Cyber Risk Manager

1 month ago


Canada Canadian Imperial Bank of Commerce Full time
Job Title: Senior Manager, Cyber Risk

We are seeking a highly skilled and experienced Senior Manager, Cyber Risk to join our team at the Canadian Imperial Bank of Commerce. As a key member of our organization, you will be responsible for fulfilling our second line of defense mandate to support effective management of cyber security risk across the organization.

About the Role

The Senior Manager, Cyber Risk will work closely with the first Line of Defense (LoD) and apply technical expertise to assess cyber risks identified by the 1st LoD. You will challenge risk mitigation/treatment plans and work closely with business units in early identification and mitigation of risks.

Key Responsibilities
  • Perform an oversight function through effective challenge of Cyber Risks and associated mitigation plans in collaborating closely with 1st LoD function, as well as respective business units.
  • Have an in-depth understanding and working knowledge of Information Security risks, vulnerabilities, and compensating controls.
  • Develop and maintain a deep understanding of Threat Risks Assessments, Threat modeling practices, and Risk assessment review methodologies/processes to enable consistent evaluation of identified risks.
  • Manage application security scanning tools and technologies (e.g., SCA, SAST, DAST), with the ability to interpret scan results and determine associated risk.
  • Critical thinking skills to evaluate the impact of identified security Risks and drive attack surface reduction.
  • An in-depth understanding and working knowledge of programming languages and application security fundamentals (e.g., architectures, frameworks and standards) and secure coding practices.
  • Effective communications – Demonstrates clarity of thought in both written and verbal communications and develops and delivers strong and simplified reporting content and presentations.
  • Advisory – Maintains an industry view of the broad cyber security landscape, understands best practices and performance benchmarks, and monitors emerging cyber security trends. Provides guidance on the management of cyber risk when consulted, including risk mitigation strategies.
  • Relationships – Builds and sustains strong internal relationships and is viewed as a valued partner that offers sound and pragmatic guidance, demonstrates a deep understanding of their environment and context, and facilitates productive risk discussions and outcomes.
  • Collaboration – TI&I Operational Risk is a highly matrixed team building upon cross-functional strengths of all team members. The role leverages strong communication, interpersonal skills and teamwork to build and sustain strong internal relationships within Risk Management, Information Security, technology, business units and other enterprise functional groups.
Requirements
  • Strong knowledge of information security/cyber risks and risk assessment methodologies. It's an asset if you hold a recognized cyber security certification such as CISSP, CEH, GIAC, OSCP.
  • Cooperative and innovative entrepreneurial team player with mature judgment, strong interpersonal skills and original approaches to problem resolution.
  • Deals with ambiguity and is exceptionally adaptable and flexible.
  • Thinking out of the box to make processes more efficient, focusing on bringing in automations and simplifications.
  • You give meaning to data. You enjoy investigating complex problems and making sense of information. You communicate detailed information in a meaningful way.
  • Managing multiple priorities with varying complexity in a sophisticated matrix environment organization while under time constraints.
  • Maintaining productive and collaborative relationships with internal and external sources, colleagues and others to obtain, provide, verify and discuss information and best practices.
  • Values matter to you. You bring your real self to work and you live our values - trust, teamwork, and accountability.
What We Offer

At CIBC, your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential. We aspire to give you a career, rather than just a paycheck.

  • We work to recognize you in meaningful, personalized ways including a competitive salary, incentive pay, banking benefits, a benefits program*, defined benefit pension plan*, an employee share purchase plan, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program.
  • Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients.
  • We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development.

*Subject to plan and program terms and conditions

What You Need to Know
  • CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience. If you need accommodation, please contact Mailbox.careers-
  • You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit.
  • We may ask you to complete an attribute-based assessment and other skills tests (such as simulation, coding, French proficiency, MS Office). Our goal for the application process is to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us.

Job Location

Toronto-81 Bay, 31st Floor

Employment Type

Regular

Weekly Hours

37.5

Skills

Analytical Thinking, Communication, Compliance Program Management, Cyber Risks, Cybersecurity, Dynamic Application Security Testing (DAST), Enterprise Risk Management (ERM), Group Problem Solving, Information Security, Information Security Assessments, Information Security Auditing, Information Security Risk, Information Security Risk Assessments, Information Security Risk Management, Large Group Presentations, Mitigation, Operational Risks, Reporting and Analysis, Static Application Security Testing (SAST), Team Collaboration, Threat Assessment, Threat Management, Threat Monitoring


  • Cyber Risk Manager

    1 month ago


    Canada Canadian Imperial Bank of Commerce Full time

    Job Title: Senior Manager, Cyber RiskWe are seeking a highly skilled and experienced Senior Manager, Cyber Risk to join our team at the Canadian Imperial Bank of Commerce. As a key member of our Information Security team, you will be responsible for fulfilling our second line of defense mandate to support effective management of cyber security risk across...

  • Cyber Risk Manager

    1 month ago


    Canada Canadian Imperial Bank of Commerce Full time

    Job Title: Senior Manager, Cyber RiskWe are seeking a highly skilled and experienced Senior Manager, Cyber Risk to join our team at the Canadian Imperial Bank of Commerce. As a key member of our Information Security team, you will be responsible for fulfilling our second line of defense mandate to support effective management of cyber security risk across...

  • Cyber Risk Manager

    1 month ago


    Canada Canadian Imperial Bank of Commerce Full time

    Job Title: Senior Manager, Cyber RiskWe are seeking a highly skilled and experienced Senior Manager, Cyber Risk to join our team at the Canadian Imperial Bank of Commerce. As a key member of our Information Security team, you will be responsible for fulfilling our second line of defense mandate to support effective management of cyber security risk across...

  • Cyber Risk Manager

    1 month ago


    Canada Canadian Imperial Bank of Commerce Full time

    Job Title: Senior Manager, Cyber RiskWe are seeking a highly skilled and experienced Senior Manager, Cyber Risk to join our team at the Canadian Imperial Bank of Commerce. As a key member of our Information Security team, you will be responsible for fulfilling our second line of defense mandate to support effective management of cyber security risk across...

  • Cyber Risk Manager

    1 month ago


    Canada Canadian Imperial Bank of Commerce Full time

    Job Title: Senior Manager, Cyber RiskWe are seeking a highly skilled and experienced Senior Manager, Cyber Risk to join our team at the Canadian Imperial Bank of Commerce. As a key member of our Information Security team, you will be responsible for fulfilling our second line of defense mandate to support effective management of cyber security risk across...

  • Cyber Risk Manager

    1 month ago


    Canada Canadian Imperial Bank of Commerce Full time

    Job Title: Senior Manager, Cyber RiskWe are seeking a highly skilled and experienced Senior Manager, Cyber Risk to join our team at the Canadian Imperial Bank of Commerce. As a key member of our Information Security team, you will be responsible for fulfilling our second line of defense mandate to support effective management of cyber security risk across...


  • Canada Cyber Crime Full time

    Job SummaryWe are seeking a highly skilled Senior Specialist, Cyber Security to join our team at Northwestel. As a key member of our Cyber Security team, you will be responsible for managing security controls, delivering security consultation, and providing security best practices for our organization.Key ResponsibilitiesReview and advise on information...


  • Canada Cyber Crime Full time

    Job SummaryWe are seeking a highly skilled Senior Specialist, Cyber Security to join our team at Northwestel. As a key member of our Cyber Security team, you will be responsible for managing security controls, delivering security consultation, and providing security best practices for our organization.Key ResponsibilitiesReview and advise on information...

  • Cyber Risk Manager

    1 month ago


    Canada Canadian Imperial Bank of Commerce Full time

    Job Title: Senior Manager, Cyber RiskWe are seeking a highly skilled and experienced Senior Manager, Cyber Risk to join our team at the Canadian Imperial Bank of Commerce. As a key member of our Information Security team, you will be responsible for fulfilling our second line of defense mandate to support effective management of cyber security risk across...

  • Cyber Risk Manager

    1 month ago


    Canada Canadian Imperial Bank of Commerce Full time

    Job Title: Senior Manager, Cyber RiskWe are seeking a highly skilled and experienced Senior Manager, Cyber Risk to join our team at the Canadian Imperial Bank of Commerce. As a key member of our Information Security team, you will be responsible for fulfilling our second line of defense mandate to support effective management of cyber security risk across...


  • Canada Cyber Crime Full time

    Job SummaryWe are seeking a highly skilled Senior Specialist, Cyber Security to join our team at Northwestel. As a key member of our IT Security team, you will be responsible for managing security controls, delivering security consultation, and providing security best practices for our organization.Key ResponsibilitiesReview and advise on information...


  • Canada Cyber Crime Full time

    Job SummaryWe are seeking a highly skilled Senior Specialist, Cyber Security to join our team at Northwestel. As a key member of our IT Security team, you will be responsible for managing security controls, delivering security consultation, and providing security best practices for our organization.Key ResponsibilitiesReview and advise on information...


  • Canada Cyber Crime Full time

    Coalition: A Leader in Cyber Insurance and Security Coalition is a pioneering company that combines comprehensive cyber insurance coverage and security services to help businesses prevent digital risk. Our mission is to provide a secure and stable environment for organizations to thrive in today's hyper-connected world. As a key member of our team, you...


  • Canada Canadian Imperial Bank of Commerce Full time

    Cyber Risk and Security Manager RoleAt CIBC, we're building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what's right for our clients.As a Senior Manager, Cyber Risk and Security, you'll be responsible for fulfilling CIBC's second line of defense mandate to support effective...


  • Canada Canadian Imperial Bank of Commerce Full time

    Cyber Risk and Security Manager RoleAt CIBC, we're building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what's right for our clients.As a Senior Manager, Cyber Risk and Security, you'll be responsible for fulfilling CIBC's second line of defense mandate to support effective...


  • Canada Cyber Crime Full time

    Cyber Policy Platform DeveloperWe are seeking a skilled Software Development Engineer to join our Cyber Policies team at Coalition. As a key member of our team, you will be responsible for developing and sustaining a cyber policy platform that provides high integrity for issuance of cyber lines.Key Responsibilities:Design and develop high-quality APIs and...

  • Cyber Risk Engineer

    4 weeks ago


    Canada Arctic Wolf Full time

    Join Arctic Wolf's Team as a Cyber Risk EngineerArctic Wolf is a leading provider of security operations in the fast-growing industry of cybersecurity. We are seeking a highly skilled Cyber Risk Engineer to join our team. As a Cyber Risk Engineer, you will be responsible for analyzing and mitigating cyber threats, ensuring the security and integrity of our...

  • Cyber Risk Engineer

    1 month ago


    Canada Arctic Wolf Full time

    Join Arctic Wolf's Team as a Cyber Risk EngineerArctic Wolf is a leading provider of security operations in the fast-growing industry of cybersecurity. We are seeking a highly skilled Cyber Risk Engineer to join our team. As a Cyber Risk Engineer, you will be responsible for analyzing and mitigating cyber threats, ensuring the security and integrity of our...


  • Canada Outworks Solutions Private Limited Full time

    Cyber Security Risk ConsultantJoin Outworks Solutions Private Limited as a Cyber Security Risk Consultant and take on a challenging role that requires expertise in identifying and mitigating cyber threats. As a key member of our team, you will be responsible for researching and evaluating emerging cyber security threats, planning for disaster recovery, and...


  • Canada Outworks Solutions Private Limited Full time

    Cyber Security Risk ConsultantJoin Outworks Solutions Private Limited as a Cyber Security Risk Consultant and take on a challenging role that requires expertise in identifying and mitigating cyber threats. As a key member of our team, you will be responsible for researching and evaluating emerging cyber security threats, planning for disaster recovery, and...