Cyber Security Manager

Akkodis

Toronto

Hybrid

CAD 120,000 - 180,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Performance-based bonuses
Defined contribution pension plan
Professional growth opportunities
24/7 virtual healthcare
Flexible hybrid work options
Employee discounts
Generous PTO

Job summary

A leading technology firm in Toronto is seeking a Senior Manager, Security Governance, Risk, and Compliance (GRC) to lead enterprise-wide security initiatives. This role involves developing GRC strategies, overseeing compliance, and fostering a security-aware culture. The ideal candidate has over 12 years of experience in information security, including leadership in large organizations. Competitive benefits include hybrid work options and professional growth opportunities.

Qualifications

  • 12+ years of experience in Information Security or Risk Management.
  • At least 5 years in a leadership role.
  • Proven ability to influence change across departments.
  • Deep understanding of regulatory compliance requirements and security frameworks (e.g., NIST, ISO27001, GDPR, PCI-DSS).
  • Hands-on experience in IAM, Cloud Security, and Network Security.
  • Proven ability to drive cross-functional initiatives and influence change across departments.
  • Relevant certifications strongly preferred: CISM, CISSP, CRISC, CISA, or similar.

Responsibilities

  • Develop and lead the security GRC strategy.
  • Oversee governance, risk, compliance, and security awareness programs.
  • Chair the Security Governance Committee.
  • Oversee the creation and maintenance of security policies, standards, and frameworks (e.g., ISO 27001, NIST, GDPR, PCI-DSS).
  • Provide guidance to ensure all applications, systems, and products are compliant with internal and external requirements.
  • Chair the Security Governance Committee and lead governance activities for enterprise security risk oversight.
  • Own and maintain the enterprise-wide security risk register, ensuring accurate documentation and effective mitigation strategies.
  • Lead and support risk assessments and threat modeling activities across platforms and products.
  • Design and execute targeted security awareness programs, including phishing simulations and mandatory training.
  • Collaborate with the incident response team to manage and review security incidents, including root cause analysis and corrective action planning.
  • Lead the planning and execution of audits such as PCI DSS, IT General Controls, and internal audits.
  • Coordinate with cross-functional teams to collect, validate, and organize audit documentation and evidence.
  • Track and report on audit progress, risks, and outstanding issues to executive leadership.
  • Maintain compliance documentation such as data flow diagrams, risk assessments, remediation logs, and system inventories.

Skills

Leadership
Risk Management
Information Security
Regulatory Compliance
Cross-functional collaboration
Security Awareness
PCI-DSS knowledge
Cross-functional collaboration

Education

Bachelor's degree in Computer Science or related field

Tools

NIST
ISO 27001
GDPR
PCI-DSS

Job description

We are seeking a Senior Manager, Security Governance, Risk, and Compliance (GRC) to lead enterprise-wide security initiatives that ensure alignment with business goals, regulatory requirements, and industry best practices.

Location: Toronto, ON (Hybrid – in-office collaboration with remote flexibility)

Reporting To: VP, Information Security

Job Type: Full-Time

Role Overview

This leadership role is accountable for overseeing governance, risk, compliance, and security awareness programs. The successful candidate will work closely with executive leadership and cross-functional teams to manage risks, establish strong security policies, and cultivate a security-aware culture across the organization.

Key Responsibilities
  • Develop and lead the security GRC strategy in alignment with business and regulatory requirements.
  • Serve as a trusted advisor to the CISO and senior leadership on all security GRC-related initiatives.
  • Build and manage a high-performing GRC team, fostering a culture of continuous learning and accountability.
  • Oversee the creation and maintenance of security policies, standards, and frameworks (e.g., ISO 27001, NIST, GDPR, PCI-DSS).
  • Provide guidance to ensure all applications, systems, and products are compliant with internal and external requirements.
  • Chair the Security Governance Committee and lead governance activities for enterprise security risk oversight.
  • Own and maintain the enterprise-wide security risk register, ensuring accurate documentation and effective mitigation strategies.
  • Lead and support risk assessments and threat modeling activities across platforms and products.
  • Design and execute targeted security awareness programs, including phishing simulations and mandatory training.
  • Collaborate with the incident response team to manage and review security incidents, including root cause analysis and corrective action planning.
  • Lead the planning and execution of audits such as PCI DSS, IT General Controls, and internal audits.
  • Coordinate with cross-functional teams (Security, IT, Legal, Operations, etc.) to collect, validate, and organize audit documentation and evidence.
  • Track and report on audit progress, risks, and outstanding issues to executive leadership.
  • Maintain compliance documentation such as data flow diagrams, risk assessments, remediation logs, and system inventories.
Qualifications & Experience
  • Bachelor's degree in Computer Science, Information Security, Risk Management, or a related field.
  • 12+ years of experience in Information Security or Risk Management, with at least 5 years in a leadership role.
  • Experience building and executing GRC strategies in large or complex organizations.
  • Deep understanding of regulatory compliance requirements and security frameworks (e.g., NIST, ISO27001, GDPR, PCI-DSS).
  • Hands-on experience in domains such as IAM, Cloud Security, and Network Security.
  • Proven ability to drive cross-functional initiatives and influence change across departments.
  • Relevant certifications strongly preferred: CISM, CISSP, CRISC, CISA, or similar.
What You’ll Gain
  • A comprehensive total rewards program including performance-based bonuses and flexible benefits from day one.
  • Access to a defined contribution pension plan, profit-sharing programs, and retirement planning support.
  • Opportunities for professional growth, including unlimited access to Coursera, mentoring programs, and internal gigs.
  • Robust wellness support, including 24/7 virtual healthcare, EFAP services, and wellness initiatives.
  • Flexible hybrid work options, including the ability to work abroad temporarily and generous paid time off programs.
  • Recognition programs, exclusive financial perks, and access to a wide range of employee discounts.

Akkodis is an equal opportunities employer and welcomes applications from all qualified candidates.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Director, Governance, Risk & Compliance (GRC)
Director, Governance, Risk & Compliance (GRC)

Robertson & Company Ltd. • Toronto

On-site
CAD 170,000 - 190,000
Enterprise Security Specialist
Enterprise Security Specialist

Cprvision • Whitchurch-Stouffville

On-site
CAD 120,000 - 135,000
Flexible working arrangements
Comprehensive benefits package
Annual bonus program
+1
Senior Cyber Security Analyst - GRC
Senior Cyber Security Analyst - GRC

Metro Supply Chain • Mississauga

On-site
CAD 105,000 - 125,000
Risk and Resilience Specialist
Risk and Resilience Specialist

University of Toronto • Toronto

On-site
CAD 90,000 - 120,000
CISO-Level Visibility
AI-Driven Governance
Broad Cybersecurity Scope
+1
Senior Manager, Technology Risk Governance & Compliance
Senior Manager, Technology Risk Governance & Compliance

Corus Entertainment • Toronto

On-site
CAD 85,000 - 110,000
Senior Specialist Risk Management
Senior Specialist Risk Management

TEEMA • Toronto

On-site
CAD 126,000 - 176,000
Senior Information Security, GRC Analyst
Senior Information Security, GRC Analyst

Cassels Brock & Blackwell LLP • Toronto

On-site
CAD 100,000 - 125,000
Extended Health & Dental Care
RRSP Matching
Fitness Reimbursement
+6
Senior Manager, Cybersecurity & GRC
Senior Manager, Cybersecurity & GRC

Axiom Global Technologies • Mississauga

On-site
CAD 150,000 - 210,000
Data Security Advisor - Data Strategy
Data Security Advisor - Data Strategy

Altis Technology • Toronto

On-site
CAD 90,000 - 120,000
Senior Manager, Information Security
Senior Manager, Information Security

BDO Canada • Toronto

Hybrid
CAD 132,000 - 182,000