Benevity is seeking a Governance, Risk & Compliance (GRC) Analyst to support and grow its security governance, risk, privacy, and regulatory program. The role involves supporting compliance activities, assisting with risk assessments, contributing to third-party risk management, and helping maintain policies and controls that strengthen trust with clients, partners, and stakeholders.
Requirements
- 2–4 years of experience in cybersecurity, governance, risk, compliance, or privacy, ideally in a SaaS or technology-driven environment
- Working knowledge of security, privacy, and regulatory frameworks including ISO 27001, NIST, SOC 2, PCI DSS, GDPR, PIPEDA, FINTRAC, and/or CCPA/CRPA
- Exposure to or experience with GRC tooling to support policy, risk, audit, privacy, and vendor risk workflows
- Familiarity with risk assessment methodologies, vendor risk concepts, and compliance evidence gathering
- Ability to communicate risk, security, privacy, and regulatory concepts clearly to both technical and non-technical stakeholders
- Strong organizational skills, attention to detail, and a proactive approach to learning and problem-solving
Benefits
- Competitive salary range: $55,900—$76,890 CAD
- Flexible hybrid approach to work that empowers employees
- Diverse, inclusive, and equitable work environment
- Opportunities for growth and professional development
- Access to training and development programs
- Comprehensive benefits package
- Flexible work arrangements
- Paid time off and holidays