Avp, Security Governance and Risk Management
2 weeks ago
You are as unique as your background, experience and point of view. Here, you’ll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll have new and exciting opportunities to make life brighter for our Clients - who are at the heart of everything we do. Discover how you can make a difference in the lives of individuals, families and communities around the world.
**Position Overview**
This position manages a major functional area that reports directly to the Vice President, Security Engineering and Advisory. The AVP, Security Risk Management and Governance will be responsible for defining and aligning strategies for security risk management and governance and ensure that exposures to cyber risk are identified and managed at an acceptable level.
The position is an integral part in the development, implementation, and compliance of security control programs across the organization globally and will regularly act as a voice of Information Security to clients and management, building cyber security confidence in support of business development and governance processes.
The incumbent has direct oversight of the following functions:
- Information Security Policy, Directives, and Operating Guidelines.
- Alignment of the Sun Life Security Program to National Institute of Standards and Technology (NIST) and Cloud Security Alliance Cyber Security Frameworks.
- Control monitoring of internal security risk assessments and third party security risk management. Governance and risk management with; regulators, auditors, and customer response.
- Develop and manage the security risk management and compliance strategy, framework and approach.
- Integrate security risk reporting and aggregate reporting into the operational risk framework.
- Provide briefings to senior management and advise them of critical issues that may affect business or enterprise security objectives in partnership with Sun Life Business Unit risk and compliance officers.
- In conjunction with Legal, Privacy and Compliance, identify information management and protection laws and regulations and implement actions to ensure compliance.
- Recommend strategies to ensure a common approach towards regulatory authorities and obtain internal efficiency.
- Ensure a comprehensive understanding of existing requirements and ongoing monitoring of new requirements.
- Develop strategies and action plans to drive control maturity improvement in areas where controls do not adequately mitigate security risks.
- Facilitate prioritization of security risk and due diligence activities with different lines of business in conjunction with Business Unit Risk and Compliance officers.
- Identify global security regulatory, legislative, and industry specific compliance requirements and applicability to each line of business.
- Partner with Architecture and Engineering teams to develop risk mitigation strategies, solutions, and recommendations to reduce components, systems, or enterprise security risk.
- Develop, document, and assess measures, metrics, and internal controls related to cyber security assessments and acceptance.
- Coordinate and track all information technology and security related audits including scope of audits, business units involved, timelines, and outcomes.
- Liaise with Corporate Operational Risk Management and Internal Audit, maintaining excellent relationships and provide transparency.
- Provide guidance, evaluation and advocacy on audit responses.
- Develop and maintain a strategy for managing security related audits, compliance checks and external assessment processes for auditors.
- Lead the development and implementation of effective and reasonable policies and practices to secure sensitive data and ensure security and compliance with contracts, regulatory requirements, and industry standards.
- Manage the third party risk assessments process to ensure risk transparency and business acceptance, contractual obligations and enable risk-based decision making.
- Partner with business and technology leaders in ensuring new and existing business relationships adequately address information security risk through vendor management, security engineering engagements, and security assessments of processes and procedures.
- Manage specified Governance Risk and Compliance (GRC) projects from inception to completion.
- Support the Vice President and CISO in establishing annual and long-term goals, defining risk and governance strategies, metrics, and reporting mechanisms.
**Qualifications, Experience, Skills and Attributes**
- Minimum of 15 years work experience in IT with direct responsibility for technologies in scope, including at least 10 years previous experience in a management role.
- Experience working in a Financial Services organiza
-
Avp, Security Operations
1 week ago
Waterloo, Canada Sun Life Full timeYou are as unique as your background, experience and point of view. Here, you’ll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll...
-
Avp - Investor Services
1 week ago
Waterloo, Canada Waystone Governance Ltd. Full time**New AVP, Investor Services role open in our Canadian office.** **Summary**:Reporting to the Director - Investor Services, the Assistant Vice President will be an integral part of the team’s success. **ESSENTIAL DUTIES AND RESPONSIBILITIES** - Build a relationship with the stakeholders of the funds. - Understanding of fund structures, investment...
-
Avp, Client Digital Channels
7 days ago
Waterloo, Canada Sun Life Full timeYou are as unique as your background, experience and point of view. Here, you’ll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll...
-
Physical Risk and Governance Analyst
1 week ago
Waterloo, Canada Sun Life Full timeYou are as unique as your background, experience and point of view. Here, you’ll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll...
-
Manager, Governance and Policy
5 days ago
Waterloo, Canada Wilfrid Laurier University Full time**Date**:Apr 23, 2025 **Location**: Waterloo, CA **Company**:Wilfrid Laurier University **Department**: Secretariat's Office **Job Type**: Continuing **Full-time/Part-time**: Full Time (>=1249 hrs/year) **Campus**: Waterloo **Reports to**:Assistant Vice President, Governance and Policy **Employee Group**: Management **Application Deadline**:05/07/2025...
-
Associate - Fund Governance
3 days ago
Waterloo, Ontario, NVK, Canada Waystone Governance Ltd. Full time $60,000 - $90,000 per yearWaystone leads the way in specialist services for the asset management industry. Partnering institutional investors, investment funds and asset managers, Waystone builds, supports and protects investment structures and strategies worldwide. With over 20 years' experience and a comprehensive range of specialist services to its name, Waystone is now serving...
-
Avp, Individual Insurance
1 day ago
Waterloo, Canada Manulife Full time**_Are you looking for a supportive, collaborative workplace with great teams and inspiring leaders? You’ve come to the right place. We’re looking for ambitious people who share our values and want to make every day better for people around the world. If this sounds like you, and the career below sounds exciting, we’d like to hear from you....
-
Global Head of Vendor Risk and Governance
2 weeks ago
Waterloo, Ontario, Canada Manulife Full time $126,600 - $235,300Are you ready to shape the future of vendor risk management on a global scale? We're seeking a visionary leader to drive strategy, innovation, and operational excellence across our procurement related Third Party Risk Management (TPRM) function. In this high-impact role, you'll report to the Head of Procurement and lead a global team of ~50 professionals,...
-
Avp, Operational Risk
5 days ago
Waterloo, Canada Sun Life Full timeYou are as unique as your background, experience and point of view. Here, you’ll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll...
-
AVP Residential Lending Product
3 days ago
Waterloo, Ontario, Canada Manulife Full time $126,600 - $235,300 per yearThe AVP Residential Lending (RESL) Product Management is responsible for developing strategies to address future business transformation, P & L management, strategic partnership, and regulatory product management with an expectation to deliver superior growth results across our mortgage products including Manulife One and Select. The AVP will be...