NOTE: HYBRID work model, 3-days on-site in Toronto/week
Type: 8-month contract
Rate: $150-170/hr, 8 hours/day, 40 hours/week
SKILLS: 10+ years in Cybersecurity, AI Security, Cloud Security, CISSP, NIST, ISO 42001
Industry: Banking
DESCRIPTION:
- The Senior Manager serves as the senior technical resource responsible for ensuring cybersecurity considerations and governance requirements are effectively embedded across emerging technology initiatives, AI-enabled capabilities, and strategic transformation programs.
- This position provides leadership and subject matter expertise in the secure adoption of emerging technologies and AI-enabled capabilities, establishing security strategies, controls, and practices that enable innovation while maintaining a resilient security posture as technology and cyber threats evolve.
- This position supports Technology teams in advancing the company’s cybersecurity capabilities, while strengthening security oversight for emerging technologies, including Artificial Intelligence (AI), Generative AI, automation, and cloud-native platforms.
This position collaborates with all Technology teams and business management, to ensure cybersecurity, AI, and emerging technology security risks are appropriately identified, assessed, managed, and communicated.
DUTIES:
Key work outputs and accountabilities:
- Develops and maintains AI-related security requirements, guardrails and control recommendations, including secure use of AI tools, model/data protection, identity and access controls, logging, monitoring, vendor assurance and incident response considerations.
- Ensures security-related configuration and standards for ensuring an appropriate level of security are documented, communicated, and comply with applicable policies and procedures.
- Leads the development, implementation, and continuous improvement of enterprise AI security standards, security requirements, and security assessment methodologies.
- Provides guidance, coaching and direction to Technology teams on security expectations for emerging technology, AI-enabled solutions and post-quantum readiness activities.
- Advises senior management on AI and emerging technology security risks, AI-related cyber threats, and mitigation strategies that support informed decision-making and alignment with the company’s enterprise risk appetite.
- Leads cross-functional security risk assessments for AI and emerging technologies.
- Participates in the development and maturity of the company’s Cyber Security Program.
- Provides training and direction to Technology staff on changes to security processes for new systems/applications.
- Oversees security practices for addressing potential security exposures and ensures appropriate mitigating processes are identified and implemented to enable business objectives.
- Establishes and maintains security requirements and standards, to ensure approved technologies and third-party solutions align with the company’s cybersecurity policies and standards.
- Evaluates and provides recommendations regarding risks associated with model security.
- Monitors the evolving threat intelligence and translates relevant changes into actionable recommendations for the company.
- Conducts security assessments of emerging technologies, AI-enabled solutions, automation platforms, advanced analytics, cloud-native services, and other new technology capabilities introduced across the enterprise.
Management accountability
- Provides guidance, coaching and direction to all Technology teams on security expectations for emerging technologies, AI-enabled solutions, and post-quantum readiness activities.
- Mentors team members and contributes to the development of the company’s Cybersecurity program, AI security, and technology security risk management capabilities across the enterprise.
Decision making
- Exercises professional judgement in evaluating complex cybersecurity, emerging technology, and AI-related security risks, while balancing security requirements with operational and business objectives.
- Defines cybersecurity controls, security architecture, AI security requirements, security governance frameworks, and security risk treatment strategies, based on technical analysis and business priorities.
- Influences decisions regarding technology adoption, third-party services, AI implementations, and emerging technology initiatives by providing expert cybersecurity guidance on risks and mitigation strategies.
- Advises Technology stakeholders on cybersecurity and emerging technology security risks that may impact the company’s strategic objectives, operations, reputation, or obligations.
REQUIREMENTS:
- University degree in Computer Science
- Security Designations such as Certified Information Systems Security Professional (CISSP) is preferred
- Additional certifications in cloud security, AI security, is an asset.
- Strong knowledge of security architecture, cloud security, secure use of generative AI, data protection, model/prompt security, access management, security logging and monitoring, and secure third-party AI service assurance.
- Working knowledge of third-party risk management, data protection, security assurance, and security control assessment methodologies.
- Strong understanding of emerging cyber threats, AI-related attack vectors, digital ecosystems, and evolving security-related industry best practices.
- Working knowledge of security governance frameworks (NIST, ISO)
- Knowledge of emerging technology risk assessment practices, including threat modelling, secure-by-design principles, software supply chain risk, cloud-native security and resilience considerations.
- 10+ years of progressive experience in cybersecurity, security engineering, technology risk, or related disciplines.
- Experience in implementing cybersecurity governance frameworks, policies, standards, and control requirements.
- Demonstrated ability to influence senior stakeholders and communicate complex cybersecurity and technology security risks in a clear, concise, and business-focused manner.
- Experience supporting the secure adoption and governance of emerging technologies, including Artificial Intelligence and AI-enabled capabilities.
- Experience assessing and recommending security controls for emerging technology platforms, AI-enabled capabilities, automation, and cloud-based services.
- Experience working with cross-functional stakeholders to translate emerging technology and AI-related security risks into practical security requirements, remediation plans, and business-level recommendations.
- Excellent communication, organization, stakeholder management, and coordination skills, with the ability to work effectively across multiple teams and levels of the organization.
Note: As part of our hiring process, we use AI-based systems to support initial applicant screening.
TO APPLY: https://directitrecruiting.com/job/senior-manager-ai-security-and-cybersecurity-1887/
Pay: $150.00-$170.00 per hour
Expected hours: No more than 40.0 per week
Benefits:
Ability to commute/relocate:
- Toronto, ON M5V 3L1: reliably commute or plan to relocate before starting work (preferred)
Application question(s):
- What is your hourly rate?
Experience:
- AI Security: 2 years (preferred)
- Cybersecurity: 10 years (preferred)
- Cloud Security: 2 years (preferred)
Licence/Certification:
- CISSP (preferred)
- ISO 42001 (preferred)
- NIST (preferred)
Work Location: Hybrid remote in Toronto, ON M5V 3L1