Senior Manager, IT Risk and Vendor Compliance

2 weeks ago


Candiac, Quebec, Canada Manulife Full time

About the Role

We are seeking a Senior Manager to join our Vendor Information Risk Management team. In this role, you will conduct assessments on information security controls, measure their effectiveness, identify control gaps, and provide business advice and guidance on various IT risks and contract gaps associated with suppliers.

This is an individual contributor position based out of Toronto or Waterloo office with a hybrid work arrangement (3 days in office). As a key member of the team, you will be responsible for conducting information security risk assessments for new and existing vendors, reviewing IT controls, business continuity/disaster recovery controls, and subcontractor reviews.

Key Responsibilities

  • Conducting in-depth information security risk assessments for vendors, including IT controls and business continuity/disaster recovery controls.
  • Reviewing and recommending IT contract clauses to ensure alignment with Manulife's risk management framework.
  • Developing, maintaining, and implementing information risk policies and procedures, as well as monitoring processes and measures to enforce those policies.
  • Staying up-to-date with industry trends and emerging technologies to maintain currency of technical expertise.

What We're Looking For

  • A minimum of 5 years of experience in third-party risk assessment, preferably in a financial services or related industry.
  • 2-3 years of IT auditing or equivalent experience.
  • CISA, CISSP, or CRISC certifications are highly valued.
  • Strong analytical and problem-solving skills, with the ability to communicate complex technical concepts to non-technical stakeholders.
  • A passion for risk management and a positive attitude towards innovation.

What We Offer

  • A competitive salary range of $120,000 - $180,000 per annum, depending on experience.
  • A comprehensive benefits package, including health insurance, retirement savings plan, and paid time off.
  • Ongoing professional development opportunities to enhance your skills and advance your career.
  • A dynamic and inclusive work environment that fosters collaboration, creativity, and growth.

About Manulife

  • Manulife is a leading financial services group, providing financial advice, insurance, and wealth and asset management solutions.
  • We are committed to fostering a values-first culture, boundless opportunity, continuous innovation, and delivering on our promise of diversity, equity, and inclusion.
  • Our mission is to build a business that benefits all stakeholders and has a positive social and environmental impact.


  • Candiac, Quebec, Canada Manulife Full time

    Company OverviewManulife is a leading financial services group, providing financial advice, insurance, and wealth management solutions. Our commitment to innovation and customer satisfaction drives our growth.SalaryThe estimated annual salary for this role is between $120,000 and $180,000, depending on experience and qualifications.Job DescriptionWe are...


  • Candiac, Quebec, Canada CIBC Full time

    Senior Technology Risk ManagerCIBC is looking for a Senior Technology Risk Manager to join our team. As a key member of our Internal Audit group, you will play a critical role in ensuring the effective management of technology risk across the organization.Your Key Responsibilities:Develop and implement a comprehensive technology risk management framework...


  • Candiac, Quebec, Canada Aviva Full time

    AvivaOur global corporate website for investors, shareholders, career seekers, the media and individuals interested in our social responsibility.The Senior Cybersecurity Risk Consultant plays a vital role in maintaining risks and controls with Aviva Group Cybersecurity standards and policies and reducing operational risks to Aviva. This position provides...


  • Candiac, Quebec, Canada Scotiabank Full time

    Job Summary:We are seeking an experienced Cyber Senior Technology Officer to join our team at Scotiabank. This role requires a strong leader with expertise in Technology Risk management, including Cyber, Digital, and IT Risk.About the Role:In this position, you will directly support the Technology Risk leadership and the SVP/CIO to collaboratively assess,...


  • Candiac, Quebec, Canada Manulife Full time

    About the RoleManulife is a leading financial services group that offers a wide range of solutions for individuals, groups, and institutions. As a Manager, Risk Management, you will be part of the Vendor Information Risk Management team.Key ResponsibilitiesConduct information security risk assessments for new and existing vendors, reviewing IT Controls,...


  • Candiac, Quebec, Canada Sun Life Full time

    About the Role:The Cyber Risk Management Leader will be responsible for strategically leading the 2nd Line of Defence (2LOD) for Technology & Cyber Risk challenge activities in Canada and the United States. This includes maintaining a relationship with our Business Group Risk Teams.• Extensive experience in the financial services industry, particularly in...


  • Candiac, Quebec, Canada State Street Full time

    Job OverviewWe are seeking a seasoned IT Infrastructure Risk Manager to lead audit engagements focused on Information Technology within our Global Technology Services Business Unit. As an expert in financial services operational processes and technology, you will oversee individual audit engagement and lead assigned teams through all aspects of the audit...


  • Candiac, Quebec, Canada RBC Full time

    We are seeking a skilled and experienced Technology Risk Management Professional to join our team at RBC. In this role, you will play a critical part in managing and providing subject matter expertise on technology risk control and advisory services to Finance IT and CFO Group management.ResponsibilitiesManage and assess IT & operational risks across a large...


  • Candiac, Quebec, Canada Manulife Full time

    Senior Manager, Cybersecurity Audit & Advisory ServicesManulife is a leading financial services company. We provide comprehensive financial solutions to individuals, groups, and institutions.The Technology Audit Team assesses technology risks in various initiatives to ensure alignment with business, cybersecurity, performance, and regulatory expectations. As...


  • Candiac, Quebec, Canada Scotiabank Full time

    The Director, Cloud Security will lead and oversee Cloud Security within Global Risk Management globally ensuring business strategies, plans and initiatives are executed and delivered in compliance with governing regulations, internal policies, procedures with an understanding of industry frameworks/regulations/standards like CSA STAR, ISO, NIST, OWASP, OSFI...


  • Candiac, Quebec, Canada Autodesk Full time

    Are you a seasoned professional looking to drive AI governance initiatives and ensure data risk management best practices in a global leader of design and make technology? We are seeking an experienced Principal Trusted AI Consultant to lead and drive governance initiatives across critical areas, including Privacy, Risk Management, Process Improvement, Data...


  • Candiac, Quebec, Canada Manulife Full time

    Company Overview:Manulife is a leading financial services group providing comprehensive financial advice, insurance, and wealth management solutions. Our mission is to maintain a secure and compliant IT environment.We're seeking a seasoned information security professional to lead our risk management efforts as the Director of Information Security and Risk...


  • Candiac, Quebec, Canada Manulife Full time

    Job OverviewWe are seeking a seasoned Cyber Security and Risk Management Director to lead our organization's information security strategies. This pivotal role demands expertise in risk management, cybersecurity, and compliance to drive continuous improvement in our security practices.


  • Candiac, Quebec, Canada Geotab Full time

    Company Overview">Geotab is a global leader in IoT and connected transportation, certified as a “Great Place to Work.” We are a diverse and talented team working together to help businesses grow and succeed, while increasing the safety and sustainability of our communities.We advance security by connecting commercial vehicles to the internet and...


  • Candiac, Quebec, Canada CIBC Full time

    CIBC is building a relationship-oriented bank for the modern world. As a Senior Information Security Junior Consultant, you will be responsible for consulting on potential risks as well as current trends to help our technology and business stakeholders meet security goals and objectives.About the RoleThis exciting opportunity involves reviewing and...


  • Candiac, Quebec, Canada Scotiabank Full time

    Are you looking for a challenging leadership role that will allow you to grow your career and make a lasting impact on the success of Scotiabank? We are seeking a highly motivated and experienced Senior Banking Relationship Manager to join our team. This key leadership role is responsible for leading and developing a high-performing team, building and...


  • Candiac, Quebec, Canada Manulife Full time

    Manulife: Leading Financial Services GroupWe provide financial advice, insurance, and wealth management solutions for individuals and institutions. As a Director of IRM Assurance COE Execution, you will lead risk management activities and ensure effective execution of 2nd line assurance assessments.Develop and execute the annual risk assessment plan.Scope...


  • Candiac, Quebec, Canada CIBC Full time

    At CIBC, we're building a relationship-oriented bank for the modern world. Our team is focused on delivering excellence and continuous improvement in all disciplines and processes as they relate to Identity and Access Management.Key Responsibilities:Identity and Access Management Process Improvement: You will leverage your knowledge of market tools...


  • Candiac, Quebec, Canada CIBC Full time

    Job DescriptionWe are seeking a skilled Cloud Security Expert to join our Technology Risk Management team at CIBC.About the Role:Lead and contribute to the development and execution of the annual Audit Plan for Technology risk, focusing on cloud security.Provide consultation to other Internal Audit teams and train, guide, and mentor auditors in areas of...


  • Candiac, Quebec, Canada Citi Full time

    CitiAt Citi, we are committed to providing a secure environment for our clients and employees. We are seeking an experienced Senior Cybersecurity Audit Manager to join our team.Job Summary:We are looking for a highly skilled professional to lead our cybersecurity audit efforts. The successful candidate will be responsible for leading teams in performing...