Manager, Cybersecurity Audit

2 weeks ago


Toronto, Ontario, Canada CIBC Full time $180,000 - $200,000 per year

We're building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what's right for our clients.

At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute.

To learn more about CIBC, please visit

What You'll Be Doing
As the Audit Manager, Cybersecurity, you are expected to be a Subject Matter Expert to have expertise in Cybersecurity audit, risk & controls that include cybersecurity governance, risk management, operations and services across multiple lines of business. You'll support Internal Audit groups by providing consultation and providing work programs to ensure coverage of cybersecurity risk within the audit universe, providing guidance and training. You will participate in various audits and regulatory reviews. You will perform and document your work in accordance with CIBC Internal Audit methodology and you will be accountable for the quality of audit procedures and documentation prepared by you. The role reports to the Director, Cybersecurity Audit, Subject Matter Experts (SME), TI&I Audit.

At CIBC we enable the work environment most optimal for you to thrive in your role. You'll have the flexibility to manage your work activities within a hybrid work arrangement where you'll spend 2-3 days per week on-site, while other days will be remote.
How You'll Succeed

  • Audit Strategy and Annual Planning – Contribute to the development of the Audit Strategy for cybersecurity risk and annual audit planning. Also contribute to annual refresh of risk assessment guidance on cybersecurity risk and challenge the risk assessments completed by other Internal Audit teams.
  • Deliver and Support Audits – Deliver the audits and target reviews for cybersecurity governance. Provide consultation to other Internal Audit teams as well as train and guide auditors in areas of cybersecurity controls in business and technology applications, infrastructure and services, including Cloud services and outsourced environments. Complete assigned cybersecurity control testing from other Internal Audit teams.
  • Continuous Monitoring and Regular Reporting – Communicate trends in risk and control issues to Internal Audit executives and contribute reports to senior management through the cybersecurity risk dashboards and summary reports.
  • Data Analytics and Artificial Intelligence – Contribute to DA and AI related initiatives to transform audit practices for automated or continuous auditing, in collaboration with Internal Audit DA/AI team
  • Leadership – Be able to influence without authority; depending on the initiative, you may need to take the lead to manage and collaborate with stakeholders.

Who You Are

  • You can demonstrate experience in having a broad and deep knowledge and understanding of risks associated with cybersecurity processes, security services and tools, regulatory requirements, and best practices in cybersecurity controls. You will also have knowledge of auditing practices, procedures and principles that enable you to analyze client operations, assess risks, and select the most suitable audit approach. You must have proven ability to write comprehensive and concise reports used by senior leadership.
  • You're a certified professional. You have a current accreditation in any of the following: CISA – Certified Information Systems Auditor; CISM – Certified Information Systems Manager; CISSP – Certified Information Systems Security Professional; In-depth knowledge of COBIT, working knowledge of CCM (Cloud Controls Matrix), ITIL & ISO frameworks and one or more Cloud certifications such as Azure Security Engineer. It is preferred that you have a bachelor's degree in Information Security or Technology related field.
  • You understand that success is in the details. You notice things that others don't. Your critical thinking skills help to inform your decision making.
  • You're driven by collective success. You know that collaboration can transform a good idea into a great one. You understand the power of an inclusive team that enjoys working together to bring a shared vision to life.
  • You embrace and champion change. You'll continuously evolve your thinking and the way you work to deliver your best, e.g., using Data Analytics or Artificial Intelligence for audit efficiency and effectiveness.
  • Values matter to you. You bring your real self to work, and you live our values – trust, teamwork and accountability

What CIBC Offers
At CIBC, your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential. We aspire to give you a career, rather than just a paycheck.

  • We work to recognize you in meaningful, personalized ways including a competitive salary, incentive pay, banking benefits, a benefits program*, defined benefit pension plan*, an employee share purchase plan, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program.
  • Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients.
  • We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development.
  • Subject to plan and program terms and conditions

What You Need To Know

  • CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience. If you need accommodation, please contact Mailbox.careers-
  • You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit.
  • We may ask you to complete an attribute-based assessment and other skills tests (such as simulation, coding, French proficiency, MS Office). Our goal for the application process is to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us.

Job Location
Toronto-81 Bay, 34th Floor

Employment Type
Regular

Weekly Hours
37.5

Skills
Analytical Thinking, Audit Methodology, Audit Processes, Business Relationships, Security Audit, Technical Leadership, Technology Use



  • Toronto, Ontario, Canada Armour Cybersecurity Full time $80,000 - $120,000 per year

    Company DescriptionArmour Cybersecurity is a trusted provider of end-to-end cybersecurity solutions, leveraging innovative technologies and top global talent to protect organizations against evolving cyber threats. We specialize in cybersecurity advisory services, implementation services, managed security services, and breach/incident response. Our expertise...


  • Toronto, Ontario, Canada Madison-Davis, LLC Full time $120,000 - $180,000 per year

    OverviewA well-capitalized financial institution is seeking aSenior IT Audit Managerto oversee cybersecurity and infrastructure audit coverage. This is a strategic role with responsibility for leading and mentoring a team of auditors, delivering assurance over complex IT environments, and driving meaningful improvements in governance, risk management, and...

  • Manager IT Audit

    1 week ago


    Toronto, Ontario, Canada Royal Bank of Canada Full time $96,000 - $117,000 per year

    Job DescriptionWhat is the role?Manager IT Internal Audit is a curious, dynamic, adaptable, solution-oriented team player and self-starter. You will be part of a global Internal Audit team with the mandate to assess and challenge risk management practices, internal controls and corporate governance processes across Technology & Operations and Lines of...


  • Toronto, Ontario, Canada HOOPP Full time $90,000 - $120,000 per year

    Why you'll love working here:high-performance, people-focused cultureour commitment that equity, diversity, and inclusion are fundamental to our work environment and business success, which helps employees feel valued and empowered to be their authentic selveslearning and development initiatives, including workshops, Speaker Series events and access to...


  • Toronto, Ontario, Canada ISA Cybersecurity Full time $48,875 - $66,125

    About the Role:The function of the Security Analyst, Tier 1 – Monitoring & Triage is to be at the forefront of incident response, utilizing the latest in network security technology while providing Computer Network Defense and Information Assurance (IA) support to ISA's client base and internal network. This role involves a demanding schedule with a...


  • Toronto, Ontario, Canada HOOPP (Healthcare of Ontario Pension Plan) Full time $120,000 - $180,000 per year

    Why You'll Love Working Herehigh-performance, people-focused cultureour commitment that equity, diversity, and inclusion are fundamental to our work environment and business success, which helps employees feel valued and empowered to be their authentic selveslearning and development initiatives, including workshops, Speaker Series events and access to...


  • Toronto, Ontario, Canada HOOPP Full time $120,000 - $180,000 per year

    Why you'll love working here:high-performance, people-focused cultureour commitment that equity, diversity, and inclusion are fundamental to our work environment and business success, which helps employees feel valued and empowered to be their authentic selveslearning and development initiatives, including workshops, Speaker Series events and access to...


  • Toronto, Ontario, Canada Scotiabank Full time $120,000 - $180,000 per year

    Requisition ID: 238045Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.The TeamScotiabank's Cybersecurity Operation Centre (CSOC) team is responsible for detecting, monitoring, and investigating threats. We are responsible for the coordination of key programs that impact all divisions within the...


  • Toronto, Ontario, Canada Aspire Technologies Inc Full time $89,412 - $158,496 per year

    OverviewPlease look for Rail, Aero & Auto Industry/ Domain.Job Description SummaryWe are looking 5-8 years experienced Cybersecurity Engineer who can work in project Cybersecurity Management Plan. He/She is able to analyze Project security needs (including laws and local regulations), determine security objectives and main security risks strategy. Also can...


  • Toronto, Ontario, Canada CCRW | CCRT Full time $57,429 - $59,332 per year

    Location:Toronto, ON (this is a hybrid position)Reports To:Director of Digital OperationsSalary:$57,429- $59,432Who are you?You are someone who enjoys being the first point of contact for IT and cybersecurity support, is eager to take ownership of problem-solving, and can confidently coordinate technology solutions that align with organizational goals. If...