Cybersecurity Risk Manager

2 months ago


Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time
About the Job

The Risk Management Department at SGS Société Générale de Surveillance SA is seeking a highly skilled Cybersecurity Risk Manager to join our team. As a Cybersecurity Risk Manager, you will play a critical role in helping us further define the 2nd line of defense processes, policies, and tools for our data and technology environments.

Key Responsibilities
  • Evaluate overall cybersecurity risk and maintain an active view of the actual, mitigated, and residual cybersecurity risk in the organization.
  • Develop and manage Information Technology & Information Security Risk Program, using standard risk taxonomy, such as FAIR.
  • Partner with Chief Information Security Officer (CISO), and IT organizations to establish standards, policies, and develop KRIs and KPIs for measuring and monitoring cyber risks on a continuous basis.
  • Perform full range of technology and information and cyber security risk management lifecycle activities, including risk identification, assessment, reporting, and oversight of remediation planning and execution.
  • Develop cyber security risk scenarios to identify potential attack vectors and TTP (tactics, techniques, and procedures) to guide the continuous improvement of our firm's cyber defense posture.
  • Lead and support selected cyber security remediation efforts, involved with strategic planning with 1LOD.
  • Recommend enhancements to data & technology architectures, processes, and controls to improve cybersecurity, data, and technology risk management capabilities for high-risk processes, regulatory reporting, and risk oversight.
  • Develop and roll-out tools for the aggregation and surveillance of cybersecurity risk, data risk, and technology risk.
  • Identify legal, regulatory, and contractual requirements, and organizational policies and standards related to data management systems to determine their potential impact on our business objectives.
  • Expand operational risk processes, data collection, and issues management tools to track and report data-related operational risks and issues.
  • Participate in and review data breaches and technology incident/response escalation processes.
  • Develop operational resiliency scenarios for stress testing and capital planning activities.
Requirements
  • Bachelor's and/or master's degree in computer science, engineering, or a relevant technical field.
  • Understanding of financial services, specifically within cyber and data privacy-related laws, regulations, frameworks, and guidelines (NYSDFS - 23NYCRR500, ECB, GDPR, GLBA, Regulation S-P, etc.).
  • Experience in assessing design and operating effectiveness of technology controls.
  • Solid foundation in information technology and information security principles. Familiar with common cybersecurity frameworks and standards such as NIST SP 800-53, NIST CSF, Mitre Attack, FFIEC CAT, CSC Top 20, COBIT, ISO 27000 series.
  • Previous working experiences in cybersecurity operations and relevant security design knowledge.
  • Previous work within Risk and/or Information Security/Cyber Security. Ideally, has worked in a 2 LOD Cyber Security Risk function.
  • Background in IT Risk Assessment, IT Audit, Information Security Management.
  • Experience integrating vulnerability and patch management tools with IT/IS risk program. Furthermore, communicate and determine vulnerability remediation priorities.
  • Knowledge of US IT Security regulatory requirements and environment in financial services industry a plus (i.e., FFIEC, FINRA rules, SEC, NIST cybersecurity frameworks).
  • Strong leadership skills with the ability to lead by influence.
Preferred Qualifications
  • IT Risk management or governance certifications (CGEIT, CRISC, CISA).
  • CISSP, CISM, or CISA certifications.
Language

Ability to communicate in English, both orally and in writing, is a requirement as the person in this position will need to collaborate regularly with colleagues and partners in the United States.



  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.Key ResponsibilitiesEvaluate and assess cybersecurity risks, identifying potential threats and vulnerabilities.Develop and...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.Key ResponsibilitiesEvaluate and assess cybersecurity risks, identifying potential threats and vulnerabilities.Develop and...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.Key ResponsibilitiesEvaluate and assess cybersecurity risks, identifying potential threats and vulnerabilities.Develop and...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.Key ResponsibilitiesEvaluate and assess cybersecurity risks, identifying potential threats and vulnerabilities.Develop and...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.Key ResponsibilitiesPerform comprehensive risk assessments and develop strategies to mitigate cybersecurity...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.Key ResponsibilitiesPerform comprehensive risk assessments and develop strategies to mitigate cybersecurity...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.ResponsibilitiesEvaluate and assess cybersecurity risks, identifying potential threats and vulnerabilities.Develop and...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.ResponsibilitiesEvaluate and assess cybersecurity risks, identifying potential threats and vulnerabilities.Develop and...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.Key ResponsibilitiesEvaluate and assess cybersecurity risks, identifying potential threats and vulnerabilities.Develop and...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.Key ResponsibilitiesEvaluate and assess cybersecurity risks, identifying potential threats and vulnerabilities.Develop and...


  • Montreal, Quebec, Canada Intact Financial Corporation Full time

    Job Title: Cybersecurity Risk ManagerAt Intact Financial Corporation, we are seeking a highly skilled Cybersecurity Risk Manager to join our team. As a key member of our cybersecurity team, you will be responsible for managing and mitigating cybersecurity risks across the organization.Key Responsibilities:Develop and implement effective cybersecurity risk...


  • Montreal, Quebec, Canada Intact Financial Corporation Full time

    Job Title: Cybersecurity Risk ManagerAt Intact Financial Corporation, we are seeking a highly skilled Cybersecurity Risk Manager to join our team. As a key member of our cybersecurity team, you will be responsible for managing and mitigating cybersecurity risks across the organization.Key Responsibilities:Develop and implement effective cybersecurity risk...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department at SGS Société Générale de Surveillance SA. As a key member of our team, you will play a critical role in evaluating and managing cybersecurity risks across our organization.ResponsibilitiesThe successful candidate will be responsible...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department at SGS Société Générale de Surveillance SA. As a key member of our team, you will play a critical role in evaluating and managing cybersecurity risks across our organization.ResponsibilitiesThe successful candidate will be responsible...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.ResponsibilitiesPerform comprehensive risk assessments and develop strategies to mitigate cybersecurity...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.ResponsibilitiesPerform comprehensive risk assessments and develop strategies to mitigate cybersecurity...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department at SGS Société Générale de Surveillance SA. As a key member of our team, you will play a critical role in evaluating and managing cybersecurity risks across our organization.ResponsibilitiesPerform comprehensive risk assessments and evaluations...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department at SGS Société Générale de Surveillance SA. As a key member of our team, you will play a critical role in evaluating and managing cybersecurity risks across our organization.ResponsibilitiesPerform comprehensive risk assessments and evaluations...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.Key ResponsibilitiesEvaluate and assess cybersecurity risks, identifying potential threats and vulnerabilities.Develop and...


  • Montreal, Quebec, Canada SGS Société Générale de Surveillance SA Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Manager to join our Risk Management Department. As a key member of our team, you will be responsible for evaluating and managing cybersecurity risks across our organization.Key ResponsibilitiesEvaluate and assess cybersecurity risks, identifying potential threats and vulnerabilities.Develop and...