Cyber Security Risk and Controls Manager at Eqbank

Eqbank logo
Eqbank

Cyber Security Risk and Controls Manager

ca flag
Canada

Hybrid

Full Time

#Information Security

#Risk

#Risk Management

#Security Compliance

#Cloud Security

Eqbank is looking for a Cyber Security Risk and Controls Manager

Sign up to unlock quick summaries and profile fit assessments

Join a Challenger
Being a traditional bank just isn’t our thing, so we challenge ourselves to get creative in providing innovative banking solutions for Canadians.
How do we get there? With a talented team of inquisitive and agile challengers that break through the status quo. So, if you’re passionate about redefining the future of banking—while having fun—this could be your next big opportunity.
Our company continues to grow, and today we serve more than 670,000 people across Canada through Equitable Bank, Canada's Challenger Bank™, and have been around for more than 50 years. Equitable Bank's wholly-owned subsidiary, Concentra Bank, supports credit unions across Canada that serve more than six million members. Together we have over $125 billion in combined assets under management and administration, with a clear mandate to drive change in Canadian banking to enrich people's lives. Our customers have named our EQ Bank digital platform (eqbank.ca) one of the top banks in Canada on the Forbes World's Best Banks list since 2021. 

The Work
 
The Cyber Security Risk & Controls Manager is responsible for developing, implementing, and enhancing the bank’s information security risk management framework, with a specific focus on control assurance, cyber risk assessments, with a particular focus on third-party (vendor) risk management. 
This role serves as a subject matter expert (SME) for security risk across business units, technologies, and third-party engagements, helping to protect the organization against emerging cyber threats while enabling business resilience and regulatory compliance. 

The Core Responsibilities!
  • Manage & lead the identification, assessment, and management of cyber and information security risks across the organization. 
  • Own and lead the third-party cyber risk assessments, including onboarding assessments, projects, contract reviews, continuous monitoring, and breach response coordination. 
  • Perform security risk assessments of new or existing services, applications, technologies and vendors. Documents and effectively communicates findings to key stakeholders. 
  • Conduct project consulting on assessment of risk, definition of required controls, appropriateness of implemented control procedures, vulnerability assessments, and any other relevant areas for existing services and third-party vendors. 
  • Partner with Procurement, Legal, and Business Units to embed security requirements into onboarding and vendor lifecycle processes. 
  • Support internal and external audits, regulatory exams, and compliance reviews, ensuring timely evidence collection and response. 
  • Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to both current and emerging technology/security threats against the bank. 
  • Maintain a third-party risk scoring model and threat intelligence integration to proactively identify and mitigate supplier risks. 
  • Oversee the cyber risk register, KRI metrics ensuring risks are accurately captured, monitored, and reported to senior management. 


  • Let's Talk About You!
  • Bachelor’s or Master’s degree in Cybersecurity, Information Technology, Risk Management, or related field. 
  • At least eight (8) years of information security and information risk experience.  
  • At least four (5) years of third-party risk management experience (including hands-on experience conducting third party risk assessments) 
  • Understanding of Cloud Shared responsibility models and risk mitigation approach/techniques. 
  • Experience in performing organization-wide/entity security risk assessments or audits is required. 
  • Understanding and experience with security compliance frameworks such as PCI DSS, BSIMM, Cloud Security Alliance, NIST, ISO 27K series is required. 
  • Understanding of Canadian Financial industry regulations relevant to third-party security and privacy expectations E.g. OSFI, OPC 
  • The following certifications are preferred: CCSP, CCSK, CISM, CISSP, CISA, or CRISC. 
  • Experience working in a banking or financial services environment is an asset. 


  • What we offer [For full-time permanent roles]
     
    💰 Competitive discretionary bonus 
    ✨ Market leading RRSP match program
    🩺  Medical, dental, vision, life, and disability benefits
    📝  Employee Share Purchase Plan
    👶🏽 Maternity/Parental top-up while you care for your little one
    🏝 Generous vacation policy and personal days 
    🖥  Virtual events to connect with your fellow colleagues
    🎓  Annual professional development allowance and a comprehensive Career Development program
    💛  A fulfilling opportunity to join one of the top FinTechs and help create a new kind of banking experience
    The incumbent will be working hybrid and in office time will be spent working from Equitable Bank’s additional office space located at 2200-25 Ontario Street, Toronto, ON.
      
    Equitable Bank is deeply committed to inclusion. Our organization is stronger and our employees thrive when we honour and celebrate everyone’s diverse experiences and perspectives. In tandem with that commitment, we support and encourage our staff to grow not just in their career path, but personally as well. 
    We commit to providing a barrier-free recruitment process and work environment for all applicants. Please let us know of any accommodations needed so that you can bring your best self to the application process and beyond. All candidates considered for hire must successfully pass a criminal background check and credit check to qualify for hire. While we appreciate your interest in applying, an Equitable recruiter will only contact leading candidates whose skills and qualifications closely match the requirements of the position.
     
    We can’t wait to get to know you! 
    Eqbank logo

    Eqbank

    11 views

    0 applied
    Visit Eqbank
    Share this job
    Copy Permalink
    Open roles at Eqbank
    Eqbank logo
    Eqbank

    Executive Assistant

    ca flag
    Canada

    Hybrid

    Full Time

    #Human Resources

    #Calendar Management

    #Coordination

    #Communication

    #Support

    #Document Management

    #Microsoft Office

    #Collaboration

    #Organizational Skills

    #Bilingualism

    Eqbank logo
    Eqbank

    Associate Manager Lifecycle Marketing

    ca flag
    Canada

    Hybrid

    Full Time

    #Marketing

    #Lifecycle Marketing

    #CRM Software

    #Customer Insights

    #Creative Briefs

    #Data Analysis

    Eqbank logo
    Eqbank

    Manager, Cyber Resilience and Offensive Security

    ca flag
    Canada

    Hybrid

    Full Time

    #Information Security

    #Security

    #Penetration Testing

    #Framework

    #Security Automation

    Eqbank logo
    Eqbank

    Manager, Network Engineering & Operations

    ca flag
    Canada

    Hybrid

    Full Time

    #Technology

    #Cisco Meraki

    #Cisco

    #Fortinet

    #Microsoft Azure

    #ITIL

    Eqbank logo
    Eqbank

    ITSM Operations Analyst

    ca flag
    Canada

    Hybrid

    Full Time

    #Technology

    #ITIL

    #ServiceNow

    #Jira

    #Confluence

    #Power BI

    Eqbank logo
    Eqbank

    Senior Programmatic Specialist

    ca flag
    Canada

    Hybrid

    Full Time

    #Marketing

    #Digital Marketing

    #Programmatic Advertising

    #Management

    #Analytical Skills

    #Communication Skills

    Eqbank logo
    Eqbank

    Associate Principal Application Architect

    ca flag
    Canada

    Hybrid

    Full Time

    #Technology

    #Architecture

    #RESTful

    #SOA

    #SOAP

    #Event Driven Architecture

    #Cloud

    #Caching

    #Search

    #Banking

    #NoSQL

    Eqbank logo
    Eqbank

    Copywriter

    ca flag
    Canada

    Hybrid

    Full Time

    #Marketing

    #Digital

    #Space

    #Copywriting

    #Microsoft Office

    #Figma

    #Creative

    #Email Marketing

    Eqbank logo
    Eqbank

    Copywriter

    ca flag
    Canada

    Hybrid

    Full Time

    #Marketing

    #Banking

    #Fintech

    #Copywriting

    #Microsoft Office

    #Figma

    #Email Marketing

    #Creative

    Eqbank logo
    Eqbank

    Copywriter

    ca flag
    Canada

    Hybrid

    Full Time

    #Marketing

    #Copywriting

    #Microsoft Office

    #Figma

    #Email Marketing

    #Creative

    Discover similar jobs
    Quest Resource LLC logo
    Quest Resource LLC

    Project Manager

    Remote

    Full Time

    #Project Management

    #Scheduling

    #Budget Management

    #Design

    #Risk Management

    #Procurement

    #Coordination

    #Quality Control

    #Client Communication

    Tebra logo
    Tebra

    Security Architect

    179k - 204k USD

    Remote

    Full Time

    #Security

    #Cloud Security

    #Healthcare

    #Cloudflare

    #GCP

    #Kubernetes

    #Terraform

    #Python

    #DevSecOps

    #Vertex AI

    #BigQuery

    #Helm

    #Workato

    ETGroup logo
    ETGroup

    Audio Visual Project Manager

    Remote

    Full Time

    #Technology

    #Audio

    #Project Management

    #Risk Management

    #Management

    #Financial Management

    #Solutions

    #Change Management

    #Communication

    #Project Planning

    #Documentation

    B
    Boxxe Group

    Project Manager

    Remote

    Full Time

    #Project Management

    #IT

    #Professional Services

    #Waterfall

    #PRINCE2

    #Project Planning

    #Stakeholder Management

    #Risk Management

    #Jira

    #Trello

    #ITIL

    #MS Office

    Planned Parenthood Federation of America logo
    Planned Parenthood Federation of America

    Associate Director, Information Security Engineer

    Remote

    Full Time

    #Information Security

    #Security Operations

    #SIEM

    #Splunk

    #Security Monitoring

    #Vulnerability Assessment

    #Incident Response

    #SIEM Administration

    #Windows Server

    #Firewalls

    #Networking

    Mission Lane logo
    Mission Lane

    Head of Information Security

    216k - 240k USD

    Remote

    Full Time

    #Information Security

    #Fintech

    #Cybersecurity

    #Risk Management

    #Cloud Security

    #AWS

    #GCP

    #SIEM

    #DevSecOps

    #Incident Response

    #PCI DSS

    #ISO 27001

    TerrySootManagementGroup logo
    TerrySootManagementGroup

    Team Lead

    Remote

    Full Time

    #Project Management

    #Data

    #Team Leadership

    #Team Management

    #Performance Monitoring

    #Quality Control

    #Cost Management

    #Risk Management

    #Communication

    #Coordination

    #Scheduling

    Finom logo
    Finom

    Credit Risk Manager

    Remote

    Full Time

    #Risk Management

    #Credit Risk

    #Lending

    #Underwriting

    #Risk

    #Monitoring

    #Data Strategy

    #Regulatory Compliance

    Sword Health logo
    Sword Health

    Governance, Risk & Compliance Analyst

    pt flag
    Portugal

    Remote

    Full Time

    #Information Security

    #Healthcare Technology

    #Compliance

    #ISO 27001

    #SOC 2

    #GDPR

    #HIPAA

    #Risk Management

    #Leadership

    #AI

    Keyrock logo
    Keyrock

    VP Product Capital Markets

    Remote

    Full Time

    #Capital Markets

    #Digital Assets

    #Product Management

    #Risk Management

    #DeFi

    #Web3

    #Stakeholder Management

    #Regulatory Compliance

    #Trading

    #APIs

    #Smart Contracts

    COINS logo
    COINS

    Chief Compliance Officer

    Remote

    Full Time

    #Compliance

    #Crypto

    #Strategy

    #Regulatory Compliance

    #Stakeholder Management

    #Risk Management

    #Financial Services

    #Leadership

    GOAT Group logo
    GOAT Group

    IT Service Desk Engineer

    us flag
    United States

    81k - 101k USD

    On-site

    Full Time

    #IT

    #Freshservice

    #Identity Management

    #SaaS

    #Procurement

    #Risk Management

    Swave logo
    Swave

    Senior Project Manager Technical

    be flag
    Belgium

    Hybrid

    Full Time

    #Project Management

    #Coordination

    #Risk Management

    #Jira

    Mytigate logo
    Mytigate

    Senior Frontend Developer

    Remote

    Full Time

    #Engineering

    #Compliance

    #Risk Management

    #Frontend Development

    #Vue

    #Unit Testing

    #End To End Testing

    #Software Development

    Velaa Private Island Maldives logo
    Velaa Private Island Maldives

    Senior Construction Supervisor

    mv flag
    Maldives

    On-site

    Full Time

    #Engineering

    #Management

    #Scheduling

    #Coordination

    #Procurement

    #Contract Management

    #Risk

    #Quality Control

    #Team Leadership

    T
    THE ICONIC

    Director of Security

    au flag
    Australia

    Hybrid

    Full Time

    #Security

    #E Commerce

    #Retail

    #Risk Management

    #Incident Response

    #Vulnerability Assessment

    #Compliance

    #Cloud Security

    #Application Security

    #DevSecOps

    Pacifico Energy Group logo
    Pacifico Energy Group

    Senior Mechanical Project Engineer

    us flag
    United States

    On-site

    Full Time

    #Engineering

    #Compliance

    #Mechanical Engineering

    #Contract Management

    #Risk Management

    #Performance Testing

    LetsGetChecked logo
    LetsGetChecked

    Director of Governance Risk and Compliance

    ie flag
    Ireland

    90k - 90k USD

    Hybrid

    Full Time

    #Healthcare

    #Diagnostics

    #Compliance

    #HITRUST

    #ISO 27001

    #HIPAA

    #Risk Management

    #Audit Management

    #Automation

    #Communication

    #Risk

    Travoom logo
    Travoom

    Senior Engineer

    Remote

    Full Time

    #Engineering

    #Blockchain

    #Chain

    #Smart Contracts

    #Oracle

    #Risk Management

    #Crypto Wallets

    #KYC

    #AML

    #Compliance

    L
    Lightspark

    Senior Security Engineer

    us flag
    United States

    On-site

    Full Time

    #Engineering

    #Cryptocurrency

    #Security

    #Secure Coding

    #Auditing

    #Infrastructure Security

    #Risk Management

    #Blockchain

    #Python

    #Java

    #Linux Security

    #Cloud Security

    Your dream job awaits.

    Explore exciting opportunities, connect with top employers, and ignite your career.