1

Cyber Risk Manager Jobs in Toronto, ON (NOW HIRING)

Manager Cyber Cloud Security and AI

Toronto, ON · Hybrid

CA$116K - CA$166K/yr

Risk Management:Conduct risk assessments toidentifyvulnerabilities in AI systems and data ... cyber resilience. * Team Leadership:Lead and mentor a team of cybersecurity professionals ...

... may indicate a material cyber risk or require escalation. * Ensure CSIRT contributes clear ... Contribute to incident management standards, procedures, reporting, audit response, and regulatory ...

... a Manager level to join our team! As a member of KPMG Canada's cross-functional Cyber team, you ... risk/threat the client is facing; * Provide recommendations and advise on steps to mitigate the ...

161 Bay Street (93021), Canada, Toronto,Toronto, Ontario, Manager, Cyber Technical About Capital ... You are pragmatic and practical in your understanding of risk and security, but also willing to ...

Showing results 41-60

Cyber Risk Manager information

How does a cyber risk manager collaborate with other departments to strengthen an organization's cybersecurity posture?

A Cyber Risk Manager frequently works with IT, legal, compliance, and business units to identify, assess, and mitigate cyber risks across the organization. This collaboration involves leading risk assessments, facilitating security awareness training, and ensuring that cybersecurity policies align with business objectives. Regular cross-department meetings and incident response simulations are common, fostering a shared responsibility for cyber resilience. Effective communication and relationship-building skills are essential in this role to bridge technical and non-technical teams.

What is the difference between Cyber Risk Manager vs Cybersecurity Analyst?

AspectCyber Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability testing
Employer & Industry UsageFinancial, healthcare, large enterprisesIT departments, security firms, corporate environments

The Cyber Risk Manager focuses on identifying, assessing, and mitigating organizational cyber risks through strategic planning and policy development. In contrast, the Cybersecurity Analyst primarily monitors security systems, responds to incidents, and tests vulnerabilities. Both roles require certifications like CISSP, but their daily tasks and focus areas differ significantly, with the manager taking a broader, strategic approach and the analyst handling operational security tasks.

What are the key skills and qualifications needed to thrive as a cyber risk manager, and why are they important?

To thrive as a Cyber Risk Manager, you need a solid background in information security, risk assessment, and compliance, often supported by a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), GRC tools, and relevant certifications like CISSP or CISM is typically required. Excellent analytical thinking, communication, and leadership skills set top performers apart in this role. These skills are crucial for identifying risks, implementing effective controls, and ensuring the organization’s digital assets remain secure and compliant.
What job categories do people searching Cyber Risk Manager jobs in Toronto, ON look for? The top searched job categories for Cyber Risk Manager jobs in Toronto, ON are:
Infographic showing various Cyber Risk Manager job openings in Toronto, ON as of August 2026, with employment types broken down into 1% As Needed, 78% Full Time, 20% Part Time, and 1% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution.

Director, Operational Risk Management

Ontario Teachers

Toronto, ON

Full-time

Retirement

Re-posted 14 days ago


Job description

The opportunity

The Director, Operational Risk Management is a senior leader accountable for leading, and embedding Ontario Teachers' enterprise-wide operational risk management and resilience program. This role provides independent oversight and challenge on how operational risks are identified, assessed, and managed across the organization in order to strengthen decision-making, improve resilience, and protect enterprise value.

This is a unique opportunity to build and mature a critical second-line function with visibility to senior leadership and the Board, influencing how the organization understands and manages operational risk end-to-end.

Who you'll work with

This role sits within the Enterprise & Operational Risk Management function and works closely with senior leaders across Investments, Technology, Member Services, Finance, Legal, Compliance, and Corporate Affairs. The Director engages regularly with senior leaders to provide independent oversight, challenge, and guidance, while fostering strong partnerships in order to embed risk practices into business activities. The role also collaborates with enterprise risk and other risk partners in order to deliver an integrated and forward-looking view of risk, with regular interaction supporting executive committees and Board-level reporting.

What you'll do

  • Leads the implementation, and continuous enhancement of the operational risk management framework in order to establish consistent, enterprise-wide practices for identifying, assessing, managing, and reporting operational risks.

  • Accountable for the end-to-end operational risk program, including governance, processes, and reporting, in order to provide a cohesive and integrated view of operational risk across the organization.

  • Provides independent second-line oversight and constructive challenge to business areas to ensure risks are appropriately identified, assessed, and managed across critical operations, technology, cyber, data, and third-party environments.

  • Leads the identification, aggregation, and analysis of operational risk trends and root causes across the enterprise, generates actionable insights and helps drive remediation and continuous improvement.

  • Oversees operational risk event analysis, including the ORM team's involvement in root cause assessments and lessons learned, to strengthen controls, address systemic issues, and enhance operational resilience.

  • Develops and delivers clear, insight-driven risk reporting and insights to senior management, executive committees, and the Board in order to inform risk appetite discussions and decision-making.

  • Contributes to enterprise risk strategy, taxonomy, assessments, and risk appetite considerations with a focus on operational risk and resilience in order to ensure alignment with the broader enterprise risk management program.

  • Partners with the Enterprise Risk Management team to deliver an integrated enterprise risk profile that provides a comprehensive and forward-looking view of risks across the organization.

  • Engages with operational risk committees to provide expert guidance, influence risk practices, and support effective governance.

  • Acts as a trusted advisor to senior stakeholders, balancing independent challenge with collaboration in order to strengthen risk-informed decision making while maintaining second-line independence.

  • Advances operational resilience practices in coordination and alignment with the business continuity function, in order to enhance the organization's ability to respond to and recover from disruptions.

  • Leverages risk frameworks, data, and technology solutions to enhance the effectiveness, efficiency, and scalability of risk oversight activities

  • Provides leadership within the Enterprise & Operational Risk Management function, including building, coaching, and developing a high-performing and collaborative team.

  • Sets team priorities in consultation with senior leaders, allocates resources, and builds capability to support delivery of enterprise risk objectives.

  • Provides indirect leadership and influence across the organization, guiding senior stakeholders and risk committees to embed consistent risk management practices and strengthen risk culture.

  • Leads the development of operational risk frameworks, methodologies, and processes to ensure consistent and effective risk management practices across the organization.

  • Determines approaches to risk assessment, stakeholder engagement, and program execution, while escalating key risk insights and recommendations to senior leadership and governance committees as appropriate.

  • Decisions made in this role influence enterprise risk posture, the effectiveness of controls, and the quality of information provided to executive leadership and the Board.

What you'll need

  • Undergraduate degree in business, finance, accounting, technology, engineering, or a related field

  • Graduate degree and/or professional risk, finance or accounting designation considered an asset

  • Deep understanding of operational risk, operational resilience, and governance frameworks

  • Strong knowledge of technology, cyber, data, and third-party risks

  • Knowledge of enterprise risk management practices and risk integration

  • 10+ years of progressively senior experience in risk management within financial services or asset management environments

  • Demonstrated experience building or evolving operational risk or resilience programs and frameworks

  • Experience engaging with senior leadership and contributing to executive and Board-level reporting

  • Proven ability to balance independent challenge with constructive partnership

What we're offering

  • Numerous opportunities for professional growth and development

  • Comprehensive employer paid benefits coverage

  • Retirement income through a defined benefit pension plan

  • The opportunity to invest back into the fund through our Deferred Incentive Program

  • A flexible work environment combining in office collaboration and remote working

  • Competitive time off

  • Our Flexible Travel Program gives you the option to work abroad in another region/country for up to a month each year

  • Employee discount programs including Edvantage and Perkopolis

At Ontario Teachers', diversity is one of our core strengths. We take pride in ensuring that the people we hire and the culture we create, reflect and embrace diversity of thought, background and experience. Through our Diversity, Equity and Inclusion strategy and our Employee Resource Groups (ERGs), we celebrate diversity and foster inclusion through events for colleagues to connect for professional development, networking & mentoring. We are building an inclusive and equitable workplace where our talent is respected, accepted and empowered to be themselves. To learn more about our commitment to Diversity, Equity and Inclusion, check out Life at Teachers'.

How to apply

Are you ready to pursue new challenges and take your career to the next level? Apply today! You may be invited to complete a pre-recorded digital interview as part of your application.

Accommodations are available upon request (peopleandculture@otpp.com) for candidates with a disability taking part in the recruitment process and once hired.

Candidates must be legally entitled to work in the country where this role is located.

Ontario Teachers' may use AI-based tools to assist in screening and assessing applicants for this position. These tools may help us identify candidates whose skills and experience align with Ontario Teachers' objectives by analyzing information provided in resumes and applications. Our use of AI does not replace human decision-making.

To learn more about how Teachers' uses AI with your personal information, please visit our Privacy Centre.

Functional Areas:

Risk

Vacancy:

Current

Requisition ID:

7093#LI-RM1