You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to current heights.
At Sun
Life, we're driven by our Purpose: helping our Clients achieve lifetime financial security and live healthier lives. When you join Sun Life, you'll work with passionate colleagues and empowering leaders who support your growth and celebrate your contributions, so you can make a meaningful difference in our Clients' lives. Discover how you can make a difference in the lives of individuals, families and communities around the world.
Reporting to the Director, Security Advisory Services, the Information Security Advisor will assist business units with risk assessment and compliance matters as it relates to Information Security.
The Information Security
Advisor will conduct information security risk assessments on initiatives, third-party suppliers/external vendors, applications, perform security contract reviews, advise on security best practices, and review emerging security strategies.
The Information Security
Advisor interacts with various Sun Life business groups and teams, including but not limited to, Business, Architecture, Infrastructure, Legal, Compliance and Risk, and Privacy teams.
Provide support to Sun Life Business Groups through conducting information security risk assessments, reviewing contracts to ensure inclusion of security requirements, performing supplier/third-party risk assessments, and advising on security best practices.
Assess initiatives/projects to ensure implementation controls align with Sun Life Information Security policies and directive requirements.
Provide security consulting to ensure appropriate security controls and security best practices are in place to safeguard and protect Sun Life confidential information from intentional or accidental disclosure, modification, or destruction, and improve overall security.
Provide reporting to management team on status of information security risk assessments, identified risks, and current work activities.
Provide preliminary recommendations to the management team on information security related risks.
Track and manage open information security risks to ensure corresponding risk remediation plans and target dates are in place.
Work with respective business and/or technology risk owner to ensure risk remediation.
University degree or college diploma in Computer Science, Engineering, Information Technology, Information Security and Risk Management or comparable professional education/training in a field relevant to IT Security management
Minimum of at least 5 years experience in Information Security and Information Technology (IT)
In-depth knowledge of information security and IT principles, protocols, practices, and industry standards
Experience conducting information security risk assessments, including of cloud-based (SaaS) technologies, e.g. AWS and Azure
Strong understanding of existing and emerging information security technologies
Strong communication and negotiation skills with senior staff and executives
Excellent report writing skills
Familiarity with contract wording and interpretation of security clauses
Must be able to work and communicate with various business groups from a non-technical perspective and interpret technical context into common business language
Self-starter, can work with minimum supervision, strategic thinker, negotiator and consensus builder
Professional designation relating to Information Security, e.g., In addition to a law enforcement inquiry and a credit check, as part of your application,
the Government of Canada will ask if you lived or travelled outside of Canada for 6-consecutive months during the last 5 years, and you must account for all activities during this time. The opportunity to move along a variety of career paths with amazing networking potential.
As a hybrid organization, you and your leader use business and Client needs to choose where you work, at home or in the office.
In addition to Base Pay, eligible Sun Life employees participate in various incentive plans, payment under which is discretionary and subject to individual and company performance.
Diversity and inclusion have always been at the core of our values at Sun Life.
A diverse workforce with wide perspectives and creative ideas benefits our Clients, the communities where we operate and all of us as colleagues.
Persons with disabilities who need accommodation in the application process, or those needing job postings in an alternative format, may e-mail a request to
[email protected] are proud to be a hybrid organization that offers our employees the choice and flexibility to work from both the office and virtually based on the needs of the business, our Clients and you.
We may use artificial intelligence to support candidate sourcing, screening, interview scheduling.
Job Category: IT - Technology Services
Posting End Date: 26/08/2026
Our supportive, versatile, and inclusive work setting is one where you – and your career – can thrive. Whatever your aspirations, collaborative leaders and colleagues are ready to help you learn, grow, and succeed. Our purpose is to help Clients achieve lifetime financial security and live healthier lives. As part of Sun Life’s growing team, you have an impact on people in your community and around the world. Use data to drive bold actions. Be agile and pivot as we test and learn.
At Sun
Life, we’re driving transformation, sustainability and innovation for our Clients, employees, partners, and communities.
📌 Information Security Analyst - Remote (Toronto)
🏢 Sun Life Financial
📍 Toronto