... cyber risk, and ongoing monitoring. Success in this role requires strong stakeholder and conflict management skills to balance business objectives, client expectations, and regulatory obligations, as ...
... cyber risk, and ongoing monitoring. Success in this role requires strong stakeholder and conflict management skills to balance business objectives, client expectations, and regulatory obligations, as ...
Employing exceptional time management and organization skills to ensure client satisfaction and ... Work closely with our Cyber colleagues and understand leading perspectives in emerging cyber risk ...
Employing exceptional time management and organization skills to ensure client satisfaction and ... Work closely with our Cyber colleagues and understand leading perspectives in emerging cyber risk ...
Lead Cyber Treaty Underwriter
Toronto, ON · Hybrid
CA$140K/yr
Our constantly evolving offerings lead the market in cyber, equipment breakdown, renewable energy, technology services, engineering-based risk management and inspection services. We bring technical ...
Lead Cyber Treaty Underwriter
Toronto, ON · Hybrid
CA$140K/yr
Our constantly evolving offerings lead the market in cyber, equipment breakdown, renewable energy, technology services, engineering-based risk management and inspection services. We bring technical ...
... Cyber Risk, IT Risk, and Third-Party Risk. * Ensures material risks are clearly identified ... Manages, monitors, and tests risks and risk controls within the parameters of the risk control ...
... Cyber Risk, IT Risk, and Third-Party Risk. * Ensures material risks are clearly identified ... Manages, monitors, and tests risks and risk controls within the parameters of the risk control ...
Group Risk Management is responsible for providing independent and objective oversight of the ... Market Risk, Credit Risk, Liquidity Risk, Balance Sheet Risk, Operational Risk, Cyber Risk, IT Risk ...
Group Risk Management is responsible for providing independent and objective oversight of the ... Market Risk, Credit Risk, Liquidity Risk, Balance Sheet Risk, Operational Risk, Cyber Risk, IT Risk ...
... management, resiliency, third party risk). * Identify control gaps, emerging risks, and systemic issues, and drive clear remediation actions to reduce operational and cyber risk exposure. * Partner ...
... management, resiliency, third party risk). * Identify control gaps, emerging risks, and systemic issues, and drive clear remediation actions to reduce operational and cyber risk exposure. * Partner ...
Operational or cyber risk management practices; * Client asset protection or fund safeguarding; * Trust, safeguarding, or custodial account oversight; * Audit, assurance, or controls review
Operational or cyber risk management practices; * Client asset protection or fund safeguarding; * Trust, safeguarding, or custodial account oversight; * Audit, assurance, or controls review
Strong knowledge of Cyber Risk Management and Cyber/IT regulations for Financial Institutions * Strategic skills to develop long-term visions and the ability to translate them into actionable ...
Strong knowledge of Cyber Risk Management and Cyber/IT regulations for Financial Institutions * Strategic skills to develop long-term visions and the ability to translate them into actionable ...
Key program areas include Cloud Security, Vulnerability Management, Cyber Risk Management, Security Operations, Incident Response, Threat Intelligence, Security Architecture, Policy Development ...
Quick apply
Key program areas include Cloud Security, Vulnerability Management, Cyber Risk Management, Security Operations, Incident Response, Threat Intelligence, Security Architecture, Policy Development ...
The Technical Cyber Risk Assessment Manager will be responsible for the following: * Perform ... risk management practices and control frameworks (NIST CSF, ISO/IEC 27001/27002, ISO/IEC 27005 ...
The Technical Cyber Risk Assessment Manager will be responsible for the following: * Perform ... risk management practices and control frameworks (NIST CSF, ISO/IEC 27001/27002, ISO/IEC 27005 ...
Senior Manager, KDN Presales Solution Architect - Cyber (24 Month Secondment/Fixed Term Contract)
Toronto, ON · Hybrid
This includes solutioning for MDR, penetration testing, vulnerability management, attack surface management, and cyber risk management. What you will do * Lead solution architecture and design ...
Senior Manager, KDN Presales Solution Architect - Cyber (24 Month Secondment/Fixed Term Contract)
Toronto, ON · Hybrid
This includes solutioning for MDR, penetration testing, vulnerability management, attack surface management, and cyber risk management. What you will do * Lead solution architecture and design ...
The Managing Director, Enterprise Risk plays a senior leadership role within the Enterprise Risk ... management or similar environment. * Demonstrated experience overseeing technology, cyber, data ...
The Managing Director, Enterprise Risk plays a senior leadership role within the Enterprise Risk ... management or similar environment. * Demonstrated experience overseeing technology, cyber, data ...
Lead the enterprise function that centralizes, modernizes, and operationalizes technology & cyber risk insights-delivering accurate, timely KRIs and decision support for the Board, Senior Management ...
Lead the enterprise function that centralizes, modernizes, and operationalizes technology & cyber risk insights-delivering accurate, timely KRIs and decision support for the Board, Senior Management ...
... leads cyber defense, regulatory and standards compliance, risk management, privacy alignment ... vendor audits, Payment Card Industry compliance, and business resilience, ensuring that security ...
... leads cyber defense, regulatory and standards compliance, risk management, privacy alignment ... vendor audits, Payment Card Industry compliance, and business resilience, ensuring that security ...
Ensure alignment with enterprise Cyber risk management and governance requirements. * Drive consistency governance routines, adherence to risk and control framework requirements, and issue management ...
Ensure alignment with enterprise Cyber risk management and governance requirements. * Drive consistency governance routines, adherence to risk and control framework requirements, and issue management ...
AVP, Cyber and Data Risk
Markham, ON · Hybrid
In this role, you'll shape how we manage data risk, strengthen controls, and respond to an evolving ... Deep understanding of cyber, data, and IT infrastructure domains. What you'll get: * Compelling ...
AVP, Cyber and Data Risk
Markham, ON · Hybrid
In this role, you'll shape how we manage data risk, strengthen controls, and respond to an evolving ... Deep understanding of cyber, data, and IT infrastructure domains. What you'll get: * Compelling ...
... risk including IT & Cyber, Business Continuity, Financial, Privacy, and Compliance * Have a solid understanding of procurement and vendor management principles KPMG Ontario Region Pay Range ...
... risk including IT & Cyber, Business Continuity, Financial, Privacy, and Compliance * Have a solid understanding of procurement and vendor management principles KPMG Ontario Region Pay Range ...
Risk Management & Compliance Own the regional cyber risk register and oversee risk identification, assessment, treatment, and acceptance. Lead regional security risk assessments for systems, products ...
Risk Management & Compliance Own the regional cyber risk register and oversee risk identification, assessment, treatment, and acceptance. Lead regional security risk assessments for systems, products ...
Work across key security domains including IAM, Zero Trust, cloud security, data protection, application security, vulnerability management, security operations, third-party cyber risk, and cyber ...
Work across key security domains including IAM, Zero Trust, cloud security, data protection, application security, vulnerability management, security operations, third-party cyber risk, and cyber ...
Enterprise/Operational Risk, Resilience, Regulatory Compliance, Policy, IT/Cyber Risk ... Governance, Methodology, and PMO * Establish Agile SDLC, program governance, RAID, and executive ...
Enterprise/Operational Risk, Resilience, Regulatory Compliance, Policy, IT/Cyber Risk ... Governance, Methodology, and PMO * Establish Agile SDLC, program governance, RAID, and executive ...
Cyber Risk Management information
See Ontario salary details
$29.5K - $42K
6% of jobs
$42K - $54.5K
6% of jobs
$54.5K - $67K
5% of jobs
$73K is the 25th percentile. Wages below this are outliers.
$67K - $79.5K
15% of jobs
$79.5K - $92K
11% of jobs
The median wage is $100.1K / yr.
$92K - $104.5K
11% of jobs
$104.5K - $117K
16% of jobs
$123.6K is the 75th percentile. Wages above this are outliers.
$117K - $129.5K
11% of jobs
$129.5K - $142K
4% of jobs
$142K - $154.5K
3% of jobs
$154.5K - $167K
13% of jobs
$29.5K
$103.4K
$167K
How much do cyber risk management jobs pay per year?
What is a Cyber Risk Management job?
A Cyber Risk Management job involves identifying, assessing, and mitigating cybersecurity risks that could impact an organization. Professionals in this field develop risk management frameworks, implement security controls, and ensure compliance with industry regulations. They work closely with IT and business teams to minimize cyber threats, such as data breaches and ransomware attacks. Their goal is to protect sensitive information and maintain business continuity.
What are the key skills and qualifications needed to thrive in the Cyber Risk Management position, and why are they important?
To thrive in Cyber Risk Management, you need a strong understanding of information security principles, risk assessment methodologies, and regulatory compliance, often supported by a degree in cybersecurity, information technology, or a related field. Familiarity with tools such as risk management software, vulnerability assessment platforms, and certifications like CISSP, CISM, or CRISC is highly valued. Excellent analytical thinking, communication, and problem-solving skills help professionals effectively advise stakeholders and coordinate incident response efforts. These skills are crucial for identifying, evaluating, and mitigating cyber risks to safeguard organizational assets and ensure business continuity.
Can you make $500,000 a year in cyber security?
Is 40 too old for cyber security?
What are some common challenges faced in a Cyber Risk Management role, and how are they typically addressed?
Professionals in Cyber Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, ensuring compliance with complex regulations, and balancing security needs with business objectives. Addressing these issues requires continuous learning, leveraging up-to-date threat intelligence, and collaborating closely with IT, legal, and management teams to develop effective risk mitigation strategies. Many organizations encourage ongoing training and participation in industry events to stay current, while fostering a culture of open communication to quickly identify and address vulnerabilities. Embracing a proactive and adaptable approach ensures that cyber risks are managed effectively while supporting the organization’s goals.
Is cybersecurity still worth it in 2026?
Can I make $200,000 a year in cyber security?

Job description
We are hiring for this position out of our Toronto, Calgary, and Vancouver offices. Successful candidates who apply outside of these areas will be expected to relocate and reside in a location that is within a commutable distance. Â
Role Overview
The Assistant Vice President, Third Party Risk Management (TPRM) is responsible for leading the implementation and ongoing execution of the Peoples Group TPRM framework, including ownership of the TPRM policy, supporting toolkits, inventory, and compliance tracking. This role leads and develops a team accountable for running the TPRM program, providing effective challenge to thirdparty risk and criticality assessments, and ensuring regulatory requirements are met across the enterprise.
The AVP prepares regular reporting for senior management and Board committees, partners closely with Technology on the development and maintenance of the TPRM system, and works collaboratively with Legal, Procurement, Information Security, and Relationship Owners to manage thirdparty onboarding, contracting, cyber risk, and ongoing monitoring. Success in this role requires strong stakeholder and conflict management skills to balance business objectives, client expectations, and regulatory obligations, as well as the ability to build productive relationships across multiple departments and drive enterprisewide training and compliance with TPRM requirements.
About the day-to-day
- Lead the implementation of the Peoples Group TPRM framework.
- Responsible for maintaining the TPRM Policy and Framework as well as the documentation supporting TPRM toolkits (Criticality and Risk Triage, Risk Assessment Template, Due Diligence Questionnaire, Contracting Requirements, Monitoring Plans, Contingency and Exit Planning, Exception Management).
- Manage a team of analysts and senior managers accountable for running the TPRM Framework. Lead the team in providing constructive challenge to the results of third-party risk and criticality assessments completed by the Relationship Owners.
- Own and manage the TPRM inventory and compliance tracker.
- Prepare regular reporting for the Operational Risk Management Committee, Corporate Risk Committee and Board Risk Committee.
- Work directly with the Technology team on the development and launch of the TPRM system to facilitate completion of the required toolkits and inventory of required Third-Party documentation. This includes accountability for User Acceptance Testing prior to launch and for regular patches and updates from the software provider.
- Successfully manage friction arising between business objectives, client expectations and regulatory requirements. Account Managers and their clients are important stakeholders in the success of TPRM. The successful candidate will be relied on to diffuse tensions when working with clients and counterparties to meet regulatory requirements for TPRM.
- Develop and coordinate enterprise-wide training on TPRM requirements.
- Work directly with Relationship Owners to clarify requirements for the onboarding and management of Third-Parties.
- Work closely with the Legal and Procurement departments to maintain control processes and compliance requirements when onboarding new Third-Parties and executing contracts.
- Coordinate with the Information Security Team to assess cyber-security control effectiveness at critical third parties.
- Working across all departments within PTC, partnering with relationship owners to maintain compliance and update third-party criticality and risk assessment. Collaboratively escalating gaps with requirements and facilitating approval of waivers where appropriate.
- Establishing productive relationships and working successfully with stakeholders across multiple departments is essential for success in this role.
About the qualifications
- 10+ years experience working in risk management or operations at a Canadian Financial Institution, with at least 5 years of experience in a management role.
- Successfully delivered enterprise-wide risk projects requiring significant change management and training across departments.
- Familiarity with Software Development Life Cycle in the context of enterprise applications and experience developing requirements for risk management solutions and coordinating User Acceptance Testing.
- Required experience in developing Third Party Risk Management TPRM Frameworks at Small and Medium Sized Banks (SMSBs) in Canada. Alternatively, applicants with intricate knowledge and experience in running an established TPRM framework at an SMSB or DSIB will also be considered.
- Direct experience in managing OSFI expectation and regulatory findings related to TPRM and Guideline B-10 is a significant asset.
- Strong communication skills, with experience presenting at senior management committee meetings and interacting directly with C-level executives at SMSBs.
- Proven conflict management capabilities when working across multiple departments and stakeholders to achieve positive risk and compliance outcomes.
About us
Peoples Group is a trusted financial services company for the innovators at the forefront of Canada’s economic future. With offices in Vancouver, Calgary, and Toronto, we are driving change by working alongside challenger banks, fintechs, brokers, and merchants to foster a dynamic and competitive financial ecosystem.
Our culture is built on four core behaviours: Grit to Grow, Connect to Collaborate, Putting Clients First, and Owning the Outcome. We believe people do not simply choose a company to work for—they choose a company that makes a positive impact in the lives of Canadians. Above all, we value people, build meaningful relationships, focus on individual strengths, and approach our work with passion.
About the work environment
Peoples Group offers a flexible and hybrid work environment. In this role you will work a combination of in-office and remotely from home. Typically, you'll be working regular business hours, Monday to Friday between 8:00am and 4:30pm with flexibility around start/end times.
We offer:
- Â A hybrid work environment, enabling you to balance your personal and professional life seamlessly.
- Competitive salaries, profit sharing, RRSP matching and benefits from day one.
- Generous paid time off to help achieve a healthy work-life balance.
- A strengths-based approach, ensuring we work together more effectively.
- A commitment to your well-being in five key areas: Financial, Physical, Social, Career, and Community.
Peoples Group is pleased to offer employees a competitive annual salary plus a discretionary profit share opportunity. Salary for this position will vary between $130,000 and $145,000 per year depending on the knowledge, skills, abilities and experience that the chosen candidate possesses.
NOTE: Â This job posting is for an existing vacancy. Peoples Group is an Equal Employment Opportunity employer. Please accept our utmost appreciation for your interest; however, only those applicants under consideration will be contacted.
 We value and celebrate individuality while fostering an inclusive workplace for everyone. If there's any way we can support or accommodate you during the selection process, please don't hesitate to let us know.
About People's Group
Sourced by ZipRecruiter
Industry
Investment clubs and venture capital companies
Company size
1 - 10 Employees
Headquarters location
Alameda, CA, US
Year founded
2021