Senior Manager, IT Risk
1 month ago
RBC Global IT Risk (GITR) team enables the protection of RBC's brand, systems, and operations by equipping business and technology partners with meaningful insights, advice, and information on RBC IT & cyber risks. The Senior Manager Cyber Security and IT Risk Management is a key strategic and integral role for the overall success of IT Control Management within IT Risk Management function. This dynamic position provides opportunities for working across the organization to deliver complex enterprise-wide initiatives as part of RBC’s ongoing plan to improve IT Risk Management and governance. In this role you will be responsible for strategically planning and managing successful implementation of the above-mentioned. The role will coordinate, develop, lead, communicate, and execute activities to ensure objectives are accomplished on time.
WHAT WILL YOU DO?
Leading teams to perform control testing that evaluate the design and operating effectiveness of IT key controls. This is a hands-on role where you are required to lead, guide, and coach your team on various aspects of control testing, IT risk management, and risk reporting.
Take ownership and be accountable for your team’s deliverables to meet the milestones and timelines. Identify and escalate potential issues and risks as applicable. Plan and assign work to your team members. Prepare and present your team’s progress and status reports. Plan resource capacity and prepare work pipeline.
Managing multiple priorities in a fast-paced environment. Identify, de-escalate, and manage actual or perceived conflict, if any, among your team or with the stakeholders. Assess complex scenarios and use your subject matter expertise and professional judgement to make decisions with proper rationale and documentation. Support your team member during complex or tough discussions with stakeholders to achieve the desired outcome.
Executing control testing to evaluate the design and operating effectiveness of IT controls. Documenting test work adhering to the quality standards, procedure, and industry best practices. Analyzing, aggregating, and articulating the results/issues/recommendations related to control testing activities.
Participate in all phases of the internal control monitoring process including planning, testing, evaluating risk, identifying mitigating controls, developing conclusions, compiling reports, and maintaining work papers.
Coordinate with stakeholders to log and manage control deficiencies. Assess whether remediation plans and corrective actions are reasonably designed to reduce risk. Verify that control deficiencies are remediated according to the remediation plans.
Establish strong working relationships with the stakeholders across business units and teams to build trust and act as a trusted advisor. Perform as subject matter expert to advise the stakeholders on control documentation and testing in compliance with policies and standards.
Maintaining thorough understanding of organization's governing policies and standards, IT control testing methodologies, and related regulatory and compliance standards.
Keeping abreast of external cyber security trends, technologies and cyber risk management approaches, control hygiene of the environment, and often collaborate with other teams on IT risk-related initiatives to provide subject-matter recommendations and guidance to achieve a risk posture within the organization’s overall risk appetite.
WHAT DO YOU NEED TO SUCCEED?
Must have:
Bachelors' degree in computer science, engineering, or related field. Preferred Certifications: CRISC - Certified in Risk and Information Systems Control, CISA – Certified Information Security Auditor, CISSP - Certified Information Systems Security Professional.
Over seven-year experience of testing IT controls, with at least two years in a team lead capacity preferably within financial services industry. Experience or understanding of IT risk management practices in financial services industry.
Proficient at written and oral communication skills to effectively and timely communicate with stakeholders. Analytical and rationale thinking, supported by strong writing skills, are essential to document and communicate the test work. Ability to understand the stakeholders’ expectations for information and communication.
A strong understanding of technology and/or financial services industry. Knowledge of FINRA, SEC, MSRB, FRBNY and OCC rules and regulations.
Deadline-driven and results-oriented; able to meet consistently high-quality standards while handling a variety of tasks and deadlines simultaneously.
Nice-to-have:
Risk and Control management knowledge and industry experience across Information Technology (IT) domains.
Working experience in cybersecurity and/or IT risk management spaces.
Big 4 IT risk consulting and/or audit experience.
RBC is committed to supporting flexible work arrangements when and where available. Details to be discussed with Hiring Manager.
What’s in it for you?
A comprehensive Total Rewards Program including bonuses and flexible benefits, competitive compensation, commissions, and stock where applicable.
Leaders who support your development through coaching and managing opportunities.
Ability to make a difference and lasting impact.
Work in a dynamic, collaborative, progressive, and high-performing team.
A world-class training program in financial services.
Flexible work/life balance options.
Opportunities to do challenging work.
-
Senior Technology Risk Manager
1 month ago
Candiac, Quebec, Canada CIBC Full timeSenior Technology Risk ManagerCIBC is looking for a Senior Technology Risk Manager to join our team. As a key member of our Internal Audit group, you will play a critical role in ensuring the effective management of technology risk across the organization.Your Key Responsibilities:Develop and implement a comprehensive technology risk management framework...
-
Senior IT Infrastructure Risk Manager
3 days ago
Candiac, Quebec, Canada State Street Full timeJob OverviewWe are seeking a seasoned IT Infrastructure Risk Manager to lead audit engagements focused on Information Technology within our Global Technology Services Business Unit. As an expert in financial services operational processes and technology, you will oversee individual audit engagement and lead assigned teams through all aspects of the audit...
-
Senior Manager, IT Risk and Vendor Compliance
2 weeks ago
Candiac, Quebec, Canada Manulife Full timeAbout the RoleWe are seeking a Senior Manager to join our Vendor Information Risk Management team. In this role, you will conduct assessments on information security controls, measure their effectiveness, identify control gaps, and provide business advice and guidance on various IT risks and contract gaps associated with suppliers.This is an individual...
-
Senior Risk Management Specialist
2 weeks ago
Candiac, Quebec, Canada Manulife Full timeCompany OverviewManulife is a leading financial services group, providing financial advice, insurance, and wealth management solutions. Our commitment to innovation and customer satisfaction drives our growth.SalaryThe estimated annual salary for this role is between $120,000 and $180,000, depending on experience and qualifications.Job DescriptionWe are...
-
Senior Audit Manager, Technology Risk
2 months ago
Candiac, Canada CIBC Full timeCIBCBank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered.We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.At CIBC, we embrace your strengths and your ambitions, so you are empowered at...
-
Strategic Technology Risk Management Leader
2 weeks ago
Candiac, Quebec, Canada Scotiabank Full timeJob Summary:We are seeking an experienced Cyber Senior Technology Officer to join our team at Scotiabank. This role requires a strong leader with expertise in Technology Risk management, including Cyber, Digital, and IT Risk.About the Role:In this position, you will directly support the Technology Risk leadership and the SVP/CIO to collaboratively assess,...
-
Cyber Risk Management Leader
2 weeks ago
Candiac, Quebec, Canada Sun Life Full timeAbout the Role:The Cyber Risk Management Leader will be responsible for strategically leading the 2nd Line of Defence (2LOD) for Technology & Cyber Risk challenge activities in Canada and the United States. This includes maintaining a relationship with our Business Group Risk Teams.• Extensive experience in the financial services industry, particularly in...
-
Cybersecurity Risk Management Lead
2 weeks ago
Candiac, Quebec, Canada Manulife Full timeSenior Manager, Cybersecurity Audit & Advisory ServicesManulife is a leading financial services company. We provide comprehensive financial solutions to individuals, groups, and institutions.The Technology Audit Team assesses technology risks in various initiatives to ensure alignment with business, cybersecurity, performance, and regulatory expectations. As...
-
Cybersecurity Specialist
2 weeks ago
Candiac, Quebec, Canada CIBC Full timeCIBC is building a relationship-oriented bank for the modern world. As a Senior Information Security Junior Consultant, you will be responsible for consulting on potential risks as well as current trends to help our technology and business stakeholders meet security goals and objectives.About the RoleThis exciting opportunity involves reviewing and...
-
Candiac, Canada CIBC Full timeh3>CIBCBank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered.We’re building a relationship-oriented bank for the modern world. p>What you'll be doingAs the Senior Consultant, Authentication Services on the Identity and Access Services Management group within Information Security, you will interface with...
-
Candiac, Canada Scotiabank Full timep>The Director, Cloud Security will lead and oversee Cloud Security within Global Risk Management (GRM) globally ensuring business strategies, plans and initiatives are executed and delivered in compliance with governing regulations, internal policies, procedures with an understanding of industry frameworks/regulations/standards like CSA STAR, ISO, NIST,...
-
Director, Cyber Security and Risk Management
3 weeks ago
Candiac, Canada Manulife Full timeDirector Strategy Information Security and Risk ManagementManulife is a leading financial services group. We provide financial advice, insurance, as well as wealth and asset management solutions for individuals, groups and institutions.This role offers an exceptional opportunity to lead and shape our information security and risk management strategies as the...
-
Cybersecurity Risk Consultant
2 weeks ago
Candiac, Quebec, Canada Aviva Full timeAvivaOur global corporate website for investors, shareholders, career seekers, the media and individuals interested in our social responsibility.The Senior Cybersecurity Risk Consultant plays a vital role in maintaining risks and controls with Aviva Group Cybersecurity standards and policies and reducing operational risks to Aviva. This position provides...
-
Senior Manager, IT Issues Management
1 month ago
Candiac, Canada RBC Full timeSenior Manager, IT Issues Management (GCS)As the Senior Manager, IT Issues Management you will be responsible for leading the IT risk issue management for RBC, including assessing, and developing plans in an effort to mitigate IT risk to RBC. This role will require project management, and coordination with various teams in Global Cyber Security (GCS).Manages...
-
Risk Management Director
2 weeks ago
Candiac, Quebec, Canada Manulife Full timeManulife: Leading Financial Services GroupWe provide financial advice, insurance, and wealth management solutions for individuals and institutions. As a Director of IRM Assurance COE Execution, you will lead risk management activities and ensure effective execution of 2nd line assurance assessments.Develop and execute the annual risk assessment plan.Scope...
-
Expert Risk Consultant for Identity Management
2 weeks ago
Candiac, Quebec, Canada CIBC Full timeAt CIBC, we're building a relationship-oriented bank for the modern world. Our team is focused on delivering excellence and continuous improvement in all disciplines and processes as they relate to Identity and Access Management.Key Responsibilities:Identity and Access Management Process Improvement: You will leverage your knowledge of market tools...
-
Technology Risk Management Professional
2 weeks ago
Candiac, Quebec, Canada RBC Full timeWe are seeking a skilled and experienced Technology Risk Management Professional to join our team at RBC. In this role, you will play a critical part in managing and providing subject matter expertise on technology risk control and advisory services to Finance IT and CFO Group management.ResponsibilitiesManage and assess IT & operational risks across a large...
-
Candiac, Quebec, Canada CIBC Full timeJob DescriptionWe are seeking a skilled Cloud Security Expert to join our Technology Risk Management team at CIBC.About the Role:Lead and contribute to the development and execution of the annual Audit Plan for Technology risk, focusing on cloud security.Provide consultation to other Internal Audit teams and train, guide, and mentor auditors in areas of...
-
Information Technology Risk Manager
2 weeks ago
Candiac, Canada RBC Full timeAre you a talented, creative and results-driven professional who thrives on delivering high-performing applications? Come join us!Global Functions Technology (GFT) is part of RBC’s Technology and Operations division. GFT’s impact is far-reaching as we collaborate with partners from across the company to deliver innovative and transformative IT solutions....
-
Director, Finance and Risk Management
2 months ago
Candiac, Canada Manulife Full timeh3>ManulifeManulife is a leading financial services group. We provide financial advice, insurance, as well as wealth and asset management solutions for individuals, groups and institutions.The Director of IRM Assurance COE Execution provides a strategic opportunity to lead and assess risk management activities within our organization. This role ensures that...