Information Security Compliance Analyst
$100k - $115kGowling WLG
Information Security Compliance Analyst
At Gowling WLG, our commitment to excellence begins with our people. As an international law firm with offices in Canada, the U.K., Europe, the Middle East, and Asia, we're proud to recruit and retain top talent who bring energy, insight, and a singular focus on delivering exceptional experiences – for our clients and each other.
We're intentional about building a workplace that's both high-performing and supportive, ensuring that everyone is empowered to do their best work and reach their full potential. Our culture is grounded in our shared values: Raise the Bar, Embrace Differences, and Thrive Together. These values shape how we collaborate, lead, and succeed – across teams, time zones, and career paths.
Whether you're pursuing a role in law or business services, explore what's possible and make your mark with Gowling WLG.
Responsibilities
- Review and assess client contractual obligations and Outside Counsel Guidelines (OCGs) related to cybersecurity, confidentiality, and information governance.
- Coordinate and manage the firm's responses to client security assessments, questionnaires, and audits.
- Track compliance obligations and provide clear reporting to firm leadership and practice groups.
- Collaborate with IS Coordinator and IT to ensure controls align with client and industry standards (OCG, ISO/IEC 27001:2022, NIST, etc.).
- Organize and manage third-party security audits and internal audits to ensure continuous improvement of the firm's Information Security Management System (ISMS).
- Work with the Information Security Coordinator to prepare for and assist in annual ISO/IEC 27001 audits, including surveillance and recertification audits.
- Monitor the effectiveness of security controls, policies, and procedures, ensuring compliance with ISO/IEC 27001:2022 requirements.
- Act as the firm's Designated Official (DO) under the Controlled Goods Program (CGP), responsible for registration, compliance, and monitoring.
- Serve as the firm's Company Security Officer (CSO) under Canada's Contract Security Program (CSP).
- Oversee personnel security screening, compliance training, and incident reporting in line with regulatory obligations.
- Act as primary liaison with Public Services and Procurement Canada (PSPC), and other regulatory bodies.
- Develop, implement, and maintain procedures, and training programs that support compliance with client and regulatory security requirements.
- Conduct regular risk assessments and internal reviews to identify compliance gaps and oversee corrective actions.
- Provide ongoing compliance training and awareness for lawyers, staff, and management.
- Maintain comprehensive documentation and evidence of compliance activities.
Qualifications
- Bachelor's degree in information security, Business Administration, or a related field.
- 5+ years of experience in compliance, cybersecurity governance, or regulatory affairs (law firm or professional services sector strongly preferred).
- Demonstrated knowledge of ISO/IEC 27001:2022 and experience with internal/external audit preparation and management.
- The following certifications are required for this position. If the successful candidate does not have them, they must be willing to obtain:
- ISO/IEC 27001:2022 Lead Auditor or Lead Implementer
- Completion of the Controlled Goods Program Designated Official Certification Program, or ability to complete upon appointment
- Completion of Contract Security Program Company Security Officer training, or ability to complete upon appointment.
- The following certifications would be considered an asset:
- CISA, ISC2 CGRC, CRISC, CIPP/C, CIPM, Security+, NIST Cybersecurity Framework training, or equivalent GRC/audit/compliance credentials.
- Familiarity with Canadian security programs: Controlled Goods Program (CGP) and Contract Security Program (CSP).
- Experience serving as, or supporting, a Designated Official (DO) and/or Company Security Officer (CSO) is an asset.
- Strong understanding of client-facing compliance processes (e.g., OCGs, security questionnaires, vendor due diligence).
- Excellent organizational, communication, and problem-solving skills.
- Proven ability to handle sensitive information with discretion and professionalism.
- Bilingualism (English/French) is considered an asset.
Benefits/Perks
Gowling WLG's total rewards program is designed to foster a culture where high performance and personal well-being go hand-in-hand. We support your career and life with:
- 100% employer-paid health, dental, and mental health coverage, plus an annual lifestyle spending allowance
- Benefits coverage for Firm members and their dependents from day one!
- 15+ vacation days and hybrid work flexibility
- Parental leave top-up for 26 weeks (after 12 months of full-time employment)
- Group Retirement Savings Plan with employer match
- Financial protection through short & long-term disability, life, accident & critical illness insurance
- Employee & Family Assistance Program, guided CBT, and an internal network of 120+ trained Mental Health First Aid responders
- Recognition awards, appreciation events, and a supportive, collaborative work culture
- Perks and preferred pricing programs, referral bonuses and more
The starting range for this role is $100,000 to $115,000. Starting salary will be determined based on an applicant's individual skills, competencies and unique qualifications. Gowling WLG employees have the potential to exceed this range based on tenure and performance.
This position is currently vacant and is open to both internal and external candidates. Gowling WLG is recruiting for this role to support ongoing firm needs and team operations.
This employer may use tools within our applicant tracking system that include artificial intelligence–supported features, such as automated candidate matching. These tools do not make hiring decisions; all screening, assessments, and selections are reviewed and completed by human recruiters and hiring managers.
Gowling WLG is dedicated to building a diverse and inclusive workplace. If you are in need of accommodation or support at any time during the recruitment process, please let us know.
$2,000 per month
...advantage of all structured and unstructured data - securing and protecting private information more effectively - Elastic's complete, cloud-based... ...seeking an experienced Senior Information Security Compliance Analyst to lead our Department of Defense (DoD) Impact...SuggestedLocal areaFlexible hours- ...Life Insurance Company (GTL) is currently seeking an IT Security Compliance Analyst to join our team! Since 1936, GTL has offered cutting... ...maintaining security compliance controls to protect sensitive information, reduce risk, and support business operations. You...SuggestedTemporary workWork at officeRemote workFlexible hours
$84.9k - $108.2k
...solutions and inspired service. The Opportunity The IT Security Compliance Analyst provides support for IT Compliance Programs, and will... ...and other duties. Incumbent will oversee and gather information related to the ongoing activities within Velera, including...SuggestedWork experience placementLocal areaRemote workFlexible hours- ...IT Security Compliance Analyst We are in search of an IT Security Compliance Analyst to join the dynamic team of professionals providing world... ...Auditors and Engineering/IT by coordinating requests for information and coordinating responses to any observations....SuggestedFull timeWork experience placementWork at office
- ...IT Security & Compliance Analyst The IT Security & Compliance Analyst supports and operationalizes the organization's global information security and compliance program in support of mission-critical, safety-sensitive, and highly regulated aviation operations. The...Suggested
- Position: IT Compliance and Security Analyst Location: Fort Worth, TX Job Id: 2457 # of Openings: 1 Who We Are: Yesway is one of the fastest-growing... ...regulatory requirements; Develop and lead the global information technology compliance program in the areas of...Local areaRelocationShift work
- Join Cooper's Hawk Winery as an Information Security & Compliance Analyst. This vital role focuses on executing the governance, risk, and compliance program with a focus on PCI DSS 4.0 and SOX compliance. You will coordinate audits, manage risk assessments, and ensure compliance...Flexible hours
- TechDigital Group is seeking a knowledgeable IT Business Analyst with security expertise in the healthcare sector. This role requires collaboration... ...to ensure the protection of Electronic Protected Health Information (ePHI), and implementing security measures that comply with...
- ...convenience store operator based in Texas is seeking an IT Compliance and Security Analyst responsible for ensuring IT policy adherence and... ...related field, with at least four years of experience in Information Security. The role involves managing IT audits, regulatory...
- ...Information Technology Full Time Position Description As an Information Security Compliance Analyst, you will learn about the regulatory, contractual, and legislative requirements that affect technology used by our Company . You will be responsible for coordinating...Full timeWork from home2 days per week
$91.6k - $116.2k
...if a sufficient number of applications are received . Compliance Information Security Engineer Meet the Team In today's constantly... ...Role Description The Compliance Information Security Analyst will play a meaningful role in attaining and maintaining...Full timeTemporary workLocal areaWorldwideFlexible hours- ...Drive (San Diego, CA) and remote. DESCRIPTION The IT Security Risk and Compliance Analyst executes processes across the organization to conduct... ...risk assessment and compliance program to reduce information security risk, address threats and vulnerabilities to information...Hourly payRemote work
$94.22k - $125.63k
...Information Security Compliance Analyst At CooperVision, a division of CooperCompanies, we're driven by a unifying purpose to help people to experience life's beautiful moments. We are connected through our shared values - dedicated, innovative, friendly, partners,...Full timeWork at office$57.5k - $89.5k
...In this hybrid role based at our Chicago Headquarters, you will support the Information security governance, risk management and compliance program, focusing on compliance and assurance. Facilitate the compliance and assurance program, by performing assurance assessments...Full timeTemporary workPart timeWork from home3 days per week$100k - $120k
...Wine Club Members and the entire Cooper’s Hawk community. Join us, and let’s turn moments into lasting memories. The Information Security & Compliance Analyst supports the execution of Cooper’s Hawk Winery & Restaurants’ Governance, Risk, and Compliance (GRC) program, with...Temporary workCasual workWork at officeRemote workFlexible hours$105k - $132k
...Payroll Title: IT SCRTY ANL 3 TX Department: INFORMATION SERVICES Hiring Pay Scale $105,000 - $132,000 / Year Worksite... ...: Days, 8 hrs/day, Monday-Friday #139800 IT Security Risk and Compliance Analyst - Hybrid Filing Deadline: Thu 6/11/2026...Hourly payContract workLocal areaRemote workMonday to Friday- ...Job Description: Job Title: Information Security Risk and Compliance Analyst Location: Topeka, KS Employment Type : Full-Time About Capitol Federal At Capitol Federal Savings Bank , we are committed to helping individuals, families, and communities...Full timeWork at officeFlexible hours
$94.22k - $125.63k
...onsite work (5 days per week) in Victor, NY and is not eligible for relocation assistance. Job Summary: The Information Security Compliance Analyst supports the Manager, Identify & Protect in the design, implementation, operation, and continuous improvement of...Permanent employmentFull timeH1bWork at officeRelocation package- A leading B2B payment solutions provider is seeking a Senior Information Security Analyst in Overland Park, Kansas. The role focuses on security operations and compliance, requiring expertise in incident response and audit readiness for frameworks such as PCI DSS and ISO...
- Bristow Group, Inc. in Houston, Texas is seeking an IT Security & Compliance Analyst to enhance the organization's global information security and compliance program. This role will focus on security operations, vulnerability management, and regulatory compliance for critical...
- ...Security Risk & Compliance Analyst The Security Risk & Compliance Analyst supports the organizations global information security program by assisting in the identification, assessment, and management of information security risks and compliance demands across Victaulic...Work at office
- Description Identity Access Management Analyst The Identity Access Management (IAM)... ...that access is granted and maintained in a secure and compliant manner. Responsibilities... .... This includes keeping stakeholders informed of the latest security threats, and explaining...
- Information Security Compliance Analyst 12 Months Phoenix, AZ 85007 Position is primary remote with some time in office as needed for meetings. Job Summary The Information Security/Compliance Analyst will plan, implement, upgrade, and monitor security protocols for the...Remote jobWork at office
- ...leading consulting firm in Wakefield is looking for an experienced Information Security Analyst. You will lead the design, implementation, and management of the information security program, ensuring compliance with NIST, CMMC, and SOC-2 frameworks. The successful candidate...
- Cooper's Hawk Winery and Restaurants is seeking an Information Security & Compliance Analyst in Downers Grove, IL. The successful candidate will support the Governance, Risk, and Compliance program with a focus on PCI DSS 4.0 and SOX compliance. Responsibilities include...
- Sunrise Systems is seeking an Information Security Compliance Analyst to develop and implement security protocols for network protection. This position is primarily remote with some in-office attendance required for meetings. Ideal candidates will have a Bachelor's in Computer...Remote jobWork at office
- Teradata Corporation (SE) seeks a Compliance Analyst in Albany, NY. In this role, you will support Teradata's security compliance programs across global cloud offerings. Responsibilities... ...candidate will hold a Bachelor's degree in Information Security and possess 1 to 3 years of...
$94.1k - $169.6k
T-Mobile is seeking a candidate to ensure compliance with government regulations and protect restricted data through security measures and AI integration. The role requires a Bachelor’s degree and 5 years of related experience, or an advanced degree with 3 years' experience...- ...building programs, policies and practices to ensure that the organization complies with industry and government regulatory compliance. Increase security awareness, assess compliance and where necessary, provide support in remediating non-compliant areas. Essential Tasks...
$89.71k
...knowledge, skills, and behaviors required. SUMMARY - Senior Information Security Analyst: Under the general supervision of the Supervisor, IT... ...uses software tools to ensure proper security posture for compliance. Writes reports and briefings related to specific information...Full timeWork experience placementWork at officeNight shiftWeekend workAfternoon shiftWeekday work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Compliance Analyst. Be the first to apply!
- business information analyst United States
- data analyst full time United States
- data protection analyst United States
- epic reporting analyst United States
- data conversion analyst United States
- business intelligence data analyst United States
- data analyst intern United States
- entry level information security analyst United States
- data analyst no experience United States
- information systems analyst United States


