Senior GRC Analyst
@ KOHO

Hybrid
CA$120,000
Hybrid
Full Time
Posted 22 days ago

Your Application Journey

Personalized Resume
Apply
Email Hiring Manager
Interview

Email Hiring Manager

XXXXXXXXX XXXXXXXXXXXXX XXXXXXXXX****** @koho.ca
Recommended after applying

Job Details

About KOHO

KOHO is on a mission to make financial services better for every Canadian by eliminating hidden fees and predatory rates. Their focus is on empowering users to spend smart, save more, and build wealth in a remote-first, flexible work environment.

About the Role

The Senior GRC Analyst will establish and lead compliance programs for KOHO's technology team, particularly for Platform Technology and Payments. Reporting to the Senior Manager, Product Security, you will work in a low-ego, high-agency team environment emphasizing innovation and continuous learning.

What You’ll Be Doing

  • Build and establish a compliance program aligned with RPAA, OSFI B-10, and OSFI B-13.
  • Prepare evidence packages for audits and automate compliance processes.
  • Translate technical and regulatory details into clear documentation.
  • Coordinate reviews of evidence packages for external audits.
  • Collaborate with engineering, product, and operations teams to integrate compliance within the SDLC.
  • Advise leadership on risk management including mitigation and compensating controls.
  • Support tech compliance related to payments and technology infrastructure.

Who You Are

You bring experience in technology and/or payments infrastructure. You are skilled in disaster recovery, networking, CICD pipelines, and ITSM. A strong communicator who can simplify complex risk and compliance information is essential. Familiarity with OSFI guidelines, RPAA, AWS native technologies, and automation is required.

What’s in it for you?

  • Shape fintech and empower a generation of Canadians.
  • Competitive compensation and equity offerings.
  • A deeply engaged team with robust support systems.
  • Generous vacation and health benefits.
  • A remote-first environment with flexible work hours.

Additional Information

KOHO is committed to building an inclusive, accessible environment. For accessibility needs, contact peopleaccessibility@koho.ca. KOHO uses AI in recruitment; for inquiries, email talent@koho.ca.

Key skills/competency

  • Compliance
  • Risk Management
  • GRC
  • OSFI Regulations
  • RPAA
  • Payments
  • Technical Documentation
  • Automation
  • AWS Technologies
  • SDLC

How to Get Hired at KOHO

🎯 Tips for Getting Hired

  • Research KOHO's culture: Understand mission and remote-first values.
  • Customize your resume: Highlight GRC and tech compliance skills.
  • Prepare audit examples: Showcase evidence package successes.
  • Review OSFI guidelines: Emphasize familiarity with B-10 and B-13.

📝 Interview Preparation Advice

Technical Preparation

Review OSFI guidelines and regulatory standards.
Familiarize with AWS Inspector, CloudTrail, and Terraform.
Practice building automated compliance evidence retrieval scripts.
Study SDLC integration techniques for risk management.

Behavioral Questions

Describe a time you led a complex audit.
Explain your approach to cross-functional team collaboration.
Share an example of clarity in technical communication.
Discuss a challenge in risk mitigation and your response.

Frequently Asked Questions