Search jobs > Toronto, ON > Director third party

Senior Director, Third Party Risk - US Region

CIBC
Toronto, ON
$145K-$160K a year (estimated)
Full-time

We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.

At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute.

To learn more about CIBC, please visit

As a member of our US Technology, Infrastructure & Innovation (US TI&I) team, you’ll enable the continuous transformation of our Bank by accelerating the shift to digital, strengthening operational resilience, simplifying what we do, improving CIBC's speed to market and protecting our Bank's assets.

You’ll work with teams work to maximize the investment in resources and technology while building an appropriate balance between high-touch client service and our fiduciary responsibility to protect CIBC, our clients, and our shareholders from undue risk.

The Sr Director of Third Party Risk, is accountable for leading all risk aspects of the third party lifecycle for CIBC U.

S. This role will provide risk input into the third party operating model, maintain a governance model / framework, define risk management standards and assessments, measure the program effectiveness through appropriate metrics, and manage ongoing vendor health and exit strategies.

This role will maintain methodologies and management processes to ensure CIBC information assets are adequately protected by CIBC and its Third Party service providers.

As a key leader in the organization, this role will represent Third Party Risk at various internal committees and governance bodies.

The role will also work collaboratively across all lines of defense, SBUs and Functional Groups to provide subject matter expertise and advice to ensure that risks are understood and appropriately managed within the bank’s risk tolerance.

This role will also maintain strong alignment to the enterprise Third Party risk group.

What you’ll be doing

Developing the bank’s strategy, roadmap and control processes for managing Third Party risk.

Leading the Bank’s Third Party Governance Operations (TPGO) function, ensuring all control functions are adequately engaged, ensuring that for all suppliers the correct risk management regime is placed around the services they provide CIBC.

Manage day to day operations of the Third Part Risk Assessment (TRPA).

Ensure contractual terms and conditions are adequately built into direct or shared contracts with appropriate U.S. relationship manager engagement.

Ensure security requirements are included in contracts to allow CIBC US to adequately measure and monitor risk, and ensuring we meet regulatory expectations.

Maintain a continuous monitoring program for Third Parties.

Lead implementation of a strategic improvement plan for TPRM function.

Ensuring appropriate level of engagement and oversight of all TPRM Control Groups, as defined by the bank’s TPRM Methodology.

Acting as a lead control group for Information Security for the TPRM program.

Perform detailed Information Security assessments of CIBC suppliers as part of onboarding process.

Maintain an Information Security continuous monitoring process for suppliers to ensure ongoing protection of CIBC data.

Manage response to supplier cyber security incidents.

Providing expertise and oversight, in assessing adequacy of all security controls required to protect Information assets across the enterprise.

Developing execute plans for continuous improvement of risk-related processes, as well as assisting the enterprise leadership to define remediation priorities based on sound analysis of third party related risks.

Ensuring CIBC’s controls and processes align to existing and new regulatory expectations and demonstrate compliance as required.

At CIBC we enable the work environment most optimal for you to thrive in your role. Details on your work arrangement (proportion of on-site and remote work) will be discussed at the time of your interview.

How you’ll succeed

You embrace and advocate for change. You continuously evolve your thinking and the way you work in order to deliver your best.

You give meaning to data. You enjoy investigating complex problems and making sense of information. You communicate detailed information in a meaningful way.

You’re goal oriented. You’re motivated by accomplishing your goals and delivering your best to make a difference.

You focus on collaboratively driving positive experience for clients and employees (Always professional, Radically Simple, Genuinely Caring).

Who you are

You have 7-10+ years of direct / related third party risk assessment, management experience, technology, cybersecurity operations and governance oversight.

You are a strategic comprehensive leader with a background in Information Security.

You have exceptionally strong influencing skills sufficient to significantly promote and / or negotiate on behalf of CIBC in situations that involve recognizing and responding to underlying concerns where others need to be persuaded to accept compromise solutions.

You have strong communication skills with the ability to articulate complex technical concepts in a clear, concise manner through both written and verbal communications.

You have experience leading high performing teams and a passion for driving program evolution and continuous improvement.

You have exceptional problem solving skills to creatively develop unique approaches and solutions that are necessary to address complex problems.

You have a bachelor’s degree in a relevant discipline.

You preferably have professional information security certifications : Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), Certified Third Party Risk Professional (CTPRP).

What CIBC Offers

At CIBC, your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential.

We aspire to give you a career, rather than just a paycheck.

We work to recognize you in meaningful, personalized ways including a competitive salary, incentive pay, banking benefits, a benefits program*, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program.

Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients.

We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development.

Subject to plan and program terms and conditions

What you need to know

CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience.

If you need accommodation, please contact

You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit.

We may ask you to complete an attribute-based assessment and other skills tests (such as simulation, coding, French proficiency, MS Office).

Our goal for the application process is to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us.

Job Location

IL-70 W Madison St, 9th Fl

Employment Type

Permanent

Weekly Hours

Skills

Gestion des parties concernées, Leadership, Politiques de sécurité, Sécurité de l'information, Stratégie de sécurité, Technologies de l’information (TI)

30+ days ago
Related jobs
Deloitte
Toronto, Ontario

Leading organizations are now recognizing the role that a risk-intelligent Third Party Risk Management (TPRM) program can play in adapting to these changing expectations while building and protecting reputation, powering growth, innovation and business performance, and effectively managing risk. You...

RBC - Royal Bank
Toronto, Ontario

The Third Party IT Risk team is currently recruiting for the exciting role of Senior Manager Risk Intelligence and Analytics. In this role, you will have the opportunity to build a solid understanding of RBC's Third Party IT Risk Management requirements. Consult with business partners to understand ...

Royal Bank of Canada
Toronto, Ontario

The Third Party IT Risk team is currently recruiting for the exciting role of Senior Manager Risk Intelligence and Analytics. In this role, you will have the opportunity to build a solid understanding of RBC's Third Party IT Risk Management requirements. Consult with business partners to understand ...

Deloitte
Toronto, Ontario

Leading organizations are now recognizing the role that a risk-intelligent Third Party Risk Management (TPRM) program can play in adapting to these changing expectations while building and protecting reputation, powering growth, innovation and business performance, and effectively managing risk. You...

Scotiabank
Toronto, Ontario

You are eager to conduct detailed third-party supplier technology resiliency risk assessments and ensure that technology resiliency due diligence are recorded in enterprise tools and are in full compliance of defined policies and common standards, including the Bank's Global Third Party Risk Managem...

Cadillac Fairview
Toronto, Ontario

The Enterprise & Third-party Risk Analyst will report to the Enterprise and Third-party Risk Lead supporting research and driving analysis in support of risk identification and monitoring and trends evaluation across all CF’s current and planned asset classes, current and future industry opportuniti...

RBC - Royal Bank
Toronto, Ontario

Business Performance Management, Investment Banking Analysis, Investment Economics, Investment Management Systems, Investment Performance Measurement, Investment Risk, Investment Risk Management, Market Risk, Operational Risks, Performance Management (PM), Quality Management, Risk Management, Standa...

S.i. Systems
Toronto, Ontario

Provides risk advisory services and guidance to the business using a risk based approach to optimize third party performance and enable consistent and efficient management according to business criticality and assessed level of risk. The Associate Risk Advisors provides guidance and counsel to the b...

Recrute Action
Toronto, Ontario

Ourclient in the insurance industry is seeking a skilled Risk Analystwith expertise in Vendor Management and ThirdParty Risk to jointheir team on a contract basis. Risk Analyst (VendorManagement Third PartyRisk). Completeannual risk governance for highrisk vendors ensuring compliancewith established...

Aviva
Markham, Ontario

Reporting to the Third Party Risk Management (TPRM) Expertise Lead, the TPRM Program & Reporting role supports with the design, adherence, and continuous improvement of Aviva Canada's Third-Party Risk Management (TPRM) program. Lead monitoring and tracking of TPRM program adherence including dri...