What you’ll do
Reporting to the AVP, Cyber & Technology Risk, and working closely with key stakeholders across Enterprise Risk Management, Cybersecurity, IT, Privacy and other key Business Units, the Manager, Cyber & Technology Risk, provides a layer of independent challenge of cyber risk through targeted independent assessments of current cyber security practices, roadmaps, and strategies across the enterprise.
Evaluate existing and future cyber technologies within the CTC environment to ensure the correct technologies are deployed to effectively mitigate cyber risks to an adequate level.
Ensure technology alignment with the published cybersecurity roadmap.
Maintain the process for developing and managing Cyber Risk governance and management activities.
Act as a liaison between cyber and technology risk functions in the first line such as IT, cybersecurity, business, Enterprise Risk and Internal Audit functions.
Measure the cyber program against defined risk appetite and tolerance limits based on business needs and informed by regulatory compliance, industry standards, frameworks and technical capabilities.
Facilitate the identification and influence the remediation of cyber risk initiatives through effective KPI management leveraging metrics and stakeholders as required.
Partner with cybersecurity, IT, and business stakeholders to assess the effectiveness of current operational resilience, business continuity planning and disaster recovery, providing recommendations and influencing as required.
Promote a culture of Cyber Risk awareness throughout CTC.
What you bring
Over 7+ years’ experience in a cyber technology management role in retail or with a global footprint, or a similar industry
Experience in evaluating and deploying a wider range of cyber security technologies (e.g., firewalls, cloud, IDS/IPS, DLP, IDAM, etc.)
Deep knowledge of industry leading cyber security frameworks and regulations for identifying and managing cyber security risk (e.g., NIST, ISO, COBIT, PCI, etc.)
Certifications in CISSP, CISM, and SCF
CRISC and CISA a definite asset
Expert knowledge of network technologies, cloud, hardware platforms and operating systems
Expert understanding of security interoperability through an entire technology stack
Good knowledge of applicable data privacy practices and laws
Ability to exercise effective independent judgment, to prioritise and deliver business results in a fast moving, high pressure and demanding environment with competing priorities.
Strong interpersonal, communication, and influencing skills to build credibility and collaboration
Bachelor's degree or equivalent experience in Cybersecurity, Computer Science, Engineering, Business, Mathematics, or related field.
We’re always looking for great talent! In addition to competitive pay, we offer:
Comprehensive benefits and retirement programs
Performance incentives, Continuing Education Programs
Other perks to support your well-being
Career growth opportunities and product discounts
Our typical hiring range is between $79,000.00 - $131,000.00 CAD Annual. Salary decisions are also dependent on other factors such as your experience, job-related knowledge, skills and competencies, market location, industry benchmarks, internal equity and other role-specific requirements.
#LI-GT1
This posting represents an existing vacancy within our organization.
We may use artificial intelligence tools as part of our recruitment process to assist in the initial screening of resumes. All hiring decisions, including candidate evaluation, selection, and disposition, are made by human recruiters.