Sr Mgr, Cyber Risk, Audit, Compliance

1123959
  • Job type

    Permanent
  • Location

    Toronto
  • Profession

    Cloud
  • Industry

    Technology & Internet Services
  • Pay

    $130000 - $160000

Senior Manager, Cyber Risk, Audit, Compliance & Data Privacy — Toronto, ON

Your new company
Join our diverse team of 15,000 talented individuals committed to transforming critical minerals into prosperity and sustainable development in countries like Canada, Brazil, Indonesia, the United Kingdom, and Japan. We invite you to use your skills with us and contribute to something meaningful and enduring.


Your New Role
As the Senior Manager, Cyber Risk, Audit, Compliance & Data Privacy, you will serve as the governance anchor of our client’s global cybersecurity program. You will be responsible for shaping, governing, and maturing the organization’s global cybersecurity risk and compliance posture across enterprise IT, cloud, and industrial OT environments.


You will own the end‑to‑end cybersecurity risk management framework, including threat inventory, risk identification, formal risk acceptance, and treatment tracking. You will ensure the enterprise maintains defensible, transparent, and regulatory‑aligned cybersecurity governance practices, enabling due care and due diligence across all global operations.


In this high‑impact leadership role, you will drive:
  • Cyber risk governance, reporting, and executive/board‑level communication
  • Global data privacy program management and compliance oversight.
  • Internal and external cybersecurity audits, control assurance, and regulatory engagements.
  • The cybersecurity awareness and human‑risk reduction strategy
  • Governance over cybersecurity policies, standards, and measurable control frameworks.
  • Operating at the intersection of technology, regulatory risk, and executive decision‑making, you will influence leaders across IT, OT, security, legal, and global operations—ensuring the organization’s cybersecurity and privacy posture is both defensible and aligned with international regulatory expectations.


What You'll Need to Succeed
To excel in this role, you bring a deep foundation in cybersecurity governance, risk, audit, compliance, and data privacy—developed within industrial, safety‑critical, or highly regulated sectors. You have the leadership presence, ethical judgment, and communication strength needed to guide enterprise‑level decisions tied to risk tolerance, regulatory exposure, and operational resilience.
  • 11–15 years in cybersecurity risk, governance, audit, compliance, or data privacy
  • Demonstrated end‑to‑end ownership of enterprise cyber risk management frameworks.
  • Experience leading internal/external audits, regulatory engagements, and control assurance.
  • Strong governance skills across cybersecurity policies, standards, and control frameworks.
  • Multi‑jurisdictional data privacy leadership and regulatory compliance management.
  • Proven ability to prepare and deliver executive‑ready and board‑level cyber risk reporting.
  • Solid experience managing third‑party and supply‑chain cybersecurity risk.
  • Ability to build and maintain maturity models, dashboards, and continuous‑monitoring capabilities.
  • Leadership of cybersecurity awareness, culture, and behavior‑based risk reduction programs.
  • Demonstrated success managing cybersecurity governance teams in global industrial environments.
  • Deep working knowledge of ISO 27001/27005, NIST CSF, CIS Controls (IT + OT contexts). Strong internal control design, testing, validation, and assurance capabilities.
  • Ability to translate complex technical risks into clear business, financial, and operational insights.
  • Strong ethical judgment and the ability to influence decisions involving risk and regulatory exposure
Education & Certifications
Required
Undergraduate degree
CISSP
(mandatory)
Preferred
  • Advanced training in risk quantification, governance, or data privacy
  • Certifications such as CISA, CISM, CRISC, ISO 27001 (LI/LA), CIPP (C/E/C), FAIR‑CCRL

What You'll Get in Return
  • Competitive compensation includes a variable annual incentive plan.
  • Participation in a competitive Defined Contribution Pension package.
  • Comprehensive benefits package (company paid core coverage, health and dental coverage, flex accounts, disability plans and optional insurance).
  • Leave for all of life’s reasons (vacation, personal, sick, parental).
  • Work culture dedicated to safety, diversity & inclusion, and career growth.
  • Employee Family Assistance Program.
  • Virtual Healthcare online.
  • Online training and career development opportunities


If you're interested in this role, click 'apply now' to forward an up-to-date copy of your CV, or call us now.

If this job isn't quite right for you, but you are looking for a new position, please contact us for a confidential discussion about your career.

Apply for this job

Talk to Quinn Johnson, the specialist consultant managing this position

Located in Toronto (EN), 8 King Street East, 20th FloorTelephone:  4166408094