1

It Risk Manager Jobs in Ontario (NOW HIRING)

Ensure that IT Risk assessments and outputs are recorded in enterprise tools and in full compliance of all policies and common standards, including the IT Risk Management Policy and Framework.

Access Management * IT governance reviews * IT Third party risk management. * Business continuity and disaster recovery * Cloud security * Data governance assessments and reviews * ERP controls and ...

Our IT Risk Services team is growing and we are looking for Senior Manager to join our team in Toronto. The Technology Risk Consulting practice provides a variety of services to our clients. The ...

The Technology Risk Consulting practice provides a variety of services to our clients. The ... Access Management * IT governance reviews * IT Third party risk management. * Business continuity ...

Identify gaps and improvements in support of IT Governance and overall corporate risk management IT Process & Governance Management * Lead the establishment and maintenance of IT Governance ...

next page

Showing results 1-20

It Risk Manager information

See Ontario salary details

$45

$67

$98

How much do it risk manager jobs pay per hour?

As of Jun 12, 2026, the average hourly pay for it risk manager in Ontario is $67.31, according to ZipRecruiter salary data. Most workers in this role earn between $55.29 and $75.00 per hour, depending on experience, location, and employer.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

Do risk managers make good money?

Risk managers typically earn competitive salaries that vary based on experience, industry, and location. According to industry data, median annual pay ranges from $80,000 to over $130,000, with higher earnings possible for those with certifications like FRM or CRM and extensive experience. They often work in corporate environments, analyzing and mitigating financial, operational, or cybersecurity risks.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

How much does a risk manager get paid?

Risk managers typically earn a median annual salary of around $100,000, with salaries ranging from approximately $70,000 to over $150,000 depending on experience, industry, and location. Professionals often hold certifications like CRM or FRM and work in finance, insurance, or corporate sectors.

Are risk managers in high demand?

Risk managers are in high demand across various industries due to increasing concerns about cybersecurity, compliance, and operational risks. Employers seek professionals with skills in risk assessment, mitigation strategies, and certifications like FRM or CRM, making it a growing field with strong job prospects.

What is the role of IT risk manager?

An IT risk manager is responsible for identifying, assessing, and mitigating information technology risks within an organization. They develop security policies, implement controls, and ensure compliance with industry standards to protect digital assets and infrastructure. Strong knowledge of cybersecurity, risk management frameworks, and relevant certifications like CISSP or CISM are often required.
What job categories do people searching It Risk Manager jobs in Ontario look for? The top searched job categories for It Risk Manager jobs in Ontario are:
What cities in Ontario are hiring for It Risk Manager jobs? Cities in Ontario with the most It Risk Manager job openings:
IT Risk Manager

IT Risk Manager

Scotiabank

Toronto, ON โ€ข On-site

Other

Medical, Dental, Vision, Retirement, PTO

Posted 28 days ago


Job description

Requisition ID: 259895ย 
Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.

ย 
The role:

Contributes to the overall success of the IT Risk team (1B role) ensuring specific individual goals, plans, initiatives are executed / delivered in support of the team's business strategies and objectives. ย Ensures all activities conducted are in compliance with governing regulations, internal policies and procedures.

What will you do?

Key accountabilities (Risk)


ย  ย Advises and supports risk owners in day to day risk management activities and execution
ย  ย Acts as a primary interface and conduit between the risk owners and other risk groups to lead the facilitation and execution of risk management activities.
ย  ย Identifies, assesses, prioritizes and reports on material IT risks for IT and aligned business areas. This will require working with equivalent risk advisors in various business areas.
ย  ย Assists risk owners in adhering to policies, frameworks, standards and guidelines through active engagement, guidance and counselling.
ย  ย Monitor and track issues raised by Internal Audit and Regulators, assist issue owners to ensure remediation is completed within pre-defined timelines and risk is addressed appropriately. ย 
ย  ย Respond to requests for information technology assessments and questionnaires, providing information technology related responses within required time.
ย  ย Ensure that IT Risk assessments and outputs are recorded in enterprise tools and in full compliance of all policies and common standards, including the IT Risk Management Policy and Framework.
ย  ย Partners with other risk groups to assess, implement and communicate new/updated risk controls, frameworks, policies, risk indicators, metrics, and limits.
ย  ย Monitor IT risk KPIs and KRIs within established tolerance. ย Providing escalation to ensure timely remediation.
ย  ย Identify pervasive IT risk issues or issues that are common across the landscape.
ย  ย Perform various types of data analysis work and prepare monthly / quarterly reporting for senior management. ย 
ย  ย Ensures implementation of a strong IT risk culture in partnership with the risk owners.


Key accountabilities (General)


ย  ย Champions a customer focused culture to deepen client relationships and leverage broader Bank relationships, systems and knowledge.
ย  ย Understand how the Bank's risk appetite and risk culture should be considered in day-to-day activities and decisions.
ย  ย Creates an environment to pursues effective and efficient operations of his/her respective areas in accordance with Scotiabank's Values, its Code of Conduct and the Global Sales Principles, while ensuring the adequacy, adherence to and effectiveness of day-to-day business controls to meet obligations with respect to operational, compliance, AML/ATF/sanctions and conduct risk.ย 

What do you need to succeed?
ย 

ย  ย Breadth of IT and Risk management experience (governance, operations, audit, control functions, compliance, risk management) over 5+ years with at least 2 years' in management (3+ preferred)
ย  ย Familiarity with industry frameworks, and Financial Banking Regulations (NIST CSF, FFIEC IT Handbooks, OSFI B-13, CSA CCM, TOGAF, ArchiMate)
ย  ย Technical strong and can easily engage with Security, Engineering and Architecture teams to assess risks.
ย  ย A strong ability to leverage collaboration through successful leverage of tools such as Microsoft Teams, JIRA and ServiceNow to manage collaborative workflow.
ย  ย Good communication (both verbal and written), facilitation and presentation skills. The ability to communicate confidently and clearly on conference calls, in meetings, via email, etc. at all levels of the organization is essential.
ย  ย Performance and results oriented skills.
ย  ย Strong organizational skills and the ability to effectively manage multiple tasks simultaneously
ย  ย Capability of working in a complex and fast paced environment


Nice to Have
ย  ย MBA, Degree in Computer Science, Engineering, or equivalent experience.ย 
ย  ย CISA, CRISC, CGEIT, CISM is a plus
ย  ย Exposure to cloud controls would be an asset.
Experience managing initiatives within risk appetites and established KPIs or KRIs and creativity in issue resolution or management.


What's in it for you?
We have an inclusive and collaborative working environment that encourages creativity and curiosity and celebrates success
ย  ย We provide you with the tools and technology needed to create meaningful customer experiences
ย  ย You'll get to work with and learn from diverse industry leaders, who have hailed from top technology companies around the world
ย  ย We hire you for your talent - not just a job - so you can grow with us. We'll equip you for success not only in your role, but also in your career as a whole
ย  ย Dress codes don't apply here: being comfortable does
ย  ย Access to thousands of online and in-person courses so you can hone your current skills, or learn new ones
ย  ย A competitive rewards package that includes a base salary, a performance bonus, company matching programs on pension and profit sharing, paid vacation, personal & sick days, medical, vision, and dental and much more

Location(s): ย Canada : Ontario : Torontoย 
Scotiabank is a leading bank in the Americas. Guided by our purpose: "for every future", we help our customers, their families and their communities achieve success through a broad range of advice, products and services, including personal and commercial banking, wealth management and private banking, corporate and investment banking, and capital markets.ย ย 
At Scotiabank, we value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. If you require accommodation (including, but not limited to, an accessible interview site, alternate format documents, ASL Interpreter, or Assistive Technology) during the recruitment and selection process, please let ourย  Recruitment team know. If you require technical assistance, please click here. Candidates must apply directly online to be considered for this role. We thank all applicants for their interest in a career at Scotiabank; however, only those candidates who are selected for an interview will be contacted.