Cyber Security and Information Technology Risk Lead

5 months ago


Montréal, Canada Business Development Bank of Canada Full time

We are banking at another level.

Choosing BDC as your employer means working in a healthy, inclusive, and skilled workplace that puts forward the best conditions to bring together unique teams where employees are empowered to act. It also means being at the centre of ambitious economic and financial projects to see further and to do things differently, to fuel the success of Canadian entrepreneurs.

Choosing BDC as your employer also means:
- Flexible and competitive benefits, including an Employee Savings and Investment Plan where BDC matches part of your voluntary contributions, a Defined Benefit Pension Plan, a $750 wellness and health care spending account, to name a few- In addition to paid vacation each year, five personal days, sick days as necessary, and our offices are closed from December 25 to January 1- A hybrid work model that truly balances work and personal life- Opportunities for learning, training and development, and much more...

POSITION OVERVIEW

The Operational Risk Management (ORM) team oversees the effectiveness of multiple operational risk management programs and is responsible for supporting and challenging the business in the management of risks.BDC and the financial services industry are rapidly evolving introducing more interconnected operational risks. The ORM team deploys an array of programs to support the first line of defence to better manage risk as BDC undergoes its digital and strategic transformation. The ORM team is comprised of individuals who are passionate about risk management and improving BDC operations.

We are looking for a Cyber Security and Information Technology Risk Lead, who will become a key member of the ORM team. They will be positioned as an InfoSec/IT and ORM expert responsible to review the first line of defense in the identification and management of InfoSec and IT risks across the ORM Framework. They will have the opportunity to work with individuals across the entire organization and contribute to many initiatives and projects. They will play a key role in the design, deployment, and evolution of the ORM Framework and methodologies.
- CHALLENGES TO BE MET- Support first and second-line stakeholders executing ORM Programs including: Risk and Control Self Assessments, Key Risk Indicators, Operational Risk Events, Business Continuity Management, Risk Appetite, and new product and business initiative risk assessments for products, projects and other changes.- Effectively challenge and critically review first and second line InfoSec/IT risk assessments and risk events- Monitoring and oversight of remediation activities and action plans- Recommend new technology risk assessment methodologies and tools.- Ensure the strength of ORM work methods and their evolution in line with BDC operational realities and industry best practices- Manage and improve ORM program reporting including program reporting, data collection and analysis, risk reporting, action plans, and committee presentations- Develop and maintain ORM stakeholder relationships including first line leadership, second line risk functions, and communication with senior leaders- Develop, enhance, and document ORM Governance and procedures- Coaching and sharing knowledge with more junior members of the team improving functions overall capability
- WHAT WE ARE LOOKING FOR- Bachelor’s degree in Information Technology, Communications, Business Administration, Social Sciences-related discipline- Master’s degree or other equivalent combination of education and work experience preferred- Recognized technology and/or Risk certification preferred (CRISC, CISM, CISA, Open FAIR, CISSP, COBIT, etc.)- Five years of experience working in Technology Risk, Technology Resilience, Technology Audit or related field- Subject matter expertise in IT Operations, Data, Digital, Emerging Technology and/or Information Security- Experience with understanding and translating complex business requirements in a fast-paced banking sector preferred- Strong business acumen, analytical qualitative and quantitative skills (advanced MS Excel, Power BI an asset)- Excellent French and English written and verbal communication skills, including for the development and delivery of presentations- Excellent understanding of modern governance, risk and control frameworks, including the three lines of defense- Comfortable dealing with and challenging senior stakeholders- Responsive, agile approach to manage changing priorities- Continuous improvement/learning mindset, challenging the status quo and seeking self improvement- Acuity for perceiving and understanding client/stakeholder needs- Strong planning, coordinating, organizing, training and implementation skills-
- Ability to prioritize, meet tight deadlines, escalate when necessary, and work in a multicultural, bilingual and dynamic environment- Proficiency with MS Office Suite (Word, PowerPoint, Visio)

.



  • Montréal, Canada Business Development Bank of Canada Full time

    We are banking at another level. Choosing BDC as your employer means working in a healthy, inclusive, and skilled workplace that puts forward the best conditions to bring together unique teams where employees are empowered to act. It also means being at the centre of ambitious economic and financial projects to see further and to do things differently, to...


  • Montréal, Canada WSP Full time

    WSP’s Information Security Office (ISO) is responsible for the deployment and maintenance of the information security framework for both the IT organization and wider business community. This includes the Governance mechanisms, policies and processes, tools and technologies, and employee training required to protect WSP information and that of our...


  • Montréal, Canada Business Development Bank of Canada Full time

    We are banking at another level. Choosing BDC as your employer means working in a healthy, inclusive, and skilled workplace that puts forward the best conditions to bring together unique teams where employees are empowered to act. It also means being at the centre of ambitious economic and financial projects to see further and to do things differently, to...


  • montréal, Canada National Bank Full time

    As a Chief Advisor, Technology and Cyber Risk Management for Business Lines on the Technology, Cyber and Data Risk Management team at National Bank, you will act as a second line of defence specialist on information technology and cybersecurity. Your experience in several areas of technology (IT arc


  • montréal, Canada National Bank Full time

    As a Chief Advisor, Technology and Cyber Risk Management for Business Lines on the Technology, Cyber and Data Risk Management team at National Bank, you will act as a second line of defence specialist on information technology and cybersecurity. Your experience in several areas of technology (IT architecture, cloud, cyber) will help you to have a positive...


  • montréal, Canada National Bank Full time

    As a Chief Advisor, Technology and Cyber Risk Management for Business Lines on the Technology, Cyber and Data Risk Management team at National Bank, you will act as a second line of defence specialist on information technology and cybersecurity. Your experience in several areas of technology (IT architecture, cloud, cyber) will help you to have a positive...


  • Montréal, QC, Canada National Bank of Canada Full time

    As a Chief Advisor, Technology and Cyber Risk Management for Business Lines on the Technology, Cyber and Data Risk Management team at National Bank, you will act as a second line of defence specialist on information technology and cybersecurity. Your experience in several areas of technology (IT architecture, cloud, cyber) will help you to have a positive...

  • Cyber Security Expert

    5 months ago


    Montréal, Canada Equans Full time

    **Requisition ID**: 53969 **Domain**: Digital and IT/Cybersecurity **Contract type**: Permanent **Schedule**: Full-Time **_Equans is looking for a cybersecurity Expert!_** The Equans group is a world leader in the energy and services industry. The Group operates in 20 countries, with 90,000 employees working on 5 continents. Equans is a Bouygues group...


  • Montréal, Canada WSP Full time

    WSP’s Information Security Office (ISO) is responsible for the deployment and maintenance of the information security framework for both the IT organization and wider business community. This includes the Governance mechanisms, policies and processes, tools and technologies, and employee training required to protect WSP information and that of our...

  • Cyber Security Manager

    4 months ago


    Montréal, Canada FlexPay Full time

    **Who We Are** FlexPay is the first to market and global leader in failed payment recovery. Our outstanding success is built upon a solid foundation of exceptional culture, adherence to our values, and an innovative AI-driven approach to solving this trillion-dollar problem. Our leading Payment Authorization Management solution helps subscription businesses...


  • montréal, Canada National Bank Full time

    As a Senior Advisor on the Technology, Cyber and Data Risk Management team at National Bank, you’ll act as a specialist in support of the implementation of the Bank’s risk management strategy. This role will enable you to have a positive impact on the organization by taking charge of risk governance for the 2nd line of defence.Your role Contribute to the...


  • montréal, Canada National Bank Full time

    As a Senior Advisor on the Technology, Cyber and Data Risk Management team at National Bank, you’ll act as a specialist in support of the implementation of the Bank’s risk management strategy. This role will enable you to have a positive impact on the organization by taking charge of risk governance for the 2nd line of defence.Your role Contribute to the...


  • Montréal, Canada Pages Jaunes Solutions Numériques et Médias Limitée Full time

    Colleagues you’ll love. - A dynamic and collaborative workplace where you can contribute to our story. - Comprehensive benefits from day one. This is the Yellow Pages Life and what working at Yellow Pages is all about. **What is a Cyber Security Manager at Yellow Pages?** Want to contribute to the development and prosperity of local small and...


  • Montréal, Canada SITA Switzerland Sarl Full time

    Overview: We are seeking a highly motivated and talented cyber security graduate to join our growing team, STORM, Security Threat & Operational Risk Management team. **_What you will do:_** - Contribute to engineering initiatives to operationalize Cyber Threat Intelligence feeds and API integrations. - Leverage internal and external data sets and threat...


  • Montréal, Canada SITA Full time

    **Overview**: - We are seeking a highly motivated and talented cyber security graduate to join our growing team, STORM, Security Threat & Operational Risk Management team.- **_What you will do:_** - Contribute to engineering initiatives to operationalize Cyber Threat Intelligence feeds and API integrations. - Leverage internal and external data sets and...


  • Montréal, Canada CN Full time

    At CN, we work together to move our company—and North America—forward. Be part of our Information & Technology (I&T) team, a critical piece of the engine that keeps us in motion. From enterprise architecture to operational technology, our teams use the agile methodology to automate and digitize our railroad ensuring our operations run optimally and...


  • Montréal, Canada MNP Full time

    What do you think of when you hear the name MNP? Most likely tax and accounting, but as one of Canada’s largest consulting organizations, we’re so much more! We’re also serious about technology. Make an impact with our Cyber Security & Privacy - Risk Management team as an Analyst. This diverse team of tech-savvy problem solvers enables clients to take...


  • Montréal-Est, Canada Yeah! Global Full time

    Note:·       One of our clients based in the USA is hiring for multiple roles as Cyber Security EngineerAs a Cyber Security Engineer, you will be responsible for designing, implementing, and maintaining security measures to safeguard our organization's digital assets. You will work closely with IT teams to ensure that security best practices are...


  • Montréal, Canada Canadian National Railway Full time

    At CN, everyday brings new and exciting challenges. You can expect an interesting environment where you’re part of making sure our business is running optimally and safely―helping keep the economy on track. We provide the kind of paid training and opportunities that long-term careers are built on and we recognize hard workers who strive to make a...


  • Montréal, QC, Canada Intact Full time

    Our employees are at the heart of what we do best: helping people, businesses and society prosper in good times and be resilient in bad times. When you join our team, you’re bringing this purpose to life alongside a passionate community of experts. Feel empowered to learn and grow while being valued for who you are - here, diversity is a strength. You...