Remotery

Manager, Technology Governance – Controls

atManulifeCA flagCanadaFull-timeRiskMid-levelSenior$113k – $163k/year

Posted May 9

This is a fully remote position, open to applicants in Canada.

📋 Description

• Conduct information risk assessments in accordance with global methodologies, policies, and standards for both new and existing tools, technologies, and business sectors.

• Suggest new or improved security controls to enhance overall enterprise security.

• Work alongside developers, engineers, and support teams to implement and automate security controls, including cloud and container security within CI/CD pipelines.

• Execute and maintain Risk and Control Self-Assessments (RCSAs) by assessing control design and effectiveness, identifying gaps or emerging risks, and collaborating with Subject Matter Experts (SMEs) on remediation and documentation updates.

• Create and support corrective action plans for essential controls or measures where deficiencies are identified.

• Collaborate with ETS cloud, architecture, IT Asset Management, Infrastructure, Line 2, and control owners to ensure the effective execution of risk processes and alignment with enterprise governance standards.

• Partner with Line 3 Audit and SMEs to gather and validate evidence, coordinate audit responses, challenge findings, and monitor deliverables throughout the audit lifecycle.

• Oversee, manage, and enhance the organizational technology risk management program, including reporting the program status and key risk metrics.

• Review and keep current knowledge of Information Risk Standards and Technology Risk Policies.


⛳️ Requirements

• A minimum of 5 years of progressive experience in Technology Risk, Information Security, or IT Infrastructure/Architecture.

• Strong understanding of cybersecurity and technology risk domains, including risk assessment, incident response, network security, cloud security, and regulatory expectations.

• Familiarity with regulatory and industry frameworks such as OSFI B-13, NIST CSF, ISO 27001, CIS Controls, SOC 1/SOC 2, and Cyber/Tech Risk Management practices.

• Practical experience with platforms like Archer, Jira, Confluence, and ServiceNow.

• Strong understanding of cloud environments, with Azure required and AWS as a plus.

• A university degree in Computer Science, IT, Risk Management, or a related field; professional certifications (CISSP, CISA, CRISC, CISM) are preferred.


🏝️ Benefits

• Health insurance

• Dental insurance

• Mental health support

• Vision insurance

• Short- and long-term disability insurance

• Life and AD&D insurance coverage

• Adoption/surrogacy benefits

• Wellness benefits

• Employee/family assistance plans

• Retirement savings plans including pension and employer matching contributions

• Financial education and counseling resources

• Generous paid time off program including holidays and personal days

People also viewed

CVS Health2 hours ago

Lead Director, SOX/SOC1 Audit Governance, Quality Controls

US flagIdaho, +2 more statesFull-timeRisk$100k – $231.5k/year
ApplyView job
QAD2 hours ago

Principal Analyst, Pricing Governance – Operations

US flagFlorida OnlyFull-timeRisk$130k – $140k/year
ApplyView job
Fintel3 hours ago

Business Risk Consultant

GB flagUnited Kingdom OnlyFull-timeRisk
ApplyView job
Leega3 hours ago

Data Governance Analyst – Mid-level

BR flagBrazil OnlyFull-timeRisk
ApplyView job
Seneca Holdings3 hours ago

IT Governance Analyst

US flagUnited States OnlyFull-timeRisk
ApplyView job
krisenchat4 hours ago

Midlevel Risk Manager

DE flagGermany OnlyPart-timeRisk€3,800/month
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers