Senior IT Security Contract Specialist
Join a recognized leader in the insurance sector and contribute to high-impact initiatives involving technology vendors, risk governance, and regulatory compliance. Working closely with cross-functional stakeholders, you will help drive operational excellence, strengthen business partnerships, and support continuous process improvement across the organization.
What is in it for you:
• Salaried: $65-75 per hour.
• Incorporated Business Rate: $75-85 per hour.
• 6-month contract with the potential for permanent employment.
• Day schedule, 37.50 hours per week.
• Hybrid work, with 3 days per week in the office.
Responsibilities:
•
Contract Management:
Manage the review, negotiation, execution, and ongoing administration of complex IT vendor contracts. Partner with Legal and subject matter experts to incorporate contractual clauses that protect company data, support regulatory compliance, and align with IT security standards.
•
Risk Advisory:
Advise business stakeholders on contractual risk, emerging regulatory requirements, and sourcing considerations.
•
Governance & Compliance:
Support contract compliance, vendor risk assessments, issue escalation, and adherence to applicable policies and regulatory requirements.
•
Cross-Functional Partnership
:
Collaborate with Legal, Procurement, Risk, Technology, and business stakeholders to align vendor contracts with operational needs and risk requirements.
•
Reporting & Insights:
Prepare contract status updates, risk reporting, and analysis to support management decisions and improve visibility.
•
Stakeholder Support:
Provide guidance and coaching to Contract Managers and business partners on IT contracting requirements and effective contract management practices.
•
Continuous Improvement:
Identify and implement opportunities to improve contract templates, workflows, controls, and vendor risk governance processes.
What you will need to succeed:
Education
• Bachelor’s degree in business, law, information technology, procurement, risk management, or a related field required.
• Master’s degree, MBA, or law degree preferred.
Experience
• 7 years of progressive experience in IT contracting, third-party risk management, vendor governance, procurement, or a related field.
• Strong experience reviewing and negotiating complex IT contracts, including SaaS, cloud, software licensing, professional services, cybersecurity, data protection, and custodial agreements.
• Experience managing complex contract negotiations and influencing stakeholders across multiple business units.
• Experience conducting or overseeing vendor information security reviews is considered an asset.
• Industry experience in financial services, including wealth management and capital markets, insurance, or technology sectors is considered an asset.
Regulatory & Technical Expertise
• Familiarity with OSFI B-10, OCC guidance, privacy laws including PIPEDA, GLBA, GDPR, and CCPA, and relevant global compliance standards.
• Proficiency with Microsoft Office, Power BI, and risk or contract management platforms such as Archer, Ivalua, or ProcessUnity.
• Knowledge of NIST 800-53, NIST Cybersecurity Framework, and ISO 27001 is considered an asset.
Languages
• Proficiency in Japanese and/or Chinese is considered an asset.
Why Recruit Action?
Recruit Action (agency permit: AP-2504511) provides recruitment services through quality support and a personalized approach. As part of the screening process, some applications may be reviewed using artificial intelligence tools. Only candidates who meet the hiring criteria will be contacted.