2 Emplois pour Operational risk - Burlington

Associate Director, Enterprise Risk and Business Continuity Programs

Burlington, Ontario Vaco by Highspring

Emploi consulté

Appuyez à nouveau pour fermer

Description De L'emploi

direct hire

About the Company? 

Our client is an air services company. They are looking for an Associate Director who will be responsible for drive the development and implementation of forward-thinking Enterprise Risk Management (ERM) and Business Continuity Management (BCM) programs that have enterprise-wide impact. This is a high-visibility opportunity to influence decision-making at a strategic level, strengthen continuity capabilities, and help future-proof one of Canada’s most critical transportation hubs. 

Why Work Here? 

  • It's an exciting time to join the company, as it's currently undergoing significant transformation. 

  • The organization has implemented several changes recently and is very much a change-driven organization. 

  • Unlike traditional financial institutions, the environment is more flexible, with strong collaboration across cross-functional teams. 

  • The organization promotes work-life balance, though there may be busier periods during certain times of the quarter or business cycle. 

About the Opportunity? 

  • Drive the evolution of the Enterprise Risk Management (ERM) program, enhancing tools, policies, and frameworks to align with international best practices and support risk-informed decision-making. 

  • Lead the ongoing maturity of the company’s risk appetite and tolerance framework, ensuring it remains aligned with organizational priorities, regulatory expectations, and the dynamic risk landscape. 

  • Coach and advise risk owners across the organization to proactively identify, assess, mitigate, and monitor both operational and strategic risks. 

  • Design, lead, and sustain an enterprise-wide Business Continuity Management (BCM) program, that ensures the protection and recoverability of critical resources, processes, and functions. 

  • Champion the implementation of business continuity strategies across departments by chairing the BC Working Group and overseeing exercises, training, and validation initiatives. 

  • Guide departments through enterprise-wide business impact assessments to inform continuity planning and map critical interdependencies. 

  • Review and audit business continuity plans to ensure consistency, integration and effectiveness across the organization. 

  • Build strong relationships with internal and external stakeholders and lead organization-wide training and awareness programs to strengthen risk and continuity maturity. 

  • Oversee program compliance, performance metrics, and reporting to deliver timely, actionable risk insights for leadership decision-making. 

  • Lead and develop a high-performing team, while fostering a culture of accountability, collaboration, and continuous improvement. 

About You? 

  • A post-secondary degree or an equivalent combination of education and relevant experience? 

  • A professional designation such as Canadian Risk Management (CRM), Certified Enterprise Risk or Certified Business Continuity Professional (CBCP) 

  • A minimum of 7 years of progressive experience in enterprise risk management and/or business continuity 

  • At least 3 years in a leadership capacity, with a track record of building and guiding high-performing teams 

Salary Range? 

$108,000 - $135,000/year? 

How to Apply? 

Click the “Apply Now” button and follow the instructions to submit your resume. Please know that we only accept documents in MS Word or Rich Text formats? 

When referencing this job, quote #  

You must currently reside within the Greater Toronto Area and be permitted to work in Canada to be considered for this opportunity. A recruiter will be in touch with you if your profile meets our client’s requirements for this role?  

Vaco by Highspring values a diverse workplace and strongly encourages women, people of color, LGBTQ+ individuals, people with disabilities, members of ethnic minorities, foreign-born residents, and veterans to apply.

EEO Notice

Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law.

Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact .

Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal .

By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal.

Privacy Notice

Vaco by Highspring and its parents, affiliates, and subsidiaries (“we,” “our,” or “Vaco by Highspring”) respects your privacy and are committed to providing transparent notice of our policies.

  • California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here .
  • Virginia residents may access our state specific policies here .
  • Residents of all other states may access our policies here .
  • Canadian residents may access our policies in English here and in French here .
  • Residents of countries governed by GDPR may access our policies here .

Pay Transparency Notice

Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to:

  • the individual’s skill sets, experience and training;
  • licensure and certification requirements;
  • office location and other geographic considerations;
  • other business and organizational needs.

With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.

Désolé, cet emploi n'est pas disponible dans votre région

L'emploi n'est plus disponible

Ce poste n'est plus répertorié sur WhatJobs. L'employeur est peut-être en train d'examiner les candidatures, a pourvu le poste ou a supprimé l'offre.

Cependant, nous avons des emplois similaires disponibles pour vous ci-dessous.

Information Security & Risk Management Analyst

Burlington, Ontario InsideHigherEd

Aujourd'hui

Emploi consulté

Appuyez à nouveau pour fermer

Description De L'emploi

administrative jobs ,
Information Security & Risk Management Analyst

Date Posted: 09/02/2025
Req ID: 45029
Faculty/Division: VP - Division of University Advancement
Department: Advancement Services
Campus: St. George (Downtown Toronto)
Position Number:

Description:

About us:

The Division of University Advancement (DUA) aims to sustain and enhance the University’s academic mission, leadership, and worldwide impact, by engaging alumni and private sector constituents meaningfully in the mission of the University, building mutually beneficial relationships of increasing value and satisfaction over time.

DUA at the University of Toronto is engaged in a transformative agenda deeply rooted in the University’s vision for growth and innovation. We are focused on growing fundraising efforts; enhancing the effectiveness and satisfaction of alumni engagement and programs; building advancement talent capacity within and across divisions and creating an organization and culture that fosters diversity and inclusiveness.

Your opportunity:

The Information Security & Risk Management Analyst will join a dynamic and innovative team focused on delivering technology solutions with comprehensive analysis in support of DUA’s information systems and program initiatives.

The incumbent analyzes complex projects, business/operational practices, digital platforms, services and devices, for information security aspects such as disaster recovery, business continuity, and use of standard architecture design patterns and services such as enterprise identity and access management and standards-based application deployment. This work is realized by the execution of a Threat Risk Assessment (TRA). The incumbent reviews the storage, use, transmission and or modification of information within division and across the Advancement community, including restricted, confidential and public information, and other definitions as required by the business unit or project. The identification of potential information security and privacy risks is done through a Privacy Impact Assessments (PIA).

The incumbent helps develop and deliver outreach and awareness campaigns and contributes to guidelines and practices to implement University policy on the protection of digital assets, and information risk. The incumbent will bring highly developed interpersonal skills, and a strong information security posture to the team, in pursuit of information security goals. The responsibilities are designed to address information security and privacy risks to all types of assets, including the convergence of people, process, regulatory and technology risks.

The incumbent has frequent interaction with all levels of University Advancement community, including stakeholders in divisions and departments; and central departments such as FIPP Office. As a privacy subject matter expert, the incumbent provides guidance to stakeholders to help them assess and understand potential privacy risks. The incumbent will engage with stakeholders to understand current business processes and identify optimal strategies for transitioning these processes, workflows, and data to existing or new systems as well as leading complex system integration projects.

Your responsibilities will include:

  • Analysing projects or business practices to identify potential privacy and security risks through Threat/Risk Assessments (TRA) and Privacy Impact Assessments (PIA)
  • Conducting application vulnerability assessments and/or penetration testing and interpreting the results for business unit staff
  • Preparing documents for the protection of restricted or confidential information, or need thereof, and the reduction of service risks such as loss of availability due to inadequate service design, compromise of services due to inadequate design or maintenance procedures through the application of University, industry and regulatory standards, guidelines and procedures
  • Analysing and recommending options for risk management based on the assessment and knowledge of current and emerging information security threats to project owners or business units
  • Training data users on privacy principles as they relate to their duties. Providing education and awareness to end-users units in understanding the University’s information security procedures, standards and guidelines.
  • Implementing risk management plans and processes
  • Keeping well-informed on changes to applicable regulatory and legislative requirements
  • Advising clients and technical subject matter experts on best practice for documenting system requirements

Essential Qualifications:

  • Bachelor's Degree or acceptable combination of equivalent experience.
  • Minimum four years of related experience working in a similar capacity, with demonstrated experience in information security and risk management, and/or risk analysis.
  • Experience in analysis of information system hardware, operating systems, middleware, application software, and network devices to find vulnerabilities or risks and provide recommendations on risk mitigations.
  • Strong knowledge of privacy and security concepts, trends, and issues; including an understanding of their impact on business processes, as well as skills with interpretation and communication of principles and compliance requirements.
  • Knowledge of applicable legislation such as Freedom of Information and Protection Act (FIPPA).
  • Ability to interpret and apply University guidelines pertaining to access to records and the protection of privacy.
  • Strong knowledge of information security frameworks, incident response practices, industry standards, trends, and issues.
  • Experience and familiarity with a broad range of technologies (operating systems, networking, cloud and on-prem services, etc.) with the ability to find vulnerabilities provide recommendations for mitigation.
  • Experience of Threat-Risk Assessment and Privacy Impact Assessment processes.
  • Demonstrated strong analytical ability, attention to detail and problem-solving skills.
  • Good organizational skills and the ability to work accurately and quickly under pressure with frequent interruptions.
  • Demonstrated ability to exercise initiative, respond to changing priorities.
  • Demonstrated effective oral and written communication skills including both technical and business writing, documentation and presentation skills.
  • Ability to explain technical concepts to a wide range of non-technical users, both orally and in writing.
  • Strong time management and organizational skills with the ability to work within tight timelines.
  • Strong commitment to equity, diversity, inclusion, and the promotion of a respectful and collegial learning and working.


Assets (Nonessential):

  • An appreciation for / exposure to information security and threat/risk analysis activities.
  • Ability to identify areas of vulnerability in the use, storage or modification of personal information.
  • Understanding of project management and procurement processes.
  • Security and/or privacy certifications, or progress in their pursuit.
  • ITIL foundations level (or higher) certification.
  • Familiarity with the University environment, governance, and policies.


To be successful in this role you will be:

  • Communicator
  • Motivated self-learner
  • Organized
  • Perceptive
  • Problem solver
  • Resilient

Closing Date: 09/11/2025, 11:59PM ET
Employee Group: USW
Appointment Type : Budget - Continuing
Schedule: Full-Time
Pay Scale Group & Hiring Zone:
USW Pay Band 12 -- $81,312. with an annual step progression to a maximum of $103,986. Pay scale and job class assignment is subject to determination pursuant to the Job Evaluation/Pay Equity Maintenance Protocol.
Job Category: Information Technology (IT)
Recruiter: Fiona Chan

Lived Experience Statement
Candidates who are members of Indigenous, Black, racialized and 2SLGBTQ+ communities, persons with disabilities, and other equity deserving groups are encouraged to apply, and their lived experience shall be taken into consideration as applicable to the posted position.

.buttontext00b a4abe a{ border: 1px solid transparent; } .buttontext00b a4abe a:focus{ border: 1px dashed #25355a !important; outline: none !important; }

Diversity Statement

The University of Toronto embraces Diversity and is building a culture of belonging that increases our capacity to effectively address and serve the interests of our global community. We strongly encourage applications from Indigenous Peoples, Black and racialized persons, women, persons with disabilities, and people of diverse sexual and gender identities. We value applicants who have demonstrated a commitment to equity, diversity and inclusion and recognize that diverse perspectives, experiences, and expertise are essential to strengthening our academic mission.

As part of your application, you will be asked to complete a brief Diversity Survey. This survey is voluntary. Any information directly related to you is confidential and cannot be accessed by search committees or human resources staff. Results will be aggregated for institutional planning purposes. For more information, please see .

Accessibility Statement

The University strives to be an equitable and inclusive community, and proactively seeks to increase diversity among its community members. Our values regarding equity and diversity are linked with our unwavering commitment to excellence in the pursuit of our academic mission.

The University is committed to the principles of the Accessibility for Ontarians with Disabilities Act (AODA). As such, we strive to make our recruitment, assessment and selection processes as accessible as possible and provide accommodations as required for applicants with disabilities.

If you require any accommodations at any point during the application and hiring process, please contact .


Job Segment: Risk Management, Information Security, Compliance, Information Systems, Cloud, Finance, Technology, Legal

Désolé, cet emploi n'est pas disponible dans votre région

Information Security & Risk Management Analyst

Hamilton, Ontario InsideHigherEd

Aujourd'hui

Emploi consulté

Appuyez à nouveau pour fermer

Description De L'emploi

administrative jobs ,
Information Security & Risk Management Analyst

Date Posted: 09/02/2025
Req ID: 45029
Faculty/Division: VP - Division of University Advancement
Department: Advancement Services
Campus: St. George (Downtown Toronto)
Position Number:

Description:

About us:

The Division of University Advancement (DUA) aims to sustain and enhance the University’s academic mission, leadership, and worldwide impact, by engaging alumni and private sector constituents meaningfully in the mission of the University, building mutually beneficial relationships of increasing value and satisfaction over time.

DUA at the University of Toronto is engaged in a transformative agenda deeply rooted in the University’s vision for growth and innovation. We are focused on growing fundraising efforts; enhancing the effectiveness and satisfaction of alumni engagement and programs; building advancement talent capacity within and across divisions and creating an organization and culture that fosters diversity and inclusiveness.

Your opportunity:

The Information Security & Risk Management Analyst will join a dynamic and innovative team focused on delivering technology solutions with comprehensive analysis in support of DUA’s information systems and program initiatives.

The incumbent analyzes complex projects, business/operational practices, digital platforms, services and devices, for information security aspects such as disaster recovery, business continuity, and use of standard architecture design patterns and services such as enterprise identity and access management and standards-based application deployment. This work is realized by the execution of a Threat Risk Assessment (TRA). The incumbent reviews the storage, use, transmission and or modification of information within division and across the Advancement community, including restricted, confidential and public information, and other definitions as required by the business unit or project. The identification of potential information security and privacy risks is done through a Privacy Impact Assessments (PIA).

The incumbent helps develop and deliver outreach and awareness campaigns and contributes to guidelines and practices to implement University policy on the protection of digital assets, and information risk. The incumbent will bring highly developed interpersonal skills, and a strong information security posture to the team, in pursuit of information security goals. The responsibilities are designed to address information security and privacy risks to all types of assets, including the convergence of people, process, regulatory and technology risks.

The incumbent has frequent interaction with all levels of University Advancement community, including stakeholders in divisions and departments; and central departments such as FIPP Office. As a privacy subject matter expert, the incumbent provides guidance to stakeholders to help them assess and understand potential privacy risks. The incumbent will engage with stakeholders to understand current business processes and identify optimal strategies for transitioning these processes, workflows, and data to existing or new systems as well as leading complex system integration projects.

Your responsibilities will include:

  • Analysing projects or business practices to identify potential privacy and security risks through Threat/Risk Assessments (TRA) and Privacy Impact Assessments (PIA)
  • Conducting application vulnerability assessments and/or penetration testing and interpreting the results for business unit staff
  • Preparing documents for the protection of restricted or confidential information, or need thereof, and the reduction of service risks such as loss of availability due to inadequate service design, compromise of services due to inadequate design or maintenance procedures through the application of University, industry and regulatory standards, guidelines and procedures
  • Analysing and recommending options for risk management based on the assessment and knowledge of current and emerging information security threats to project owners or business units
  • Training data users on privacy principles as they relate to their duties. Providing education and awareness to end-users units in understanding the University’s information security procedures, standards and guidelines.
  • Implementing risk management plans and processes
  • Keeping well-informed on changes to applicable regulatory and legislative requirements
  • Advising clients and technical subject matter experts on best practice for documenting system requirements

Essential Qualifications:

  • Bachelor's Degree or acceptable combination of equivalent experience.
  • Minimum four years of related experience working in a similar capacity, with demonstrated experience in information security and risk management, and/or risk analysis.
  • Experience in analysis of information system hardware, operating systems, middleware, application software, and network devices to find vulnerabilities or risks and provide recommendations on risk mitigations.
  • Strong knowledge of privacy and security concepts, trends, and issues; including an understanding of their impact on business processes, as well as skills with interpretation and communication of principles and compliance requirements.
  • Knowledge of applicable legislation such as Freedom of Information and Protection Act (FIPPA).
  • Ability to interpret and apply University guidelines pertaining to access to records and the protection of privacy.
  • Strong knowledge of information security frameworks, incident response practices, industry standards, trends, and issues.
  • Experience and familiarity with a broad range of technologies (operating systems, networking, cloud and on-prem services, etc.) with the ability to find vulnerabilities provide recommendations for mitigation.
  • Experience of Threat-Risk Assessment and Privacy Impact Assessment processes.
  • Demonstrated strong analytical ability, attention to detail and problem-solving skills.
  • Good organizational skills and the ability to work accurately and quickly under pressure with frequent interruptions.
  • Demonstrated ability to exercise initiative, respond to changing priorities.
  • Demonstrated effective oral and written communication skills including both technical and business writing, documentation and presentation skills.
  • Ability to explain technical concepts to a wide range of non-technical users, both orally and in writing.
  • Strong time management and organizational skills with the ability to work within tight timelines.
  • Strong commitment to equity, diversity, inclusion, and the promotion of a respectful and collegial learning and working.


Assets (Nonessential):

  • An appreciation for / exposure to information security and threat/risk analysis activities.
  • Ability to identify areas of vulnerability in the use, storage or modification of personal information.
  • Understanding of project management and procurement processes.
  • Security and/or privacy certifications, or progress in their pursuit.
  • ITIL foundations level (or higher) certification.
  • Familiarity with the University environment, governance, and policies.


To be successful in this role you will be:

  • Communicator
  • Motivated self-learner
  • Organized
  • Perceptive
  • Problem solver
  • Resilient

Closing Date: 09/11/2025, 11:59PM ET
Employee Group: USW
Appointment Type : Budget - Continuing
Schedule: Full-Time
Pay Scale Group & Hiring Zone:
USW Pay Band 12 -- $81,312. with an annual step progression to a maximum of $103,986. Pay scale and job class assignment is subject to determination pursuant to the Job Evaluation/Pay Equity Maintenance Protocol.
Job Category: Information Technology (IT)
Recruiter: Fiona Chan

Lived Experience Statement
Candidates who are members of Indigenous, Black, racialized and 2SLGBTQ+ communities, persons with disabilities, and other equity deserving groups are encouraged to apply, and their lived experience shall be taken into consideration as applicable to the posted position.

.buttontext00b a4abe a{ border: 1px solid transparent; } .buttontext00b a4abe a:focus{ border: 1px dashed #25355a !important; outline: none !important; }

Diversity Statement

The University of Toronto embraces Diversity and is building a culture of belonging that increases our capacity to effectively address and serve the interests of our global community. We strongly encourage applications from Indigenous Peoples, Black and racialized persons, women, persons with disabilities, and people of diverse sexual and gender identities. We value applicants who have demonstrated a commitment to equity, diversity and inclusion and recognize that diverse perspectives, experiences, and expertise are essential to strengthening our academic mission.

As part of your application, you will be asked to complete a brief Diversity Survey. This survey is voluntary. Any information directly related to you is confidential and cannot be accessed by search committees or human resources staff. Results will be aggregated for institutional planning purposes. For more information, please see .

Accessibility Statement

The University strives to be an equitable and inclusive community, and proactively seeks to increase diversity among its community members. Our values regarding equity and diversity are linked with our unwavering commitment to excellence in the pursuit of our academic mission.

The University is committed to the principles of the Accessibility for Ontarians with Disabilities Act (AODA). As such, we strive to make our recruitment, assessment and selection processes as accessible as possible and provide accommodations as required for applicants with disabilities.

If you require any accommodations at any point during the application and hiring process, please contact .


Job Segment: Risk Management, Information Security, Compliance, Information Systems, Cloud, Finance, Technology, Legal

Désolé, cet emploi n'est pas disponible dans votre région
Soyez le premier informé

À propos du dernier Operational risk Emplois dans Burlington !

Emplacements à proximité

Autres emplois à proximité de chez moi

Industrie

  1. shopping_bagAchats
  2. workAdministratif
  3. ecoAgriculture et élevage
  4. schoolApprentissage et formation
  5. apartmentArchitecture
  6. paletteArts du spectacle
  7. diversity_3Assistance sociale
  8. policyAssurance
  9. directions_carAutomobile
  10. flight_takeoffAviation
  11. account_balanceBanque et finance
  12. local_floristBien-être
  13. local_mallBiens de grande consommation (FMCG)
  14. storeCommerce et distribution
  15. request_quoteComptabilité
  16. supervisor_accountConseil en gestion
  17. person_searchConseil en recrutement
  18. constructionConstruction
  19. brushCréatif et digital
  20. currency_bitcoinCryptographie et blockchain
  21. medical_servicesDentaire
  22. gavelDroit et justice
  23. electrical_servicesÉlectronique
  24. boltÉnergie
  25. schoolEnseignement et formation
  26. engineeringExploitation minière
  27. precision_manufacturingFabrication et production
  28. gavelFonction publique
  29. child_friendlyGarde d’enfants
  30. foundationGénie civil
  31. supervisor_accountGestion
  32. checklist_rtlGestion de projet
  33. beach_accessHôtellerie - Restauration
  34. local_gas_stationHydrocarbures
  35. smart_toyIA et Technologies émergentes
  36. home_workImmobilier
  37. precision_manufacturingIndustrie
  38. scienceIndustrie chimique
  39. codeInformatique et logiciels
  40. shopping_cartInternet - Ecommerce
  41. emoji_eventsJeunes diplômés
  42. inventory_2Logistique et entreposage
  43. sports_soccerLoisirs et sports
  44. handymanMaintenance et entretien
  45. campaignMarketing
  46. buildMécanique
  47. local_hospitalMédecine
  48. perm_mediaMédias et relations publiques
  49. clean_handsNettoyage et assainissement
  50. biotechPharmaceutique
  51. scienceRecherche et développement
  52. groupsRessources humaines
  53. health_and_safetySanté
  54. securitySécurité de l’information
  55. securitySécurité publique
  56. support_agentService client et assistance
  57. diversity_3Services sociaux
  58. medical_servicesSoins infirmiers
  59. wifiTélécommunications
  60. psychologyThérapie
  61. beach_accessTourisme
  62. local_shippingTransport
  63. point_of_saleVentes
  64. petsVétérinaire
Tout afficher Operational risk Emplois Voir tous les emplois dans Burlington