
Manager, Information Risk Management
Manulife
full-time
Posted on:
Location Type: Hybrid
Location: Halifax • Canada
Visit company websiteExplore more
Salary
💰 CA$113,000 - CA$163,000 per year
Tech Stack
About the role
- Lead Line 2 oversight activities across technology, cyber, data, AI, cloud, and emerging technology domains
- Perform oversight and challenge on complex RCSAs, thematic reviews, technology change assessments, and targeted risk deep dives
- Provide expert review and challenge of Line 1 control documentation in areas such as cloud security, IAM, data protection, infrastructure, resilience, and disaster recovery
- Oversee and validate the quality of risk assessments, evidence, and remediation commitments provided by Line 1 partners
- Monitor and escalate significant issues, risk exceptions, control gaps, and corrective action plans
- Review reportable events, including security incidents, operational disruptions, and third-party risks, ensuring accurate classification and effective remediation
- Develop and deliver high-quality risk reporting, dashboards, and insights for senior leadership, risk committees, and governance forums
- Maintain and enhance oversight processes, documentation, templates, and guidance materials to support a consistent risk practice
- Identify opportunities to uplift risk maturity, streamline processes, and strengthen the effectiveness of IRM oversight
- Contribute to the development of policies, standards, and methodologies in collaboration with Standards Governance, Technology Risk, Operational Risk, Privacy, and Compliance
- Represent IRM in cross-functional forums, working groups, and strategic initiatives
Requirements
- 5–7+ years of experience in technology risk, cybersecurity, IT audit, or related domains
- Bachelor’s degree in computer science, computer engineering, IT Security, or a related field or equivalent experience
- Strong knowledge of cloud, IAM, cyber operations, resilience, infrastructure, or data protection concepts
- Experience leading oversight reviews of RCSAs, control testing programs, complex risk assessments, or thematic reviews
- Strong capability in analyzing technical risks and presenting them in business-relevant terms
- Demonstrated ability to engage and influence senior stakeholders across Technology, Cyber, and Risk teams
- Strong written and verbal communication skills & detail-oriented with strong organizational skills
- Proactive, adaptable, and able to operate effectively in a dynamic and maturing risk environment
- Strong communication skills, clear, concise risk messaging for senior leaders
- Bilingualism (English and French) is an asset
Benefits
- Health insurance
- Dental
- Mental health
- Vision
- Short- and long-term disability
- Life and AD&D insurance coverage
- Adoption/surrogacy benefits
- Wellness benefits
- Employee/family assistance plans
- Retirement savings plans (including pension)
- Global share ownership plan with employer matching contributions
- Financial education and counseling resources
- Generous paid time off program (holidays, vacation, personal, and sick days)
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
technology riskcybersecurityIT auditcloud securityIAMdata protectionrisk assessmentscontrol testingrisk reportingdisaster recovery
Soft Skills
analytical skillsstakeholder engagementinfluencewritten communicationverbal communicationorganizational skillsproactiveadaptabilitydetail-orientedrisk messaging