Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Compliance Analyst

$100k - $115k

Gowling WLG

Information Security Compliance Analyst

At Gowling WLG, our commitment to excellence begins with our people. As an international law firm with offices in Canada, the U.K., Europe, the Middle East, and Asia, we're proud to recruit and retain top talent who bring energy, insight, and a singular focus on delivering exceptional experiences – for our clients and each other.

We're intentional about building a workplace that's both high-performing and supportive, ensuring that everyone is empowered to do their best work and reach their full potential. Our culture is grounded in our shared values: Raise the Bar, Embrace Differences, and Thrive Together. These values shape how we collaborate, lead, and succeed – across teams, time zones, and career paths.

Whether you're pursuing a role in law or business services, explore what's possible and make your mark with Gowling WLG.

Responsibilities
  • Review and assess client contractual obligations and Outside Counsel Guidelines (OCGs) related to cybersecurity, confidentiality, and information governance.
  • Coordinate and manage the firm's responses to client security assessments, questionnaires, and audits.
  • Track compliance obligations and provide clear reporting to firm leadership and practice groups.
  • Collaborate with IS Coordinator and IT to ensure controls align with client and industry standards (OCG, ISO/IEC 27001:2022, NIST, etc.).
  • Organize and manage third-party security audits and internal audits to ensure continuous improvement of the firm's Information Security Management System (ISMS).
  • Work with the Information Security Coordinator to prepare for and assist in annual ISO/IEC 27001 audits, including surveillance and recertification audits.
  • Monitor the effectiveness of security controls, policies, and procedures, ensuring compliance with ISO/IEC 27001:2022 requirements.
  • Act as the firm's Designated Official (DO) under the Controlled Goods Program (CGP), responsible for registration, compliance, and monitoring.
  • Serve as the firm's Company Security Officer (CSO) under Canada's Contract Security Program (CSP).
  • Oversee personnel security screening, compliance training, and incident reporting in line with regulatory obligations.
  • Act as primary liaison with Public Services and Procurement Canada (PSPC), and other regulatory bodies.
  • Develop, implement, and maintain procedures, and training programs that support compliance with client and regulatory security requirements.
  • Conduct regular risk assessments and internal reviews to identify compliance gaps and oversee corrective actions.
  • Provide ongoing compliance training and awareness for lawyers, staff, and management.
  • Maintain comprehensive documentation and evidence of compliance activities.
Qualifications
  • Bachelor's degree in information security, Business Administration, or a related field.
  • 5+ years of experience in compliance, cybersecurity governance, or regulatory affairs (law firm or professional services sector strongly preferred).
  • Demonstrated knowledge of ISO/IEC 27001:2022 and experience with internal/external audit preparation and management.
  • The following certifications are required for this position. If the successful candidate does not have them, they must be willing to obtain:
    • ISO/IEC 27001:2022 Lead Auditor or Lead Implementer
    • Completion of the Controlled Goods Program Designated Official Certification Program, or ability to complete upon appointment
    • Completion of Contract Security Program Company Security Officer training, or ability to complete upon appointment.
  • The following certifications would be considered an asset:
    • CISA, ISC2 CGRC, CRISC, CIPP/C, CIPM, Security+, NIST Cybersecurity Framework training, or equivalent GRC/audit/compliance credentials.
  • Familiarity with Canadian security programs: Controlled Goods Program (CGP) and Contract Security Program (CSP).
  • Experience serving as, or supporting, a Designated Official (DO) and/or Company Security Officer (CSO) is an asset.
  • Strong understanding of client-facing compliance processes (e.g., OCGs, security questionnaires, vendor due diligence).
  • Excellent organizational, communication, and problem-solving skills.
  • Proven ability to handle sensitive information with discretion and professionalism.
  • Bilingualism (English/French) is considered an asset.
Benefits/Perks

Gowling WLG's total rewards program is designed to foster a culture where high performance and personal well-being go hand-in-hand. We support your career and life with:

  • 100% employer-paid health, dental, and mental health coverage, plus an annual lifestyle spending allowance
  • Benefits coverage for Firm members and their dependents from day one!
  • 15+ vacation days and hybrid work flexibility
  • Parental leave top-up for 26 weeks (after 12 months of full-time employment)
  • Group Retirement Savings Plan with employer match
  • Financial protection through short & long-term disability, life, accident & critical illness insurance
  • Employee & Family Assistance Program, guided CBT, and an internal network of 120+ trained Mental Health First Aid responders
  • Recognition awards, appreciation events, and a supportive, collaborative work culture
  • Perks and preferred pricing programs, referral bonuses and more

The starting range for this role is $100,000 to $115,000. Starting salary will be determined based on an applicant's individual skills, competencies and unique qualifications. Gowling WLG employees have the potential to exceed this range based on tenure and performance.

This position is currently vacant and is open to both internal and external candidates. Gowling WLG is recruiting for this role to support ongoing firm needs and team operations.

This employer may use tools within our applicant tracking system that include artificial intelligence–supported features, such as automated candidate matching. These tools do not make hiring decisions; all screening, assessments, and selections are reviewed and completed by human recruiters and hiring managers.

Gowling WLG is dedicated to building a diverse and inclusive workplace. If you are in need of accommodation or support at any time during the recruitment process, please let us know.

Vacancy posted 6 hours ago
Similar jobs that could be interesting for youBased on the Information Security Compliance Analyst in United States vacancy
  • $2,000 per month

     ...advantage of all structured and unstructured data - securing and protecting private information more effectively - Elastic's complete, cloud-based...  ...seeking an experienced Senior Information Security Compliance Analyst to lead our Department of Defense (DoD) Impact... 
    Suggested
    Local area
    Flexible hours

    Elastic

    Mountain View, CA
    3 days ago
  •  ...Life Insurance Company (GTL) is currently seeking an IT Security Compliance Analyst to join our team! Since 1936, GTL has offered cutting...  ...maintaining security compliance controls to protect sensitive information, reduce risk, and support business operations. You... 
    Suggested
    Temporary work
    Work at office
    Remote work
    Flexible hours

    Guarantee Trust

    Elkhorn, NE
    16 hours ago
  • $84.9k - $108.2k

     ...solutions and inspired service. The Opportunity The IT Security Compliance Analyst provides support for IT Compliance Programs, and will...  ...and other duties. Incumbent will oversee and gather information related to the ongoing activities within Velera, including... 
    Suggested
    Work experience placement
    Local area
    Remote work
    Flexible hours

    Velera Health

    United States
    2 days ago
  •  ...IT Security Compliance Analyst We are in search of an IT Security Compliance Analyst to join the dynamic team of professionals providing world...  ...Auditors and Engineering/IT by coordinating requests for information and coordinating responses to any observations.... 
    Suggested
    Full time
    Work experience placement
    Work at office

    Aequor Inc

    Rochelle Park, NJ
    27 days ago
  •  ...IT Security & Compliance Analyst The IT Security & Compliance Analyst supports and operationalizes the organization's global information security and compliance program in support of mission-critical, safety-sensitive, and highly regulated aviation operations. The... 
    Suggested

    Bristow Group

    Houston, TX
    19 days ago
  • Position: IT Compliance and Security Analyst Location: Fort Worth, TX Job Id: 2457 # of Openings: 1 Who We Are: Yesway is one of the fastest-growing...  ...regulatory requirements; Develop and lead the global information technology compliance program in the areas of... 
    Local area
    Relocation
    Shift work

    Yesway

    Fort Worth, TX
    16 hours ago
  • Join Cooper's Hawk Winery as an Information Security & Compliance Analyst. This vital role focuses on executing the governance, risk, and compliance program with a focus on PCI DSS 4.0 and SOX compliance. You will coordinate audits, manage risk assessments, and ensure compliance... 
    Flexible hours

    Cooper's Hawk Winery

    Downers Grove, IL
    4 days ago
  • TechDigital Group is seeking a knowledgeable IT Business Analyst with security expertise in the healthcare sector. This role requires collaboration...  ...to ensure the protection of Electronic Protected Health Information (ePHI), and implementing security measures that comply with... 

    TechDigital Group

    North Wales, PA
    4 days ago
  •  ...convenience store operator based in Texas is seeking an IT Compliance and Security Analyst responsible for ensuring IT policy adherence and...  ...related field, with at least four years of experience in Information Security. The role involves managing IT audits, regulatory... 

    Yesway

    Fort Worth, TX
    16 hours ago
  •  ...Information Technology Full Time Position Description As an Information Security Compliance Analyst, you will learn about the regulatory, contractual, and legislative requirements that affect technology used by our Company . You will be responsible for coordinating... 
    Full time
    Work from home
    2 days per week

    Reynolds & Reynolds Inc

    Dayton, OH
    4 days ago
  • $91.6k - $116.2k

     ...if a sufficient number of applications are received . Compliance Information Security Engineer Meet the Team In today's constantly...  ...Role Description The Compliance Information Security Analyst will play a meaningful role in attaining and maintaining... 
    Full time
    Temporary work
    Local area
    Worldwide
    Flexible hours

    Cisco

    San Jose, CA
    2 days ago
  •  ...Drive (San Diego, CA) and remote. DESCRIPTION The IT Security Risk and Compliance Analyst executes processes across the organization to conduct...  ...risk assessment and compliance program to reduce information security risk, address threats and vulnerabilities to information... 
    Hourly pay
    Remote work

    University of California

    San Diego, CA
    9 days ago
  • $94.22k - $125.63k

     ...Information Security Compliance Analyst At CooperVision, a division of CooperCompanies, we're driven by a unifying purpose to help people to experience life's beautiful moments. We are connected through our shared values - dedicated, innovative, friendly, partners,... 
    Full time
    Work at office

    Cooper Cos.

    Victor, NY
    4 days ago
  • $57.5k - $89.5k

     ...In this hybrid role based at our Chicago Headquarters, you will support the Information security governance, risk management and compliance program, focusing on compliance and assurance. Facilitate the compliance and assurance program, by performing assurance assessments... 
    Full time
    Temporary work
    Part time
    Work from home
    3 days per week

    Alliant Credit Union

    Chicago, IL
    2 days ago
  • $100k - $120k

     ...Wine Club Members and the entire Cooper’s Hawk community. Join us, and let’s turn moments into lasting memories. The Information Security & Compliance Analyst supports the execution of Cooper’s Hawk Winery & Restaurants’ Governance, Risk, and Compliance (GRC) program, with... 
    Temporary work
    Casual work
    Work at office
    Remote work
    Flexible hours

    Cooper's Hawk Winery & Restaurant

    Downers Grove, IL
    3 days ago
  • $105k - $132k

     ...Payroll Title: IT SCRTY ANL 3 TX Department: INFORMATION SERVICES Hiring Pay Scale $105,000 - $132,000 / Year Worksite...  ...: Days, 8 hrs/day, Monday-Friday #139800 IT Security Risk and Compliance Analyst - Hybrid Filing Deadline: Thu 6/11/2026... 
    Hourly pay
    Contract work
    Local area
    Remote work
    Monday to Friday

    University of California San Diego

    Nacogdoches, TX
    4 days ago
  •  ...Job Description: Job Title: Information Security Risk and Compliance Analyst Location: Topeka, KS Employment Type : Full-Time About Capitol Federal At Capitol Federal Savings Bank , we are committed to helping individuals, families, and communities... 
    Full time
    Work at office
    Flexible hours

    Capitol Federal Savings Bank

    Topeka, KS
    6 hours ago
  • $94.22k - $125.63k

     ...onsite work (5 days per week) in Victor, NY and is not eligible for relocation assistance. Job Summary: The Information Security Compliance Analyst supports the Manager, Identify & Protect in the design, implementation, operation, and continuous improvement of... 
    Permanent employment
    Full time
    H1b
    Work at office
    Relocation package

    Cooper Companies

    Victor, NY
    1 day ago
  • A leading B2B payment solutions provider is seeking a Senior Information Security Analyst in Overland Park, Kansas. The role focuses on security operations and compliance, requiring expertise in incident response and audit readiness for frameworks such as PCI DSS and ISO... 

    TreviPay

    Overland Park, KS
    16 hours ago
  • Bristow Group, Inc. in Houston, Texas is seeking an IT Security & Compliance Analyst to enhance the organization's global information security and compliance program. This role will focus on security operations, vulnerability management, and regulatory compliance for critical... 

    Bristow Group, Inc.

    Houston, TX
    2 days ago
  •  ...Security Risk & Compliance Analyst The Security Risk & Compliance Analyst supports the organizations global information security program by assisting in the identification, assessment, and management of information security risks and compliance demands across Victaulic... 
    Work at office

    Victaulic

    Easton, PA
    1 day ago
  • Description Identity Access Management Analyst The Identity Access Management (IAM)...  ...that access is granted and maintained in a secure and compliant manner. Responsibilities...  .... This includes keeping stakeholders informed of the latest security threats, and explaining... 

    MidFirst Bank

    Oklahoma City, OK
    4 days ago
  • Information Security Compliance Analyst 12 Months Phoenix, AZ 85007 Position is primary remote with some time in office as needed for meetings. Job Summary The Information Security/Compliance Analyst will plan, implement, upgrade, and monitor security protocols for the... 
    Remote job
    Work at office

    Sunrise Systems

    Phoenix, AZ
    3 days ago
  •  ...leading consulting firm in Wakefield is looking for an experienced Information Security Analyst. You will lead the design, implementation, and management of the information security program, ensuring compliance with NIST, CMMC, and SOC-2 frameworks. The successful candidate... 

    GEI Consultants

    Wakefield, MA
    2 days ago
  • Cooper's Hawk Winery and Restaurants is seeking an Information Security & Compliance Analyst in Downers Grove, IL. The successful candidate will support the Governance, Risk, and Compliance program with a focus on PCI DSS 4.0 and SOX compliance. Responsibilities include... 

    Cooper's Hawk Winery and Restaurants

    Downers Grove, IL
    16 hours ago
  • Sunrise Systems is seeking an Information Security Compliance Analyst to develop and implement security protocols for network protection. This position is primarily remote with some in-office attendance required for meetings. Ideal candidates will have a Bachelor's in Computer... 
    Remote job
    Work at office

    Sunrise Systems

    Phoenix, AZ
    4 days ago
  • Teradata Corporation (SE) seeks a Compliance Analyst in Albany, NY. In this role, you will support Teradata's security compliance programs across global cloud offerings. Responsibilities...  ...candidate will hold a Bachelor's degree in Information Security and possess 1 to 3 years of... 

    Teradata Corporation (SE)

    Albany, NY
    16 hours ago
  • $94.1k - $169.6k

    T-Mobile is seeking a candidate to ensure compliance with government regulations and protect restricted data through security measures and AI integration. The role requires a Bachelor’s degree and 5 years of related experience, or an advanced degree with 3 years' experience... 

    T-Mobile

    Overland Park, KS
    16 hours ago
  •  ...building programs, policies and practices to ensure that the organization complies with industry and government regulatory compliance. Increase security awareness, assess compliance and where necessary, provide support in remediating non-compliant areas. Essential Tasks... 

    M4A Foundation

    El Dorado Hills, CA
    3 days ago
  • $89.71k

     ...knowledge, skills, and behaviors required. SUMMARY - Senior Information Security Analyst: Under the general supervision of the Supervisor, IT...  ...uses software tools to ensure proper security posture for compliance. Writes reports and briefings related to specific information... 
    Full time
    Work experience placement
    Work at office
    Night shift
    Weekend work
    Afternoon shift
    Weekday work

    Western Farmers Electric Cooperative

    Moore, OK
    6 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Compliance Analyst. Be the first to apply!