Director, Technology Risk Policy

7 days ago


Toronto, Canada CIBC Full time

We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.

At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute.

To learn more about CIBC, please visit

What you’ll be doing

The Director, Technology Risk Policy and Assessments is a seasoned professional responsible for fulfilling CIBC’s second line of defense in the management of technology risk policy and assessment activities across the organization. The role works closely with the first line of defense, internal and external auditors, regulators, and other stakeholders to ensure that the technology risk policies, standards, and controls are aligned with the global regulatory frameworks and best practices and exceptions and gaps are appropriately managed. The role will also provide oversight and consultation to internal stakeholders on risk mitigating controls and best practices for technology service management capabilities, such as Incident, Problem, Change, Service Continuity Management and IT Asset Management. The role will provide independent challenge and oversight for technology team activities, including review of change initiatives, risk and control self-assessment and deficiency identification and mitigation. The role will be involved in technology incident management and reporting, policy updates, and quarterly risk monitoring and reporting to senior committees and the board.
- At CIBC we enable the work environment most optimal for you to thrive in your role. You’ll have the flexibility to manage your work activities within a hybrid work arrangement where you’ll spend 1-3 days per week on-site, while other days will be remote. Details on your work arrangement (proportion of on-site and remote work) will be discussed at the time of your interview._

How you’ll succeed- Effective Leadership - As a people leader, the Director, Technology Risk Policy and Assessments will provide leadership and effective management of business unit staff to influence employee commitment to the organization and to the team.- Risk management: Ongoing review of operational practices, risk assessments, controls, deficiencies, metrics, and other relevant information to form an independent view of technology risks and perform effective challenge. A risk-based approach is leveraged to understand and manage risk of technology-related activities to ensure alignment to operational risk management policies and framework and CIBC risk appetite. In alignment with GORM’s operational risk management program and practices, this includes independent assessment of business lines on activities such as technology risk reviews via the technology scorecard, maintenance and monitoring of compliance to the Technology Risk Management Policy, projects (CIRAs), risk and controls self-assessments (RCSAs), Operational Incidents, control, deficiency and deviation risks monitoring, RAS and KRI development and monitoring, etc. using operational risk tools and processes. The Director leverages strong data and analytical skills to perform detailed research to produce risk insights on current and emerging technologies for distribution to various internal audiences. Impactful and insightful risk reporting is produced for presentation to senior leaders within CIBC.- Technical expertise - Brings instant credibility by skillfully leveraging strong breadth of technology experience and depth of knowledge in key technology domains, including but not limited to areas such as cloud computing, containerization, IT service management, IT Asset management, development practices (DevOps, Agile), to review risks and controls of the business lines and drive positive risk management outcomes. The Director is relied upon for deep expertise in specific domains and industry best practices to support the risk activities across the team (e.g. Technology Scorecard assessments, Technology Risk Management policy maintenance) operating in a matrix style team. Industry recognized technology certifications in their Subject Matter Expertise are preferred such as ITIL, CISM etc.- Effective communications - Demonstrates clarity of thought and fluency in both written and verbal communications and develops and delivers strong reporting content, presentations and assessment summaries on an ongoing basis for senior audiences and risk committees up to and including the Board.- Advisory - Maintains an industry view of the broad technology landscape, understand best practice and performance benchmarks and monitor emerging technology trends. Provides guidance on the management of technology risk when consulted, including risk mitigation strategies. Performs regulatory compliance Oversight Function (OF) accountabilities, monitoring the regulatory landscape



  • Toronto, Canada CIBC Full time

    We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients. At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are...


  • Toronto, Ontario, Canada Mackenzie Financial Corporation Full time

    Job DescriptionGrade: P9Referral Level: Level 1Division: IGM-TechIGM Financial Inc. is one of Canada's leading diversified wealth and asset management companies with approximately $271 billion in total assets under management. The company provides a broad range of financial planning and investment management services to help more than two million Canadians...


  • Toronto, Canada Thomson Reuters Full time

    Are you passionate about the chance to bring your experience to a world - class company that is market-leading for both content and technology? If yes, we are looking for you! Join our team! In this exciting opportunity as Director, Enterprise Risk & Policy Governance, you will play a pivotal role in enhancing TR's global enterprise risk management...


  • Toronto, Canada Fidelity Canada Full time

    OverviewJob Posting: Director Technology RiskYou will be working on a flexible hybrid schedule as part of Fidelity’s dynamic working arrangement.What You’ll Be DoingThe Director, Technology Risk will play a pivotal role in shaping and implementing the firm's technology risk management strategy. Leveraging advanced knowledge and expertise in...


  • Toronto, Ontario, Canada Fidelity Canada Full time

    Job DescriptionJob Posting Director Technology Risk (contract ending Dec 31, 2026)You will be working on a flexible hybrid schedule as part of Fidelity's dynamic working arrangement.Who We AreAt Fidelity, we've been helping Canadian investors build better financial futures for over 35 years. We offer individuals and institutions a range of trusted investment...


  • Toronto, Ontario, Canada Fidelity International Full time

    Job DescriptionJob Posting: Director Technology Risk (contract ending Dec 31, 2026) You will be working on a flexible hybrid schedule as part of Fidelity's dynamic working arrangement.Who We AreAt Fidelity, we've been helping Canadian investors build better financial futures for over 35 years.  We offer individuals and institutions a range of trusted...


  • Toronto, Canada Fidelity Canada Full time

    Overview Job Posting: Director Technology Risk You will be working on a flexible hybrid schedule as part of Fidelity’s dynamic working arrangement. What You’ll Be Doing The Director, Technology Risk will play a pivotal role in shaping and implementing the firm's technology risk management strategy. Leveraging advanced knowledge and expertise in...


  • Toronto, Canada Royal Bank of Canada Full time

    As Associate Director, Enterprise Risk Policy (ERP), you will be part of the team that champions the enterprise-wide implementation of the RBC Enterprise Risk Policy Management Requirements (GRM-RP5) and contribute to fostering a culture of policy awareness and adherence across RBC. Specifically, you will design, develop, lead and/or implement...


  • Toronto, Canada BMO Full time

    Application Deadline:02/27/2026Address:100 King Street WestJob Family Group:Audit, Risk & CompliancePlease note this role is Hybrid - working 3 days a week in the office, subject to company policy changes, at a future date.About the role:The Director—Policy Management leads BMO’s enterprise policy management program, ensuring policy governance is...


  • Toronto, Canada Scotiabank Full time

       Requisition ID: 240435Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. The TeamGlobal Banking and Markets Engineering (GBME) is the fast-moving, award-winning technology engine that powers Scotiabank’s Corporate, Investment Banking and Capital Markets businesses.The Role The Director, Capital...