Cyber Security Manager

Akkodis

Toronto

Hybrid

CAD 120,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Performance-based bonuses
Defined contribution pension plan
Professional growth opportunities
24/7 virtual healthcare
Flexible hybrid work options
Employee discounts
Generous PTO

Job summary

A leading technology firm in Toronto is seeking a Senior Manager, Security Governance, Risk, and Compliance (GRC) to lead enterprise-wide security initiatives. This role involves developing GRC strategies, overseeing compliance, and fostering a security-aware culture. The ideal candidate has over 12 years of experience in information security, including leadership in large organizations. Competitive benefits include hybrid work options and professional growth opportunities.

Qualifications

  • 12+ years of experience in Information Security or Risk Management.
  • At least 5 years in a leadership role.
  • Proven ability to influence change across departments.
  • Deep understanding of regulatory compliance requirements and security frameworks (e.g., NIST, ISO27001, GDPR, PCI-DSS).
  • Hands-on experience in IAM, Cloud Security, and Network Security.
  • Proven ability to drive cross-functional initiatives and influence change across departments.
  • Relevant certifications strongly preferred: CISM, CISSP, CRISC, CISA, or similar.

Responsibilities

  • Develop and lead the security GRC strategy.
  • Oversee governance, risk, compliance, and security awareness programs.
  • Chair the Security Governance Committee.
  • Oversee the creation and maintenance of security policies, standards, and frameworks (e.g., ISO 27001, NIST, GDPR, PCI-DSS).
  • Provide guidance to ensure all applications, systems, and products are compliant with internal and external requirements.
  • Chair the Security Governance Committee and lead governance activities for enterprise security risk oversight.
  • Own and maintain the enterprise-wide security risk register, ensuring accurate documentation and effective mitigation strategies.
  • Lead and support risk assessments and threat modeling activities across platforms and products.
  • Design and execute targeted security awareness programs, including phishing simulations and mandatory training.
  • Collaborate with the incident response team to manage and review security incidents, including root cause analysis and corrective action planning.
  • Lead the planning and execution of audits such as PCI DSS, IT General Controls, and internal audits.
  • Coordinate with cross-functional teams to collect, validate, and organize audit documentation and evidence.
  • Track and report on audit progress, risks, and outstanding issues to executive leadership.
  • Maintain compliance documentation such as data flow diagrams, risk assessments, remediation logs, and system inventories.

Skills

Leadership
Risk Management
Information Security
Regulatory Compliance
Cross-functional collaboration
Security Awareness
PCI-DSS knowledge
Cross-functional collaboration

Education

Bachelor's degree in Computer Science or related field

Tools

NIST
ISO 27001
GDPR
PCI-DSS

Job description

We are seeking a Senior Manager, Security Governance, Risk, and Compliance (GRC) to lead enterprise-wide security initiatives that ensure alignment with business goals, regulatory requirements, and industry best practices.

Location: Toronto, ON (Hybrid – in-office collaboration with remote flexibility)

Reporting To: VP, Information Security

Job Type: Full-Time

Role Overview

This leadership role is accountable for overseeing governance, risk, compliance, and security awareness programs. The successful candidate will work closely with executive leadership and cross-functional teams to manage risks, establish strong security policies, and cultivate a security-aware culture across the organization.

Key Responsibilities
  • Develop and lead the security GRC strategy in alignment with business and regulatory requirements.
  • Serve as a trusted advisor to the CISO and senior leadership on all security GRC-related initiatives.
  • Build and manage a high-performing GRC team, fostering a culture of continuous learning and accountability.
  • Oversee the creation and maintenance of security policies, standards, and frameworks (e.g., ISO 27001, NIST, GDPR, PCI-DSS).
  • Provide guidance to ensure all applications, systems, and products are compliant with internal and external requirements.
  • Chair the Security Governance Committee and lead governance activities for enterprise security risk oversight.
  • Own and maintain the enterprise-wide security risk register, ensuring accurate documentation and effective mitigation strategies.
  • Lead and support risk assessments and threat modeling activities across platforms and products.
  • Design and execute targeted security awareness programs, including phishing simulations and mandatory training.
  • Collaborate with the incident response team to manage and review security incidents, including root cause analysis and corrective action planning.
  • Lead the planning and execution of audits such as PCI DSS, IT General Controls, and internal audits.
  • Coordinate with cross-functional teams (Security, IT, Legal, Operations, etc.) to collect, validate, and organize audit documentation and evidence.
  • Track and report on audit progress, risks, and outstanding issues to executive leadership.
  • Maintain compliance documentation such as data flow diagrams, risk assessments, remediation logs, and system inventories.
Qualifications & Experience
  • Bachelor's degree in Computer Science, Information Security, Risk Management, or a related field.
  • 12+ years of experience in Information Security or Risk Management, with at least 5 years in a leadership role.
  • Experience building and executing GRC strategies in large or complex organizations.
  • Deep understanding of regulatory compliance requirements and security frameworks (e.g., NIST, ISO27001, GDPR, PCI-DSS).
  • Hands-on experience in domains such as IAM, Cloud Security, and Network Security.
  • Proven ability to drive cross-functional initiatives and influence change across departments.
  • Relevant certifications strongly preferred: CISM, CISSP, CRISC, CISA, or similar.
What You’ll Gain
  • A comprehensive total rewards program including performance-based bonuses and flexible benefits from day one.
  • Access to a defined contribution pension plan, profit-sharing programs, and retirement planning support.
  • Opportunities for professional growth, including unlimited access to Coursera, mentoring programs, and internal gigs.
  • Robust wellness support, including 24/7 virtual healthcare, EFAP services, and wellness initiatives.
  • Flexible hybrid work options, including the ability to work abroad temporarily and generous paid time off programs.
  • Recognition programs, exclusive financial perks, and access to a wide range of employee discounts.

Akkodis is an equal opportunities employer and welcomes applications from all qualified candidates.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Enterprise Security Specialist
Enterprise Security Specialist

Cprvision • Whitchurch-Stouffville

Hybrid
CAD 120,000 - 135,000
Flexible working arrangements
Comprehensive benefits package
Annual bonus program
+1
Security Analyst - GRC
Security Analyst - GRC

Quantum Technology Recruiting Inc. (QTR) • Toronto

Hybrid
CAD 75,000 - 85,000
Director, Governance, Risk and Compliance (GRC)
Director, Governance, Risk and Compliance (GRC)

Momentum Financial Services Group • Toronto

Hybrid
CAD 175,000 - 190,000
Health and dental plans
Employee Assistance Program
Tuition assistance reimbursement
+2
IT Risk and Compliance Analyst
IT Risk and Compliance Analyst

Experis • Mississauga

Hybrid
CAD 70,000 - 100,000
Bonus program
Flexible hybrid work
Professional development
+1
Senior Cyber Security Analyst - GRC
Senior Cyber Security Analyst - GRC

Metro Supply Chain • Mississauga

On-site
CAD 105,000 - 125,000
Senior Manager, Technology Risk Governance & Compliance
Senior Manager, Technology Risk Governance & Compliance

Corus Entertainment • Toronto

Hybrid
CAD 85,000 - 110,000
Security & Compliance Lead
Security & Compliance Lead

Motion Recruitment • Toronto

On-site
CAD 140,000 - 170,000
Medical, Dental, and Vision Insurance
Vacation Time
Stock Options
Information Security, GRC Analyst
Information Security, GRC Analyst

Bennett Jones • Toronto

On-site
CAD 102,000 - 154,000
Senior Analyst - IT Security
Senior Analyst - IT Security

EECOL Electric • Calgary

On-site
CAD 90,000 - 120,000
Comprehensive insurance options
Generous paid time off
Flex benefits
+3
Data Security Advisor - Data Strategy
Data Security Advisor - Data Strategy

Altis Technology • Toronto

On-site
CAD 90,000 - 120,000