Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Manager, Security Compliance image - Rise Careers
Job details

Manager, Security Compliance

We believe small businesses are at the heart of our communities, and championing them is worth fighting for. We empower small business owners to manage their finances fearlessly, by offering the simplest, all-in-one financial management solution they can't live without.


The Manager, Security Compliance is responsible for developing, implementing, and managing the Wave’s security compliance programs. This role ensures that the Wave adheres to relevant regulations, standards, and internal policies, mitigating risks and protecting sensitive information.


  • Compliance Program Development: Design, implement, and maintain the organization’s security compliance frameworks. Establish policies and procedures to ensure adherence to applicable laws, regulations, and standards (e.g., AICPA SOC2, SOX, NIST CSF, HIPAA, and PCI-DSS).
  • Lead the Security Risk Management team for the automation and engineering-led thinking for security control assessment, evidence collection, and summary reporting.  Monitor emerging regulations and industry trends to update compliance strategies.
  • Risk Assessment and Auditing: Conduct regular risk assessments to identify compliance gaps. Plan and oversee internal and external security audits. Collaborate with stakeholders to address findings and implement corrective actions.
  • Project Planning and Coordination: Define project scope, goals, and deliverables aligned with IT and cybersecurity objectives. Develop detailed project plans, including timelines, resource allocation, and budgets. Collaborate with IT, security teams, cross functional teams and external vendors to ensure project alignment.
  • Training and Awareness: Develop and deliver training programs to educate employees on security and compliance requirements. Promote a culture of compliance and security awareness across the organization.
  • Policy Management: Draft, review, and update security policies, standards, and guidelines. Ensure documentation is current and aligns with industry best practices and legal requirements.
  • Incident Management and Reporting: Oversee compliance-related incident investigations and resolution. Ensure timely reporting of security incidents to regulatory bodies as required.
  • Stakeholder Collaboration: Act as a liaison between departments, including HRB, IT, legal, and executive leadership, to ensure cohesive compliance efforts. Provide regular updates and reports on compliance status and risks to senior management.
  • Vendor and Third-Party Management: Assess and monitor third-party vendors to ensure compliance with security requirements. Establish and enforce contractual compliance obligations.


You Thrive Here By Possessing the Following:
  • 5+ years of related professional compliance and controls program experience.
  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field.
  • Proven experience in security compliance management or a similar role.
  • Advanced level knowledge of AICPA SOC 2, SOX, NIST CSF, HIPAA, GDPR and/or ISO 27001.
  • Experience leading internal and/or external audits, working as the liaison between auditors and the business.
  • Experience implementing automated compliance workflows.
  • Strong understanding of Amazon AWS environment and SaaS platform. Comfortable working with both deeply technical and non-technical resources.
  • Flexible in daily hours (e.g. willingness to work longer hours during end of quarter and peak periods, and audit).
  • Ability to prioritize and track multiple projects and tasks in parallel.


At Wave, you’re treated like the incredible human being you are. 


Work From Where You Work Best: We will always have a welcoming, energizing, and world-class office (in Toronto) with a space for you. Or, if you’re more comfortable working from home, the choice is yours.

We Care About Future You: You will stretch yourself and you will grow at Wave. You will also be supported on this journey with diverse learning experiences, educational allowances, mentorship, and so much more.

We Support the Full You: We make a serious investment in your health & wellness. When we think about benefits we think about body, mind, & soul and we take this stuff very seriously. 

We Take Care of the Fundamentals: Fair compensation, all the office perks you’d want, and the various goodies you’d expect from a growing tech company. This is the obvious stuff, but we don’t want you to think we forgot!


We believe that a diverse and inclusive culture creates the best workplace. We embrace our differences, value individuality, and the broad spectrum of every Waver's skills and abilities. We challenge each other from a place of respect and pursuit of continuous growth. We trust each other and encourage everyone to bring their authentic selves to work, everyday. As Wavers, our voices matter, our opinions are met with an open mind. The best ideas win, no matter whose they are.  Contributing to an inclusive culture is a part of all of our job descriptions. 


We’ve been continuously recognized as one of Canada's Top Ten Most Admired Corporate Cultures and one of Canada’s Great Places to Work in categories including Technology, Millennials, Mental Health, Inclusion and Women.  


Are you ready to be a Waver? Join us!

Average salary estimate

$100000 / YEARLY (est.)
min
max
$80000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Manager, Security Compliance, Wave HQ

At Wave, we wholeheartedly believe that small businesses are the backbone of our communities, and we’re dedicated to empowering them with an all-in-one financial management solution that simplifies their lives. We’re on the lookout for a passionate Manager of Security Compliance to join our team in Toronto, Ontario. In this pivotal role, you will be at the forefront of creating and managing our security compliance programs. You’ll design frameworks, develop policies, and ensure that we adhere to all relevant regulations while mitigating any potential risks to sensitive information. You’ll also lead our Security Risk Management team to innovate and streamline security control assessments. Regular audits and risk assessments will be part of your duties, so you’ll need to collaborate closely with various stakeholders to address any compliance gaps. Your project management skills will shine as you plan and coordinate projects aligned with IT and cybersecurity objectives, ensuring that thorough training programs promote a culture of security awareness throughout our organization. At Wave, we are not just about compliance; we take pride in fostering a diverse and inclusive culture where every voice matters. You’ll be supported every step of the way with opportunities for growth and development. If you have a passion for making a difference and meet the qualifications we seek, we would love for you to join us in championing small businesses!

Frequently Asked Questions (FAQs) for Manager, Security Compliance Role at Wave HQ
What are the responsibilities of the Manager, Security Compliance at Wave?

As the Manager, Security Compliance at Wave, your primary responsibilities include developing and managing the security compliance programs, designing frameworks and policies, leading the Security Risk Management team, conducting risk assessments and audits, and overseeing incident management. You will collaborate cross-functionally and ensure that the company adheres to relevant regulations while promoting a culture of security awareness.

Join Rise to see the full answer
What qualifications are needed for the Manager, Security Compliance position at Wave?

To qualify for the Manager, Security Compliance role at Wave, you need at least 5 years of relevant professional experience in compliance and controls, a Bachelor's degree in Computer Science or Cybersecurity, and advanced knowledge of standards like AICPA SOC2, SOX, and HIPAA. Leadership experience in audits and technical expertise in SaaS or AWS environments are also essential.

Join Rise to see the full answer
How can one succeed in the Manager, Security Compliance role at Wave?

Success in the Manager, Security Compliance role at Wave requires a mix of strong project management skills, a proactive approach to risk assessments, and effective communication with stakeholders. Staying updated with industry trends and regulations while fostering a security-aware culture and being comfortable working with both technical and non-technical teams are key to excelling in this position.

Join Rise to see the full answer
What does the work environment look like for the Manager, Security Compliance at Wave?

Wave offers a flexible work environment for the Manager, Security Compliance. You have the choice to work from our welcoming office in Toronto or from the comfort of your home. We also emphasize health and wellness benefits, cultural inclusivity, and opportunities for professional growth.

Join Rise to see the full answer
What projects will the Manager, Security Compliance oversee at Wave?

The Manager, Security Compliance at Wave will oversee various projects related to compliance frameworks and security policies. This includes planning scope and deliverables in alignment with IT and cybersecurity objectives, as well as ensuring that project timelines and budgets are met while collaborating with different departments and external vendors.

Join Rise to see the full answer
Common Interview Questions for Manager, Security Compliance
Can you explain your experience with security compliance frameworks?

When answering this question, be specific about the frameworks you have worked with and illustrate how you've implemented them in past roles. Highlight any measurable improvements or efficiencies achieved under your management.

Join Rise to see the full answer
How do you handle risk assessments in your current or previous role?

Discuss the methodologies you use for risk assessments, any tools or software you are familiar with, and how you communicate findings to stakeholders. Provide examples of how you have successfully addressed compliance gaps.

Join Rise to see the full answer
What strategies do you employ to stay updated on emerging regulations?

Mention your usage of professional networks, industry publications, and training sessions. Emphasize your commitment to continuous learning and adapting compliance strategies in response to regulatory changes.

Join Rise to see the full answer
Can you provide an example of a security incident you managed?

Share details of the incident, your role in the investigation, the steps you took for resolution, and the follow-up measures implemented to prevent future occurrences. Highlight the importance of timely reporting and stakeholder communication.

Join Rise to see the full answer
What experience do you have with vendor compliance management?

Discuss your approach to assessing and monitoring third-party vendors, as well as how you ensure compliance with security standards. Include examples if you’ve faced challenges and how you resolved them.

Join Rise to see the full answer
How do you foster a culture of compliance within an organization?

Explain your methods in promoting compliance awareness, as well as the training programs you have developed to educate employees on security protocols. Emphasize the role of leadership and communication in creating a security-minded culture.

Join Rise to see the full answer
Describe a challenging auditing process you've led.

Detail the challenges faced during the audit, how you prepared your team, and the outcomes of the audit. Illustrate the lessons learned and adjustments you made for future audits.

Join Rise to see the full answer
What project management tools or methodologies do you prefer for compliance projects?

Share any specific project management tools you are accustomed to using, supplemented by your reasoning behind choosing a particular methodology. Relate this to how you manage timelines, resources, and team communication.

Join Rise to see the full answer
What role does automation play in your compliance strategy?

Discuss your experience with implementing automated workflows for compliance tasks and how it has helped improve efficiency and reduce errors in compliance reporting and monitoring.

Join Rise to see the full answer
How do you prioritize multiple compliance projects?

Articulate a strategy for prioritizing tasks based on urgency, importance, and impact on the organization. Provide an example of a time when you successfully juggled multiple projects while maintaining compliance.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Wave HQ Remote Toronto, Ontario
Posted 13 days ago
Photo of the Rise User
Vantiva Remote Av. Magallanes, El Mirador Juan Arias, 45602 Santa Anita, Jal., Mexico
Posted 14 days ago
FSR, LLC. Hybrid Herndon Pkwy, Herndon, VA 20170, USA
Posted 4 days ago
Photo of the Rise User
ServiceNow Hybrid 4400 Carillon Point, Floor 4, Kirkland, Washington, United States
Posted 5 days ago
Inclusive & Diverse
Mission Driven
Rise from Within
Diversity of Opinions
Work/Life Harmony
Empathetic
Feedback Forward
Take Risks
Collaboration over Competition
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Conferences Stipend
Paid Time-Off
Maternity Leave
Equity
Photo of the Rise User
Vast Hybrid Long Beach, California, United States
Posted 11 days ago
Posted 2 days ago

Founded in 2010 and headquartered in Toronto, Ontario, Wave Apps provides software solutions and related services for small business owners to manage finances.

29 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
March 11, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
A
Someone from OH, Lewis Center just viewed 34505367634 - Fraud Analyst at Activate Talent
Photo of the Rise User
Someone from OH, Dublin just viewed Senior Third-Party Risk Analyst at Fenergo
Photo of the Rise User
Someone from OH, Columbus just viewed US Product Designer at Praxent
Photo of the Rise User
Someone from OH, Cleveland just viewed Accounting Co-Op (Part-Time) at Avery Dennison
Photo of the Rise User
Someone from OH, North Ridgeville just viewed Product Manager at ShiftCare
Photo of the Rise User
Someone from OH, North Ridgeville just viewed Product Operations at Binance
Photo of the Rise User
Someone from OH, Mentor just viewed Sales & Service Lead - Pinecrest at Alo Yoga