About the Role
The Senior Analyst is responsible for supporting internal and external audit, executing attestation, and performing governance activities within the IT Risk and Compliance program. This role supports audit readiness, performs control assessments, and collaborates with stakeholders to ensure compliance with internal policies and external requirements, focusing on delivering high-quality audit support and governance outcomes.
Responsibilities
- Support internal and external audits by coordinating requests, gathering evidence, and facilitating discussions
- Execute control assessments and compliance reviews to evaluate design and operating effectiveness
- Perform vendor risk assessments and review third-party control reports from an IT risk standpoint
- Validate control deficiencies and track remediation activities to completion
- Collaborate with stakeholders to assess risk and provide recommendations for mitigation
- Support the development and enhancement of reporting tools and dashboards
- Contribute to governance processes related to cloud and security environments
- Identify opportunities to improve processes and enhance efficiency
Requirements
- 2–5 years of experience in IT risk, compliance, or audit functions
- Experience supporting SOX and IT audits, ITGC testing within SOX compliance programs, and compliance assessments such as NIST and SWIFT Customer Security Programme (CSP)
- Experience with cloud and security governance practices, including basic knowledge of cloud environments and experience supporting cloud audits and cloud risk assessments
- Experience in IT vendor risk management or third-party assessments is a good to have
- Experience working with governance and reporting tools such as AuditBoard, OneTrust is a plus
- Experience with SOC 1/SOC 2 report reviews and audit coordination
- Basic knowledge of security vulnerability management practices and processes
Skills
- Strong analytical and problem-solving skills
- Understanding of IT control frameworks and compliance practices
- Effective communication and collaboration skills
- Ability to manage multiple priorities and deadlines
- Knowledge of GRC platforms such as OneTrust and AuditBoard
- Understanding of cloud environment risks and security vulnerability management concepts
Location
- Brookfield Place - 181 Bay Street
Work Type
- Full-time
Experience Level
- Senior Analyst
Education Level
- Bachelor’s degree in information technology or accounting fields
- Professional certifications such as CISA and/or CISSP
Salary/Compensations
- $80,000 - $100,000 CAD
Benefits
- Positive Work Environment that is safe and respectful
About the Company
- Technology Services (TS) is responsible for delivering all enterprise infrastructure, applications and related end user technology services across all Brookfield business groups.
- Brookfield has a unique and dynamic culture. We seek team members who have a long-term focus and whose values align with our Attributes of a Brookfield Leader: Entrepreneurial, Collaborative and Disciplined.
- Brookfield is committed to the development of our people through challenging work assignments and exposure to diverse businesses.
Equal Opportunity
- Brookfield is committed to maintaining a Positive Work Environment that is safe and respectful; our shared success depends on it. Accordingly, we do not tolerate workplace discrimination, violence or harassment.
- Brookfield is committed to creating an accessible and inclusive organization. We are committed to providing barrier-free and accessible employment practices in compliance with the Accessibility for Ontarians with Disabilities Act. Should you require a Human Rights Code-protected accommodation through any stage of the recruitment process, please make them known when contacted and we will work with you to meet your needs.
