Risk Management Services Manager

2 weeks ago


Canada CyberClan Full time

The Risk Management Services Manager identifies industry standards and regulatory guidelines for information security in order to minimize the risk of compromise of sensitive business systems. They help develop, maintain, and evaluate organizational security policies and procedures, and they work closely with engineering and operations teams to ensure systems controls meet security requirements.

This position will report to Chief Operating Officer

Essential Functions

  • Drive the team’s growth and development from a revenue perspective including presales, delivery of security engagements, statement of work (SOW), vCISO and account management.
  • Build resource management plan for Risk Management Services team
  • Routinely review tools and technologies that will enhance teams’ ability to deliver services in cost effective manner
  • Assist in the building of necessary scoping documents to size customer engagements
  • Work closely with Client Success Managers in client engagement
  • Present at a conference or participate on a panel (in person or virtually) no less than 5 times in a calendar year
  • Provide input as needed towards corporate messaging and marketing
  • Work with Sales team as needed to provide input and assist in closing deals where necessary
  • Understanding applicable regulations, guidelines, and industry best practices to manage risk and ensure compliance.
  • Developing, maintaining, or auditing security documentation such as policies, standards, and procedures.
  • Monitoring internal control effectiveness.
  • Conducting internal security assessments to ensure continued compliance.
  • Explaining roles in managing risk to partners and getting buy-in to improve the organizational risk posture.
  • Reviewing, implementing, updating, and documenting information security policies and procedures.
  • Advising Risk Management and Cybersecurity Office leadership regarding cybersecurity status.
  • Managing security audits, vulnerability and threat assessments, and direct responses to network or system intrusions.
  • Ensuring fulfillment of information security mandates, including providing leadership with compliance reports and audit findings.
  • Keeping abreast of industry security trends and developments, as well as applicable government regulations.
  • Researching, evaluating, and recommending new security tools, techniques, and technologies and introduces them to the enterprise in alignment with IT security strategy.
  • Creating and executing strategies to improve the reliability and security of IT projects.
  • Responding immediately to security-related incidents and provide a thorough post-event analysis.
  • Lead, develop and grow the penetration testing team.
  • Contribute to the establishment of new service lines.
  • Ensure that the team meats utilisation targets in line with expectation.
  • Assist and support consultants with their professional development and attainment of qualifications.

Required Skills and Experience

  • Bachelor’s degree, or higher, in computer engineering, computer science, IS or cybersecurity-related discipline, or equivalent five (5) years’ experience in information assurance or systems and network security.
  • Minimum of five (5) years leadership experience serving as an information security manager or information assurance/engineering team lead.
  • Demonstrated experience presenting briefings to senior customer management and customer stakeholders.
  • Advanced security DODD 8570 certification, e.g., CISM, CISSP, CND, CSA, Security+.
  • Demonstrated leadership experience with RMF and accreditation processes (e.g., NIST800-53, ICD503).
  • Demonstrated hands on experience with accreditation tools (e.g., Xacta, Nessus, AppDetective, WebInspect, Metasploit or Rapid 7, Core Impact or Cobalt Strike).
  • A cloud-based industry security certification (e.g., CCSP, Microsoft Azure Security Engineer).
  • Must have experience in Incident Response Planning and/or Table Top Exercise.
  • Experience in Threat & Risk Assessment & Privacy Impact Assessment.
  • Must be familiar with NIST, CIS Benchmark, ISO27001 and AWS GovCloud Security.


Preferred Skills, Experience, Degrees or Certifications


  • Experience securing infrastructure solutions and applications deployed in public and/or community cloud environments.
  • Experience implementing secure DevOps methodologies.
  • Experience integrating AWS with DevSecOps teams.
  • Must be able to obtain, maintain and/or currently possess a security clearance.


Job Type

Full-time/Exempt


Location

80% Remote/20% Travel



  • Canada CyberClan Full time

    The Risk Management Services Manager identifies industry standards and regulatory guidelines for information security in order to minimize the risk of compromise of sensitive business systems. They help develop, maintain, and evaluate organizational security policies and procedures, and they work closely with engineering and operations teams to ensure...


  • Canada CyberClan Full time

    The Risk Management Services Manager identifies industry standards and regulatory guidelines for information security in order to minimize the risk of compromise of sensitive business systems. They help develop, maintain, and evaluate organizational security policies and procedures, and they work closely with engineering and operations teams to ensure...


  • Canada CyberClan Full time

    The Risk Management Services Manager identifies industry standards and regulatory guidelines for information security in order to minimize the risk of compromise of sensitive business systems. They help develop, maintain, and evaluate organizational security policies and procedures, and they work closely with engineering and operations teams to ensure...


  • Canada CyberClan Full time

    The Risk Management Services Manager identifies industry standards and regulatory guidelines for information security in order to minimize the risk of compromise of sensitive business systems. They help develop, maintain, and evaluate organizational security policies and procedures, and they work closely with engineering and operations teams to ensure...


  • Canada CyberClan Full time

    The Risk Management Services Manager identifies industry standards and regulatory guidelines for information security in order to minimize the risk of compromise of sensitive business systems. They help develop, maintain, and evaluate organizational security policies and procedures, and they work closely with engineering and operations teams to ensure...


  • Canada CyberClan Full time

    The Risk Management Services Manager identifies industry standards and regulatory guidelines for information security in order to minimize the risk of compromise of sensitive business systems. They help develop, maintain, and evaluate organizational security policies and procedures, and they work closely with engineering and operations teams to ensure...


  • Canada CyberClan Full time

    The Risk Management Services Manager identifies industry standards and regulatory guidelines for information security in order to minimize the risk of compromise of sensitive business systems. They help develop, maintain, and evaluate organizational security policies and procedures, and they work closely with engineering and operations teams to ensure...


  • Canada WSP Global Inc. Full time

    The Opportunity: By joining our growing Corporate Commercial and Risk team, you will bring leadership and expertise to our overall risk management function while supporting related corporate stakeholders, services to business lines and project teams.   A day in the life: The role will primarily allow you to develop and grow within a newly established...

  • Risk Manager

    2 weeks ago


    Canada, CA Hays Full time

    Your new company Hays Specialist Recruitment has teamed up with an investment banking organization in Montreal, QB. My client is seeking an Operational Risk Manager for a permanent job opportunity. You will work full-time on a hybrid basis. Your new role You will work closely with the Canadian 1LoD (Line of Defense) under their responsibility / scope to...

  • Vendor Manager

    2 weeks ago


    Canada, CA Collabera Full time

    Day to Day :as central point-of-contact for suppliers, business units and center of governance.in managing supplier arrangements from on boarding to off boardingthe BUs in performing third party risk assessments and overall due diligence activitiesBUs on the management of supplier performance monitoring and oversight through reviews and documenting required...


  • Canada Metrolinx Full time

    Metrolinx is connecting communities across the Greater Golden Horseshoe. Metrolinx operates GO Transit and UP Express, as well as the PRESTO fare payment system. We are also building new and improved rapid transit, including GO Expansion, Light Rail Transit routes, and major expansions to Toronto’s subway system, to get people where they need to go,...


  • Canada Shakepay Inc. Full time

    Shakepay is reimagining financial services to give every Canadian their fair shake, by making it bitcoin-friendly, secure, and rewarding. Backed by top venture funds having raised $44M+ and trusted by over one million Canadians and counting. People who choose careers at Shakepay are helping shape a future of financial freedom, opportunity, and prosperity for...


  • Canada Edon Management Full time

    We are looking for a dedicated Caretaking Manager to lead a Caretaking team at Edon Management. This role involves overseeing caretaking staff, ensuring the maintenance and cleanliness of the facilities, and supporting senior management in business development opportunities. Assist in the overall management for Edon’s caretaking department by managing,...


  • Canada Crypto.com Full time

    The exchange team develops and maintain a cutting-edge trading platform. With a global presence across APAC, EMEA and North America, the team has since grown with the goal to provide a seamless and secure trading experience for our clients. About the role We are seeking a senior risk analyst/risk manager to join our exchange team, which helps manage the...


  • Greater Toronto Area, Canada, Ontario Robertson & Company Ltd. Full time

    Our Client:Our client is a leading residential mortgage insurer renowned for offering mortgage default insurance to Canadian residential mortgage lenders.What You Will Achieve in This Role:As the Manager of Enterprise Risk Management (ERM), you will play a pivotal role in developing and implementing elements to support the ERM program within our client’s...


  • Canada Bank of America Full time

    At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day. Bank of America believes both in the importance of working together and offering flexibility to...


  • Canada Consultation Manager Full time

    Consultation Manager (By Social Pinpoint) is a leading provider of innovative community engagement and stakeholder relationship management solutions. We're committed to delivering exceptional value to our clients and ensuring their success through our products and services. As a Solutions Engineer, you will serve as the primary technical resource for our...


  • Canada Canadian Imperial Bank of Commerce Full time

    Wealth Credit Risk Manager page is loaded Wealth Credit Risk Manager Apply locations Toronto, ON time type Full time posted on Posted 10 Days Ago job requisition id 2409898 We’re building a relationship-oriented bank for the modern world. As the Wealth Credit Risk Manager, you will be adjudicating credit applications submitted by Private Banking...


  • Canada Crypto.com Full time

    The exchange team develops and maintain a cutting-edge trading platform. With a global presence across APAC, EMEA and North America, the team has since grown with the goal to provide a seamless and secure trading experience for our clients. About the role We are seeking a senior risk analyst/risk manager to join our exchange team, which helps manage the...


  • Canada Canada PRO Full time

    Risk compliance managers decide how an organization should be managed and controlled. These duties include maintaining excellent relations among stakeholders and sticking to the organization’s goals. What We're Looking For Responsibilities What's In It For You? The capacity to comprehend and decipher complicated technological issues, as well as...