ICS Security Risk Assessment Manager

5 days ago


Canada Butterfield Full time

Butterfield Support Services (Halifax) Limited provides centralized shared services and support to the Butterfield Group in the areas of Finance and Accounting, Human Resources, Information Technology, Operations, Client Services and Compliance. Operating in multiple jurisdictions, we focus on results, value relationships, and celebrate success. If this sounds like your kind of company, then consider this opportunity to become part of a collaborative team of professionals at the world's leading, independent offshore bank and trust company. 

IT Security Risk Assessment Manager

Based in our Halifax office, the IT Security Risk Assessment Manager reports to the Deputy Chief Information Security Officer. The IT Security Risk Assessment Manager has overall responsibility to deliver and maintain the Cyber Security Risk Assessment services function.  They will ensure that we have sufficient capability to predict and detect application, cloud, and third-party security threats and vulnerabilities, as well as demonstrate that we are meeting key performance indicators to remove or mitigate security risks in line with our security risk appetite.

Your responsibilities will include:

  • Running the security risk assessment program for Information and Cyber Security (ICS), ensuring management of best practices and risk reduction.
  • Ensuring the hybrid staffed/managed service operating model is appropriate to the size of Butterfield.
  • Ensuring that utilized internal and third-party services maintain service coverage at the right cost and quality. 
  • Defining meaningful key performance indicators and key risk indicators for measuring the coverage and performance of Butterfield's security risk assessment capabilities.
  • Defining Service Level Agreements and monitoring the performance of security risk remediation within Butterfield Group. 
  • Undertaking annual SWIFT attestation testing and reporting effectiveness to the Group's Chief Information Security Officer (CISO).
  • Supporting the wider Cyber Risk Assurance function in control testing of key ICS controls.
  • Helping with developing, implementing, and publishing information security standards and guidelines.
  • Providing subject matter expertise and best practices on application, cloud, and third-party security standards, while offering strategic and tactical security guidance for IT projects, including the evaluation and recommendation of technical security controls.
  • Providing responses to regulator and investor inquiries regarding Butterfield security risk assessment standards.
  • Contributing to the program of continuous risk assessment and application vulnerability reviews, including the coordination of all required fixes/changes assigned to the CISO.
  • Guiding relevant senior management and business units in the development, implementation, and maintenance of information security. 
  • Aiding peer managers in understanding and responding to security audit failures reported by internal and external auditing departments.
  • Designing the technology, processes, functions, and services required by an application security testing or security risk assessment team in order to keep ahead of threats, vulnerabilities, breaches, or deficiencies. 
  • Developing and implementing procedural changes given incident trends, market practice, and legislative changes in order to reduce risk.
  • Applying application security procedures as part of new IT project implementations.

Your qualifications and skills include:

  • Five or more years of experience in Information Technology Security.
  • Proven experience working within Application Security and Security Risk Assessment teams.
  • Knowledge of legislation related to Information Security.
  • Strong interpersonal and communication skills.
  • Deep knowledge of Application Security Testing technologies and how to approach security risk assessments.

Why Butterfield?

Butterfield is a leading, independent offshore bank and trust company. With more than 1,300 financial services professionals across ten international jurisdictions, the Butterfield experience is enhanced by robust learning and development opportunities and comprehensive benefits. Guided by our core values—approachable, collaborative, empowered and impactful—we provide a respectful environment where we value the diversity of our employees and the talents and experiences they bring. With a 160-year tradition of service excellence we empower individuals to achieve their potential and make a positive impact on our business, our clients and our communities.

Closing Date

January 8, 2026

Let's start a conversation.


  • Governance, Risk

    2 weeks ago


    Canada Lyrical Security Full time

    Position Overview:We are seeking a Governance, Risk & Compliance (GRC) Analyst to join our GRC team on a temporary contract through December 2026. This role has the potential to transition to full-time based on performance, business needs, and mutual fit.This entry-level role is ideal for someone with foundational security experience looking to grow in a...


  • Remote - Alberta, Canada (DNU); Remote - British Columbia, Canada (DNU); Remote - Ontario, Canada (DNU) Twilio Full time

    Who we are At Twilio, we're shaping the future of communications, all from the comfort of our homes. We deliver innovative solutions to hundreds of thousands of businesses and empower millions of developers worldwide to craft personalized customer experiences.Our dedication to remote-first work, and strong culture of connection and global inclusion means...


  • Vancouver, British Columbia, VAG, Canada Vancity Full time

    Our Story & Purpose:We're Vancity, a member-owned credit union built on the principles of inclusion and social justice. Since 1946, our relentless commitment to these values has helped us challenge the status quo and break down barriers. We've made bold commitments to become net-zero by 2040 across all mortgages and loans, and we're actively pursuing...


  • , NB, Canada KPMG Canada Full time

    Overview At KPMG, you’ll join a team of diverse and dedicated problem solvers, connected by a common cause turning insight into opportunity for clients and communities around the world. Our Technology Risk Management group in Business Enablement Services is looking for a Risk Manager to join our team. The Technology Risk Management group oversees how the...


  • , , Canada PowerToFly Full time

    Position Summary Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte & Touche LLP could be the place for you. Traditional security programs have often been unsuccessful in unifying the need to both secure and support technology innovation required by the business....


  • , , Canada NTT DATA Full time

    A global technology services provider is looking for an experienced security professional for a fully remote role focused on Security Risk Assessments and compliance with Canadian Nuclear safety standards. Candidates should possess a Bachelor's degree in Computer Science or a related field, and have at least 5 years of relevant experience. Strong...


  • , , Canada TD Full time

    Work Location Toronto, Ontario, Canada Hours 37.5 Line of Business Technology Solutions Pay Details $91,200 - $136,800 CAD Job Summary The Senior Information security analyst is responsible for identifying, assessing, prioritizing, and coordinating responses to security vulnerabilities within the organization's systems, applications, and networks. This role...


  • Canada George Brown College Full time

    Competition Number: REQ 6997TITLE: Senior Manager, Cyber SecurityDIVISION: Information TechnologySALARY: To be determined LOCATION: 230 Richmond Street EastSTATUS: Full Time AdminEFFECTIVE DATE: ImmediatelyCLOSING DATE: Open until filled.Land AcknowledgementGeorge Brown College is located on the traditional territory of the Mississaugas of the...


  • , , Canada PowerToFly Full time

    If you are a technology visionary with a passion for transforming global tax business with digital technology, consider working with the US Tax Transformation technology team. This is an exciting opportunity to support global execution of Deloitte's tax strategy as we shift from "doing digital" to "being digital" by reimagining how we engage with our...

  • Security Specialist

    2 weeks ago


    Canada Derq Full time

    Derq is an MIT spinoff powering the future of connected and autonomous roads, enhancing road safety and traffic management through our AI-driven smart infrastructure platform.  Recently, we secured strategic investments from e& Capital and AT&T Ventures, fueling our growth and mission to make cities smarter and safer. We're a team of passionate innovators,...