Director, Cyber Security and Risk Management

2 days ago


Candiac, Canada Manulife Full time
Director Strategy Information Security and Risk Management

Manulife is a leading financial services group. We provide financial advice, insurance, as well as wealth and asset management solutions for individuals, groups and institutions.

This role offers an exceptional opportunity to lead and shape our information security and risk management strategies as the Director of Strategy for Information Security & Risk Management. Reporting to the Information Security and Risk Management Officer, you will collaborate with the Global Risk and Security team to align cybersecurity plans with organizational priorities, enhance security initiatives, and coordinate cross-team activities. Your expertise will be pivotal in maturing all aspects of our security portfolio, ensuring compliance, and driving continuous improvement in our security practices. In return, you will benefit from professional growth opportunities, a supportive work environment, and the chance to make a significant impact on our security posture.

Position Responsibilities:
  • Collaborate in developing and implementing comprehensive information risk management and security strategies.
  • Assist in the development and integration of security policies, standards, and procedures across the organization ensuring compliance with relevant regulations.
  • Support in managing information security risk and in implementing global cybersecurity initiatives.
  • Develop a roadmap for sustainable information risk metrics and implement internal best practices for strategy and continuous improvement.
  • Mature technical service offerings such as risk assessments, threat modeling, application security and compliance & regulatory programs.
  • Collaborate with Technology Leaders to ensure security integration into business processes and operations, and ensure KRIs achieve target goals and remain within established risk thresholds.
  • Provide vision and leadership to manage information security risk, ensuring business alignment and effective governance.
  • Support the response to information security incidents and breaches.
  • Prepare and present reports on information security to senior management.
  • Assist in coaching, mentorship, and support to team members in their professional development.
Required Qualifications:
  • Bachelor’s degree in Computer Science, Information Technology, or a related field.
  • Proven experience in information risk management and information security leadership roles.
  • Strong understanding of information security frameworks, standards, and regulations (e.g., ISO 27001, NIST, SOC II, OSFI).
  • Strong knowledge of security risk management practices including security architecture, vulnerability and patch management, application security, and cloud security.
  • Experience in developing and implementing security strategies and policies.
  • Strong problem-solving and decision-making skills.
  • Superb communication and interpersonal skills.
  • Industry-recognized certification (e.g., CISA, CRISC, CISM, CISSP) or equivalent certification is desirable.
Preferred Qualifications:
  • Experience in the financial services industry.
When you join our team:
  • We’ll empower you to learn and grow the career you want.
  • We’ll recognize and support you in a flexible environment where well-being and inclusion are more than just words.
  • As part of our team, you’ll have the opportunity to shape our security strategies and make a significant impact on our organization's security posture.
Primary Location

Toronto, Ontario

Working Arrangement

Hybrid

Salary range

Expected to be between $107,730.00 CAD - $200,070.00 CAD

Manulife is an Equal Opportunity Employer. At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention, advancement and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, colour, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy-related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law.

#J-18808-Ljbffr
  • Head, Cyber Security

    2 weeks ago


    Candiac, Canada Rogers Communications Full time

    Rogers Communications Our Technology team wakes up every day with one goal in mind - connecting Canadians to the people and things that matter most. Together, we are proud to support 30 million Canadians each month through managing a robust portfolio that champions leading-edge technology. We drive large-scale, complex, and high-visibility technology...


  • Candiac, Canada Bechtel Full time

    BechtelLearn why Bechtel is one of the most respected engineering, construction, and project management companies in the world.Relocation Authorized: National/International - SingleTelework Type: Full-Time Office/ProjectWork Location: Toronto, ONExtraordinary teams building inspiring projects:Since 1898, we have helped customers complete more than 25,000...


  • Candiac, Quebec, Canada Rogers Communications Full time

    Job Title: Head, Cyber SecurityAbout the Role:At Rogers Communications, we are committed to innovation and excellence in delivering cutting-edge technology solutions. As the Head, Cyber Security, you will play a critical role in driving our company's security agenda forward by designing, implementing and managing a comprehensive information security strategy...


  • Candiac, Canada Scotiabank Full time

    Senior Cybercrime Investigator, Cyber & Security InvestigationsRequisition ID: 210368Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.The role:Reporting to the Director of Cyber & Security Investigations, the Senior Cybercrime Investigator is a member of a team responsible for the ongoing management of...


  • Candiac, Canada RBC Full time

    h3>Senior Cyber Security Analyst, IAM Onboarding (GCS)The Identity and Access Management (IAM) Onboarding Team is looking for a Senior Cyber Security Analyst to work towards onboarding applications to RBC’s Identity and Access Management solutions in accordance with the IAM onboarding strategy and IAM goals. li>Learn architectural patterns relevant to...


  • Candiac, Quebec, Canada Scotiabank Full time

    Job Description:The Cloud Security Director will lead the Cloud Security function within Global Risk Management (GRM) globally, ensuring business strategies, plans, and initiatives are executed and delivered in compliance with governing regulations, internal policies, and procedures with an understanding of industry frameworks/regulations/standards like CSA...


  • Candiac, Canada Manulife Full time

    Director, Information Security and Risk ManagementManulife is a leading financial services group. We provide financial advice, insurance, as well as wealth and asset management solutions for individuals, groups and institutions.This role offers the opportunity to lead our information security and risk management efforts as the Director of Information...


  • Candiac, Quebec, Canada Scotiabank Full time

    The Director, Cloud Security will lead and oversee Cloud Security within Global Risk Management globally ensuring business strategies, plans and initiatives are executed and delivered in compliance with governing regulations, internal policies, procedures with an understanding of industry frameworks/regulations/standards like CSA STAR, ISO, NIST, OWASP, OSFI...


  • Candiac, Canada RBC Full time

    RBC Global IT Risk (GITR) team enables the protection of RBC's brand, systems, and operations by equipping business and technology partners with meaningful insights, advice, and information on RBC IT & cyber risks. The Senior Manager Cyber Security and IT Risk Management is a key strategic and integral role for the overall success of IT Control Management...


  • Candiac, Quebec, Canada Manulife Full time

    ManulifeWe provide financial advice, insurance, as well as wealth and asset management solutions for individuals, groups and institutions.The Director of IRM Assurance COE Execution will lead and assess risk management activities within our organization, ensuring that risk is managed effectively by executing 2nd line assurance assessments on 1st line control...


  • Candiac, Quebec, Canada Manulife Full time

    Director of IRM Assurance COE ExecutionManulife, a leading financial services group, offers an exciting opportunity for a Director of IRM Assurance COE Execution. This role provides strategic leadership and oversight of risk management activities within the organization.About the Role:This position ensures that risk is managed effectively by executing 2nd...


  • Candiac, Canada Scotiabank Full time

    Requisition ID: 210242Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.The Director, Cloud Security will lead and oversee Cloud Security within Global Risk Management (GRM) globally ensuring business strategies, plans and initiatives are executed and delivered in compliance with governing regulations,...


  • Candiac, Quebec, Canada RBC Full time

    We are seeking an experienced Senior Cyber Security Analyst to join our Identity and Access Management (IAM) Onboarding Team. As a key member of the team, you will be responsible for onboarding applications to RBC's IAM solutions in accordance with the IAM strategy and goals.Key Responsibilities:Learn architectural patterns relevant to RBC's IAM services and...


  • Candiac, Canada Scotiabank Full time

    p>The Director, Cloud Security will lead and oversee Cloud Security within Global Risk Management (GRM) globally ensuring business strategies, plans and initiatives are executed and delivered in compliance with governing regulations, internal policies, procedures with an understanding of industry frameworks/regulations/standards like CSA STAR, ISO, NIST,...


  • Candiac, Canada Manulife Full time

    h3>ManulifeManulife is a leading financial services group. We provide financial advice, insurance, as well as wealth and asset management solutions for individuals, groups and institutions.The Director of IRM Assurance COE Execution provides a strategic opportunity to lead and assess risk management activities within our organization. This role ensures that...


  • Candiac, Quebec, Canada Scotiabank Full time

    **Job Summary**We are seeking a seasoned Cloud Security Director to lead our cloud security efforts globally. As a key member of our Global Risk Management team, you will be responsible for overseeing cloud security and ensuring compliance with regulatory requirements.**Key Responsibilities** Develop and implement cloud security strategies to protect our...


  • Candiac, Canada RBC Full time

    Senior Cyber Security Analyst, IAM Onboarding (GCS)The Identity and Access Management (IAM) Onboarding Team is looking for a Senior Cyber Security Analyst to work towards onboarding applications to RBC’s Identity and Access Management solutions in accordance with the IAM onboarding strategy and IAM goals. This role will require you to work with a wide...


  • Candiac, Canada RBC Full time

    Senior Cyber Security Analyst, IAM Onboarding (GCS)The Identity and Access Management (IAM) Onboarding Team is looking for a Senior Cyber Security Analyst to work towards onboarding applications to RBC’s Identity and Access Management solutions in accordance with the IAM onboarding strategy and IAM goals. This role will require you to work with a wide...


  • Candiac, Canada Scotiabank Full time

    Requisition ID: 210337Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.The role:The primary focus for the Senior Manager, Enterprise Data Protection is to provide oversight and advisory services to Technology Groups and business lines regarding data protection (DP) control environment, considering industry...


  • Candiac, Quebec, Canada Manulife Full time

    About the RoleManulife is a leading financial services group that offers a wide range of solutions for individuals, groups, and institutions. As a Manager, Risk Management, you will be part of the Vendor Information Risk Management team.Key ResponsibilitiesConduct information security risk assessments for new and existing vendors, reviewing IT Controls,...