Senior Auditor, Third Party Assurance

Toronto - Wellington St, Canada

Apply now Apply later

Putting people first, every day
 

BDO is a firm built on a foundation of positive relationships with our people and our clients. Each day, our professionals provide exceptional service, helping clients with advice and insight they can trust. In turn, we offer an award-winning environment that fosters a people-first culture with a high priority on your personal and professional growth.

Your Opportunity

Our National Risk Advisory Services practice is seeking a Senior Auditor, Third-Party Assurance to support IT risk and compliance assessments for our clients. This role requires strong communication skills and the ability to engage with technical teams, and non-technical stakeholders with clarity and professionalism.


As a key contributor, you will assess security and compliance frameworks such as SOC 2 Trust Services Criteria, ISO 27001, NIST, and other relevant standards, ensuring that clients meet regulatory and industry-specific requirements. You will play a critical role in executing assessments, analyzing risks, and providing clear recommendations to support client compliance initiatives.
 

Expectation for Communication & Presentation Skills

As a Senior Auditor, Third-Party Assurance, you must communicate with clarity, confidence, and precision across all levels of an organization. Whether presenting findings to executives, IT teams, or non-technical stakeholders, you must be able to articulate risk, compliance, and security concepts in a clear and engaging manner.
 

Strong verbal and written communication skills are essential. You will be responsible for producing concise reports, executive summaries, and presentations that effectively convey key risks, compliance gaps, and actionable recommendations. Your ability to tailor communication to different audiences—making technical details accessible to business leaders while maintaining depth for security professionals—will be critical to your success.

Additionally, you should be comfortable delivering findings in client meetings, internal discussions, and external presentations with professionalism and confidence. Your ability to educate, influence, and build trust will make you an invaluable asset in this role.
 

Key Responsibilities
 

  • Support and execute risk and compliance assessments related to SOC 2, ISO 27001, NIST, and other security frameworks.
  • Clearly communicate risk, compliance, and security concepts to executives, IT leaders, and business stakeholders.
  • Assist in evaluating IT security controls, governance frameworks, and third-party risk management programs.
  • Prepare clear, structured reports and recommendations, ensuring alignment with client business objectives.
  • Collaborate with team members to enhance service delivery and drive innovation.
  • Contribute to the adoption of digital tools and automation to improve efficiency in risk and compliance assessments.
     

What Defines Success in This Role?
 

  • You demonstrate BDO's core values through all aspects of your work: Integrity, Respect and Collaboration.
  • You understand your client’s industry, challenges, and opportunities; clients describe you as positive, professional, and delivering high-quality work.
  • You identify, recommend, and are focused on effective service delivery to your clients.
  • You share in an inclusive and engaging work environment that develops, retains & attracts talent.
  • You actively participate in the adoption of digital tools and strategies to drive an innovative workplace.
  • You grow your expertise through learning and professional development.
     

Qualifications & Experience
 

  • 3+ years of professional experience in GRC implementation, IT security auditing, or consulting.
  • Bachelor’s degree in Information Systems Audit, Computer Science, Business, or a related field.
  • Experience in evaluating IT security controls, governance frameworks, and third-party risk.
  • Strong understanding of risk management principles, compliance frameworks, and security controls.
  • Certifications required/pursuing: CPA, CISSP, CISA, or ISO 27001 Lead Implementer.
  • Exceptional communication skills—both written and verbal—with the ability to present complex concepts effectively.
  • Ability to work in a fast-paced, collaborative environment while managing multiple priorities.
  • Goal-oriented, results-driven, and committed to delivering high-quality client solutions.


Why BDO?

Our people-first approach to talent has earned us a spot among Canada’s Top 100 Employers for 2025. This recognition is a milestone we’re thrilled to add to our collection of awards for both experienced and student talent experiences. 

Our firm is committed to providing an environment where you can be successful in the following ways: 

  • We enable you to engage with how we change and evolve, being a key contributor to the success and growth of BDO in Canada. 

  • We help you become a better professional within our services, industries, and markets with extensive opportunities for learning and development. 

  • We support your achievement of personal goals outside of the office and making an impact on your community.

Giving back adds up: Where company meets community. BDO is actively involved in our communities by supporting local charity initiatives. We support staff with local and national events where you will be given the opportunity to contribute to your community.


Total rewards that matter: We pay for performance with competitive total cash compensation that recognizes and rewards your contribution. We provide flexible benefits from day one, and a market leading personal time off policy. We are committed to supporting your overall wellness beyond working hours and provide reimbursement for wellness initiatives that fit your lifestyle.


Everyone counts: We believe every employee should have the opportunity to participate and succeed. Through leadership by our Diversity, Equity and Inclusion Leader, we are committed to a workplace culture of respect, inclusion, and diversity. We recognize and celebrate the valuable differences among each of us, including race, religious beliefs, physical or mental disabilities, age, place of origin, marital status, family status, gender or gender identity and sexual orientation. If you require accommodation to complete the application process, please contact us.

Flexibility: All BDO personnel are expected to spend some of their time working in the office, at the client site, and virtually unless accommodations or alternative work arrangements are in place.

Our model is a blended approach designed to support the flexible needs of our people, the firm and our clients. It’s about creating work experiences that meet everyone’s needs and providing flexibility to adjust when, where and how we work to meet the expectations of our role.

Code of Conduct: Our Code of Conduct sets clear standards for how we conduct business. It reflects our shared values and commitments and includes guiding principles to help us make ethical decisions and maintain trust with each other, our clients, and the public.

Ready to make your mark at BDO? Click “Apply now” to send your up-to-date resume to one of our Talent Acquisition Specialists.

To explore other opportunities at BDO, check out our careers page

#LI-DE1
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  2  0  0
Category: Compliance Jobs

Tags: Audits Automation CISA CISSP Compliance Computer Science Governance ISO 27001 NIST Risk management SOC SOC 2

Perks/benefits: Career development Competitive pay Equity / stock options Flex hours Flex vacation Startup environment Team events Wellness

Region: North America
Country: Canada

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.