Director of Cyber Risk Governance overseeing cybersecurity and regulatory compliance at Manulife. Ensuring adherence to global regulations while enhancing cybersecurity governance practices.
Responsibilities
Lead the independent oversight of cybersecurity risks, ensuring alignment with Manulife’s standards and strategic objectives
Conduct independent assessments against industry frameworks such as NIST and SWIFT
Oversee and challenge adherence to cybersecurity regulatory requirements
Ensure accurate interpretation and compliance by first-line teams with global regulators including OSFI, SEC, HKMA, MAS, and others
Stay current on emerging technologies and regulatory changes to maintain a robust cybersecurity posture
Collaborate across first and second lines of defense to develop and report on Key Risk Indicators (KRIs)
Support leadership in preparing board-level cybersecurity materials, offering actionable insights on cyber and emerging risks, data security and operational resilience
Partner with the Information Risk team to drive oversight roadmaps and strategies
Ensure efficient and effective processes are in place to provide comprehensive coverage across the enterprise
Identify opportunities to enhance governance practices, improve oversight maturity, and strengthen risk management capabilities.
Requirements
7–10 years in cybersecurity risk management
Strong technical acumen across domains such as identity and access management (IAM), cloud security, network security, and data protection
Experience with performing cyber due diligence over mergers and acquisitions
Experience with designing, implementing and running data protection capabilities including DLP and insider threat prevention
Experience in different aspects of cyber operations including incident response, threat intelligence/detection, red/blue/purple teaming and threat hunting
Demonstrated ability to provide strategic oversight, challenge and governance in cybersecurity risk management
Experience interpreting and governing cybersecurity regulations from bodies such as OSFI, SEC, HKMA, MAS, and SWIFT
Strong understanding of industry recognized frameworks including NIST CSF, ISO27001/27002 and PCI DSS
Demonstrated ability to conduct technical cybersecurity assessments against regulatory and industry standards
Ability to analyze cybersecurity trends and emerging risks to identify opportunities for improving the organization’s security posture
Experience building out strategies and roadmaps related to cybersecurity governance
Strong relationship-building skills with the ability to influence and build credibility across diverse stakeholder groups
Excellent verbal and written communication skills, with the ability to produce high-quality deliverables for executive and board-level audiences.
Facilities & Compliance Coordinator overseeing maintenance and compliance tasks at Solvd.'s Glasgow office. Ensuring safety standards and efficient operations through effective management and oversight.
Compliance Officer ensuring compliance with Estonian financial regulations and working closely with authorities. Drafting policies and conducting training within a remote - first crypto payments company.
Compliance Manager overseeing regulatory compliance in Australia's energy sector startup. Leading compliance strategies and risk mitigation for consumer energy resources at Brighte.
Senior Regulatory Scientist conducting compliance reviews and developing regulatory strategies for medical devices at COOK. Ensuring adherence to regulatory standards while supporting clinical evaluations and audits.
Ethics & Compliance Specialist at Cook Australia acting as the key compliance contact. Partnering with teams to enhance and enforce compliance program across various regions and areas.
Trade Compliance Manager overseeing trade compliance and logistics operations for NXP in Malaysia. Ensuring adherence to regulations and leading supply chain security initiatives.
Director of Technology providing strategic leadership at the ICO's Technology directorate. Overseeing regulatory interventions and ensuring effective policy development in a complex environment.
VP leading compliance architecture for complex multi - jurisdiction deals in fintech. Engaging with clients and translating regulatory changes into commercial opportunities for global markets.
Senior Manager managing cultural resource management and Tribal relations program at Invenergy. Leading development and implementation for energy development compliance across the US.