Enable job alerts via email!

Information Security & Cyber Manager

Munich Re

Toronto

On-site

CAD 80,000 - 120,000

Full time

9 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in insurance and risk management is seeking an Information Security & Cyber Manager for its Life and Health North America entities. The role involves ensuring cyber security risk management, compliance with regulations, and collaborating with stakeholders to promote security strategies. Candidates should have a degree in a relevant field, significant experience in cyber risk processes, and familiarity with data protection laws.

Qualifications

  • 5+ years of relevant industry experience in implementing cyber risk processes.
  • Knowledge of regulatory compliance and data privacy laws (GDPR, PIPEDA).
  • Relevant security designations such as CRISC, CISM, CEH, CISA are beneficial.

Responsibilities

  • Support adoption of Information Security Management policies and guidelines.
  • Execute prioritized initiatives for Cyber Security covering Life and Health North America.
  • Monitor cyber security and regulatory landscape.

Skills

Cyber risk processes
Compliance management
Client interactions
Data privacy laws
Incident response

Education

Bachelor's degree in information systems, computer science, or a relevant field
IT Security Management certification

Job description

The Information Security & Cyber Manager, as part of the Enterprise Risk Management team, is the second line of defense for Cyber Security covering Munich Re’s Life and Health North America (LHNA) entities. The role supports the identification, prioritization, communication, and monitoring of cyber security risks in the Life and Health North America entities.

Key Accountabilities

  • Support adoption of Munich Re’s Information Security Management (ISM) policies and guidelines, providing feedback to the VP ERM and Cluster ISO (Information Security Officer) on adaptions to the IS Strategy, ISM Policy, and Guidelines.
  • Support / execute prioritized initiatives for Cyber Security covering Life and Health North America.
  • Support local data protection initiatives such as data masking, unstructured data security, access management and access reduction, Data Leakage Prevention alert investigations, etc.
  • Cyber risk dashboard coordination, update, and reporting to key stakeholders.
  • Execution of ad hoc cyber risk assessments.
  • Support client security requests.
  • Support with data flow discovery and data residency.
  • Support with project risk assessments.
  • Local threat detection and industry data breach tracking.
  • Proactive participation in risk and security forums and other relevant industry communities.
  • Monitor cyber security and regulatory landscape.
  • Support compliance with regulatory requirements and regulatory audits.
  • Support Third Party Risk Management activities.
  • Align security strategies with business objectives.
  • Communicate, enforce, and update local and global Cyber Risk policies and guidelines.
  • Participate in security audits and support gap remediation.
  • Assist in cyber threat scenario creation and conduct incident response tabletop exercises.
  • Support the creation and delivery of security awareness and training programs.
  • Review contracts for confidentiality and data protection language.
  • Assist in cyber risk process improvements and automation.
  • Engage with internal and external stakeholders involved in information security, including BCM, Operational Risk, Third-Party Management, and Internal Audit.

Qualifications

  • Bachelor's degree in information systems, computer science, or a relevant field; IT Security Management certification is a plus.
  • 5+ years of relevant industry experience in implementing cyber risk processes and frameworks.
  • Relevant security designations such as CRISC, CISM, CEH, CISA are beneficial.
  • Experience in security risk and compliance management.
  • Practical experience with client interactions and contract reviews.
  • Experience supporting the remediation of information security gaps.
  • Knowledge of regulatory compliance and data privacy laws (GDPR, PIPEDA, etc.).
  • Knowledge of internationally recognized security standards and frameworks (ISO/IEC 27000 series, NIST CSF).

J-18808-Ljbffr

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

GRC Manager, Information Security

First National Financial LP

Toronto null

Hybrid

Hybrid

CAD 100,000 - 130,000

Full time

2 days ago
Be an early applicant

Manager, Cyber Security Operations

Heartland Coca-Cola Bottling Company, LLC

Toronto null

Hybrid

Hybrid

CAD 100,000 - 140,000

Full time

Yesterday
Be an early applicant

Inspectrice ou inspecteur de la conformité de la conduite des affaires

CIRO / OCRI

Toronto null

Hybrid

Hybrid

CAD 70,000 - 95,000

Full time

Today
Be an early applicant

Incident and Problem Manager, IT Security

Scene+

Toronto null

Hybrid

Hybrid

CAD 80,000 - 110,000

Full time

2 days ago
Be an early applicant

IAM Manager, Information Security

First National Financial LP

Toronto null

On-site

On-site

CAD 90,000 - 130,000

Full time

11 days ago

Data Security Manager, Information Security, IT

First National Financial LP

Toronto null

On-site

On-site

CAD 90,000 - 130,000

Full time

14 days ago

Manager, Application Security (AppSec)

Intact

Toronto null

Hybrid

Hybrid

CAD 100,000 - 130,000

Full time

14 days ago

Manager, Information Security Innovation Accelerator Engineer (GT&K)

KPMG-Canada

Toronto null

On-site

On-site

CAD 80,000 - 120,000

Full time

7 days ago
Be an early applicant

Manager, IT Security

Deloitte Canada

Toronto null

Hybrid

Hybrid

CAD 85,000 - 156,000

Full time

11 days ago