Director of Cyber Risk Governance overseeing cybersecurity and regulatory compliance at Manulife. Ensuring adherence to global regulations while enhancing cybersecurity governance practices.
Responsibilities
Lead the independent oversight of cybersecurity risks, ensuring alignment with Manulife’s standards and strategic objectives
Conduct independent assessments against industry frameworks such as NIST and SWIFT
Oversee and challenge adherence to cybersecurity regulatory requirements
Ensure accurate interpretation and compliance by first-line teams with global regulators including OSFI, SEC, HKMA, MAS, and others
Stay current on emerging technologies and regulatory changes to maintain a robust cybersecurity posture
Collaborate across first and second lines of defense to develop and report on Key Risk Indicators (KRIs)
Support leadership in preparing board-level cybersecurity materials, offering actionable insights on cyber and emerging risks, data security and operational resilience
Partner with the Information Risk team to drive oversight roadmaps and strategies
Ensure efficient and effective processes are in place to provide comprehensive coverage across the enterprise
Identify opportunities to enhance governance practices, improve oversight maturity, and strengthen risk management capabilities.
Requirements
7–10 years in cybersecurity risk management
Strong technical acumen across domains such as identity and access management (IAM), cloud security, network security, and data protection
Experience with performing cyber due diligence over mergers and acquisitions
Experience with designing, implementing and running data protection capabilities including DLP and insider threat prevention
Experience in different aspects of cyber operations including incident response, threat intelligence/detection, red/blue/purple teaming and threat hunting
Demonstrated ability to provide strategic oversight, challenge and governance in cybersecurity risk management
Experience interpreting and governing cybersecurity regulations from bodies such as OSFI, SEC, HKMA, MAS, and SWIFT
Strong understanding of industry recognized frameworks including NIST CSF, ISO27001/27002 and PCI DSS
Demonstrated ability to conduct technical cybersecurity assessments against regulatory and industry standards
Ability to analyze cybersecurity trends and emerging risks to identify opportunities for improving the organization’s security posture
Experience building out strategies and roadmaps related to cybersecurity governance
Strong relationship-building skills with the ability to influence and build credibility across diverse stakeholder groups
Excellent verbal and written communication skills, with the ability to produce high-quality deliverables for executive and board-level audiences.
Regulatory Affairs Associate for managing new drug registrations and preparing documentation in the India Market. Collaborating with stakeholders and supporting compliance in bulk drug registration.
Senior Tech Compliance Analyst at Syneos Health responsible for global Technology Disaster Recovery efforts, collaborating with various teams and service providers.
Chief Nuclear Officer serving as the nuclear safety authority for BaRupOn's SMR/MMR programs. Establishing safety frameworks and ensuring regulatory compliance within the organization.
International Trade Compliance Manager overseeing compliance with international trade regulations at Northrop Grumman. Leading a team and managing compliance initiatives across multiple locations in the US.
Compliance Manager leading Autodesk's Enterprise Compliance program. Ensuring compliance with SOX, PCI regulations and overseeing security controls across teams.
Compliance Student supporting compliance and risk management activities for individual insurance at iA Financial Group. Involves monitoring processes, collaborating with teams, and assisting with compliance tasks.
Nurse Licensure & Compliance Coordinator managing multi - state nurse licensure and compliance inquiries while ensuring a positive nurse experience. Advocating for nurses and maintaining regulatory adherence at the organization.
508 Compliance Specialist working with the Office of the Inspector General for the DoD. Responsible for ensuring electronic accessibility for compliance with Section 508 regulations.
Senior Manager in Regulatory Affairs overseeing submission management and regulatory compliance. Leading cross - functional teams in a neuroscience - focused biopharmaceutical environment.
Local Compliance & Ethics Officer at Teva Germany serving local management and compliance program. Leading compliance initiatives and collaborating with various stakeholders while managing risks and providing guidance.