AVP, Technology Risk overseeing technology risk governance and monitoring across Canada Life. Leading the team in implementing best practices for risk management and compliance.
Responsibilities
Provide leadership and direction for the company to advance Technology Risk Governance policies, practices and operating model
Support Technology teams in the design, implementation, operation and continuous monitoring of controls that reduce a broad spectrum of technology operational risks
Build and maintain a governance structure with appropriate committees and stakeholder groups
Lead the development and adoption of policies and operating standards; enforce compliance and run ongoing monitoring of compliance with policies and standards across all levels of the organization
Lead the development and evolution of Canada Life’s technology issues and audit management processes
Partner with Technology leaders to develop business cases for the introduction, or expansion of risk capabilities and services governance
Lead the Technology Risk & Control identification process across all of Canada Life organization
Support the 1A in conducting Risk & Control Assessment across all of Canada Life organization
Advance innovation strategy including automated control testing and the use of AI
Contribute to the development and implementation of key risk indicators (KRIs), control indicators, and reporting to measure risk and highlight areas of concern
Foster, advocate for, and strengthen Canada Life’s overall technology risk posture
Lead a Line 1B team of technology risk professionals to achieve and surpass personal and team objectives
Support regulatory and related reporting
Support audit activities including ITGC testing
Requirements
10+ years’ experience in a similar technology risk leadership position
5-10 years of experience in varied senior security related leadership positions would be an asset.
5-10 years of experience of in the financial services industry or in a large organization
5-10 years of experience within the area of risk, compliance or governance specific to Information Services.
Understanding of technology risk regulatory, best practices and industry best practices
Experience building and working in matrix and complex organizations with demonstrated ability to influence teams where resources do not all report directly into the function.
Skilled leader with exceptional communication abilities, collaboration and relationship building skills establishing credibility and fostering cross-functional relationships.
Strong verbal and written communication skills and interpersonal skills needed to effectively build relationships and communicate with Executives, internals stakeholders, and customers.
Constant learner and passion for technology and risk governance
Deep understanding of how large enterprise organizations work, within in a regulated environment
Proven ability to identify, analyze and translate risk in the context of what it means to achieving business objectives
Familiarity working with a Business Information Security Office (BISO) model
Ability to attract, motivate and develop talent to build the right team to meet strategic direction and tomorrow’s needs
Extensive knowledge of Cyber and Technology Risk Governance and Control frameworks/standards (i.e., COBIT, ISO 27001, NIST CSF, ITL, etc.)
Certifications in CISSP, CISA, CISM, CRISC would be an asset
Benefits
Be your best at Canada Life
Diverse and inclusive workplace
Opportunity to excel and deliver exceptional customer experiences
Senior Associate, managing credit risk policy lifecycle at Capital One. Collaborating with stakeholders to ensure compliance and enhance risk frameworks.
Senior operational risk advisor at Desjardins developing guidelines and policies to prevent fraudulent transactions. Collaborating with various stakeholders and recommending strategic directions based on extensive knowledge.
Risk Management Consultant focused on identifying, analyzing, and managing risks for organizations in Göteborg. Join TechSeed's Cyber Security team with a strong emphasis on innovation and collaboration.
Internship role at Emerson in Cluj - Napoca, Romania, focused on governance and securities responsibilities. Engaging with a diverse team to drive innovation and foster a collaborative environment.
Risk Control Intern assisting with risk assessment and administrative tasks in commercial insurance operations. Gaining hands - on experience and participating in training programs.
Internal Audit Model Risk Manager evaluating the effectiveness of algorithms driving the business at Coinbase. Leading implementation of best - in - class internal audit practices within a global team.
Nurse Navigator coordinating patient care and ensuring timely scheduling at the University of Miami Health System. Serving as a liaison and educating patients throughout their care journey.
Senior Market Risk Specialist at SMUD managing market risk exposures in energy portfolios. Lead quantitative assessments and collaborate with stakeholders for strategic decision - making.