Back to job search
LTM logo
LTMVerified Job Source

Senior GRC Consultant with AI skills(Onsite)

  • ON
  • On-site
  • Posted Sep 26, 2026
  • 1 position

US$120,000–US$145,000 / year

Opens an external site

Sign in to save this job
Employment type
Full-time
Experience level
Lead · 10+ years
Apply by
Mar 7, 2027
Posting language
English
Working hours
40 hours per week
Seniority
Mid-Senior level

Job summary

Lead and develop the GRC team, own the cybersecurity and GRC roadmap and operating framework, and align security practices with corporate strategy and client, regulatory, and business requirements. Direct audits, risk and remediation activities, incident response, and governance for AI-enabled products and services.

Job details

Role Description Senior GRC Consultant with AI skills Mississauga, ON(Onsite) The Senior Leader Cybersecurity is the accountable cybersecurity and GRC leader . This handson role sets direction and drives execution across information security governance risk compliance privacy resilience and security incident response for a platform product and SaaS business serving financial institutions . The leader will translate regulatory contractual and emerging threat requirements into a prioritized roadmap measurable actions and sustainable operating practices The role leads the GRC team of three aligns with the Corporate CISO organization and works directly with all levels of clients auditors product managers architects engineering testing delivery and support teams. The successful candidate must be comfortable moving between strategic leadership client engagement operational decisionmaking and detailed follow through Primary Outcomes An integrated riskbased cybersecurity and GRC roadmap aligned to FSTI business priorities and the Corporate CISO strategy. Clear ownership prioritization and closure of security risk audit privacy resilience and compliance actions. Decisive leadership of security incidents including coordination stakeholder communication remediation lessons learned and closure. A mature GRC team structure and operating model that scales as FSTI products clients regulations technologies and delivery patterns evolve. Client confidence through transparent monthly GRC and security cadences evidencebased reporting and timely responses to security and compliance requests. Practical controls for AI enabled products AI use thirdparty AI services and emerging cyber threats. Key Responsibilities Leadership Strategy Operating Model. Lead coach and mature the FSTI GRC team of three establishing clear roles objectives decision rights governance forums and performance measures. Own and maintain a multiyear cybersecurity and GRC roadmap translating business regulatory client audit and threat priorities into funded and sequenced initiatives. Align FSTI security practices standards exceptions and reporting with the Corporate LTM CISO organization while addressing FSTIspecific product SaaS and client requirements. Operate effectively across a global delivery model partnering with primarily onshore leaders and product managers and predominantly offshore engineering testing support and delivery teams including teams in offshore. Provide handson guidance remove roadblocks escalate material risks and drive actions to measurable completion. Governance Risk Compliance Assurance. Own the FSTI GRC framework risk register control library policy and standards lifecycle exception process issue management and executive reporting. Lead internal and external audits and assessments including SOC 1 SOC 2 ISO 27001 NISTaligned reviews client audits and other applicable assurance activities. Interpret regulatory contractual and privacy obligations applicable to financial institutions and technology service providers and map them to FSTI controls evidence and accountable owners. Drive vulnerability penetration testing access governance thirdparty risk security awareness business continuity disaster recovery and remediation governance to closure. Partner with legal privacy procurement architecture product engineering and operations teams to embed Security and Privacy by Design across the product lifecycle. Security Incident Emerging Threat Leadership. Serve as the FSTI lead for confirmed or suspected security incidents coordinating triage containment investigation recovery communications required notifications corrective actions and lessons learned with Corporate CISO and business stakeholders. Establish clear incident roles escalation criteria decision paths communications protocols and exercise schedules for cyber privacy thirdparty cloud and product related scenarios. Monitor threat intelligence and emerging risks assess applicability to FSTI prioritize response actions assign owners track progress and report residual risk. Anticipate threats affecting financialservices technology and SaaS environments including identity compromise software supplychain risk ransomware cloud misconfiguration API abuse data leakage third party concentration risk and AI enabled attacks. AI Security Responsible AI Risk. Develop and operationalize governance for approved AI use AIenabled product capabilities generative AI machine learning and thirdparty AI services in alignment with enterprise requirements. Assess AIspecific threats and control needs including sensitivedata exposure prompt injection insecure model or plugin integration model and data supplychain risk excessive agency unreliable output abuse privacy intellectualproperty and regulatory risk Other Details Vacancy Type: New Vacancy Benefits/perks listed below may vary depending on the nature of your employment with LTIMindtree Canada (“LTIMC”): Benefits And Perks Comprehensive Medical Plan Covering Medical, Dental, Vision Health Care Spending Account Short Term and Long-Term Disability Coverage Life Insurance Annual vacation and other Paid Leaves Maternity Leave Top Up Pay The range displayed on each job posting reflects the total compensation range for the position across all Canada locations. Within the range, individual pay is determined by work location and job level and additional factors including job-related skills, experience, and relevant education or training. Depending on the position offered, other forms of compensation may be provided as part of overall compensation like an annual performance-based bonus, sales incentive pay and other forms of bonus or variable compensation. Disclaimer: The compensation and benefits information provided herein is accurate as of the date of this posting. LTIMindtree is an equal opportunity employer that is committed to diversity in the workplace. Our employment decisions are made without regard to race, color, creed, religion, sex (including pregnancy, childbirth or related medical conditions), gender identity or expression, national origin, ancestry, age, family-care status, veteran status, marital status, civil union status, domestic partnership status, military service, handicap or disability or history of handicap or disability, genetic information, atypical hereditary cellular or blood trait, union affiliation, affectional or sexual orientation or preference, or any other characteristic protected by applicable federal, state, or local law, except where such considerations are bona fide occupational qualifications permitted by law. Accessibility and Reasonable Accommodation: LTIMindtree has an accommodation process in place and provides accommodations for applicants with disabilities. If you require a specific accommodation because of a disability or a medical need, please write to us at applicantaccommodation.canada@ltimindtree.com so that arrangements can be made for the appropriate accommodations to be in place.

What you’ll do

Lead and develop the GRC team, own the cybersecurity and GRC roadmap and operating framework, and align security practices with corporate strategy and client, regulatory, and business requirements. Direct audits, risk and remediation activities, incident response, and governance for AI-enabled products and services.

Requirements

The role calls for a senior cybersecurity and GRC leader able to move between strategic planning, client engagement, operational decisions, and detailed execution. The candidate should be experienced with security assurance frameworks, regulatory and contractual obligations, incident leadership, SaaS and financial-services risks, and AI security governance.

Benefits

• Medical Insurance • Dental Insurance • Vision Insurance • Health Care Spending Account • Short-Term Disability Coverage • Long-Term Disability Coverage • Life Insurance • Annual Vacation • Paid Leaves • Maternity Leave Top-Up Pay • Potential Performance-Based Bonus • Potential Sales Incentive Pay

Listed skills

  • Risk Management · Preferred

Other relevant skills

Identified from the job description. Confirm important requirements above.

  • Cybersecurity Leadership
  • Governance, Risk, And Compliance
  • Risk Management
  • Security Audits And Assessments
  • SOC 1 And SOC 2
  • ISO 27001
  • NIST Frameworks
  • Security Incident Response
  • AI Security
  • Responsible AI Governance
  • Privacy And Data Protection
  • Third-Party Risk Management
  • Business Continuity And Disaster Recovery
  • Vulnerability And Penetration Testing
  • Security And Privacy By Design
  • Executive And Client Communication

Job areas

  • Security & Safety
  • Technology
  • Management & Leadership
  • Consulting

More jobs you can apply to directly

Similar opportunities posted by employers hiring on Jobs.ca, with no external application form.

Browse all Easy Apply jobs