Current jobs related to Senior Manager, Cyber and IT Risk - London, Ontario - Scotiabank


  • London, Ontario, Canada Munich Re Full time

    Munich Re's Life and Health North America (LHNA) entities require a dedicated professional to manage cyber security risks. The role of the Information Security & Cyber Manager is crucial in identifying, prioritizing, communicating, and monitoring these risks.Key ResponsibilitiesSupport the adoption of Munich Re's Information Security Management (ISM)...


  • London, Ontario, Canada Munich Re Full time

    Job OverviewThe Information Security & Cyber Manager is a critical role within the Enterprise Risk Management team at Munich Re, responsible for supporting the second line of defense for Cyber Security covering the Life and Health North America (LHNA) entities. This position plays a vital role in identifying, prioritizing, communicating, and monitoring cyber...


  • London, Ontario, Canada TEEMA Full time

    Job TitleSenior Specialist Cyber PMODivisionOffice of the Chief Information Security OfficerReports ToManager Strategic TransformationSalary Range$122,305.00 to $163,639.00Work Location55 John Street, TorontoJob TypePermanent Full TimeShift InformationMonday to Friday, 35 hours work weekJOB SUMMARY:To provide strategic and operational support in managing...


  • London, Ontario, Canada Munich Re Full time

    **Job Summary:**We are seeking a highly skilled Cyber Security Manager to join our team at Munich Re. As the second line of defense for Cyber Security, you will be responsible for supporting the identification, prioritization, communication, and monitoring of cyber security risks in our Life and Health North America entities.Key Responsibilities:Support...


  • London, Ontario, Canada Munich Re Full time

    Job OverviewThe Information Security & Cyber Manager will be the second line of defense for Cyber Security covering Munich Re's Life and Health North America (LHNA) entities. This role supports the identification, prioritization, communication, and monitoring of cyber security risks in the Life and Health North America entities.


  • London, Ontario, Canada PrecisionERP Incorporated Full time

    PrecisionERP/IT is recruiting for an upcoming Intermediate/Senior Cyber Security Analyst for initial 6+month HYBRID (1-2 days ONSITE) contract with our client in London, Ontario (Canada).OVERVIEW:The Cyber Security consultant should have a working knowledge of desktops and servers in Windows, Linux (Kali, RHEL) and MacOS environments. This resource should be...


  • London, Ontario, Canada ipss inc. Full time

    Job Title: Senior Specialist Cyber Business AnalystDivision: Office of the Chief Information Security OfficerReports To: Manager Strategic TransformationSalary Range: $122,305 to $163,639Work Location: 55 John Street, TorontoJob Type: Permanent Full TimeShift Information: Monday to Friday, 35 hours work weekJOB SUMMARY:The Senior Specialist Cyber Business...


  • London, Ontario, Canada ipss inc. Full time

    Job Title: Senior Specialist Cyber Service LeadDivision: Office of the Chief Information Security OfficerReports To: Manager Cyber Service DeliverySalary Range: $122,305.00 to $163,639.00Work Location: 55 John Street, TorontoJob Type: Permanent Full TimeShift Information: Monday to Friday, 35 hours work weekJOB SUMMARY:To provide strategic and operational...


  • London, Ontario, Canada Munich Re Full time

    Key ResponsibilitiesSupport the implementation of Munich Re's Information Security Management (ISM) policies and guidelines.Prioritize and execute initiatives for Cyber Security covering Life and Health North America.Support local data protection initiatives such as data masking, unstructured data security, access management, and access reduction.Cyber risk...


  • London, Ontario, Canada ipss inc. Full time

    About the JobThis Senior Specialist Cyber Service Lead position requires a highly skilled professional to provide strategic guidance to the Manager Cyber Service Delivery and the Chief Information Security Office (CISO). The successful candidate will have extensive experience in stakeholder management, client relations, and information security, as well as...


  • London, Ontario, Canada ipss inc. Full time

    Key ResponsibilitiesProvide strategic guidance to the Manager Cyber Service Delivery and CISO in executing their mandateDefine, develop, and support cyber programs and initiativesEngage with teams across the organization to build alignment on key projects and develop execution roadmapsThe ideal candidate will have extensive experience in stakeholder...


  • London, Ontario, Canada Munich Re Full time

    We are seeking a seasoned professional to lead our cyber security efforts in Life and Health North America. As the Information Security & Cyber Manager, you will be responsible for managing cyber security risks across our entities.Primary ObjectivesDevelop and implement cyber security strategies aligned with Munich Re's overall risk management...


  • London, Ontario, Canada ipss inc. Full time

    About the RoleThe Senior Specialist Cyber Service Lead will provide strategic and operational guidance to the Manager Cyber Service Delivery and the Chief Information Security Office (CISO) in executing their mandate to establish and maintain a City-wide cyber program. This role involves defining, developing, and supporting cyber programs and initiatives...


  • London, Ontario, Canada ipss inc. Full time

    Job Summary:">We are seeking a highly skilled and experienced Cyber Threat Intelligence Lead to join our team at ipss inc. The successful candidate will play a key role in supporting the execution of the Chief Information Security Officer's (CISO) mandate, cyber vision and strategy.">About the Role:">The Cyber Threat Intelligence Lead will be responsible for...


  • London, Ontario, Canada ipss inc. Full time

    Job Title: Cyber Security Program ManagerDivision: Office of the Chief Information Security OfficerReports To: Manager Cyber Service DeliveryWork Location: Remote or on-site, depending on business needsJob Type: Permanent Full TimeShift Information: Monday to Friday, 35 hours work weekJOB SUMMARY:To provide strategic and operational guidance to the Manager...


  • London, Ontario, Canada ipss inc. Full time

    **Job Overview**At ipss inc., we are seeking a highly skilled and experienced Cyber Finance Management Specialist to join our team. As a key member of our organization, you will play a vital role in establishing and maintaining a robust cyber program that ensures protection across the organization.Main Responsibilities:Assist in the development and execution...


  • London, Ontario, Canada CAE Inc Full time

    About the Role:This is a challenging and rewarding opportunity to join CAE Inc as a Cyber Security Specialist. In this role, you will be responsible for ensuring the security and integrity of our cloud-based applications and simulator training systems. You will work closely with our IT team to develop and implement security protocols and procedures to...


  • London, Ontario, Canada Cavell Risk, Inc. Full time

    Key ResponsibilitiesThe Risk Management Coordinator will be responsible for aiding the Manager, Client Experience in day-to-day administrative tasks, such as preparing and sending invoices and fulfilling requests for certificates of insurance by the end of each business day.This role also involves organizing and maintaining client files, including submission...


  • London, Ontario, Canada Canada Mortgage and Housing Corporation Full time

    Travel Requirement: LimitedLanguage Skill Levels (Read/Write/Speak): ZZZSecurity Requirement: Reliability StatusSalary: Our salaries generally range from $99,646.37 to $124,557.97 and are based on qualifications and experience.About CMHCThe work you do and the work we do together matters. We come to work every day with a common purpose: to contribute to a...


  • London, Ontario, Canada The Toronto-Dominion Bank (Canada) Full time

    Qualifications and RequirementsTo be successful in this role, you will need:A minimum of 10 years of experience in technology and cyber risk management, IT audit at major financial institutionsDeep knowledge of technology and cyber risk management principles, internal control concepts, information security controls, and industry frameworksStrong analytical...

Senior Manager, Cyber and IT Risk

1 month ago


London, Ontario, Canada Scotiabank Full time
Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.

Title: Senior Manager, Cyber and IT Risk

Requisition ID: 213064

Contributes to the overall success of Cyber & IT Risk Management, Global Risk Management (GRM) globally ensuring specific individual goals, plans, initiatives are executed/delivered in support of the team's business strategies and objectives. Ensures all activities are conducted in compliance with governing regulations, internal policies and procedures.

Leads expert technical risk assurance and control oversight to ensure the bank achieves its objectives while effectively managing risk. Collaborate with cross-functional teams across the first line of defense to identify, assess, and mitigate emerging risks and vulnerabilities. This role is crucial in fostering a robust risk culture and driving continuous improvement, contributing to the development and implementation of comprehensive risk management policies, standards, and controls.

As part of the second line of defense, the Cybersecurity and IT Risk team provides independent oversight and challenge, and assists in developing methodologies, policies, processes, and tools to support the Cyber and IT Risk Management Framework.

Is this role right for you? In this role, you will:

1. Champion a customer focused culture to deepen client relationships and leverage broader Bank relationships, systems and knowledge.
2. Lead 2nd Line Challenge: Conduct comprehensive challenge to identify potential threats and vulnerabilities in the Bank's processes, systems, and operations. Partner with 1st line of defense to develop risk mitigation strategies across key cyber and IT domains. Challenge IT and cybersecurity risks within scenario analysis and thematic reviews. Conduct cyber risk assessments, metrics, and controls within globally complex, dispersed, and diverse organizations.
3. Control Evaluation: Evaluate the design of controls and communicate the impact of control weaknesses to first line teams and control implementers.
4. Alignment Evaluation: Evaluate the extent to which the first line of defense is aligned with internal and external control standards, as well as regulatory and audit requirements.
5. Framework Expertise: Be a subject matter expert in one or more industry-standard risk management frameworks (including ISO27001, COBIT, NIST) and have an in-depth understanding of cyber risk mitigation strategies.
6. Stakeholder Advisory: Advise stakeholders on risk management, controls development, and adherence to mitigate risks.
7. Risk Monitoring: Proactively monitor key risk indicators, analyze control metrics, and provide insights on risk management effectiveness to senior management, driving continuous improvement initiatives.
8. Reporting: Support monthly and quarterly IT and Cyber Risk report development for various risk committees and senior management.
9. Security Operations: Manage, assess, or audit security operations processes and technologies, including SOC, SIEM, Fusion Center, and Incident Response.
10. Understand how the Bank's risk appetite and risk culture should be considered in day-to-day activities and decisions.
11. Actively pursue effective and efficient operations of their respective areas in accordance with Scotiabank's Values, its Code of Conduct and the Global Sales Principles, while ensuring the adequacy, adherence to and effectiveness of day-to-day business controls to meet obligations with respect to operational, compliance, AML/ATF/sanctions and conduct risk.
12. Champion a high performance environment and contribute to an inclusive work environment.

Do you have the skills that will enable you to succeed in this role? We'd love to work with you if you have experience with:

1. Strong expertise in IT Risk Management (e.g. Logical Access, Data Leakage, Disaster Recovery)
2. Experience with Cybersecurity Risk Management is preferred
3. A minimum of 7 years of experience in technology departments and/or risk management, preferably in a financial institution
4. Advanced knowledge of relevant regulatory rules (OSFI, FFIEC, NYDFS 500) and frameworks (NIST, COBIT) is preferred
5. 5+ years of experience or equivalent expertise in technology risk management, information security, or a related field, with a focus on risk assessment and control evaluation
6. Demonstrated expertise in regulatory compliance, risk management frameworks, and industry best practices (e.g., NIST, ISO, FFIEC, GDPR)
7. Proficiency in data security, risk management & controls, security governance, and analytical thinking, with a track record of implementing effective risk mitigation strategies
8. Advanced knowledge of data analytics and data literacy
9. Strong understanding of IT risk management frameworks in a global banking environment.
10. Able to convey complex concepts and ideas on issues requiring interpretation and opinion.
11. Maintain in-depth knowledge of cyber and IT risks and controls across various information system architecture and engineering domains, such as data protection, application security, identity and access management, vulnerability management, change management, network security, endpoint security, logging and monitoring, and incident management.
12. Demonstrate a sense of urgency in implementing programs and evaluating priorities; be decisive, action-oriented, and practical.
13. Analyze and think through highly complex issues, then appropriately execute and implement against a well-thought-through framework in a seamless manner.
14. Demonstrate strong leadership, communication, and presentation skills, including the ability to adapt style to suit the different needs of any audience.
15. Independent in judgment and with a high standard of conduct and ethics. Able to challenge and be challenged while maintaining the highest levels of professionalism.
16. Good negotiation skills and ability to resolve conflict between teams or individuals so that functional / organizational objectives are achieved.
17. Excellent analytical skills; critical thinking and problem solving skills.
18. Good interpersonal skills.

What's in it for you?

1. The opportunity to join a forward-thinking and collaborative team, surrounded by innovative thinkers.
2. A rewarding career path with diverse opportunities for professional development.
3. Internal training to support your growth and enhance your skills.
4. An inclusive working environment that encourages creativity, curiosity, and celebrates success
5. Work in an Ecosystem; a bright, modern space where you'll have access to group seating, offices, collaboration spaces, a cafeteria with different options daily, a bistro, and more.

Location(s): Canada : Ontario : Toronto

Scotiabank is a leading bank in the Americas. Guided by our purpose: "for every future", we help our customers, their families and their communities achieve success through a broad range of advice, products and services, including personal and commercial banking, wealth management and private banking, corporate and investment banking, and capital markets.

At Scotiabank, we value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. If you require accommodation (including, but not limited to, an accessible interview site, alternate format documents, ASL Interpreter, or Assistive Technology) during the recruitment and selection process, please let our Recruitment team know. Candidates must apply directly online to be considered for this role. We thank all applicants for their interest in a career at Scotiabank; however, only those candidates who are selected for an interview will be contacted.

#J-18808-Ljbffr