WHAT IS THE OPPORTUNITY?In this role you will manage the day-to-day operations and effectiveness of security-related programs and initiatives; assessing the costs associated with potential threats and solutions required to eliminate or minimize threats. You will apply extensive, in-depth knowledge, skills, and practices to perform complex assignments. This will require reviewing of risk-related standards, policies and regulations both internally and regional. You will also be responsible for the completion of regulatory risk reporting.Job DescriptionIn this role you will manage the day-to-day operations and effectiveness of security-related programs and initiatives; assessing the costs associated with potential threats and solutions required to eliminate or minimize threats. You will apply extensive, in-depth knowledge, skills, and practices to perform complex assignments. This will require reviewing of risk-related standards, policies and regulations both internally and regional. You will also be responsible for the completion of regulatory risk reporting.WHAT WILL YOU DO?Leading in the development, implementation and enforcement of organization-wide security risk assessment and control standards, policies and procedures.Monitoring and assessing business needs against security concerns and recommending necessary changes to enhance information systems security.Managing activities for IT risks control in business operations; ensuring that the server, network operations and applications are compliant with security procedures, systems, and policies.Developing training on information security risk metrics, polices, risk migration and elimination procedures for staff, coordinating with audits and suppliers on information security improvement.Establish and maintain strong working relationships across business units and segments. Collaborate with various groups to define and achieve deliverables, acting as a trusted advisor on risk and controls by liaising with 1 LoD, 2LOD, and 3LOD.Deliver risk advisory and consulting, within Investor Services Business Technology, AI and Automation programs.
Support our transformation programs and businesses on Project Risk Assessment (iITRA), Findings, Audits, KRI Compliance Monitoring, Reporting and Governance, and control activities.Strong analytical and critical thinking, supported by solid writing skills are essential for documenting and communicating work effectively. You should be able to grasp stakeholder expectations and align your communication accordingly.Ability to impact, influence and negotiate with key stakeholders in building a superior solution, and ultimately a strong stakeholder experience.WHAT DO YOU NEED TO SUCCEED?Excellent written & verbal communication skills, with the ability to convey complex technical concepts to general IT and business managersDegree level education plus a relevant qualification in risk & information systems control (e.G. CRISC) or cybersecurity (e.G. CISSP) or (e.G. CISA), Deep IT technical knowledge and experience covering: operating systems (e.G. Unix, Windows, zOS); database systems (e.G. Oracle, SQL Server, Sybase, DB2) and software security architectures; Knowledge of MS Suite of AppsPassion for technology risk management and a desire to continually develop personal and team knowledgeExperience managing multiple projects or internal service delivery, including service level management, process design and skills development planningInternal or external IT audit qualification and experience; Operational Risk ManagementNice‑to‑havePost graduate qualification in computing or cybersecurity or Information technologyFamiliarity with DevOps & Cloud concepts, processes and tooling, ORM Framework,
Audit; Access and change management processes; SOX/SOC1WHAT’S IN IT FOR YOU?A comprehensive Total Rewards Program including bonuses and flexible benefits, competitive compensation, commissions, and stock where applicableLeaders who support your development through coaching and managing opportunitiesAbility to make a difference and lasting impactWork in a agile, collaborative, progressive, and high-performing teamA world‑class training program in financial servicesOpportunity to join a diverse and inclusive team to increase the awareness of risk initiatives within RBCOpportunity to expand your limits and create a new future together at RBC#TECHPJJob SkillsBusiness Continuity and Disaster Recovery (BCDR), Business Technology, Communication, Cyber Security Management, Firewall Management, Information Security, Information Security Auditing, Information Security Operation Center (ISOC), Information Security Risk, Information System Security, IT Network Security, Operational Delivery, Problem Management, Process Management, Project Risk Assessments, Risk Assessments, Security Risk, Security Risk Assessment, Threat ManagementAdditional Job DetailsAddress: RBC CENTRE, 155 WELLINGTON ST W:TORONTOCity: TorontoCountry: CanadaWork hours/week: 37.5Employment Type: Full timePlatform: TECHNOLOGY AND OPERATIONSJob Type: RegularPay Type: SalariedPosted Date: Application Deadline: Applications will be accepted until 11:59 PM on the day prior to the application deadline date aboveAt RBC, we are guided by living shared values of Client First, Integrity, Collaboration, Respect and Excellence and winning together as One RBC. We believe an inclusive workplace that has diverse perspectives is core to our continued growth as one of the largest and most successful banks in the world. Maintaining a workplace where our employees feel supported to perform at their best, effectively collaborate, drive innovation, and grow professionally helps to bring our Purpose to life and create value for our clients and communities. RBC strives to deliver this through policies and programs intended to foster a workplace based on respect, belonging and opportunity for all.#J-18808-Ljbffr
📌 Senior Manager, Risk And Controls (Toronto)
🏢 RBC
📍 Toronto