)* Calm execution under tight audit and vendor review timelinesThis posting is for an existing vacancy. As part of the application process, AI may be used to assist with screening, or assessing job applicants .
#J-18808-Ljbffr

How to Apply

Ready to start your career as a Manager, IT Governance, Risk and Compliance at Pet Valu?

  1. Click the "Apply Now" button below.
  2. Review the safety warning in the modal.
  3. You will be redirected to the employer's official portal to complete your application.
  4. Ensure your resume and cover letter are tailored to the job description using our AI tools.

Frequently Asked Questions

Who is hiring?

This role is with Pet Valu in Markham.

Is this a remote position?

This appears to be an on-site role in Markham.

What is the hiring process?

After you click "Apply Now", you will be redirected to the employer's official site to submit your resume. You can typically expect to hear back within 1-2 weeks if shortlisted.

How can I improve my application?

Tailor your resume to the specific job description. You can use our free Resume Analyzer to see how well you match the requirements.

What skills are needed?

Refer to the "Job Description" section above for a detailed list of required and preferred qualifications.

Sponsored

Safety & Disclaimer

External Application

You are leaving 925work.com to apply on the employer's website.

Safety Tip: Never provide bank details, credit card info, or pay any fees to apply for a job.