Talent.com
Senior Manager, IT Risk
Senior Manager, IT RiskScotiabank • Toronto, ON, CA
Senior Manager, IT Risk

Senior Manager, IT Risk

Scotiabank • Toronto, ON, CA
30+ days ago
Job type
  • Full-time
Job description

Requisition ID: 247362

Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.

Contributes to the overall success of Cyber & IT Risk Management, Global Risk Management (GRM) globally ensuring specific individual goals, plans, initiatives are executed/delivered in support of the team’s business strategies and objectives. Ensures all activities are conducted in compliance with governing regulations, internal policies and procedures.

Leads expert technical risk assurance and control oversight to ensure the bank achieves its objectives while effectively managing risk. Collaborate with cross-functional teams across the first line of defense to identify, assess, and mitigate emerging risks and vulnerabilities. This role is crucial in fostering a robust risk culture and driving continuous improvement, contributing to the development and implementation of comprehensive risk management policies, standards, and controls.

As part of the second line of defense, the Cybersecurity and IT Risk team provides independent oversight and challenge, and assists in developing methodologies, policies, processes, and tools to support the Cyber and IT Risk Management Framework.

Is this role right for you? In this role, you will:

  • Lead 2nd Line Challenge: Conduct comprehensive challenge to identify potential threats and vulnerabilities in the Bank’s processes, systems, and operations. Partner with 1st line of defense to develop risk mitigation strategies across key cyber and IT domains. Challenge IT and cybersecurity risks within scenario analysis and thematic reviews. Conduct cyber risk assessments, metrics, and controls within globally complex, dispersed, and diverse organizations.
  • RCSA Program Management. Define the annual plan, in collaboration with GOR, the business and IT Risk. Assign resources as needed on selected RCSAs. Review and challenge the scope for IT, participants, and IT Profile for RCSAs.
  • Risk Assessment and Identification. Objectively review & challenge the inherent risk, control effectiveness, and residual risk assessments & rationales, as well as related issues/APs, for technology specific risk/controls. Provide feedback and follow up on the technology specific risk/control responses.
  • Issue Management. Ensure all IT risks/controls have been properly documented and reflected in deliverables and applicable tracking systems, including suitable action plans.
  • Reporting and Monitoring. Prepare reports on IT components of RCSAs, including findings, track IT risk trends, and monitor the effectiveness of controls.
  • Training and Communication. Develop and deliver training programs to educate and support peers and stakeholders on IT processes of the RCSAs and best practices.
  • Stakeholder Management. Act as a liaison between business units, control owners, IT Risk and other stakeholders.
  • Champions a customer focused culture to deepen client relationships and leverage broader Bank relationships, systems and knowledge.
  • Understand how the Bank’s risk appetite and risk culture should be considered in day-to-day activities and decisions.
  • Actively pursues effective and efficient operations of their respective areas in accordance with Scotiabank’s Values, its Code of Conduct and the Global Sales Principles, while ensuring the adequacy, adherence to and effectiveness of day-to-day business controls to meet obligations with respect to operational, compliance, AML/ATF/sanctions and conduct risk.
  • Champions a high performance environment and contributes to an inclusive work environment.

Do you have the skills that will enable you to succeed in this role? - We'd love to work with you if you have:

  • Strong expertise in IT Risk Management (e.g. Logical Access, Data Leakage, Disaster Recovery)
  • Master’s degree or higher in science, technology, engineering, business administration is an asset.
  • 5+ years of experience in Technology or Operational Risk Management, IT Audit, IT Compliance, regulatory-supervision, consulting or advisory roles.
  • 1+ years of experience in RCSAs as part of the 1LoD or 2LoD.
  • Industry certifications desirable (e.g. CISSP, CRISC, CISM)
  • Advanced knowledge of relevant regulatory rules (OSFI, FFIEC, NYDFS 500) and frameworks (NIST, COBIT) is preferred
  • Experience using of GRC risk management tools.
  • Demonstrated expertise in regulatory compliance, risk management frameworks, and industry best practices (e.g., NIST, ISO, FFIEC, GDPR)
  • Proficiency in data security, risk management & controls, security governance, and analytical thinking, with a track record of implementing effective risk mitigation strategies
  • Advanced knowledge of data analytics and data literacy
  • Spanish proficiency is required.

What’s in it for you?

  • The opportunity to join a forward-thinking and collaborative team, surrounded by innovative thinkers.
  • A rewarding career path with diverse opportunities for professional development
  • Internal training to support your growth and enhance your skills.
  • An inclusive working environment that encourages creativity, curiosity, and celebrates success!

Location(s): Canada : Ontario : Toronto

Scotiabank is a leading bank in the Americas. Guided by our purpose: "for every future", we help our customers, their families and their communities achieve success through a broad range of advice, products and services, including personal and commercial banking, wealth management and private banking, corporate and investment banking, and capital markets.

At Scotiabank, we value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. If you require accommodation (including, but not limited to, an accessible interview site, alternate format documents, ASL Interpreter, or Assistive Technology) during the recruitment and selection process, please let our Recruitment team know. If you require technical assistance, please click here. Candidates must apply directly online to be considered for this role. We thank all applicants for their interest in a career at Scotiabank; however, only those candidates who are selected for an interview will be contacted.

Create a job alert for this search

Senior Manager, IT Risk • Toronto, ON, CA

Similar jobs

IT Audit Manager — Cybersecurity Risk Leader (Toronto, Onsite)

Tundra Technical SolutionsToronto, ON, CA
Full-time

A leading technology firm in Toronto is looking for an IT Audit Manager to execute and complete cybersecurity process audits.This mid-senior level position requires 4+ years of experience in IT aud...Show more

 • Promoted

Senior IT Risk & Remediation Manager

RBCToronto
Full-time

A leading financial institution in Toronto is looking for an experienced Sr.Manager in IT Operational Risk Management to oversee the technology risk management portfolio.The role involves collabora...Show more

 • Promoted

Manager, IT Governance and Risk

HOOPP (Healthcare of Ontario Pension Plan)Toronto, ON, CA
Permanent

Speaker Series events and access to LinkedIn Learning, that support employees’ career growth.HOOPP’s world class defined benefit pension plan, which can serve as an important part of your retiremen...Show more

 • Promoted

Senior IT Audit Lead, Infrastructure & Risk

TDToronto, ON, CA
Full-time

A leading financial institution is seeking a Senior Audit Group Manager in Toronto, Ontario.The ideal candidate will have over 10 years of relevant experience and a strong background in audit pract...Show more

 • Promoted

Senior Manager for IT/OT Cybersecurity and Infrastructure Excellence

PowerON Energy SolutionsToronto, ON, CA
Full-time

Drive strategic IT and OT infrastructure leadership as a Senior Manager.Oversee cybersecurity programs, ensure compliance, and enhance operational technology capabilities for electrification growth...Show more

 • Promoted

Senior IT Audit Lead — Strategy, Risk & Team Leadership

Robertson & Company Ltd.Toronto, ON, CA
Full-time

A reputable banking client in Toronto is seeking a Lead IT Audit Manager.This role involves leading and developing an audit team, ensuring compliance with regulations, and providing strategic insig...Show more

 • Promoted

Senior Manager, IT/OT Infrastructure & Cybersecurity

TEEMA Solutions GroupToronto
Full-time

Senior Manager, IT/OT Infrastructure & Cybersecurity.PowerON Energy Solutions | Toronto, ON.Reporting to the Head of Energy Markets & Software Solutions, the Senior Manager, IT/OT Infrastructure & ...Show more

 • Promoted

Senior Manager - IT Governance Risk and Control

EnercareMarkham, York Region, CA
Full-time

Senior Manager - IT Governance Risk and Control.Posted Wednesday, March 25, 2026 at 4:00 AM.Canada’s largest home and commercial services companies servicing over one million customers across Ontar...Show more

 • Promoted

Experienced Senior Manager for IT Governance and Risk Control

Enercare Inc.Markham
Full-time

Enhance IT governance as a Senior Manager focusing on risk and controls.Drive compliance and strengthen operational frameworks by collaborating with IT leaders and audit teams.This pivotal role req...Show more

 • Promoted

Senior IT Audit Manager - Hybrid, Cybersecurity & Cloud

Fidelity InternationalToronto, ON, CA
Full-time

A leading financial services firm in Toronto is seeking a Technology Audit Consultant to deliver advisory services, draft comprehensive audit reports, and collaborate with stakeholders.The ideal ca...Show more

 • Promoted

Manager, IT Governance, Risk and Compliance

Pet ValuMarkham, York Region, CA
Full-time

Manager, IT Governance, Risk and Compliance page is loaded## Manager, IT Governance, Risk and Complianceremote type: Hybridlocations: 0001 – Markham Officetime type: Full timeposted on: Posted Toda...Show more

 • Promoted

Senior Manager for Comprehensive Risk Management in IT

RBCToronto
Full-time

Take charge as a Senior Manager in Risk Management, focusing on IT and compliance.Lead the development of systems and processes that minimize risks on a global scale.This senior management position...Show more

 • Promoted

Senior IT Resiliency Manager with Expertise in Operational Risk

CognizantToronto
Full-time

Step into the role of Senior Consulting Manager, IT Resiliency, where you’ll guide major financial entities in strengthening their operational resilience.Focus on critical assessments of technology...Show more

 • Promoted

Senior IT Audit Leader – Infrastructure & Risk Oversight

TD SecuritiesToronto
Full-time

A leading global financial institution based in Toronto is seeking a Senior Audit Group Manager to develop and lead a team of audit professionals.This role entails supervising complex audits, provi...Show more

 • Promoted

Senior Tech Risk Manager: IT Audit & SOC

KPMG LLP CanadaToronto
Full-time

A leading consulting firm is seeking a Senior Manager for their Technology Risk Services team in Toronto.This role involves managing IT audits, mentoring junior staff, and engaging with clients in ...Show more

 • Promoted

Senior Manager, Technology Risk — Drive Growth & Client Impact

EYToronto, ON, CA
Full-time

A leading consulting firm is seeking a Senior Manager in Edmonton to enhance client trust in their information systems while expanding business development in the technology risk space.The successf...Show more

 • Promoted

Strategic IT Risk Senior Manager for Enhanced Governance and Compliance

ScotiabankToronto, ON, CA
Full-time

Join as a Senior Manager for IT Risk, shaping governance and compliance standards.Your strategic influence, risk assessments, and team leadership will advance the organization’s risk culture.In thi...Show more

 • Promoted

Senior Analyst for IT Risk Governance and Operational Compliance

Haventree BankToronto, ON, CA
Full-time

Drive IT risk assessment excellence as a Senior Analyst specializing in governance and compliance.Collaborate across teams to identify risks and implement effective control frameworks.This critical...Show more