We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.
At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute.
To learn more about CIBC, please visit CIBC.com
What you’ll be doing
In this role you’ll be reporting to the Director, Technology Risk SME, SME TI&I Team and will be expected to have expertise in Technology Risk & Cloud that includes technology applications, infrastructure and systems including Cloud services and outsourced technology environments. You will lead Technology Audits in the SME portfolio and be responsible for the overall quality, execution timelines and audit coverage. You'll support Internal Audit groups by providing consultation and providing work programs to ensure coverage of technology risk within the audit universe, providing guidance and training. You will lead or participate in various audits and regulatory reviews. You will perform and document your work in accordance with CIBC Internal Audit methodology and you will be accountable for the quality of audit procedures and documentation prepared by you.
At CIBC we enable the work environment most optimal for you to thrive in your role. You’ll have the flexibility to manage your work activities within a hybrid work arrangement where you’ll spend 1-3 days per week on-site, while other days will be remote.
How you’ll succeed
Deliver and Support Audits – Lead and contribute to the development and execution of the annual Audit Plan for Technology risk. Through in-depth understanding of technology risk, including changes to the regulatory and business environments, provide consultation to other Internal Audit teams as well as train, guide and mentor auditors in areas of technology applications, technology infrastructure and systems, operational resilience & technology systems including Cloud services and outsourced technology environments.
Continuous Monitoring and Quarterly Dashboards – Communicate trends in risk and control issues to Internal Audit executives and contribute reports to senior management through the technology risk dashboard.
Quality control – Complete quality control reviews for Technology Risk audit work programs.
Leadership – Be able to demonstrate leadership abilities; although this role does not manage people, depending on the engagement, you will be required to lead teams of about 3 – 5 members.
Who you are
You can demonstrate experience in having a broad and deep knowledge and understanding of risks associated with technology infrastructure, networks, system access and security, cloud technology, operational resilience, regulatory requirements, and best practices in technology controls. You will also have knowledge of auditing practices, procedures and principles that enable you to analyze client operations, assess risks, and select the most suitable audit approach. You must have proven ability to write comprehensive and concise reports used by senior leadership.
You’re a certified professional. You have a current accreditation in any of the following: CISA – Certified Information Systems Auditor; CISSP – Certified Information Systems Security Professional; In-depth knowledge of COBIT, working knowledge of CCM (Cloud Controls Matrix), ITIL & ISO frameworks and one or more Cloud certifications such as Azure Security Engineer or Azure DevOps Senior Engineer. It is preferred that you have a bachelor's or equivalent degree in Business, Accounting, or financial designation or related field.
You understand that success is in the details. You notice things that others don't. Your critical thinking skills help to inform your decision making.
You're driven by collective success. You know that collaboration can transform a good idea into a great one. You understand the power of an inclusive team that enjoys working together to bring a shared vision to life.
You embrace and champion change. You'll continuously evolve your thinking and the way you work to deliver your best.
Values matter to you. You bring your real self to work, and you live our values – trust, teamwork and accountability.
What CIBC Offers
At CIBC, your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential. We aspire to give you a career, rather than just a paycheck.
We work to recognize you in meaningful, personalized ways including a competitive salary, incentive pay, banking benefits, a benefits program*, defined benefit pension plan*, an employee share purchase plan, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program.
Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients.
We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development.
*Subject to plan and program terms and conditions
What you need to know
CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience. If you need accommodation, please contact Mailbox.careers-carrieres@cibc.com
You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit.
We may ask you to complete an attribute-based assessment and other skills tests (such as simulation, coding, French proficiency, MS Office). Our goal for the application process is to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us.
Job Location
Toronto-81 Bay, 34th FloorEmployment Type
RegularWeekly Hours
37.5Skills
Cloud Applications, Information Security Auditing, Information Technology Auditing, IT Security Auditing