1

Technology Risk Management Internship Jobs in Toronto, ON

Key accountabilities (Risk) Advises and supports risk owners in day to day risk management ... Respond to requests for information technology assessments and questionnaires, providing ...

Support the Director IT Risk Governance, Standards and Controls and lead the governance and ... Own and maintain the Bank's technology and cyber issues management process * Lead the design and ...

Job Summary The Senior Analyst, Technology Risk supports the organization's Technology Risk and ... Other responsibilities as assigned by management Qualifications * Minimum of 3 years of progressive ...

Cyber and Technology Risk Management * Third Party Cyber Risk Management * Cyber Strategy, Governance, and Delivery * Delivery Excellence: * Oversee multidisciplinary teams delivering cyber programs ...

Access Management * IT governance reviews * IT Third party risk management. * Business continuity and disaster recovery * Cloud security * Data governance assessments and reviews * ERP controls and ...

next page

Showing results 1-20

Technology Risk Management Internship information

What types of projects or tasks can I expect to work on during a Technology Risk Management Internship?

As a Technology Risk Management Intern, you'll typically assist with identifying, assessing, and documenting technology-related risks within the organization. Your tasks may include supporting risk assessments, helping to evaluate security controls, preparing reports for stakeholders, and participating in audits or compliance reviews. You'll likely collaborate closely with IT, cybersecurity, and compliance teams to understand risk management frameworks and learn best practices for mitigating technology risks. This hands-on experience is valuable for building a foundation in risk analysis and developing skills relevant to future roles in technology governance or information security.

What are the key skills and qualifications needed to thrive as a Technology Risk Management Intern, and why are they important?

To excel as a Technology Risk Management Intern, you need a basic understanding of information technology concepts, risk assessment, and cybersecurity principles, often supported by coursework in IT, business, or related fields. Familiarity with risk management frameworks, data analysis tools, and platforms like Excel, GRC systems, or security software is commonly required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills that help interns collaborate and clearly present risk findings. These competencies are vital for identifying, assessing, and mitigating technology risks, thereby supporting organizational security and compliance.

What is the difference between Technology Risk Management Internship vs Cybersecurity Analyst Internship?

AspectTechnology Risk Management InternshipCybersecurity Analyst Internship
Required CredentialsRelevant coursework, basic certifications (e.g., CompTIA Security+)Similar certifications, technical skills in security tools
Work EnvironmentRisk assessment, compliance, policy development in financial/tech firmsSecurity monitoring, incident response in IT/security teams
Employer & Industry UsageFinancial institutions, tech companies focusing on risk mitigationIT departments, cybersecurity firms, tech companies

Technology Risk Management Internships focus on assessing and managing technology-related risks, compliance, and policies, while Cybersecurity Analyst Internships concentrate on protecting systems from security threats. Both roles often overlap in skills and industry settings but differ in core responsibilities.

What is a Technology Risk Management Internship?

A Technology Risk Management Internship is a temporary, entry-level position where students or recent graduates assist organizations in identifying, assessing, and mitigating risks related to their technology systems and data. Interns typically work with experienced risk managers to analyze IT processes, ensure compliance with security policies, and help implement risk controls. This internship provides hands-on experience in cybersecurity, regulatory compliance, and risk analysis within a business or financial environment. It is a valuable opportunity for those interested in pursuing careers in information security, IT audit, or risk management.

What does a technology risk manager do?

A technology risk manager identifies, assesses, and mitigates risks related to information technology and cybersecurity within an organization. They develop policies, implement controls, and monitor systems to protect data and ensure compliance with industry standards. Strong analytical skills and knowledge of risk management frameworks are essential for this role.

Is a tcs internship paid?

Yes, a TCS internship is typically paid, with compensation varying based on location, internship duration, and role. Interns may also receive benefits such as training and mentorship, and the internship often involves working on real projects to develop skills in technology risk management and related tools.

What do risk management interns do?

Risk management interns assist in identifying, assessing, and mitigating potential risks to an organization's information systems and operations. They often analyze security policies, support compliance efforts, and use tools like risk assessment frameworks to help protect company assets under supervision. The role provides exposure to industry standards such as ISO 27001 and may involve developing reports or recommendations for senior staff.

What are the big 4 internships?

The Big 4 internships typically refer to internship programs at Deloitte, PricewaterhouseCoopers (PwC), Ernst & Young (EY), and KPMG. These firms offer opportunities in areas such as audit, consulting, advisory, and risk management, including roles related to technology risk management internships. They are highly competitive and often require strong academic performance and relevant skills in technology and finance.
What are the most commonly searched types of Technology Risk Management jobs in Toronto, ON? The most popular types of Technology Risk Management jobs in Toronto, ON are:
Infographic showing various Technology Risk Management Internship job openings in Toronto, ON as of June 2026, with employment types broken down into 100% Full Time. Highlights an 62% In-person, and 38% Remote job distribution.
Director, Program Management (IT Risk)

Director, Program Management (IT Risk)

Scotiabank

Toronto, ON

Other

Medical, Dental, Vision, Retirement, PTO

Posted 11 days ago


Job description

Requisition ID: 263253 
Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.

The Role


Director Program Management, reports to the Director & Head, Portfolio Management, IT Risk, supporting the Enterprise Office of the CIO within technology. This role is integral to the delivery of project and program portfolio and is accountable primarily for leading the provision of risk management guidance and oversight to Internal Audit and regulatory remediation projects.


With in-depth knowledge of Operational IT Risk and regulatory remediation experience, the Director Program Management brings a risk management mindset to Audit and regulatory remediation projects and drives increased quality of risk remediation project deliverables and achieve greater alignment with QA processes, Internal Audit and regulatory expectations.


This dynamic position provides opportunities for the ideal candidate to collaborate with cross-functional teams across the enterprise and work to deliver complex enterprise-wide initiatives as part of Scotiabank's ongoing plan to improve IT Risk Management and governance. 


What will you do?


   Risk Management Leadership: Provide risk management leadership for assigned portfolio and serve as a key advisor to executive leadership and project teams on technology risk management within IT risk remediation projects.  


   Enterprise Risk Awareness: Maintaining a thorough understanding of Scotiabank's policies and standards, internal controls and IT control testing methodologies as well as related regulatory and industry compliance standards.  Understand how the Bank's risk appetite and risk culture should be considered in day-to-day risk remediation initiatives and decisions.


   Strategic Planning: Provide strategic direction and leadership to cross-functional teams, ensuring alignment with ScotiaTech's strategic goals and business objectives, while cultivating a consistent and standardized approach to producing risk aligned audit and regulatory project deliverables.

   Project Support: Provide operational risk expertise support to regulatory projects    Provide risk management support for planning and prioritizing initiatives across portfolios that support business strategy.

  Support the remediation of regulatory and compliance gaps, including the creation and maintenance of artifacts related to regulatory compliance, such as process documentation, narratives, and metrics.

   Review remediation plans and corrective actions to ensure that they are designed to reduce risk. Verify that control deficiencies are remediated according to the remediation plans. 
  Review project deliverables and artefacts, including project closure packages to ensure they meet internal IQA standards and expectations, and adhere to industry best practices and regulatory requirements.  Provide feedback to drive alignment and compliance.
  Work with project teams throughout all phases of program and project management including planning, execution, monitoring, and closure to ensure successful delivery of expected outcomes.


   Effective Communication: Consistently interact with stakeholders to manage technology risk management expectations and deliverables within allocated project timelines and budget.


   Champion Risk Awareness: Champion the adoption of industry risk management best practices in project delivery and drive operational IT risk awareness culture.  Identify and implement continuous improvements to IT risk management practices, tools, and processes within EDO delivery and portfolio management group.


   Industry Risk Awareness: Keep abreast of external cyber security trends, technologies and cyber risk management approaches, control hygiene of the environment, and often collaborate with other teams on IT risk-related initiatives to provide subject-matter recommendations and guidance to achieve a risk posture within the organization's overall risk appetite


   Manage Priorities: Manage multiple priorities in a fast-paced environment. Identify, de-escalate, and manage actual or perceived conflict, if any, among your team or with the stakeholders. 


   Decision Making: Assess complex scenarios and use your subject matter expertise and professional judgement to make decisions with proper rationale and documentation. Support your team member during complex or tough discussions with stakeholders to achieve the desired outcome. 


   Stakeholder Engagement: Build and maintain strong relationships with key stakeholders, including business leaders, technology teams, and external partners, to ensure alignment and transparency throughout project lifecycles.


   Talent Development: Manage a team of risk management and documentation professionals, mentor and develop talent within the team, fostering a culture of growth and excellence. Build a high-performance environment and implement a people strategy that attracts, retains, develops, and motivates the team by fostering an inclusive work environment and using a coaching mindset and behaviors.  Communicate vison/values/business strategy and manage succession and development planning for the team


   Team Environment: Create an environment in which their team pursues effective and efficient operations of their respective areas in accordance with Scotiabank's Values, its Code of Conduct and the Global Sales Principles, while ensuring the adequacy, adherence to and effectiveness of day-to-day business controls to meet obligations with respect to operational, compliance, AML/ATF/sanctions and conduct risk.  

What do you need to succeed?


   Bachelor's degree in Business, Technology, Engineering or related fields, or equivalent experience.
   10+ years of experience in IT Risk Management, risk assurance, audit, or cybersecurity leadership roles, preferably in the financial services industry
   Working knowledge of key IT infrastructure, including good understanding of the risks associated with the platforms. 
   Knowledge of IT Risk frameworks, methodologies and industry standards related to IT and Cyber Risk management, including emerging trends and issues. Demonstrated expertise in a broad range of Information Security and Risk Management principles and practices. 
   Industry recognized qualifications and certifications in Information Security and/or Risk Management (CISA/CISM/CISSP /CRISC/CISSP) is a plus
   Maturity level and skill/judgment to deal effectively with senior management and operational risk groups throughout the organization. 
   Exceptional communication, negotiation, and stakeholder management skills, including strong appreciation of relationship management; 
   Strong analytical and data-driven decision-making skills, including sound problem solving, research, and quantitative skills. 
   Deadline-driven and results-oriented; able to meet consistently high-quality standards while handling a variety of tasks and deadlines simultaneously. 
   Proven ability to navigate ambiguity, drive strategic change, and influence senior stakeholders.
   Experience working across cross-functional teams and collaborating with stakeholders at all levels of the organization.
   Experience leading, design and execution of IT risk management frameworks, policies, and procedures.
   Proven ability with monitoring regulatory changes and industry trends to ensure ongoing compliance and best practices.
   7+ years managing and developing high-performing teams
   Self-discipline and organized with proven time management skills
   Ability to thrive in a fast-paced, dynamic, and changing environment
                

What's in it for you?
We have an inclusive and collaborative working environment that encourages creativity and curiosity and celebrates success
   We provide you with the tools and technology needed to create meaningful customer experiences
   You'll get to work with and learn from diverse industry leaders, who have hailed from top technology companies around the world
   We hire you for your talent - not just a job - so you can grow with us. We'll equip you for success not only in your role, but also in your career as a whole
   Dress codes don't apply here: being comfortable does
   Access to thousands of online and in-person courses so you can hone your current skills, or learn new ones
   A competitive rewards package that includes a base salary, a performance bonus, company matching programs on pension and profit sharing, paid vacation, personal & sick days, medical, vision, and dental and much more

Location(s):  Canada : Ontario : Toronto 
Scotiabank is a leading bank in the Americas. Guided by our purpose: "for every future", we help our customers, their families and their communities achieve success through a broad range of advice, products and services, including personal and commercial banking, wealth management and private banking, corporate and investment banking, and capital markets.  
At Scotiabank, we value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. If you require accommodation (including, but not limited to, an accessible interview site, alternate format documents, ASL Interpreter, or Assistive Technology) during the recruitment and selection process, please let our  Recruitment team know. If you require technical assistance, please click here. Candidates must apply directly online to be considered for this role. We thank all applicants for their interest in a career at Scotiabank; however, only those candidates who are selected for an interview will be contacted.