All roles

Manager, Security Compliance

Remote · USA Full-time New today

About the position The Security GRC team plays a critical role in adhering to security frameworks and creating space for risk mitigation and oversight. We want to ensure that Wealthsimple maintains a secure operational environment by implementing and monitoring controls designed to protect information, systems and infrastructure. We are looking to expand the Security GRC team with a Manager, Security Compliance to lead our SOX and ICFR compliance program. This role will be instrumental in ensuring Wealthsimple meets its regulatory obligations around internal controls over financial reporting while building a scalable compliance function. You will focus on owning and maturing our SOX and ICFR compliance program and have the opportunity to expand your scope to oversee the broader compliance function, including SOC 1& 2, PCI DSS, and NIST frameworks and leading a team of specialists. You'll work closely with teams across Security, Finance, Legal, Product, and Engineering to ensure controls are designed, implemented, and operating effectively.

Responsibilities

  • Own and manage the ICFR compliance program while building out a SOX program from the ground up, leveraging existing frameworks and controls where applicable
  • Partner with Finance, IT, and business stakeholders to identify and document key controls over financial reporting, ensuring controls are designed and in place ahead of audit cycles
  • Ensure IT general controls (ITGCs) and IT application controls (ITACs) supporting financial systems are properly documented and operating as intended
  • Serve as the primary point of contact for external auditors, coordinating evidence requests, walkthroughs, and finding remediation
  • Build and maintain a controls inventory with clear ownership, documentation standards, and readiness status
  • Work cross-functionally with control owners to ensure gaps are identified early and remediation plans are in place before audit periods
  • Develop and report on compliance readiness and control health to senior leadership
  • Drive continuous improvement in the efficiency and effectiveness of the SOX Compliance system (AuditBoard) and related technologies
  • Maintain current knowledge of emerging risks, industry trends, and regulatory changes relevant to the business and the audit profession
  • Expand ownership to include SOC 1&2, PCI DSS, and NIST compliance programs, building a unified compliance function
  • Lead a small team of compliance specialists, providing mentorship, prioritization, and ensuring alignment across the aforementioned compliance initiatives

Requirements

  • 6-8 years of experience in IT audit, compliance, or security assurance, with deep expertise in SOX/ICFR compliance (preferably in financial services or fintech)
  • Strong understanding of COSO framework, ITGCs, ITACs, and control design principles
  • Experience working with external auditors on SOX engagements, particularly in a coordination or liaison capacity
  • Proven ability to lead and manage a team, ensuring that audit deliverables are met efficiently and on time.
  • Proven ability to manage multiple compliance workstreams and competing priorities
  • Strong stakeholder management and communication skills with ability to influence across technical and non-technical teams
  • Experience with GRC tools and control management platforms
  • Self-directed professional who can build programs from the ground up and drive initiatives to completion

Nice-to-haves

  • Working knowledge of SOC, PCI DSS, and/or NIST frameworks is a strong asset
  • Relevant certifications preferred (CISA, CISSP, CPA, CIA, or equivalent)

Benefits

  • Top-tier health benefits and life insurance
  • Long-term group savings with employer match, through Wealthsimple for Business
  • 20 vacation days, 4 wellness days, and unlimited sick and mental health days per year
  • 90 days away: work outside Canada for up to 90 days per year
  • Employee resource groups, including Rainbow (2SLGBTQ), Women of WS, and Black at WS

Apply tot his job Apply To this Job

Related roles

Postdoctoral Fellow – Inflammation

Remote · USA Full-time

Presentation Specilaist

Remote · USA Full-time

Myasthenia Gravis Network (MGNet) Scholar Program (Research)

Remote · USA Full-time

Strategic Initiatives Manager (WMS2)

Remote · USA Full-time

[Hiring] Tele Neurologist @Sevaro - Physician/Clinical Roles

Remote · USA Full-time

Director of Lifecycle Marketing (Email & SMS - Direct Response)

Remote · USA Full-time

Catalyst Partner Marketing - EMEA

Remote · USA Full-time

GCP Solutions Architect

Remote · USA Full-time

Principal Advanced Manufacturing Research Engineer

Remote · USA Full-time

Director, New Business Development

Remote · USA Full-time

Account Executive, New Logo - Enterprise

Remote · USA Full-time

Experienced Data Entry Clerk – Remote Administrative Support for arenaflex

Remote · USA Full-time

Customer Service Representative - Remote Healthcare Support Specialist (Full Benefits Available)

Remote · USA Full-time

Flexible Remote Data Entry Specialist - Work From Home | Entry-Level Data Processing Position with Training, Benefits & Career Growth Opportunities

Remote · USA Full-time

Virtual Assistant (PTE) [2620-244751]

Remote · USA Full-time

Customer Success Operations Analyst

Remote · USA Full-time

Klaviyo Email Marketing Specialist (German) – Newsletter Campaigns for DTC E-Commerce Brand

Remote · USA Full-time

Technical Account Manager (Remote, BRA)

Remote · USA Full-time

Fitness Consultant

Remote · USA Full-time

Remote Data Entry Specialist – arenaflex Logistics Information Management Professional (Work From Home)

Remote · USA Full-time