Manager, Cyber and Technology Risk Management

4 weeks ago


Toronto, Canada CPP Investments Full time
Job Description

  • Reporting to the Managing Director, Cyber & Technology Risk Management, this Cyber and Technology Risk Manager role will be focused on mitigating cyber, technology, and data risks by assisting in the implementation of a risk management and internal control framework with particular focus on the Technology & Data (T&D) and Information Security (Infosec) departments.

    In this role, you will be responsible for working collaboratively with the T&D and Infosec teams to identify, assess, and mitigate risks to the fund’s information systems, data, and infrastructure; and instill a risk and control discipline through education, consultation, and the development of risk management capabilities across core activities. You will assist the team by:

  • Developing and implementing cyber and technology risk management processes and capabilities to protect the organization’s critical information assets and systems
  • Enabling regular insights via KRIs and other means, to senior leaders and other stakeholders on the fund’s cyber and technology risk posture
  • Supporting the enhancement and implementation of a 1st line of defence risk and control assessment capability,
  • Support the development and updating of key documentation (e.g., standards, guidelines, etc.) to support T&D and Infosec processes and address fund-wide risks
  • Facilitate the establishment of necessary standards and the associated governance and monitoring to ensure adherence and manage exceptions
  • Support and lead on-time completion of action plans that address findings from Audits and reviews across the 3 lines of defense
  • Identifying risks and partnering with colleagues from Legal, Compliance, Risk, T&D, and Infosec to implement solutions to mitigate them

 

This role will support the cultivation of the best view of Cyber and Technology risks across the fund through active partnership with T&D teams, Enterprise Risk, Audit, and other groups; and will support the Cyber and Technology Risk Management team in leading enterprise initiatives to address transversal risks impacting the enterprise.

You will support the team to work collaboratively with Enterprise and Operational Risk on the adoption and implementation of CPP Investments’ Integrated Risk Framework within T&D and Infosec and support enterprise risk reporting. You will work closely with both Internal and External Audit to identify risks, provide insight to maximize the value of Audit to support the department’s mandate and co-ordinate all audit activities on behalf of T&D and Infosec to assist them in execution of their mandates.


Qualifications

If you possess many of the following, we’d like to hear from you:

Knowledge/ Skills/Competencies/Qualities Sought

Education & Professional Certifications:

  • Undergraduate degree required, preferably in Technology / Data Science / business / finance or related discipline; post graduate degree is a plus;
  • Industry recognized IT certification (e.g., CISA, CRISC, CISM, CISSP) or equivalent certification is desirable.

Professional Experience:

  • Advanced knowledge in IT, risk management, business resiliency, network management/architecture, vendor risk management, vulnerability management, information security, and data protection/management;
  • Minimum 8 years of progressive management experience in technology and/or information risk management experience at complex financial institutions or investment companies;
  • Knowledge of governance, risk, and compliance frameworks such as ITIL, NIST, COSO, COBIT, etc.
  • Ability to evaluate components of an institution’s IT/information security program and provide advice on its ability to identify, protect, respond, and recover from threats and incidents.
  • Ability to understand and communicate complex technical issues to technical and non-technical representatives.
  • Able to make decisions and recommendations that effectively balance risk mitigation objectives with operational impacts to processes and departments
  • Expert ability to design and evaluate risk based internal control programs, analyze situations, reach appropriate conclusions and make value-added and practical recommendations;

Personal Competencies:

  • Superior communication skills (written and oral) with the ability to take concepts or events and present them simply, concisely and effectively;
  • Strong judgment and creativity; strong problem-solving and analytical skills; ability to effectively process a large volume of information, and draw meaningful/persuasive conclusions;
  • Proven ability to build and foster professional relationships and influence others effectively at senior management, peer, and staff levels;
  • Ability to adapt to rapidly changing business needs and priorities with strong attention to detail and proven consistency;
  • Self-motivated and able to work independently and as part of a team having a “hands on” approach as well as appreciate diversity of thought and opinions;
  • Demonstrated ability to support multiple complex engagements simultaneously, and to prioritize work and efforts of team effectively;
  • Demonstrated willingness and ability to keep abreast of current investment business and professional trends and organizational developments which could impact CPP Investments’ operating and risk environment;


Additional Information

Visit our LinkedIn Career Page or Follow us on LinkedIn. #LI-KE1

At CPP Investments, we are committed to diversity and equitable access to employment opportunities based on ability.

We thank all applicants for their interest but will only contact candidates selected to advance in the hiring process. 

Our Commitment to Inclusion and Diversity:

In addition to being dedicated to building a workforce that reflects diverse talent, we are committed to fostering an inclusive and accessible experience. If you require an accommodation for any part of the recruitment process (including alternate formats of materials, accessible meeting rooms, etc.), please let us know and we will work with you to meet your needs.

Disclaimer:

CPP Investments does not accept resumes from employment placement agencies, head-hunters or recruitment suppliers that are not in a formal contractual arrangement with us. Our recruitment supplier arrangements are restricted to specific hiring needs and do not include this or other web-site job postings. Any resume or other information received from a supplier not approved by CPP Investments to provide resumes to this posting or web-site will be considered unsolicited and will not be considered.  CPP Investments will not pay any referral, placement or other fee for the supply of such unsolicited resumes or information.



  • Old Toronto, Canada Cyber Crime Full time

    CIBC Bank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered. View company page We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.At CIBC, we embrace your strengths and your ambitions, so...


  • Toronto, Ontario, Canada Cyber Crime Full time

    Bank on your terms with CIBC – whether it's in person, over the phone or online, CIBC has you covered. We're building a relationship-oriented bank for the modern world. The Director, Cyber Risk, Portfolio Management will execute GORM operational risk program and practices related to Identification, Measurement, Mitigation and Monitoring & Reporting of...


  • Toronto, Ontario, Canada CPP Investments Full time

    Job Description Reporting to the Managing Director, Cyber & Technology Risk Management, this Cyber and Technology Risk Manager role will be focused on mitigating cyber, technology, and data risks by assisting in the implementation of a risk management and internal control framework with particular focus on the Technology & Data (T&D) and Information Security...


  • Toronto, Canada CPP Investments Full time

    Company Description Make an impact at a global and dynamic investment organization When you invest your career in CPP Investments, you join one of the most respected and fastest growing institutional investors in the world. With current assets under management valued in excess of $500 billion, CPP Investments is a professional investment management...


  • Toronto, Ontario, Canada CPP Investments Full time

    Company Description Make an impact at a global and dynamic investment organization When you invest your career in CPP Investments, you join one of the most respected and fastest growing institutional investors in the world. With current assets under management valued in excess of $500 billion, CPP Investments is a professional investment management...


  • Toronto, Canada CPP Investments Full time

    Company Description Make an impact at a global and dynamic investment organization When you invest your career in CPP Investments, you join one of the most respected and fastest growing institutional investors in the world. With current assets under management valued in excess of $500 billion, CPP Investments is a professional investment management...


  • Old Toronto, Canada CPP Investments Full time

    Manager, Cyber and Technology Risk ManagementMake an impact at a global and dynamic investment organizationWhen you invest your career in CPP Investments, you join one of the most respected and fastest growing institutional investors in the world. With current assets under management valued in excess of $500 billion, CPP Investments is a professional...


  • Old Toronto, Canada CPP Investments Full time

    Manager, Cyber and Technology Risk ManagementMake an impact at a global and dynamic investment organizationWhen you invest your career in CPP Investments, you join one of the most respected and fastest growing institutional investors in the world. With current assets under management valued in excess of $500 billion, CPP Investments is a professional...


  • Old Toronto, Canada CPP Investments Full time

    Manager, Cyber and Technology Risk ManagementMake an impact at a global and dynamic investment organizationWhen you invest your career in CPP Investments, you join one of the most respected and fastest growing institutional investors in the world. With current assets under management valued in excess of $500 billion, CPP Investments is a professional...


  • Old Toronto, Canada CPP Investments Full time

    Manager, Cyber and Technology Risk ManagementMake an impact at a global and dynamic investment organizationWhen you invest your career in CPP Investments, you join one of the most respected and fastest growing institutional investors in the world. With current assets under management valued in excess of $500 billion, CPP Investments is a professional...

  • Avp, Technology

    2 months ago


    Toronto, Canada Sun Life Full time

    You are as unique as your background, experience and point of view. Here, you’ll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll...


  • Toronto, Ontario, Canada Scotiabank Full time

    Requisition ID: 172368Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.As the Manager, Cyber Security and IT Risk, you will contribute to the overall successful development and execution of a second line of defense program for Cyber Security and IT risk, performs assessments of risk management practices...


  • Toronto, ON, Canada Knewin Full time €85,000 - €156,000

    Deloitte Global is seeking an experienced Cyber Risk Manager to join our Cyber risk management and reporting team. As a Cyber Risk Manager, you will play a crucial role in managing and mitigating cyber risks within Deloitte Technology. Your responsibilities will include defining key risk indicators, building dashboards to provide cyber risk insights, and...


  • Toronto, Canada Scotiabank Full time

    Requisition ID: 172368 Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. As the Manager, Cyber Security and IT Risk, you will contribute to the overall successful development and execution of a second line of defense program for Cyber Security and IT risk, performs assessments of risk management...

  • Manager, Cyber Risk

    3 days ago


    Toronto, Ontario, Canada Coca-Cola Canada Bottling Limited Full time

    About Us:Proudly Canadian and Independently Owned, we are Coke Canada BottlingCoke Canada Bottling is Canada's premier bottling company. We are an independently owned business encompassing over 5,800 associates, more than 50 sales and distribution centres, and five production facilities nationwide.We have a 120-year heritage of manufacturing, marketing,...


  • Toronto, Ontario, Canada Scotiabank Full time

    Requisition ID: 196636Tangerine is Canada's leading direct bank. We offer flexible and accessible banking options, innovative products, and award-winning Client service. The reason why Tangerine employees come to work each day is to help Canadians live better lives. We focus on making a difference in our communities, and that includes our own internal...


  • Toronto, Canada Tangerine Bank Full time

    ? IT Risk Governance Maintain the compliance oversight of Scotiabank’s security and risk management framework, policies and standards for managing risks to its information assets and systems. Identify, assess, prioritize and report on material IT risks and aligned business areas. This will require working with various Risk owners and other control...


  • Toronto, Canada Tangerine Full time

    Is this role right for you? IT Risk Governance Maintain the compliance oversight of Scotiabank’s security and risk management framework, policies and standards for managing risks to its information assets and systems. Identify, assess, prioritize and report on material IT risks and aligned business areas. This will require working with various...


  • Toronto, Canada Tangerine Full time

    Is this role right for you? IT Risk Governance Maintain the compliance oversight of Scotiabank’s security and risk management framework, policies and standards for managing risks to its information assets and systems. Identify, assess, prioritize and report on material IT risks and aligned business areas. This will require working with various...


  • Toronto, Canada Tangerine Full time

    **Requisition ID**: 196636 Tangerine is Canada’s leading direct bank. We offer flexible and accessible banking options, innovative products, and award-winning Client service. The reason why Tangerine employees come to work each day is to help Canadians live better lives. We focus on making a difference in our communities, and that includes our own...