IT Cybersecurity Risk Manager for Enterprise Data Protection

7 days ago


Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

About SGS Société Générale de Surveillance SA

We are a leading global financial services company, and our mission is to facilitate the objectives of our Business Lines while maintaining independent oversight through risk evaluation and monitoring.

Job Description

The Head of Cybersecurity Risk is seeking an experienced IT Cybersecurity Risk Manager to join the RISQ/OPE organization. The successful candidate will help define 2nd line of defense processes, policies, and tools for our data and technology environments. This role involves evaluating overall cybersecurity risk, maintaining an active view, and reporting on actual, mitigated, and residual cybersecurity risk in the organization.

This position requires performing full-range technology and information and cyber security risk management lifecycle activities, including risk identification, assessment, reporting, and oversight of remediation planning and execution. The candidate will partner with the Chief Information Security Officer (CISO) and IT organizations to establish standards, policies, and develop Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs) for measuring and monitoring cyber risks continuously.

The IT Cybersecurity Risk Manager will develop and manage the Information Technology & Information Security Risk Program using standard risk taxonomy, such as FAIR. They will provide independent assurance and validation activities over common cybersecurity controls that include both administrative and technical aspects.

This role also entails assessing the accuracy, completeness, and sufficiency of the risk management governance framework, processes, and methodologies. The successful candidate will identify emerging cyber threats and risks to our environment and perform effective challenge of all critical and highly sensitive processes & controls, and business continuity.

The IT Cybersecurity Risk Manager will develop cybersecurity risk scenarios to identify potential attack vectors and Tactics, Techniques, and Procedures (TTPs) to guide the continuous improvement of our firm's cyber defense posture. They will lead and support selected cybersecurity remediation efforts involved with strategic planning with the first Line of Defense.

Requirements

To be successful in this role, you must have a Bachelor's and/or Master's degree in Computer Science, Engineering, or a relevant technical field. You should have a solid understanding of financial services, specifically within cyber and data privacy related laws, regulations, frameworks, and guidelines (NYSDFS - 23NYCRR500, ECB, GDPR, GLBA, Regulation S-P, etc.).

Experience in assessing design and operating effectiveness of technology controls is essential. You should have a solid foundation in information technology and information security principles and familiarity with common cybersecurity frameworks and standards such as NIST SP 800-53, NIST CSF, Mitre Attack, FFIEC CAT, CSC Top 20, COBIT, ISO 27000 series.

Previous working experience in cybersecurity operations and relevant security design knowledge is required. Ideally, you have worked in a 2 LOD Cyber Security Risk function. Background in IT Risk Assessment, IT Audit, Information Security Management, and experience integrating vulnerability and patch management tools with IT/IS risk programs are desirable.

Estimated Salary: $120,000 - $180,000 per year

Benefits

We offer a hybrid work arrangement that offers employees the flexibility to work remotely, as well as on-site, in order to promote interaction and collaboration with colleagues while adhering to all SG standard protocols. Our benefits package includes minimum of 20 Vacation days + 4 personal days, supportive Maternity, paternity, parental, and adoption leave policy, health spending ($2,000/year) and personal spending ($1,000/year) accounts, fully sponsored virtual healthcare assistance, Employee Assistance Program, and various Employee Resource Groups.



  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    Job DescriptionThe Cybersecurity Risk Manager for Enterprise Data Protection will be a key member of the RISQ/OPE organization, reporting directly to the Head of Cybersecurity Risk. This role is responsible for evaluating overall cybersecurity risk, maintaining an active view, and reporting on the actual, mitigated, and residual cybersecurity risk in the...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About Societe GeneraleSociete Generale is a global financial institution that offers a range of financial services to individuals, businesses, and institutions. Our mission is to contribute to the sustainable growth of our clients and the wider community through our expertise, understanding of risks, and risk management techniques.Job Title: Cybersecurity...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    Job DescriptionWe are seeking a highly skilled Chief Cybersecurity Risk Manager to join our team at SGS Société Générale de Surveillance SA. This is an exciting opportunity to lead our cybersecurity risk management efforts and play a key role in ensuring the security and integrity of our data.Responsibilities:Lead the development and implementation of...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the JobCybersecurity Risk Manager - Data Protection and Resilience ExpertAt SGS Société Générale de Surveillance SA, we are seeking an experienced Cybersecurity Risk Manager to join our team. The successful candidate will be responsible for evaluating overall cybersecurity risk, maintaining an active view, and reporting on actual, mitigated, and...


  • Montreal, Quebec, Canada Société Générale Assurances Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Risk Specialist to join our team at Société Générale Assurances. This is a unique opportunity to contribute to the development of our organization's cybersecurity risk management capabilities, specifically in the areas of data protection and resilience.About the RoleThe successful candidate will be...


  • Montreal, Quebec, Canada NTT DATA Full time

    About the RoleNTT DATA is a trusted global innovator of business and technology services, serving 75% of the Fortune Global 100. We're committed to helping clients innovate, optimize, and transform for long-term success.Job SummaryWe're seeking an experienced Cybersecurity Risk Management Specialist to join our team in Montreal, Quebec, Canada. As a key...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleThe Cybersecurity Risk Manager plays a pivotal role in defining 2nd line of defense processes, policies, and tools for Societe Generale's data and technology environments. This position involves evaluating overall cybersecurity risk, maintaining an active view, and reporting on actual, mitigated, and residual cybersecurity risk within the...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the JobWe are seeking a highly skilled Data Cybersecurity Risk Manager to join our team at SGS Société Générale de Surveillance SA. This role is responsible for evaluating overall cybersecurity risk, maintaining an active view, and reporting on the actual, mitigated, and residual cybersecurity risk in the organization.


  • Montreal, Quebec, Canada National Bank Full time

    Job OverviewNational Bank is seeking a highly skilled Strategic Cybersecurity Risk Manager to join their Technology, Cyber and Data Risk Management team. This role will play a critical part in identifying and mitigating cybersecurity risks across the organization.About the RoleThis position requires an individual with 10+ years of experience in technology...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    Job SummaryWe are seeking an experienced Chief Information Security Risk Manager to join our Enterprise Cybersecurity team. This role will be responsible for evaluating overall cybersecurity risk, maintaining an active view, and reporting on actual, mitigated, and residual cybersecurity risk in the organization.The successful candidate will have a solid...


  • Montreal, Quebec, Canada Flare Full time

    We are a team of mission-driven individuals passionate about enabling companies to protect themselves against cyber threats. At Flare, we thrive on trust, operate with integrity, and support our people to excel in their work.Role OverviewWe seek an experienced Chief Information Security Officer to establish and lead our enterprise security vision, strategy,...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our RISQ/OPE organization at SGS Société Générale de Surveillance SA. As a key member of our team, you will play a critical role in further defining our 2nd line of defense processes, policies, and tools for SG's data and technology environments.The ideal candidate will have...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    Societe Generale is seeking a Cybersecurity Risk Manager to join its Risk Management Department in the United States.The successful candidate will be responsible for evaluating overall cybersecurity risk, maintaining an active view, and reporting on the actual, mitigated, and residual cybersecurity risk in the organization. This role also involves further...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleThe Cybersecurity Risk Manager will join our team to define and implement 2nd line of defense processes, policies, and tools for data and technology environments. The role involves evaluating overall cybersecurity risk, maintaining an active view, and reporting on actual, mitigated, and residual cybersecurity risk.ResponsibilitiesEvaluate and...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the Role: We are seeking a highly skilled Cybersecurity Risk Manager to join our team at SGS Société Générale de Surveillance SA. As a key member of our Risk Management Department, you will play a critical role in identifying and mitigating cybersecurity risks that could impact our organization.Job Summary: The successful candidate will be...


  • Montreal, Quebec, Canada WSP Full time

    About WSPWSP is a global professional services firm that provides technical expertise to clients in the Built Environment. Our team of experts works on a wide range of projects, from urban planning and architecture to engineering and environmental consulting.Job DescriptionJob Title: IT Security Risk Manager - Enterprise CybersecuritySalary:$90,000 -...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    At SGS Société Générale de Surveillance SA, we are seeking a highly skilled Cybersecurity Risk Manager to join our team in the Americas Region. This role is responsible for evaluating overall cybersecurity risk, maintaining an active view, and reporting on the actual, mitigated, and residual cybersecurity risk in the organization.This position requires a...


  • Montreal, Quebec, Canada NTT DATA Services Full time

    Job OverviewWe are seeking a highly skilled Cybersecurity Risk Management Specialist to join our team in Montreal, Quebec (CA). This role involves conducting security assessments, identifying vulnerabilities, and developing comprehensive risk management strategies.


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    Job OverviewWe are seeking a highly skilled Cybersecurity Risk Manager to join our team at SGS Société Générale de Surveillance SA. This individual will play a critical role in helping us further define our 2nd line of defense processes, policies, and tools for our data and technology environments.About the JobThe Cybersecurity Risk Manager will be...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    Societe Generale is seeking a skilled Cybersecurity Risk Manager to join our RISQ/OPE organization in the United States. As a member of our team, you will play a key role in defining and implementing 2nd line of defense processes, policies, and tools for SG's data and technology environments.About the JobThe ideal candidate will have a solid foundation in...