13 дней назад
Sr. Consultant, Supplier Risk Management
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Sr. Consultant, Supplier Risk Management (Information Security/Third-Party Risk): Conducting supplier due diligence and detailed information security risk assessments for technology and business stakeholders with an accent on assurance reviews, vulnerability and penetration testing, cloud technologies, and risk monitoring. Focus on analyzing complex supplier risks, designing security monitoring practices, maintaining risk data, and presenting practical remediation recommendations to executives and business partners.
Location: Toronto, ON, Canada; hybrid work with 1–3 days per week on-site at Toronto-81 Bay
Company
is a relationship-oriented bank focused on providing modern banking services and supporting clients through information security and risk management.
What you will do
- Conduct ongoing third-party due diligence and review independent assurance reports to identify information security risks.
- Perform detailed information security risk assessments for key suppliers and monitor remediation progress.
- Assess business needs against supplier risks and provide practical recommendations to technology and business stakeholders.
- Maintain the third-party risk database and produce detailed reporting and analytics.
- Build and present risk documentation for executive management and provide direction to suppliers and business partners.
- Design, implement, and operationalize security assessment and monitoring practices.
Requirements
- Experience in information security and third-party risk assessments.
- Experience with vulnerability and penetration testing and application security development projects, including exposure to Agile processes.
- Experience with cloud computing technologies, Archer GRC, and external threat intelligence tools such as Black Kite.
- Strong relationship-building, analytical, communication, and executive presentation skills.
- Must be legally eligible to work in Canada and complete required security checks, including a criminal record check.
Nice to have
- Financial services experience or experience conducting cyber assessments for legal firms.
- CISSP, CTPRP, CISM, or related cybersecurity certifications.
Culture & Benefits
- Hybrid work arrangement with flexibility to manage work activities.
- Competitive salary, incentive pay, banking benefits, and a benefits program.
- Defined benefit pension plan and employee share purchase plan.
- Vacation offering, wellbeing support, and employee recognition programs.
- Paid Purpose Day for personal growth and development.
- Inclusive and accessible work environment with accommodation support.
Hiring process
- May include an attribute-based assessment and skills tests, such as simulations, coding, or French proficiency testing.
- Security checks must be successfully completed before starting the role; annual criminal record checks may also be required.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
13 дней назад
Specialist, Information Security (AI/ML)
13 дней назад
Security Engineer (Fintech)
126 000 - 154 000CAD
13 дней назад
Supervisor, Technology Risk - IT Audit (IT Audit)
75 000 - 129 600$
3 дня назад
Security Customer Solutions Architect (Cybersecurity)
120 000 - 160 000CAD
3 дня назад
Senior Security Architect (Cloud Security)
99 177 - 132 236CAD
13 дней назад