Infrastructure Program Manager
The role involves managing IT risk and security programs with a focus on risk assessment, control evaluation, and regulatory compliance. The manager will implement risk mitigation strategies and oversee security governance across various information system domains.
- Hybrid
- Toronto, ON
- Posted Aug 14, 2026
- Apply by Sep 13, 2026
- 1 position
More jobs you can apply to directly
Similar opportunities posted by employers hiring on Jobs.ca, with no external application form.
Job summary
IT Program Manager – 3 (Security Manager) Location Address: 40 King Street W 11th Floor – onsite 3x/week Contract Duration: 1 year Possibility of extension and conversion to FTE Number of Positions: 3 Schedule Hours: 9am-5pm Monday-Friday; standard 37.5 hrs/week (Possible OT) Candidate Requirements/Must Have Skills: 1. 5+ years of experience as a Program manager with IT risk management (e.g. Logical Access, Data Leakage, Disaster Recovery) 2. 5+ years of experience or equivalent expertise in technology risk management, information security, or a related field, with a focus on risk assessment and control evaluation 3. Demonstrated expertise in regulatory compliance, risk management frameworks, and industry best practices (e.g., NIST, ISO, FFIEC, GDPR) 4. Proficiency in data security, risk management & controls, security governance, data analytics, and analytical thinking, with a track record of implementing effective risk mitigation strategies 5. 2+ years of experience in IT Audit (eg. Application controls, pervasive controls, issue management) Nice-To-Have Skills: -Experience with Cybersecurity Risk Management -FI experience (experience in big 4 consulting firms) -Industry certifications (e.g. CISSP, CISA, CISM, CRISC) -Advanced knowledge of relevant regulatory rules (OSFI, FFIEC, NYDFS 500) and frameworks (COBIT) Education: post-secondary degree/diploma in Computer Science, Computer Engineering, or related field Best VS. Average Candidate: • Strong understanding of IT risk management frameworks in a global banking environment. • Able to convey complex concepts and ideas on issues requiring interpretation and opinion. • Maintain in-depth knowledge of cyber and IT risks and controls across various information system architecture and engineering domains, such as data protection, application security, identity and access management, vulnerability management, change management, network security, endpoint security, logging and monitoring, and incident management. Stay actively engaged in the industry on the latest in cyber risk and emerging operational risks. Candidate Review & Selection 1-2 rounds 1st – HM + Director – 45 mins – in-person (40 king street, 11th floor, meet candidates in lobby) -IT risk/issue management assessment will be given during the interview (not a take home assignment) 2nd – HM + Director – 30 mins – MS Teams Video Regards, Deepthi R Sr. Technical Recruiter 647-254-0803 [email protected]
What you’ll do
The role involves managing IT risk and security programs with a focus on risk assessment, control evaluation, and regulatory compliance. The manager will implement risk mitigation strategies and oversee security governance across various information system domains.
Requirements
Requires 5+ years of experience in IT risk management and information security, along with 2+ years of IT Audit experience. A post-secondary degree in Computer Science or Engineering and expertise in frameworks like NIST, ISO, and GDPR are required.
Other relevant skills
Identified from the job description. Confirm important requirements above.
- IT Risk Management
- Information Security
- Regulatory Compliance
- Risk Assessment
- Control Evaluation
- IT Audit
- Security Governance
- Data Analytics
- NIST
- ISO
- FFIEC
- GDPR
- Data Security
- Risk Mitigation
- Issue Management
- Program Management
Job areas
- Technology
- Security & Safety
- Management & Leadership
- Finance & Accounting
- Consulting
Additional details
- Minimum education
- Bachelor’s degree
- Minimum experience
- 5+ years
- Apply by
- Sep 13, 2026
- Posting language
- English
- Working hours
- 38 hours per week
- Office presence
- 3 days per week
- Seniority
- Mid-Senior level
- Application method
- Direct apply is available