1

Technology Risk Manager Jobs in Toronto, ON (NOW HIRING)

Job Summary The Senior Analyst, Technology Risk supports the organization's Technology Risk and ... Other responsibilities as assigned by management Qualifications * Minimum of 3 years of progressive ...

Cybersecurity, Vulnerability Management, Global Risk Management, Audit, Compliance, Portfolio Management. * Ensure that IT Risk assessment analysis and results are maintained in enterprise tools and ...

Overview As the Risk Manager (for a domestic new nuclear opportunity) you oversee and execute the ... We connect people, data and technology to transform the world's infrastructure and energy systems.

Cyber and Technology Risk Management * Third Party Cyber Risk Management * Cyber Strategy, Governance, and Delivery * Delivery Excellence: * Oversee multidisciplinary teams delivering cyber programs ...

Manulife is seeking an experienced Manager, Technology & Cyber Risk Standards Governance to drive consistent, scalable, and effective risk management standards and practices across the enterprise.

New

... Manager to join our team in Toronto ... The Technology Risk Consulting practice provides a variety of services to our clients. The ...

next page

Showing results 1-20

Technology Risk Manager information

See Toronto, ON salary details

$27.7K

$113.1K

$190.4K

How much do technology risk manager jobs pay per year?

As of May 29, 2026, the average yearly pay for technology risk manager in Toronto, ON is $113,056.00, according to ZipRecruiter salary data. Most workers in this role earn between $84,459.00 and $136,947.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Technology Risk Manager, and why are they important?

To thrive as a Technology Risk Manager, you need expertise in risk assessment, cybersecurity principles, and regulatory compliance, often supported by a degree in information security or related fields. Familiarity with risk management frameworks (such as NIST or ISO 27001), GRC (governance, risk, and compliance) tools, and certifications like CISM or CISSP are typically required. Strong analytical thinking, communication, and stakeholder management skills help you translate technical risks into business terms and coordinate mitigation efforts. These abilities are critical to proactively identifying threats and ensuring organizational resilience against evolving technology risks.

What are some common challenges Technology Risk Managers face when working across different departments?

Technology Risk Managers often encounter challenges in aligning risk management strategies with the priorities of various business units. Departments may have differing levels of risk tolerance, technical understanding, and resource availability, which can make establishing consistent policies and controls difficult. Success in the role relies on strong communication and negotiation skills, as well as the ability to educate stakeholders about the importance of risk mitigation while balancing business objectives. Building collaborative relationships and maintaining flexibility are key to overcoming these cross-departmental challenges.

What are Technology Risk Managers?

Technology Risk Managers are professionals responsible for identifying, assessing, and mitigating risks associated with information technology systems and processes within an organization. They ensure that IT operations comply with regulations and best practices while safeguarding data and technology assets from threats such as cyberattacks, data breaches, and system failures. Their work involves developing risk management strategies, conducting risk assessments, and collaborating with other departments to ensure the organization's technology infrastructure is secure and resilient.

What is the difference between Technology Risk Manager vs Cybersecurity Analyst?

AspectTechnology Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISACISSP, CEH, Security+
Work EnvironmentRisk assessment, policy development, complianceMonitoring security threats, incident response, vulnerability analysis
Industry UsageFinancial, healthcare, technology firmsIT security teams, government agencies, corporations

The Technology Risk Manager focuses on identifying and mitigating overall technology risks and ensuring compliance, while the Cybersecurity Analyst concentrates on protecting systems from security threats and responding to incidents. Both roles require similar certifications and often work within the same industries, but their core responsibilities differ in scope and focus.

What cities near Toronto, ON are hiring for Technology Risk Manager jobs? Cities near Toronto, ON with the most Technology Risk Manager job openings:
Infographic showing various Technology Risk Manager job openings in Toronto, ON as of May 2026, with employment types broken down into 1% As Needed, 91% Full Time, 5% Part Time, and 3% Contract. Highlights an 89% Physical, 2% Hybrid, and 9% Remote job distribution, with an average salary of $113,056 per year, or $54.4 per hour.

AI Risk Officer Manager

BMO Capital Markets

Toronto, ON โ€ข On-site

Full-time

Medical, Life, Retirement

Posted 8 days ago


Job description

Application Deadline:

05/31/2026

Address:

100 King Street West

Job Family Group:

Audit, Risk & Compliance

Oversees, monitors, and reports on information and technology risks for a designated portfolio. Develops and monitors the risk management and governance framework and practices leveraged across BMO to manage information and technology risks. Develops and monitors adherence to policies, standards, methodologies, and controls that increase transparency, accuracy, and consistency across groups. Works with stakeholders to implement the methodology, metrics, and program standards for the assigned portfolio to ensure compliance, effective monitoring, timely reporting, and identify action plans.

  • Acts as a trusted advisor to assigned business/group.
  • Guides/assists in the identification and classification of issues; recommends action plans.
  • Influences and negotiates to achieve business objectives.
  • Recommends and implements solutions based on analysis of issues and implications for the business.
  • Assists in the development of strategic plans.
  • Identifies emerging issues and trends to inform decision-making.
  • Researches existing or emerging requirements and related best practices to develop recommendations for changes/enhancements.
  • Independently assesses the information and technology risk profile (e.g. exposures, material initiatives, systems issues or weaknesses in the control structure) for the assigned portfolio.
  • Assists with the interpretation of new or changing regulations and assesses impacts to governance frameworks.
  • Helps determine business priorities and best sequence for execution of business/group strategy.
  • Conducts independent analysis and assessment to resolve strategic issues.
  • Leads the development and maintenance of the governance system and framework.
  • Ensures alignment between stakeholders.
  • Represents the risk program / governance structure during internal/external regulatory audits and/or examinations.
  • Breaks down strategic problems, and analyses data and information to provide insights and recommendations.
  • Coordinates the management of databases; ensures alignment and integration of data in adherence with data governance standards.
  • Builds change management plans of varying scope and type; leads or participates in a variety of change management activities including readiness assessments, planning, stakeholder management, execution, evaluation and sustainment of initiatives.
  • Leads or participates in defining the communication plan designed to positively influence or change behaviour; develops tailored messaging; and identifies appropriate distribution channels.
  • Assesses education and training needs to develop and deliver training.
  • Leads and integrates the monitoring, measurement, and reporting on the status of the information and technology risk governance program to internal and external stakeholders.
  • Leads the management of governance meetings and maintenance of governing body mandates, oversight, and approval guidelines.
  • May provide specialized support for other internal and external regulatory requirements.
  • Provides input into the planning and implementation of ongoing operational programs in support of the information and technology risk framework.
  • Leads/participates in the design, implementation and management of core business/group processes.
  • Administers and maintains technology and information security and management risk program activities adhering to applicable policies, procedures, and established processes.
  • Reviews new business initiatives and monitors existing initiatives to identify potential risk situations/ impacts; makes recommendations or escalates as per guidelines.
  • Identifies potential risk situations / impacts and makes recommendations or escalates.
  • Provides advice and guidance to assigned business/group on implementation of the risk framework, including effective challenge.
  • Coordinates and participates in the execution of oversight/governance activities including reporting; assessment of education & training needs, development/delivery of training; development and execution of regulatory administration processes & procedures.
  • Consults with stakeholders to improve consistency and transparency of risk measurement, metrics and reporting.
  • Supports the development and maintenance of the governance system and framework including supporting policy/standard/operating procedures lifecycle management, education and training assessments.
  • Builds effective relationships with internal/external stakeholders e.g. business stakeholders and corporate support areas to provide second line of defense information and technology risk management support.
  • Manages databases and provides support for analysis, forecasting and/or data visualization, ensuring adherence with data governance standards.
  • Analyzes data and information to provide insights and recommendations; includes identification of risk impacts for new processes and workflows related to initiatives.
  • Maintains tools and templates for information and technology risk programs and standards e.g. Risk Control Self Assessment (RCSA), Sarbanes-Oxley (SOX), business continuity planning standards and policies for internal and third-party solution development.
  • Develops and maintains in-depth knowledge of business and related risk management requirements and legislative/ regulatory directives and guidance.
  • Builds effective relationships with internal/external stakeholders.
  • Analyzes data and information to provide insights and recommendations.
  • Focus is primarily on business/group within BMO; may have broader, enterprise-wide focus.
  • Provides specialized consulting, analytical and technical support.
  • Exercises judgment to identify, diagnose, and solve problems within given rules.
  • Works independently and regularly handles non-routine situations.
  • Broader work or accountabilities may be assigned as needed.

    Qualifications:

  • Typically between 5 - 7 years of relevant experience and post-secondary degree in related field of study or an equivalent combination of education and experience.
  • Degree in Information Technology, Computer Science, Business Administration, or related field of study preferred.
  • Completion of a Security related certification preferred (e.g. CISSP, CISA, CISM, GIAC).
  • In-depth knowledge of information and technology risk management practices.
  • In-depth knowledge of the designated business / product portfolio.
  • In-depth knowledge of regulatory requirements.
  • In-depth knowledge of quantitative techniques and economic capital methodologies.
  • In-depth knowledge and experience with risk policy frameworks; quality control / testing frameworks.
  • Deep knowledge and technical proficiency gained through extensive education and business experience.
  • Verbal & written communication skills - In-depth.
  • Collaboration & team skills - In-depth.
  • Analytical and problem solving skills - In-depth.
  • Influence skills - In-depth.
  • Data driven decision making - In-depth.

Salary:

$75,900.00 - $141,900.00

Pay Type:

Salaried

The above represents BMO Financial Group's pay range and type.

Salaries will vary based on factors such as location, skills, experience, education, and qualifications for the role, and may include a commission structure. Salaries for part-time roles will be pro-rated based on number of hours regularly worked. For commission roles, the salary listed above represents BMO Financial Group's expected target for the first year in this position.

BMO Financial Group's total compensation package will vary based on the pay type of the position and may include performance-based incentives, discretionary bonuses, as well as other perks and rewards. BMO also offers health insurance, tuition reimbursement, accident and life insurance, and retirement savings plans. To view more details of our benefits, please visit:https://jobs.bmo.com/global/en/Total-Rewards

About Us

At BMO we are driven by a shared Purpose: Boldly Grow the Good in business and life. It calls on us to create lasting, positive change for our customers, our communities and our people. By working together, innovating and pushing boundaries, we transform lives and businesses, and power economic growth around the world.

As a member of the BMO team you are valued, respected and heard, and you have more ways to grow and make an impact. We strive to help you make an impact from day one - for yourself and our customers. We'll support you with the tools and resources you need to reach new milestones, as you help our customers reach theirs. From in-depth training and coaching, to manager support and network-building opportunities, we'll help you gain valuable experience, and broaden your skillset.

To find out more visit us at https://jobs.bmo.com/ca/en.

BMO is committed to an inclusive, equitable and accessible workplace. By learning from each other's differences, we gain strength through our people and our perspectives. Accommodations are available on request for candidates taking part in all aspects of the selection process. To request accommodation, please contact your recruiter.

Note to Recruiters: BMO does not accept unsolicited resumes from any source other than directly from a candidate. Any unsolicited resumes sent to BMO, directly or indirectly, will be considered BMO property. BMO will not pay a fee for any placement resulting from the receipt of an unsolicited resume. A recruiting agency must first have a valid, written and fully executed agency agreement contract for service to submit resumes.