Skip to main content
Post your resume and find your next job on Indeed!

Cisa jobs in Toronto, ON

Sort by: -
    • Job Type & Duration:* Permanent Full Time.
    • To support the Manager of Risk Management Centre of Excellence and the Chief Information Security Officer (CISO) in…
    • Ideal Candidate Rate: CAD 40-45/Hr (Depending on the experience).
    • 3 to 5+ years of experience in IT Audit, IT Risk, IT Compliance, Internal Audit, or a related…
    • Vacancy Type: Full-time Permanent.
    • Division and Department Information and Technology Services (ITS).
    • Ability to participate in inclusive employee-led networks…
    • Provide Technology Risk solutions including PCAOB integrated audit support, SOX/ICFR IT controls testing, SOC audits, IT internal audits, IT external audits,…
    • View all MNP jobs - Toronto jobs - IT Auditor jobs in Toronto, ON
    • Salary Search: Consultant, Enterprise Risk - IT Audit salaries in Toronto, ON
    • See popular questions & answers about MNP
    • Conducts Application Audits to critically assess management and internal control processes, approving the nature, extent and timing of the audit, its execution…
    • Employment Type: Permanent, Full Time.
    • Reports Into: Audit Committee, with day-to-day reporting to the Chief Financial Officer and Chief Technology Officer.
    • Chartwell Retirement Residences is seeking a Security Architect to join the Information Security team as a senior technical leader.
    • The Senior Internal Auditor is responsible for planning, executing, and reporting on operational, compliance, financial, IT, and advisory engagements.
    • The Senior Manager, Compliance Testing, Corporate Functions contributes to the overall success of the Global Compliance Testing program, with a focus on…
    • The Senior Manager, Compliance Testing, Corporate Functions contributes to the overall success of the Global Compliance Testing program, with a focus on…
    • We are looking for a Senior OT Cybersecurity & Network Security Analyst to help improve cybersecurity visibility, governance, and controls across our…
    • As the 3rd Line of Defense, Internal Audit provides enterprise-wide, independent, and objective assurance over the design and operations of the Bank’s internal…
    • As the 3rd Line of Defense, Internal Audit provides enterprise-wide, independent, and objective assurance over the design and operations of the Bank’s internal…
    • This role will work closely with IT, Information Security, Operations and Internal Audit teams to assess and strengthen IT controls, cybersecurity practices,…
    • As the 3rd Line of Defense, Internal Audit provides enterprise-wide, independent, and objective assurance over the design and operations of the Bank’s internal…
Get email updates for the latest Cisa jobs in Toronto, ON

By creating a job alert, you agree to our Terms . You can change your consent settings at any time by unsubscribing or as detailed in our terms.

People also searched:

it audit

Career Resources:

Job Post Details

Senior Specialist Risk Management - job post

The Employment Solution
55 John Street, Toronto, ON
$126,000–$176,140 a year - Permanent

Job details

Pay

  • $126,000–$176,140 a year

Job type

  • Permanent

Shift and schedule

  • Monday to Friday

Location

55 John Street, Toronto, ON

Full job description

Division: Toronto Cyber Security

Job Type & Duration: Permanent Full Time

Salary: $126,000 to $176,140

Location: 55 John Street, Toronto

Shift Information: Monday to Friday, 35 Hours per Week

Number of Positions Open: 1

JOB SUMMARY:

To support the Manager of Risk Management Centre of Excellence and the Chief Information Security Officer (CISO) in maintaining a City-wide cyber security program that enhances protection across the organization.

To provide strategic cyber risk management expertise by identifying, assessing, and mitigating enterprise-wide risks across City divisions, agencies, and corporations.

To lead the development and execution of governance, risk, and compliance (GRC) frameworks, ensuring alignment with regulatory requirements, industry best practices, and corporate policies.

To oversee risk remediation planning, monitor compliance initiatives, and provide guidance to senior leadership on risk-related decisions to enhance the organization’s overall risk posture.

MAJOR RESPONSIBILITIES:

· Oversees risk remediation plans, ensuring timely implementation of mitigation strategies in collaboration with stakeholders.

· Drives the governance, risk, and compliance (GRC) program by developing policies, frameworks, and controls to manage enterprise risks effectively.

· Provides expert guidance on regulatory compliance, internal controls, and risk mitigation strategies to support business objectives.

· Monitors emerging risks, industry trends, and regulatory changes to proactively adjust risk management strategies.

· Prepares risk reports, dashboards, and presentations for executive leadership, identifying key risk exposures and recommended actions.

· Develops and delivers training programs to enhance risk awareness and promote a risk-conscious culture across the organization.

· Collaborates with senior leaders and cross-functional teams to integrate risk management into strategic planning and decision-making.

QUALIFICATIONS/CERTIFICATIONS:

· Post-secondary degree in Business or Technology or a related discipline.

· Over six years of experience in Risk Management primarily focused on cyber risk management.

· Extensive knowledge of elements of risk, including vulnerability, threat, likelihood, impact, mitigation, and remediation

· Extensive expertise in Information Security or Governance, Risk & Compliance (GRC).

· Extensive experience in conducting third-party assessments, especially on small and medium-sized service providers.

· Must have extensive experience in a Soc 2 Type II report and SOC 27001 Certification

· Experience in conducting PCI assessments or preparing an organization for PCI audits

· Must have experience developing and implementing cyber policies and standards across an enterprise.

· Must have experience conducting risk assessments based on NIST cyber security framework and related standards.

· Preferred Certifications (at least two in the list): CISSP, CISA, CISM, CRISC

SKILLS:

· Excellent written & verbal communication skills (comfortable & confident communicating at all levels including business partners, leadership and vendors).

· A creative, critical, and strategic thinker.

· Ability to assess communications gaps and opportunities and to develop new content strategies that deliver on business objectives.

· Ability to create content, toolkits and awareness materials that support the success of transformative divisional programs.

· Ability to lead efficient communication between all project stakeholders, including internal divisional teams, corporate partners, clients and external partners.

· Ability to achieve business objectives through influencing and effectively working with key stakeholders.

· Excellent written & verbal communication skills (comfortable & confident communicating at all levels including business partners, leadership and vendors.

· Excellent problem-solving skills with capability to identify solutions to unusual and complex problems.

· Keen attention to detail and strong organizational skills.

· Highly organized, proactive, self-motivated team player who takes initiative and is able to work independently.

· Ability to work in a fast-paced environment, managing multiple priorities with proven time management skills.

· Strong analytical skills with the ability to prioritise and multitask.

· Ability to prioritize and effectively manage competing priorities and projects.

· Ability to manage multiple initiatives while adhering to strict deadlines.

· Able to work extremely well under pressure while maintaining a high level of professionalism

· Self-motivated person with desire to go above and beyond required tasks.

· Transferable skills, including business transformation and decision-making, are equally important.Being able to think on your feet and show good judgment are especially valuable in this field. Professionals in cyber security must be able to react quicky and strategically to cyber-related incidents.

ADDITIONAL COMMENTS/INFORMATION:

A normal work week is 35 hours, however, unforeseen situation may require extended hours of work with little or no prior notice. In case of a cyber incident or breach, rotation shift, continuous extended hours may be required with little or no prior notice.

*Subject to a police check, background check, psychological assessment and/or any other checks on a regular basis as the Toronto Cyber Security handles highly sensitive and confidential information.

Equity, Diversity and Inclusion

The City is an equal opportunity employer, dedicated to creating a workplace culture of inclusiveness that reflects the diverse residents that we serve. Learn more about the City’s commitment to employment equity.

ACCOMODATION

The City of Toronto is committed to creating an accessible and inclusive organization. We are committed to providing barrier-free and accessible employment practices in compliance with the Accessibility for Ontarians with Disabilities Act (AODA). Should you require Code-protected accommodation through any stage of the recruitment process, please make them known when contacted and we will work with you to meet your needs. Disability-related accommodation during the application process is available upon request. Learn more about the City’s Hiring Policies and Accommodation Process.

Work Location: In person

Let Employers Find YouUpload Your Resume