Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior Compliance and Risk Specialist image - Rise Careers
Job details

Senior Compliance and Risk Specialist

Company Description

Canadian Bank Note Company (CBN) is a trusted leader in secure technology solutions for governments and businesses worldwide. The company operates across various business domains, including currency production, border security, civil identity, driver identification and vehicle information, excise control, lottery and charitable gaming.

Our 7 Core Principles shape and guide our corporate behaviours and underpin the sense of community you will experience at CBN. We pride ourselves on fostering a supportive and collaborative work environment, where employees are valued for their contributions and encouraged to grow professionally.

At CBN we seek long-term relationships with our employees and recognize and reward them with a competitive total compensation package that includes:

  • An industry-leading defined contribution pension plan with company matching contributions (up to 5%) and payment of service fees;
  • Best-in-class health, medical, and life insurance benefits;
  • Access to virtual and telehealth services and apps; and
  • Very progressive fertility, adoption, and surrogacy benefits to support all definitions of family.

 

Job Description

Internal Job Title: Senior Compliance and Risk Specialist
Job Type: Permanent, Full-Time
Job Location: Canada
Work Model: Remote

 

Position Summary

As a Senior Compliance and Risk Specialist at CBN, you will be responsible for leading compliance initiatives, conducting risk assessment and remediation activities, and developing security strategies for CBN systems deployed in Canada, the United States and Europe.

 

Responsibilities

  • Compliance Initiatives
    • Lead current ISO 27001, SOC 2, and PCI compliance initiatives for systems in Canada, US, and Europe.
    • Examine existing initiatives and engage business stakeholders and customers to establish a strategy for handling compliance-at-scale for both compliance-focused and cost-sensitive markets.
  • Security Strategy
    • Spearhead initiatives to identify, investigate, and improve security risks within CBN Operations Global Infrastructure.
    • Design and deliver security strategies, produce architectural models, detailed assessments, and present reports to meet Canada/US and global security requirements.
    • Research and deliver tooling and strategies for CBN’s AppSec program to address risk assessments in an automated fashion at scale.
  • Risk Assessment and Remediation
    • Conduct Risk Assessments within customer systems to quickly assess associated risks, recommend actions, and develop plans for remediation.
    • Understand the risk/compliance gaps in our global systems, articulate a vision, and work across teams to get us there.
  • Stakeholder Engagement
    • Take an active role in educating customers, executives, stakeholders, infrastructure personnel, and developers on best practices for security.
    • Build relationships with stakeholders across groups to understand assessment needs, advise on how it should be handled, and the associated notification process.
  • Various other Duties and Responsibilities.

 

Qualifications

Knowledge and Experience

  • Education
    • Bachelor’s degree in Computer Science, Information Technology or related field or an equivalent combination of relevant education and additional work experience
  • Certification(s)
    • One (or more) of NIST800-53, ISO27001, SOC2 (Type I and II), FedRamp, StateRamp
    • SANA, ISACA or GIAC is an asset
  • Knowledge
    • Compliance standards, frameworks and tools
    • Threat and risk management principles and methodologies
    • Risk assessment practices and methodologies
  • Experience
    • 8+ years of direct experience in a compliance, auditing and/or risk position
    • 3+ years of experience developing/delivering compliance assessments
    • Experience using structured approaches to risk assessment (e.g. HTRA, TRA, ITSG-33, CSF, FSIR, STAR)
    • Experience using Unified Compliance Frameworks and GRC tools
    • Experience with Azure/AWS compliance is an asset

Technical Skills

  • Proficiency with MS 365 Copilot
  • Presentation skills

Soft Skills and Competencies

  • Critical thinking skills
    • Analysis, problem solving
  • Interpersonal skills
    • Communication, relationship building, teamwork and collaboration
  • Organization/time management/prioritization skills
  • Adaptable
  • Growth mindset

Mandatory Requirements

  • Language(s): Fluency in English (reading, writing, speaking)
  • Travel: Ability to travel domestically and/or internationally (passport required) approx. 1-2 weeks/year

 

Additional Information

Canadian Bank Note Company (CBN) is committed to fostering a diverse and inclusive workplace where all employees are treated with dignity and respect. We are proud to be an equal opportunity employer and do not discriminate on the basis of race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity, or any other legally protected status.

We provide equal employment opportunities to all individuals, including women, Indigenous Peoples, persons with disabilities, visible minorities, and members of the 2SLGBTQ+ community. Our commitment to equity extends to all aspects of employment, including recruitment, hiring, promotion, compensation, benefits, training, and development. As part of our commitment to providing an inclusive, barrier free selection process, we ask that if you are contacted regarding the competition for this position, you advise the interview coordinator or any accommodation measures you may require.

At CBN, we value the unique perspectives and experiences that each employee brings to our organization, and we are committed to maintaining a workplace that reflects the diverse communities we serve. We believe that diversity and inclusion drive innovation and success, and we strive to create an environment where every employee can thrive and contribute to our collective goals.

Average salary estimate

$105000 / YEARLY (est.)
min
max
$90000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Compliance and Risk Specialist, Canadian Bank Note Company

At Canadian Bank Note Company (CBN), we’re all about secure technology solutions that enhance safety and efficiency for governments and businesses all over the world. We are currently on the lookout for a Senior Compliance and Risk Specialist to join our team. In this exciting role, you’ll lead compliance initiatives and conduct crucial risk assessments to bolster our security strategies across various territories, including Canada, the US, and Europe. Imagine working in a collaborative environment where your expertise makes a real impact! You’ll be the guiding star in compliance initiatives like ISO 27001, SOC 2, and PCI compliance, working closely with stakeholders to devise comprehensive strategies. Your analytical skills will shine as you examine security risks and create actionable solutions to address them. You’ll also engage with various groups to educate them on security best practices, building those essential relationships that drive successful compliance efforts. With over 8 years of experience and a technical background, you will understand compliance standards deeply and utilize tools to automate assessments across our AppSec program. If you have a growth mindset and are passionate about risk management, this might just be the perfect fit for you. Join us as we continue to embrace innovation while valuing the collective contributions of all our team members!

Frequently Asked Questions (FAQs) for Senior Compliance and Risk Specialist Role at Canadian Bank Note Company
What are the responsibilities of a Senior Compliance and Risk Specialist at Canadian Bank Note Company?

As a Senior Compliance and Risk Specialist at Canadian Bank Note Company, you will lead compliance initiatives involving ISO 27001, SOC 2, and PCI compliance. This includes performing risk assessments on customer systems, identifying security risks, and delivering actionable remediation plans. You'll also engage with stakeholders to educate them on security best practices and drive compliance strategies across different regions, showcasing your leadership in ensuring security for CBN applications.

Join Rise to see the full answer
What qualifications do I need for the Senior Compliance and Risk Specialist role at CBN?

To apply for the Senior Compliance and Risk Specialist position at Canadian Bank Note Company, candidates typically need a Bachelor's degree in Computer Science, Information Technology, or a related field, along with at least 8 years of direct experience in compliance or risk assessment roles. Valuable certifications such as NIST800-53, ISO27001, or SOC2 are highly regarded, as are experience with GRC tools and risk assessment methodologies.

Join Rise to see the full answer
How does Canadian Bank Note Company support employee growth for Senior Compliance and Risk Specialists?

At Canadian Bank Note Company, employee growth is paramount. As a Senior Compliance and Risk Specialist, you’ll have access to ongoing training and development opportunities to enhance your compliance skills. The company encourages a collaborative environment, where sharing knowledge and seeking feedback is welcomed, fostering both personal and professional growth. You will also enjoy a competitive compensation package tailored to support your continuous development.

Join Rise to see the full answer
What is the work culture like for Senior Compliance and Risk Specialists at CBN?

The work culture at Canadian Bank Note Company is inclusive, supportive, and focused on collaboration. As a Senior Compliance and Risk Specialist, you’ll find yourself in a welcoming environment that values your contributions and encourages you to connect with colleagues across various departments. CBN is committed to maintaining a diverse workplace and embraces the unique perspectives that each employee brings, ensuring a stimulating atmosphere conducive to innovation.

Join Rise to see the full answer
Is travel required for the Senior Compliance and Risk Specialist position at Canadian Bank Note Company?

Yes, the Senior Compliance and Risk Specialist role at Canadian Bank Note Company requires some travel. Candidates should be prepared for approximately 1-2 weeks of domestic or international travel each year. This travel is vital to engage with stakeholders and ensure compliance practices are effectively implemented across different regions, enhancing the security strategy on a global scale.

Join Rise to see the full answer
Common Interview Questions for Senior Compliance and Risk Specialist
Can you describe your experience with compliance initiatives like ISO 27001 or SOC 2?

When answering this question, highlight specific projects where you led compliance initiatives, detailing your methodology and the outcomes. Discuss how you engaged stakeholders and overcame challenges to ensure compliance at scale, showcasing your expertise and dedication to security regulations.

Join Rise to see the full answer
What risk assessment methodologies are you familiar with, and how have you applied them in past roles?

Outline the risk assessment methodologies you have experience with, such as HTRA or TRA. Provide examples of how you utilized these frameworks in practical situations to identify and mitigate risks, demonstrating your analytical skills and strategic approach to problem-solving.

Join Rise to see the full answer
How do you keep up with industry standards and changes in compliance regulations?

Share your strategies for staying informed on compliance regulations, such as subscribing to relevant bodies, attending webinars, and participating in industry groups. This shows your commitment to continuous learning and ensures you're prepared to handle compliance challenges effectively.

Join Rise to see the full answer
How do you prioritize compliance initiatives when working across multiple regions like Canada, the US, and Europe?

Explain your approach to prioritization based on regional compliance requirements, risk assessments, and stakeholder input. Discuss tools and techniques you use for effective project management and communication, illustrating your organizational skills.

Join Rise to see the full answer
Describe a situation where you had to educate stakeholders on compliance best practices.

Provide a specific example where you successfully educated stakeholders on compliance practices. Discuss the methods you used to communicate complex ideas clearly and engage your audience, demonstrating your interpersonal and communication skills.

Join Rise to see the full answer
How would you handle a situation where a major compliance issue is discovered?

Discuss your method for assessing the situation quickly, mitigating immediate risks, and developing an action plan. Emphasize the importance of transparent communication with all relevant parties and your approach to prevent similar occurrences in the future.

Join Rise to see the full answer
What tools have you used for compliance and risk management?

When asked this question, list the specific GRC tools you're experienced with. Describe how these tools have aided in streamlining compliance processes, facilitating risk assessments, and ensuring ongoing security, showcasing your familiarity with industry-standard software.

Join Rise to see the full answer
In your opinion, what are the key elements of an effective compliance program?

Share insights into the essential components of a compliance program, such as risk assessment, stakeholder engagement, employee training, and continuous monitoring. Tie in how you have implemented these elements in past roles, highlighting your strategic thinking.

Join Rise to see the full answer
Can you share an example of a security strategy you've developed?

Provide a concrete example of a security strategy you've implemented, discussing the objectives, the process you followed, and the outcomes achieved. This demonstrates your ability to devise and execute effective security solutions critically.

Join Rise to see the full answer
How do you assess the effectiveness of a compliance initiative?

Detail the metrics or methods you use to evaluate compliance initiatives, emphasizing the importance of continuous improvement. Discuss how feedback and data analytics play a role in your assessment process, which illustrates your analytical skills and commitment to excellence.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 13 days ago
Photo of the Rise User
Canadian Bank Note Company Remote 18 Auriga Dr, Nepean, ON K2E 7T9, Canada
Posted 13 days ago
Posted 11 days ago
Photo of the Rise User
Onbe Remote Conshohocken, Pennsylvania, United States
Posted 10 days ago
Photo of the Rise User
Okta Remote Columbus, OH; Cincinnati, OH; Cleveland, OH; Silicon Slopes, UT; Nashville, TN; Knoxville, TN; Madison, WI; Milwaukee, WI; Kansas City, MI; St. Louis, MI; Indianapolis, IN
Posted 10 days ago
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Maternity Leave
Paternity Leave
401K Matching
Paid Holidays
Paid Sick Days
Paid Time-Off
Paid Volunteer Time
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Family Coverage (Insurance)
Medical Insurance
Mental Health Resources
Photo of the Rise User
Anduril Industries Hybrid Washington, District of Columbia, United States
Posted 10 days ago
Photo of the Rise User
EasyLlama Remote No location specified
Posted 3 days ago
Photo of the Rise User
Posted 9 days ago
Photo of the Rise User
NECSWS Remote Hybrid, Alderley Edge, United Kingdom
Posted 11 days ago

Founded originally in 1897, Canadian Bank Note Company, Limited (CBN) is a provider in high-level security documents and related issuing and management software systems. CBN is headquartered out of Ottawa, Ontario.

11 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
March 25, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
12 people applied to Paralegal / Jr Lawyer at Binance
Photo of the Rise User
Someone from OH, Mentor just viewed Site Merchandising Manager at Lovepop
Photo of the Rise User
Someone from OH, Batavia just viewed Restaurant Busser at Outback Steakhouse
Photo of the Rise User
Someone from OH, New Albany just viewed Customer Success Manager at Quisitive
Photo of the Rise User
Someone from OH, Columbus just viewed UGC Creator - USA, Female 40-50 - Contract to hire at Upwork
Photo of the Rise User
Someone from OH, Strongsville just viewed Automotive Buyer at Sonic Automotive
Photo of the Rise User
Someone from OH, Strongsville just viewed Experienced Automotive Buyer at Sonic Automotive
Photo of the Rise User
Someone from OH, Columbus just viewed Business Systems Analyst, Apps & Automations at Deel
Photo of the Rise User
Someone from OH, Findlay just viewed Marketing Analyst at ITW
R
Someone from OH, Cleveland just viewed Marketing Lead at Redi.Health
Photo of the Rise User
Someone from OH, Cleveland just viewed Associate Conversion Data Analyst at Bloomerang
Photo of the Rise User
Someone from OH, Cleveland just viewed Material Buyer/Planner at Aston Carter
F
Someone from OH, Cleveland just viewed Senior Materials Planner at Fortune Brands
Photo of the Rise User
Someone from OH, Cleveland just viewed Junior Data Analyst at Arkana Laboratories
Photo of the Rise User
Someone from OH, Cleveland just viewed BI Analyst, Junior at Emi Labs
Photo of the Rise User
Someone from OH, Bellbrook just viewed Accounting Co-Op (Part-Time) at Avery Dennison
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Compliance officer (AML) at Visa
Photo of the Rise User
Someone from OH, Cleveland just viewed Amazon Expediting Fleet Specialist at MSX International
R
Someone from OH, Cincinnati just viewed Sales development representative at Remote Recruitment
Photo of the Rise User
Someone from OH, Cincinnati just viewed Laboratory Technologist I - 2nd Shift at Eurofins