1

Technology Risk Management Jobs in Ontario (NOW HIRING)

The Senior IT Auditor works closely with business, technology, risk management, compliance, and internal audit stakeholders to identify control gaps, assess technology and cyber risks, and support ...

IT Third party risk management. * Business continuity and disaster recovery * Cloud security * Data ... Operational experience with Canadian or US regulations for technology risk, e.g. OSFI B13, E21, etc.

Manager, Cyber & Technology Risk

Toronto, ON ยท On-site

CA$79K - CA$131K/yr

What youu2019ll do Reporting to the AVP, Cyber & Technology Risk, and working closely with key stakeholders across Enterprise Risk Management, Cybersecurity, IT, Privacy and other key Business Units ...

Manager, Cyber & Technology Risk

Toronto, ON ยท On-site

CA$79K - CA$131K/yr

What youu2019ll do Reporting to the AVP, Cyber & Technology Risk, and working closely with key stakeholders across Enterprise Risk Management, Cybersecurity, IT, Privacy and other key Business Units ...

Engagement risk management: quality assurance through file review, engagement planning, development and monitoring, engagement profitability - Simultaneously deliver multiple client engagements of ...

next page

Showing results 1-20

Technology Risk Management information

See Ontario salary details

$28.5K

$112.1K

$177K

How much do technology risk management jobs pay per year?

As of Jun 29, 2026, the average yearly pay for technology risk management in Ontario is $112,141.00, according to ZipRecruiter salary data. Most workers in this role earn between $88,000.00 and $135,000.00 per year, depending on experience, location, and employer.

What is a Technology Risk Management job?

A Technology Risk Management job involves identifying, assessing, and mitigating risks related to an organization's technology infrastructure, systems, and data. Professionals in this field develop policies, ensure compliance with regulatory requirements, and implement security controls to protect against cyber threats and operational failures. They collaborate with IT, security, and business teams to address vulnerabilities and enhance resilience. The role requires knowledge of risk assessment frameworks, regulatory standards, and emerging technology risks.

What are the key skills and qualifications needed to thrive in the Technology Risk Management position, and why are they important?

To excel in Technology Risk Management, you need a background in information security, risk assessment, and regulatory compliance, often supported by a relevant degree and experience in IT or cybersecurity. Familiarity with risk management frameworks (such as NIST or ISO 27001), governance, risk and compliance (GRC) tools, and certifications like CISA, CISSP, or CRISC are highly valued. Strong analytical thinking, communication skills, and the ability to influence and collaborate across departments are vital soft skills for this role. These competencies are crucial to effectively identify, mitigate, and communicate technology risks, helping organizations manage threats while ensuring business continuity and compliance.

What does technology risk management do?

Technology risk management involves identifying, assessing, and mitigating risks related to information technology systems and infrastructure. Professionals in this field develop strategies to protect data, ensure compliance, and reduce the impact of cyber threats, often using tools like risk assessments and security frameworks. It requires knowledge of cybersecurity, IT controls, and industry standards such as ISO 27001 or NIST.

What is the highest paying risk management job?

In risk management, senior roles such as Chief Risk Officer (CRO) or Director of Risk typically have the highest salaries, often exceeding six figures annually. These positions require extensive experience, advanced certifications like FRM or CRM, and strong leadership skills within financial, insurance, or corporate environments.

Is risk management a good career?

Risk management is a valuable career path, especially in fields like technology risk management where professionals identify and mitigate cybersecurity threats, compliance issues, and operational risks. It often requires certifications such as CRISC or CISSP and involves analytical skills, attention to detail, and understanding of industry standards. The demand for risk management professionals is growing as organizations prioritize security and regulatory compliance.

What are the typical daily responsibilities for someone working in Technology Risk Management?

Professionals in Technology Risk Management are typically responsible for identifying and assessing potential technology-related risks, developing policies and controls to mitigate those risks, and monitoring compliance with internal and external regulations. Their day-to-day activities often include conducting risk assessments, coordinating with IT teams on security initiatives, preparing reports for senior management, and responding to incidents or audit findings. Collaboration with various departments such as IT, compliance, and business units is frequent to ensure comprehensive risk oversight. This role requires staying up-to-date on emerging threats and evolving regulatory requirements to proactively manage the organization's risk posture.

How much do technology risk consultants make?

Technology risk consultants typically earn between $70,000 and $130,000 annually, depending on experience, location, and certifications such as CISSP or CISA. Senior consultants or those in high-demand areas can earn higher salaries, often exceeding $150,000 with bonuses and benefits included.
What are popular job titles related to Technology Risk Management jobs in Ontario? For Technology Risk Management jobs in Ontario, the most frequently searched job titles are:
What job categories do people searching Technology Risk Management jobs in Ontario look for? The top searched job categories for Technology Risk Management jobs in Ontario are:
What cities in Ontario are hiring for Technology Risk Management jobs? Cities in Ontario with the most Technology Risk Management job openings:
Infographic showing various Technology Risk Management job openings in Ontario as of June 2026, with employment types broken down into 84% Full Time, 15% Part Time, and 1% Temporary. Highlights an 85% Physical, 3% Hybrid, and 12% Remote job distribution, with an average salary of $112,141 per year, or $53.9 per hour.

Manager, Technology Risk and Controls

The Canada Life Assurance Company

Toronto, ON โ€ข On-site

CA$124K - CA$155K/yr

Other

Medical, Dental, Life, Retirement

Posted 13 days ago


Key responsibilities

  • Own and deliver portfolio-level risk profiles by consolidating risk and security insights across assets, initiatives, and key domains.

  • Develop and maintain standardized, executive-ready risk reporting, including KRIs/KPIs, thematic risk views, issue trends, policy exceptions, and control health indicators.

  • Drive end-to-end governance of portfolio risk reporting, ensuring data quality, integrity, and consistency across inputs from multiple stakeholders and process owners.


Job description

Permanent Full Timeย 

-

We are seeking a Manager, Technology Risk & Controls, to lead governance, monitoring, and reporting across assigned Technology portfolios. This role focuses on developing actionable risk and security insights through structured risk profiling.ย 

Reporting to the Director, this first line (1B) role acts as a trusted advisor, translating complex risk data into clear, actionable insights that inform senior leadership decisions, support business objectives, and strengthen the organization's Information Security & Technology Risk (ISTR) posture.ย 

Key responsibilities include, but are not limited to:ย 

  • Own and deliver portfolio-levelย riskย profiles byย consolidatingย risk and security insights across assets, initiatives, and key domains, including Cyber/Information Security,ย Technologyย Operations, andย Technologyย Delivery.ย 

  • Develop andย maintainย standardized, executive-ready risk reporting, including KRIs/KPIs, thematic risk views, issue trends,ย policy exceptions,ย and control health indicators.ย 

  • Drive end-to-end governance of portfolio risk reporting, ensuring data quality, integrity, and consistency across inputs from multiple stakeholders and process owners.ย 

  • Partner with technology process owners, data owners, and delivery teams to ensureย timely,ย accurate, and complete inputs into risk reporting.ย 

  • Act as a central coordination point across Technology, ISTR, Audit, and second line ofย defenseย (2LOD) functions, ensuring alignment and a consistentย riskย narrative.ย 

  • Engage with 2LOD oversight functions to incorporate independent challenge and regulatory expectations into reporting outputs.ย 

  • Collaborate with SMEs across CIO and CISO organizations to align risk reporting with enterprise priorities and emerging risk themes.ย 

  • Present portfolio risk posture, key themes, and emerging risks to senior leadership,ย demonstratingย strong executive presence and influencing decision-making.ย 

  • Provide effective review and challenge of risk inputs (e.g., issues, audit findings, control statements) to ensure accuracy and completeness in executive reporting.ย 

  • Continuously enhance reporting capabilities through automation, visualization, and improved storytelling.ย 

  • Promote a transparent, risk-aware culture by improving visibility and understanding of technology andย informationย security risks.ย 

  • Assistย withย internal policy risk assessments to ensure compliance with standards and regulations.ย 

  • Assistย withย internal,ย externalย andย regulatory audit responses, including stakeholder engagement and evidence collectionย 

What You Will Bring:

  • 8-10 years of experience in financial services or another regulated industry.ย 

  • 8-10 years of progressive experience in technology risk, information security, regulatory compliance, or IT governance.ย 

  • 3-5+ yearsย ofย leadership experience (preferred).ย 

  • Bachelor's degree in computer science, Information Systems, Engineering, orย relatedย field, or equivalent experience.ย 

  • Strong understanding of technology risk,ย informationย security, Enterprise Risk Managementย framework, and regulatory requirements (e.g., OSFI, CIRO), as well as industry standards (COBIT, NIST, ISO, SOC 2).ย 

  • Proven ability to analyze and translateย risksย in a business context.ย 

  • Demonstrated continuous improvement mindset.ย 

  • Excellent written and verbal communication skills.ย 

  • Strong stakeholder management skills, with the ability to influence and build consensus.ย 

  • Intellectual curiosity and commitment to ongoing learning in technology and risk governance.ย 

  • Understanding ofย large enterprise operating models in regulated environments.ย 

  • Understandingย PowerBIย and automation tools or platformsย would be an asset.ย 

  • Preferred certifications: CISA, CRISC, CISM, or CISSP.ย 

  • Experience with GRC tools (e.g., ServiceNow IRM, MetricStream).ย 

-

The base salary for this position is between $124,300- $155,300 annually. This represents base salary only and does not represent other variable compensation components of our total compensation ( i.e. annual bonus, commission etc). If you are selected to move forward in our recruitment process, your recruiter will be able to discuss additional details of our total rewards program with you.

Career opportunities will be open a minimum of 5 business days from the date of posting, closing dates will vary depending on the search activity. All applications received will be reviewed on a rolling basis.

Grow with Canada Lifeย 

We'reย united by a shared purpose: to improve the financial,ย physicalย and mental well-beingย of Canadians. Our company is trusted by 1 in 3 Canadians and contributes to the strength of communities across the country.ย ย 

We'reย looking for people who live our values everyday: we step up, we do the right thing, and we deliver - for our customers,ย communitiesย and each other.ย Are you someone who always strives to do the right thing, who steps up for themselves and others, and who delivers with impact? Then we want to hear from you!ย 

What we offer:ย ย 

We're committed to supporting our employees through every stage of their career. Here's what you can expect as a full-time or part-time permanent team member:ย 

  • Career Development: Opportunities for career advancement, access to industry-leading learning programs and up to$2,000 annuallyย towardsย education reimbursement.ย 
  • Health & Wellness:Flexible health and dental benefits,ย plus a $5,000 mental health benefit to support your well-being.ย 
  • Time Off:In addition to regular vacation andย personal days,ย we support communityย involvement with aย volunteer day.ย 
  • Financial Security:Company-matching pension plan,share ownership program andย additionalinvestment options.ย 
  • Rewards and Recognition:ย Employee recognition programs, service milestone celebrations, employee discounts and more!ย ย 
  • Emphasis onย Community:ย We provide aย workplace whereย employeesย feel connected and supported throughย Employee Resource Groups (ERGs),ย mentorshipย programs,ย socialย clubsย andย events.ย ย 

Learn moreย aboutย Canada Life.ย ย 

We'reย committed to removing barriers and ensuring equal access to employment. Applicants requiring reasonable accommodation during the application process may contactย ย talentacquisitioncanada@canadalife.com. All information provided will be handledย in accordance withย applicable laws and Canada Life policies. ย 

Canada Lifewould like to thank all applicants, however only those who qualify for an interview will be contacted.ย 

#LI-Hybridย