Senior Manager, Technology and Cybersecurity Audit Specialist

4 weeks ago


Boston, Massachusetts, United States Manulife Full time
Job Summary

The Technology Audit Team assesses technology as part of initiatives, processing, and operations to ensure that delivery meets business, cybersecurity, performance, and regulatory expectations.

In this role, you will primarily work with our segment and business line Chief Information Officers, and global functional partners leading our data, cybersecurity, engineering, infrastructure, information, and operational risk management, and program delivery practices.

We leverage analytics and use Microsoft Azure Data Services with tools such as Power BI and Co-Pilot to automate our testing in line with Manulife's ambition to be the most digital, customer-centric company in our industry.

Through our engagements, you will learn about each of our business markets, including the external and internal demands of technology, digital processing, growing regulatory requirements around cybersecurity, and opportunities to explore new technologies, platforms, and leading global technology partners as they are deployed.

As an audit professional at Manulife, you'll have the chance to work with a diverse set of advanced tools and technologies, including a centralized GRC tool used by all three lines of defense, business analytics tools, enterprise data lake, machine learning, Gen AI, Python, and more.

These exposures will provide you with invaluable experience in performing innovative testing with digital and analytic tools, enabling key insights that drive impactful audit outcomes.


This role offers a unique opportunity to collaborate directly with members of the Audit Leadership Team (ALT) and Technology and Risk leadership.

By engaging with senior leaders, you will gain valuable insights and visibility, enhancing your leadership skills and professional growth within the organization.


Key Responsibilities:


Manage a team of auditors to cover key internal technology risks and produce meaningful audit reports that clearly articulate the position on risks and related issues.

Lead or support multiple simultaneous audit projects to ensure time and quality objectives are met. Timely address and/or report potential budget overruns and resourcing concerns.


Assess and evaluate the effectiveness and efficiency of internal controls and operating practices.


Clearly communicate potential issues and evaluate corrective action plans, assist in preparing and presenting reports to Audit Committees.


As an infrastructure, security, and/or technology risk Subject Matter Expert (SME), train technology auditors on emerging technologies and security principles.

Collaborate and connect with various partners within the three lines of defense to promote awareness of risk.


Recruit and develop high-caliber staff, supporting their growth through the Audit Services Core Competencies model.



Required Qualifications:


6-8 years of relevant experience, plus a risk/security (e.g., CISA, CISSP) or other cloud/networking (e.g., AZ-xxx, CCxx) certification or equivalent experience.

University degree in information systems, or other relevant degree or equivalent experience.


Solid understanding of system development methodologies, cyber and network security processes, and related regulatory requirements.


Solid understanding of cybersecurity concepts, such as, Security Operations (Vulnerability Management, DLP, SIEM etc.), Security Engineering (Cryptography, Cloud Security, Security Architecture etc.)



Solid understanding of other technology infrastructure concepts, processes, and associated risks - such as, Active Directory, DevSecOps, Virtualization, etc.


Prior experience with information systems and operations used in the insurance industry and financial services industry will be beneficial.



What We Offer:


We'll empower you to learn and grow the career you want.


We'll recognize and support you in a flexible environment where well-being and inclusion are more than just words.


As part of our global team, we'll support you in shaping the future you want to see.



Manulife and John Hancock


Manulife Financial Corporation is a leading international financial services provider, helping people make their decisions easier and lives better. To learn more about us, visit https://www.manulife.com/.


Manulife is an Equal Opportunity Employer


At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop, and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals.


We are committed to fair recruitment, retention, advancement, and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, color, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy-related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law.


It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process.


All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and Manulife/John Hancock policies.


To request a reasonable accommodation in the application process, contact https://www.manulife.com/contact-us/.



Primary Location


Toronto, Ontario


Working Arrangement


Hybrid


Salary Range


$92,190.00 CAD - $171,210.00 CAD


If you are applying for this role outside of the primary location, please contact https://www.manulife.com/contact-us/ for the salary range for your location.


The actual salary will vary depending on local market conditions, geography, and relevant job-related factors such as knowledge, skills, qualifications, experience, and education/training.


Employees also have the opportunity to participate in incentive programs and earn incentive compensation tied to business and individual performance.


Manulife offers eligible employees a wide array of customizable benefits, including health, dental, mental health, vision, short- and long-term disability, life, and AD&D insurance coverage, adoption/surrogacy, and wellness benefits, and employee/family assistance plans.


We also offer eligible employees various retirement savings plans (including pension and a global share ownership plan with employer matching contributions) and financial education and counseling resources.


Our generous paid time off program in Canada includes holidays, vacation, personal, and sick days, and we offer the full range of statutory leaves of absence.


If you are applying for this role in the U.S., please contact https://www.manulife.com/contact-us/ for more information about U.S.-specific paid time off provisions.



  • Boston, Massachusetts, United States Manulife Full time

    About the RoleWe are seeking a highly skilled Senior Manager, Technology and Cybersecurity Audit to join our team. As a key member of our Technology Audit Team, you will be responsible for assessing technology as part of initiatives, processing, and operations to ensure that delivery meets business, cybersecurity, performance, and regulatory expectations.Key...


  • Boston, Massachusetts, United States Manulife Full time

    Job SummaryThe Technology Audit Team at Manulife assesses technology as part of initiatives, processing, and operations to ensure that delivery meets business, cybersecurity, performance, and regulatory expectations. In this role, you will primarily work with our segment and business line Chief Information Officers, and global functional partners leading our...


  • Boston, Massachusetts, United States Saviance Full time

    About the Role:We are seeking a highly experienced technology acquisition specialist to support our client's acquisition firm. This contract, on-demand role involves providing detailed reports on potential acquisition targets, focusing on financial, technical, and operational aspects.The ideal candidate will have expertise in analyzing technology systems,...


  • Boston, Massachusetts, United States Saxon Global Full time

    Job Summary:The Saxon Global team is seeking a highly skilled Cybersecurity Specialist to join our Office of the Chief Information Security Office (CISO) team. The ideal candidate will be responsible for coordinating internal and external audits, performing comprehensive risk assessments, and developing robust security policies.This role requires a deep...

  • Senior Audit Manager

    4 weeks ago


    Boston, Massachusetts, United States CyberCoders Full time

    Job Title: Sr. Audit ManagerJob Summary:The Sr. Audit Manager will oversee and manage the audit process, ensuring compliance with regulatory standards and internal policies. This role is essential for maintaining the integrity of financial reporting and providing strategic insights to the organization.Key Responsibilities: Lead and manage audit engagements...


  • Boston, Massachusetts, United States NANA Regional Corp Full time

    Job SummaryAkima Systems Engineering (ASE) is seeking a skilled Cybersecurity Specialist to join our team. As a Cybersecurity Specialist, you will play a critical role in protecting our organization's data and infrastructure from cyber threats. Your strong foundation in cybersecurity, network architectures, and system administration will enable you to...


  • Boston, Massachusetts, United States Northern Trust Full time

    About Northern Trust:Northern Trust is a globally recognized financial institution with a rich history dating back to 1889. We provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by upholding our core values of service, expertise, and integrity.With over 130 years of financial experience...


  • Boston, Massachusetts, United States Aptiv Full time

    We are seeking a highly skilled Cybersecurity Process Engineer to join our team at Aptiv. In this role, you will be responsible for providing cybersecurity support to internal and external customers, ensuring that our CTO Product Cybersecurity processes are up to date with the best available industry cybersecurity techniques.Responsibilities and DutiesUpdate...


  • Boston, Massachusetts, United States ePlus Technology, inc. Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Solutions Architect to join our team at ePlus Technology, inc. As a key member of our team, you will be responsible for designing and implementing secure IT architectures that meet the needs of our clients.Key ResponsibilitiesLead Cybersecurity Discussions: You will lead discussions with clients to...


  • Boston, Massachusetts, United States ePlus Technology, inc. Full time

    About the RoleePlus Technology, inc. is seeking a highly skilled Cybersecurity Solutions Architect to join our team. As a key member of our security team, you will be responsible for designing and implementing secure IT architectures that meet the needs of our clients.Key ResponsibilitiesDevelop and implement secure IT architectures that meet the needs of...


  • Boston, Massachusetts, United States ITmPowered, LLC Full time

    Job Summary: We are seeking a highly skilled IT Auditor Consultant to join our team at ITmPowered, LLC. As a key member of our Technology Risk Management organization, you will be responsible for conducting IT Controls Assessments for a set of 20 custom IT controls in our Hospital Medical Device Cybersecurity Program.About the Role: The Sr. IT Auditor...


  • Boston, Massachusetts, United States Children's Hospital Boston Full time

    Job Title: Cybersecurity Manager PPOCJob Summary:The Cybersecurity Manager PPOC will oversee the PPOC Information Security Program, ensuring the data security of the PPOC and its member practices. This role will develop a comprehensive security program, maintaining the PPOC's Information Security Plan and ensuring compliance with federal and state privacy...


  • Boston, Massachusetts, United States Akima Full time

    Cybersecurity Specialist IIThe Cybersecurity Specialist II is responsible for maintaining and improving the cybersecurity posture of systems and networks at the Portsmouth and St. Julien's Creek Annex sites. This full-time, onsite position requires a hands-on approach to security operations, including patching, scanning, reporting, and...


  • Boston, Massachusetts, United States Falconwood Full time

    Falconwood is a woman-owned and veteran-owned company providing consultation and programmatic support to Department of Defense (DoD) Information Technology (IT) initiatives and programs.We provide expert advice and consultation on a diverse range of IT subjects, focusing on acquisition, cybersecurity, engineering, logistics, and process development.Job...


  • Boston, Massachusetts, United States Cabot Corporation Full time

    Cybersecurity Operations ManagerYour Role at CabotThe Cybersecurity Operations Manager will play a pivotal role in overseeing the engagement with our Managed Security Services Provider (MSSP) and Managed Service Provider (MSP). This position is responsible for managing the relationships with all suppliers, ensuring the delivery of high-quality services, and...


  • Boston, Massachusetts, United States Saviance Full time

    About the Role:We are seeking a highly experienced professional to support our client's acquisition firm in the technology sector.This contract, on-demand role involves providing detailed reports on potential acquisition targets, focusing on financial, technical, and operational aspects.The ideal candidate will collaborate closely with the firm's C-suite...


  • Boston, Massachusetts, United States Cabot Corporation Full time

    Cybersecurity Operations RoleThis is a pivotal role in overseeing the engagement with our Managed Security Services Provider (MSSP) and Managed Service Provider (MSP).The Cybersecurity Operations Manager will be responsible for managing the relationships with all suppliers, ensuring the delivery of high-quality services, and aligning cybersecurity...


  • Boston, Massachusetts, United States ITmPowered, LLC Full time

    About the Role:The Sr. IT Auditor Consultant will serve on behalf of the Technology Risk Management organization performing IT Controls Assessments for a set of 20 custom IT controls in this Hospital Medical Device Cybersecurity Program.Plan and perform full lifecycle audits (scope, plan, fieldwork, reporting) assessing Audit IT Controls Design prior to...


  • Boston, Massachusetts, United States Falconwood Full time

    Falconwood Career OpportunityWe are seeking a highly motivated and experienced Cybersecurity Analyst to join our team at Falconwood. As a Cloud Cybersecurity Analyst, you will play a critical role in ensuring the security and integrity of our cloud-based systems and applications.Key Responsibilities:Perform Risk Management Framework (RMF) Steps 2, 5, and...


  • Boston, Massachusetts, United States Check Point Software Technologies Full time

    Protecting the World's Most Sophisticated NetworksAt Check Point Software Technologies, we're driven by a passion for innovation and a commitment to excellence. Our team of cybersecurity experts is dedicated to helping organizations safeguard their operations and information from the most advanced threats.Key Responsibilities:Develop and implement...