Manager of Information Risk Management overseeing cybersecurity and technology risk assessments. Leading independent oversight and governance across Global Cybersecurity Services and technology domains.
Responsibilities
Lead Line 2 oversight activities across technology, cyber, data, AI, cloud, and emerging technology domains
Perform oversight and challenge on complex RCSAs, thematic reviews, technology change assessments, and targeted risk deep dives
Provide expert review and challenge of Line 1 control documentation in areas such as cloud security, IAM, data protection, infrastructure, resilience, and disaster recovery
Oversee and validate the quality of risk assessments, evidence, and remediation commitments provided by Line 1 partners
Monitor and escalate significant issues, risk exceptions, control gaps, and corrective action plans
Review reportable events, including security incidents, operational disruptions, and third-party risks, ensuring accurate classification and effective remediation
Develop and deliver high-quality risk reporting, dashboards, and insights for senior leadership, risk committees, and governance forums
Maintain and enhance oversight processes, documentation, templates, and guidance materials to support a consistent risk practice
Identify opportunities to uplift risk maturity, streamline processes, and strengthen the effectiveness of IRM oversight
Contribute to the development of policies, standards, and methodologies in collaboration with Standards Governance, Technology Risk, Operational Risk, Privacy, and Compliance
Represent IRM in cross-functional forums, working groups, and strategic initiatives
Requirements
5–7+ years of experience in technology risk, cybersecurity, IT audit, or related domains
Bachelor’s degree in computer science, computer engineering, IT Security, or a related field or equivalent experience
Strong knowledge of cloud, IAM, cyber operations, resilience, infrastructure, or data protection concepts
Experience leading oversight reviews of RCSAs, control testing programs, complex risk assessments, or thematic reviews
Strong capability in analyzing technical risks and presenting them in business-relevant terms
Demonstrated ability to engage and influence senior stakeholders across Technology, Cyber, and Risk teams
Strong written and verbal communication skills & detail-oriented with strong organizational skills
Proactive, adaptable, and able to operate effectively in a dynamic and maturing risk environment
Strong communication skills, clear, concise risk messaging for senior leaders
Bilingualism (English and French) is an asset
Benefits
Health insurance
Dental
Mental health
Vision
Short- and long-term disability
Life and AD&D insurance coverage
Adoption/surrogacy benefits
Wellness benefits
Employee/family assistance plans
Retirement savings plans (including pension)
Global share ownership plan with employer matching contributions
Financial education and counseling resources
Generous paid time off program (holidays, vacation, personal, and sick days)
Fraud Risk Oversight Director overseeing risk management programs at Truist. Leading teams to ensure efficient risk practices and compliance within the financial services sector.
Overseeing Third Party Risk Management related activities at Truist. Managing application and reporting strategy along with technology enablement support.
Manager overseeing Operational Risk Management for Manulife. Responsible for effective risk governance, data analysis, and cross - functional collaboration.
AVP, IS Risk Management leading information security risk management activities. Overseeing risk assessments, third - party management, and compliance at Synchrony.
Risk Management Manager at Early Warning leading LOD1 risk and internal control efforts. Overseeing and coordinating risk management processes across various business lines and compliance areas.
AI and Model Risk Lead Consultant at Allstate responsible for model and AI risk management across enterprise. Leading initiatives, ensuring compliance, and supporting various risk assessments and governance frameworks.
Governance & Control Specialist managing risk and compliance activities at TD Bank. Overseeing governance and control operations, leading initiatives to enhance risk management practices.
Energy Market Risk Analyst at Next Kraftwerke working on product verification and risk assessment. Collaboration with Finance and Trading teams in a hybrid working environment.
IT Risk & Control Specialist developing and implementing IT Risk & Control framework. Collaborating with stakeholders to enhance IT governance in a dynamic environment.