Third Party Security Risk Manager
3 days ago
Being a traditional bank just isn’t our thing. We are big believers in innovating the banking experience because we believe Canadians deserve better options, and we challenge ourselves and our teams to creatively transform what’s possible in banking. Our team is made up of inquisitive and agile minds that find smarter ways of doing things. Overall we serve more than 670,000 people across Canada through Equitable Bank, Canada's Challenger Bank™, and have been around for more than 50 years. Equitable Bank's wholly-owned subsidiary, Concentra Bank, supports credit unions across Canada that serve more than six million members. Together we have over $125 billion in combined assets under management and administration, with a clear mandate to drive change in Canadian banking to enrich people's lives. Our customers have named our EQ Bank digital platform (eqbank.Ca) one of the top banks in Canada on the Forbes World's Best Banks list since 2021.
The Third-Party Security Risk manager will work closely with the technology teams and line of business teams to mitigate the risk of security attacks emanating from partners, vendors and other related third-parties while enabling the business to grow the bank and serve our customers efficiently and securely.
Perform Third-Party security risk assessments
Monitor and report on third-party security risk action plans, engaging with third-party contacts as well as business stakeholders
Maintain third-party security risk management framework ensuring alignment with Risk management framework (2nd Line of defense) and Privacy requirements
Provide security input to third-party contracts by ensuring alignment with cyber security regulatory requirements and Company cyber security policies
Identify supplier related cyber risk threat scenarios and evaluate risk rating based on a thorough review of the third party’s security program and technical architecture
Monitor third-party compliance program, ensuring continuous compliance and evidence collection, validation, and recording
Bachelor of Computer Science) is preferred
At least five (5) years of information security and information risk experience
At least three (3) years of third-party risk management experience (including hands-on experience conducting third party risk assessments)
Understanding of Cloud Shared responsibility models and risk mitigation approach/techniques
Experience in performing organization-wide/entity security risk assessments or audits is required
Understanding and experience with security compliance frameworks such as PCI DSS, BSIMM, Cloud Security Alliance, NIST, ISO 27K series is required
Understanding of Canadian Financial industry regulations relevant to third-party security and privacy expectations E.Experience working in a banking or financial services environment is an asset
The incumbent works under direct management of the Senior Manager, Information Security Risk Management. The incumbent is accountable for formulating, developing and drafting security policies, procedures, and other relevant documents while liaising with the concerned stakeholders to ensure that the Information Security concerns are amicably addressed and their buy-in is obtained. Hence paving the way for easy acceptance at the time of implementation.
The incumbent is accountable for the managing of security risk throughout the lifecycle, right from identifying the security risk to explaining it to the relevant stakeholders and getting their buy-in in remediating to tracking the closure of the weaknesses/risks to the organization.
The incumbent is accountable for ensuring the completeness and accuracy of the periodic compliance reports submitted by the IT functions. The incumbent is also responsible for performing penetration testing as per the agreed upon plan by the Senior Manager, IT Security & Compliance and, compiling the report and working with the concerned stakeholder for getting the weaknesses remediated/fixed or risk accepted. Similarly, the incumbent will maintain register for penetration testing results and vulnerabilities and liaise with action owners for fixing the gaps.
The incumbent is also responsible for administering and managing GRC solution implemented in the Bank, look at ways of improving the solution and address and resolve queries from various other stakeholders.
This position is also required to work with internal and external audit and compliance related teams and partners on an as needed basis.
The incumbent is accountable for ensuring that the information security controls identified and agreed for implementation have been properly implemented/embedded within the Information technology systems and operations. Non-implementation may result in the organization being exposed to cyber threats.
What we offer [For full-time permanent roles]
#Medical, dental, vision, life, and disability benefits
#Generous vacation policy and personal days
#Virtual events to connect with your fellow colleagues
#A fulfilling opportunity to join one of the top FinTechs and help create a new kind of banking experience
The incumbent will be working hybrid and in office time will be spent working from Equitable Bank’s additional office space located at 351 King Street East, Toronto, ON.
Equitable Bank is deeply committed to inclusion. In tandem with that commitment, we support and encourage our staff to grow not just in their career path, but personally as well.
All candidates considered for hire must successfully pass a criminal background check and credit check to qualify for hire.
-
Third Party Security Risk Manager
1 month ago
Toronto, ON, Canada EQ Bank | Equitable Bank Full timeBeing a traditional bank just isn’t our thing. We are big believers in innovating the banking experience because we believe Canadians deserve better options, and we challenge ourselves and our teams to creatively transform what’s possible in banking. Our team is made up of inquisitive and agile minds that find smarter ways of doing things. Overall we...
-
Third Party Security Risk Manager
5 days ago
Toronto, ON, Canada EQ Bank | Equitable Bank Full timeJoin a Challenger Being a traditional bank just isn’t our thing. We are big believers in innovating the banking experience because we believe Canadians deserve better options, and we challenge ourselves and our teams to creatively transform what’s possible in banking. Our team is made up of inquisitive and agile minds that find smarter ways of doing...
-
Third Party Security Risk Manager
1 month ago
Toronto, ON, Canada EQ Bank | Equitable Bank Full timeJoin a Challenger Being a traditional bank just isn’t our thing. We are big believers in innovating the banking experience because we believe Canadians deserve better options, and we challenge ourselves and our teams to creatively transform what’s possible in banking. Our team is made up of inquisitive and agile minds that find smarter ways of doing...
-
Third Party Security Risk Manager
5 days ago
Toronto, Canada EQ Bank | Equitable Bank Full timeJoin a ChallengerBeing a traditional bank just isn’t our thing. We are big believers in innovating the banking experience because we believe Canadians deserve better options, and we challenge ourselves and our teams to creatively transform what’s possible in banking. Our team is made up of inquisitive and agile minds that find smarter ways of doing...
-
Third Party Security Risk Manager
2 months ago
Toronto, Canada Disability Solutions Full timeJoin a ChallengerBeing a traditional bank just isn't our thing. We are big believers in innovating the banking experience because we believe Canadians deserve better options, and we challenge ourselves and our teams to creatively transform what's possible in banking. Our team is made up of inquisitive and agile minds that find smarter ways of doing things....
-
Third Party Security Risk Manager
1 month ago
Toronto, Canada Equitable Bank Full timeJoin a ChallengerBeing a traditional bank just isn’t our thing. We are big believers in innovating the banking experience because we believe Canadians deserve better options, and we challenge ourselves and our teams to creatively transform what’s possible in banking. Our team is made up of inquisitive and agile minds that find smarter ways of doing...
-
Third Party Security Risk Manager
1 month ago
Toronto, Canada EQ Bank | Equitable Bank Full timeJoin a ChallengerBeing a traditional bank just isn’t our thing. We are big believers in innovating the banking experience because we believe Canadians deserve better options, and we challenge ourselves and our teams to creatively transform what’s possible in banking. Our team is made up of inquisitive and agile minds that find smarter ways of doing...
-
Third Party Security Risk Manager
1 month ago
Toronto, Canada EQ Bank | Equitable Bank Full timeJoin a ChallengerBeing a traditional bank just isn’t our thing. We are big believers in innovating the banking experience because we believe Canadians deserve better options, and we challenge ourselves and our teams to creatively transform what’s possible in banking. Our team is made up of inquisitive and agile minds that find smarter ways of doing...
-
Third Party Security Risk Manager
2 months ago
Old Toronto, Canada Equitable Group Full timep>Join a ChallengerBeing a traditional bank just isn’t our thing. We are big believers in innovating the banking experience because we believe Canadians deserve better options, and we challenge ourselves and our teams to creatively transform what’s possible in banking. Our team is made up of inquisitive and agile minds that find smarter ways of doing...
-
Security Third Party Risk Management, Lead
4 weeks ago
Toronto, Canada Interac Corp. Full time**Security Third Party Risk Management, Lead** At Interac, we design and deliver products and solutions that give Canadians control over their money so they can get more out of life. But that’s not all. Whether we’re leading real-time money movement, driving innovative commerce solutions like open payments for transit systems, or making advancements in...
-
Chief Security Risk Officer
3 weeks ago
Old Toronto, Canada Equitable Group Full timeAt Equitable Group, we're innovating the banking experience and challenging ourselves to create a better future for Canadians.We're a team of agile minds who find smarter ways of doing things, serving over 670,000 people across Canada through Equitable Bank, Canada's Challenger Bank. Our combined assets under management and administration total over $125...
-
Director, Third Party Risk
7 months ago
Toronto, Canada CIBC Full timeWe’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients. At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are...
-
Manager, Third Party Risk Management
7 months ago
Toronto, Canada Questrade Financial Group Full timeQuestrade Financial Group (QFG) of Companies is committed to helping our customers become much more financially successful and secure. We are everything a traditional financial institution is not. At QFG, you will be constantly moving forward, bringing the future of fintech into existence. You will be a part of a collaborative team that cares deeply about...
-
Director, Third Party Risk Management
5 months ago
Toronto, Canada Manulife Full timeWe are a leading financial services provider committed to making decisions easier and lives better for our customers and colleagues around the world. From our environmental initiatives to our community investments, we lead with values throughout our business. To help us stand out, we help you step up, because when colleagues are healthy, respected and...
-
Manager - Enterprise Third-party Risk Management
6 months ago
Toronto, Canada BMO Financial Group Full time100 King Street West Toronto Ontario,M5X 1A1 BMO is looking for a Manager - Enterprise Third-Party Risk Management (ETPRM) to join our team. This is an individual contributor role. As the Manager - Enterprise Third-Party Risk Management, you will play a pivotal role in establishing and enhancing our third-party risk management frameworks. Reporting to the...
-
Third Party Risk Management Specialist
7 months ago
Toronto, Canada Affirm Full timeAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest. Affirm's Enterprise Risk Management (ERM) team is focused on enabling informed risk based decisions by establishing enterprise standards, governance practices and independent risk...
-
Third-party Contracting Manager, Third-party
7 months ago
Toronto, Canada CIBC Mellon Full time**Company Information**: CIBC Mellon is a leading provider of asset servicing solutions to institutional investors in Canada, including multi-currency accounting, fund valuation, and investment information reporting. We are passionate about providing exceptional client service backed by our culture of innovation and success. Our outstanding employee...
-
Third-Party Cybersecurity Specialist
2 weeks ago
Toronto, Ontario, Canada Disability Solutions Full timeJob DescriptionThis is an exciting opportunity to join our team as a Third-Party Cybersecurity Specialist. The estimated annual salary for this role is $105,000. As a key member of our Information Security team, you will be responsible for ensuring the security and integrity of our third-party vendors.About the JobWe are looking for an experienced...
-
Manager - Third Party Risk Management
7 months ago
Toronto, Canada KPMG Full timeOverview: At KPMG, you’ll join a team of diverse and dedicated problem solvers, connected by a common cause: turning insight into opportunity for clients and communities around the world. The Opportunity As part of the **Governance Risk and Compliance **(GRCS) practice, **our risk management professionals provide a broad range of risk advisory services...
-
Director, Global Third Party Risk Management
7 months ago
Toronto, Canada BMO Financial Group Full time250 Yonge Street Toronto Ontario,M5B 2L7 **Provides the strategic direction, leadership, and oversight of a team of risk advisors/assessors in the oversight of all third-party risk assessments within the Third Party Risk Management program.**: - **This is a hybrid role requiring 2 days a week in the Toronto office** - ** Ensures the Risk Advisors and...