Associate, Cyber & Technology Risk (12 month contract)

Posted 2 Days Ago
Be an Early Applicant
Toronto, ON
Financial Services
The Role
The Associate, Cyber & Technology Risk at CPP Investments is responsible for conducting security assessments, reviewing contracts for data security terms, performing risk assessments on systems and networks, collaborating with the security architecture team, leading cyber and technology projects, and maintaining partnerships with various teams.
Summary Generated by Built In

Company Description

Make an impact at a global and dynamic investment organization

When you invest your career in CPP Investments, you join one of the most respected and fastest growing institutional investors in the world. With current assets under management valued in excess of $500 billion, CPP Investments is a professional investment management organization that globally invests the funds of the Canada Pension Plan (CPP) to help ensure long-term sustainability. The CPP Fund is projected to reach $3 trillion by 2050. CPP Investments invests in all major asset classes, including public equity, private equity, real estate, infrastructure and fixed-income instruments, and is headquartered in Toronto with offices in Hong Kong, London, Luxembourg, Mumbai, New York City, San Francisco, São Paulo and Sydney. 

CPP Investments attracts and selects high-calibre individuals from top-tier institutions around the globe. Join our team and look forward to:

  • Diverse and inspiring colleagues and approachable leaders
  • Stimulating work in a fast-paced, intellectually challenging environment
  • Accelerated exposure and responsibility
  • Global career development opportunities
  • Being motivated every day by CPP Investments’ important social purpose and unshakable principles
  • A flexible/hybrid work environment combining in office collaboration and remote working
  • A deeply rooted culture of Integrity, Partnership and High Performance

If you share a passion for performance, value a collegial and collaborative culture, and approach everything with the highest integrity, here’s an opportunity for you to invest your career at CPP Investments.

Job Description

The work of our Technology and Operation (T&O) Risk team is essential to the organization. We are looking for an Associate to support the delivery of information security risk assessments and control reviews for our existing in-house and third party SAAS applications and systems, including pre-onboarding assessment and third-party security review. The Associate, Cyber & Technology risk Management role is part of the Information Security & Risk Management group and reports to the Director, Cyber & Technology Risk. This position provides an opportunity to build rapport through engagement with key stakeholders across the organization.

Responsibilities:

  • Complete timely security assessments of third-party engagements, vendor controls and network integration to identify, document, and communicate key risks and gaps.
  • Review contracts to ensure appropriate data security terms are included to protect CPP from data and content security risks.
  • Perform risk assessments on Critical systems, applications, and networks to identify control gaps and vulnerabilities, and recommend corrective actions or countermeasures. Raise issues in the Issues Management system and work with the business for timely completion of the recommended actions.
  • Collaborate with business and security architecture team to gauge the current state and target state architecture, future developments, and critical change to Identify and document the risk exposure, mitigation plans and track remediation.
  • Lead and support the cyber and technology projects, managing multiple deliverables simultaneously and dynamically prioritizing in alignment with the changes in technology and business environment.
  • Maintain and evolve active partnership with Technology & Operations, Operational Risk, corporate functions, and Audit team to ensure an alignment across technology and risk domains.

Qualifications

  • At least 3-5 years of experience in information security and/or third-party risk management, with experience in a technical setting and expert in information security review of systems and architecture risk assessment at financial institutions, investment companies, or other large industry or public sector companies.
  • Strong knowledge and skills in various systems and architecture domains, such as cloud computing, network security, web services, data protection, encryption, SDLC, authentication, etc.
  • Strong knowledge of cloud-based models (SaaS, PaaS, IaaS) and technologies used to implement controls within these environments, network security, application security, and vulnerability management.
  • Proficient in using various tools and methodologies for systems and architecture risk assessment and audit, such as SOC, NIST, ISO, COBIT, OWASP, etc
  • Report writing and communication skills - being able to structurally document and present the assessment overview, finding and recommendation to both technical and non-technical audiences.
  • Detail-oriented individual with organizational, critical thinking, analytical, and problem-solving skills; able to maintain a balance between the details and the larger picture.
  • Undergraduate university degree, preferably in Technology and Certifications in systems and architecture security and risk management, such as CISSP, CISA, CRISC, etc., are preferred.

Additional Information

Visit our LinkedIn Career Page or Follow us on LinkedIn. #LI-KE1 #LI-Onsite 

At CPP Investments, we are committed to diversity and equitable access to employment opportunities based on ability.

We thank all applicants for their interest but will only contact candidates selected to advance in the hiring process. 

Our Commitment to Inclusion and Diversity:

In addition to being dedicated to building a workforce that reflects diverse talent, we are committed to fostering an inclusive and accessible experience. If you require an accommodation for any part of the recruitment process (including alternate formats of materials, accessible meeting rooms, etc.), please let us know and we will work with you to meet your needs.

Disclaimer:

CPP Investments does not accept resumes from employment placement agencies, head-hunters or recruitment suppliers that are not in a formal contractual arrangement with us. Our recruitment supplier arrangements are restricted to specific hiring needs and do not include this or other web-site job postings. Any resume or other information received from a supplier not approved by CPP Investments to provide resumes to this posting or web-site will be considered unsolicited and will not be considered. CPP Investments will not pay any referral, placement or other fee for the supply of such unsolicited resumes or information.


The Company
HQ: Toronto, ON
2,227 Employees
On-site Workplace
Year Founded: 1997

What We Do

CPP Investments is a professional investment management organization with a vital purpose: to help provide a foundation on which Canadians build financial security in retirement. To help maximize the CPP Fund for generations to come, we invest across all major asset classes: public equities, private equities, real estate, infrastructure and fixed income instruments.

With an international reputation as a leading institutional investor, our governance structure is recognized worldwide as a best practice for pension fund investment management. Headquartered in Toronto, with offices in Hong Kong, London, Luxembourg, Mumbai, New York, San Francisco, São Paulo and Sydney, we leverage our global reach and on-the-ground knowledge to continually diversify, build and grow the CPP Fund.

Our investment professionals partner with top core services specialists in finance, human resources, information technology, legal, public affairs and communications, investment operations, data management, treasury services and investment risk.

Similar Jobs

Hybrid
Toronto, ON, CAN
289097 Employees

TransUnion Logo TransUnion

Senior Advisor, Business Process Management

Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Hybrid
Burlington, ON, CAN
13000 Employees

Mondelēz International Logo Mondelēz International

Supply Planner

Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Hybrid
Hamilton, ON, CAN
90000 Employees

Magna International Logo Magna International

Disability Manager (12-Month Contract)

Automotive • Hardware • Robotics • Software • Transportation • Manufacturing
Hybrid
Aurora, ON, CAN
171000 Employees

Similar Companies Hiring

Capco Thumbnail
Professional Services • Generative AI • Fintech • Financial Services • Energy • Cybersecurity • Consulting
London, GB
6000 Employees
iCapital Thumbnail
Fintech • Financial Services
New York, NY
1500 Employees
Morningstar Thumbnail
Fintech • Financial Services • Enterprise Web
Chicago, IL
12700 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account