In This Role, You Will Be Expected To:
- Execute Risk & Compliance Initiatives: Manage and deliver privacy, security, and compliance projects, ensuring alignment with organizational goals and timelines.
- Identify and Mitigate Risks: Proactively assess operational, IT, and data privacy risks, partnering with cross-functional teams to implement effective mitigation strategies.
- Build and Improve Frameworks: Develop, maintain, and enhance compliance frameworks, policies, and procedures aligned with evolving regulations (PIPEDA, COPPA, GDPR) and industry standards.
- Support Audits and Assessments: Coordinate third-party audits (e.g., SOC 2, PCI DSS) and conduct internal assessments to ensure ongoing compliance.
- Strengthen Security Practices: Support software security improvements and contribute to initiatives that enhance controls and reduce risk exposure.
- Manage Security Incidents: Lead or support incident response activities, including investigation, documentation, communication, and remediation.
- Review and Resolve R&C Requests: Triage and respond to compliance-related tickets and inquiries, providing timely guidance and solutions to internal teams.
- Research and Apply Regulatory Standards: Stay current on privacy laws and industry requirements, translating them into practical policies and operational processes.
- Communicate and Report: Prepare clear, accurate compliance documentation and reports for internal stakeholders, clients, and auditors.
- Engage with Stakeholders: Liaise with clients, vendors, auditors, and internal teams to address compliance requirements and support ongoing initiatives.
- Deliver Training and Awareness: Support training efforts and help foster a culture of data security and compliance across the organization.
You Might Be the Right Fit If You:
- Proactive and confident in engaging with stakeholders across various levels
- Strong interpersonal skills with the ability to build and maintain cross-team relationships
- Excel at evaluating, assessing, and troubleshooting complex issues
- Thrive in dynamic environments with the ability to multitask and manage competing priorities
- Extroverted and energized by collaborative work settings
- Demonstrate a proactive approach to problem-solving and continuous improvement
- Have strong proficiency in Microsoft 365, with an interest in IT and technology (IT background is an asset).
Qualifications we are looking for:
- 5+ years of experience in privacy, data security, compliance, and risk management.
- Postgraduate education in cybersecurity or a related field.
- Strong understanding of Canadian privacy laws and regulations.
- Experience in providing training and developing policy documents related to privacy and compliance.
- Project management experience; PMP certification is a strong asset but not required.
- Bonus points if you have a CIPP/C, CIPM, or other relevant privacy/security certifications
Compensation and benefits:
- Employee Stock Ownership Plan (ESOP)
- Full medical, dental, and vision coverage
- Life insurance and disability insurance
- Health spending account
- Flexible working hours
- On-the-job training and growth opportunities
- Free on-site parking
Skills Required
- 5+ years of experience in privacy, data security, compliance, and risk management
- Postgraduate education in cybersecurity or a related field
- Strong understanding of Canadian privacy laws and regulations
- Experience in providing training and developing policy documents related to privacy and compliance
- Project management experience; PMP certification is a strong asset but not required
- CIPP/C, CIPM, or other relevant privacy/security certifications
What We Do
BIS Safety Software is a technology company that offers compliance and learning management software to meet the needs of Environment, Health, and Safety (EHS) professionals. This cloud-based software application includes a Training Record Management System, a Classroom Calendar Management module, a Training Matrix, a Learning Management System, Digital Folders, plus Online Forms that can be used for site inspections, hazard assessments, incident management, preventive maintenance, competency evaluations, and more. We provide training solutions for the safety industry, including hundreds of safety training organizations throughout North America and across the world. The core of our business is the SafetyNET program. The SafetyNET is a network of more than 500 leading safety training companies from across North America who collectively share and provide companies and individuals with access to a wide variety of safety training courses through one centralized online application. Since 2010, the collaborative partnership between these training companies has not only enabled the best-of-the-best in online safety training to be brought together in one location but it is also helping to improve industry safety performance through the provision of convenient, cost-effective training. Looking toward the future, the SafetyNET seeks to continually set new standards in training through ongoing technological innovations and implementation of feedback from industry experts and leaders. Be a part of this exciting future by becoming a part of The SafetyNET





