Senior Audit Manager, Technology Applications

Brossard

Offre publiée le 2024-06-26

CIBC

Senior Audit Manager, Technology Applications

CIBC

Bank on your terms with CIBC whether it’s in person, over the phone or online, CIBC has you covered.

View company page

We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.

At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute.

To learn more about CIBC, please visit CIBC.com

What you’ll be doing

In this role you’ll have the opportunity to report to the Senior Director, Internal Audit, Technology Applications and will be expected to be the Subject Matter Expert (SME) for application development, security, access and data related controls in in-house and outsourced application environments.

You will support Internal Audit groups by ensuring suitable coverage of technology risk within the audit universe, providing guidance and training.

You will lead or participate in various audits and objectively evaluate the design and effectiveness of IT application development, security, access and data related controls across the audit entity portfolio.

As an audit lead you will manage the quality of audit procedures and documentation performed by a team of audit managers.

At CIBC we enable the work environment most optimal for you to thrive in your role. You’ll have the flexibility to manage your work activities within a hybrid work arrangement where you’ll spend 1-3 days per week on-site, while other days will be remote.

How you’ll succeed

Risk reviews - You will lead and contribute to the development of the annual Audit Plan for IT application development, security, access and data related risk coverage across all audit groups.

Through in-depth understanding of IT risk, including changes to the regulatory and business environments, train, guide and mentor auditors in IT application development, security, access and data relatedrequirements and best practices.

Report audits - You will communicate trends in risk and control issues to Internal Audit executives and contribute to reports to senior management on the results of ongoing reviews of IT application development, security, access and data across CIBC.

As the subject matter expert, when required, review contracts and provide feedback to Procurement and other stakeholders, ensuring that audit rights are included.

Quality control - You will complete quality assurance reviews of IT applications audit work program in a representative sample of entity audits, reporting trends and providing guidance and training where required.

Who you are

You understand that success is in the details. You notice things that others don't and your critical thinking skills help to inform your decision making.

You enjoy investigating complex problems, and making sense of information. You're confident in your ability to communicate detailed information in an impactful way.

You're driven by collective success. You know that collaboration can transform a good idea into a great one. You understand the power of an inclusive team that enjoys working together to bring a shared vision to life.

You embrace and champion change. You'll continuously evolve your thinking and the way you work in order to deliver your best.

You’re a certified professional. You have a current accreditation in any of the following : CISA Certified Information Systems Auditor;

CISSP Certified Information Systems Security Professional; In-depth knowledge of COBOT and working knowledge of ITIL, ISO and NIST frameworks

You can demonstrate experience in having a broad and deep knowledge and understanding of risks associated with application development, application access and security, automated application controls, regulatory requirements and best practices in technology controls.

You will also have knowledge of auditing practices, procedures and principles sufficient to analyze client operations, assess risks, and select the most suitable audit approach.

Values matter to you. You bring your real self to work and you live our values trust, teamwork and accountability.

What CIBC Offers

At CIBC, your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential.

We aspire to give you a career, rather than just a paycheck.

We work to recognize you in meaningful, personalized ways including a competitive salary , incentive pay, banking benefits, a benefits program*, defined benefit pension plan*, an employee share purchase plan, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program.

Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients.

We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development.

Subject to plan and program terms and conditions

What you need to know

CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience.

If you need accommodation, please contact [email protected]

You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit.

We may ask you to complete an attribute-based assessment and other skills tests (such as simulation, coding, French proficiency, MS Office).

Our goal for the application process is to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us.

Job Location

Toronto-81 Bay, 34th Floor

We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.

At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute.

To learn more about CIBC, please visit CIBC.com

What you’ll be doing

In this role you’ll have the opportunity to report to the Senior Director, Internal Audit, Technology Applications and will be expected to be the Subject Matter Expert (SME) for application development, security, access and data related controls in in-house and outsourced application environments.

You will support Internal Audit groups by ensuring suitable coverage of technology risk within the audit universe, providing guidance and training.

You will lead or participate in various audits and objectively evaluate the design and effectiveness of IT application development, security, access and data related controls across the audit entity portfolio.

As an audit lead you will manage the quality of audit procedures and documentation performed by a team of audit managers.

At CIBC we enable the work environment most optimal for you to thrive in your role. You’ll have the flexibility to manage your work activities within a hybrid work arrangement where you’ll spend 1-3 days per week on-site, while other days will be remote.

How you’ll succeed

Risk reviews - You will lead and contribute to the development of the annual Audit Plan for IT application development, security, access and data related risk coverage across all audit groups.

Through in-depth understanding of IT risk, including changes to the regulatory and business environments, train, guide and mentor auditors in IT application development, security, access and data relatedrequirements and best practices.

Report audits - You will communicate trends in risk and control issues to Internal Audit executives and contribute to reports to senior management on the results of ongoing reviews of IT application development, security, access and data across CIBC.

As the subject matter expert, when required, review contracts and provide feedback to Procurement and other stakeholders, ensuring that audit rights are included.

Quality control - You will complete quality assurance reviews of IT applications audit work program in a representative sample of entity audits, reporting trends and providing guidance and training where required.

Who you are

You understand that success is in the details. You notice things that others don't and your critical thinking skills help to inform your decision making.

You enjoy investigating complex problems, and making sense of information. You're confident in your ability to communicate detailed information in an impactful way.

You're driven by collective success. You know that collaboration can transform a good idea into a great one. You understand the power of an inclusive team that enjoys working together to bring a shared vision to life.

You embrace and champion change. You'll continuously evolve your thinking and the way you work in order to deliver your best.

You’re a certified professional. You have a current accreditation in any of the following : CISA Certified Information Systems Auditor;

CISSP Certified Information Systems Security Professional; In-depth knowledge of COBOT and working knowledge of ITIL, ISO and NIST frameworks

You can demonstrate experience in having a broad and deep knowledge and understanding of risks associated with application development, application access and security, automated application controls, regulatory requirements and best practices in technology controls.

You will also have knowledge of auditing practices, procedures and principles sufficient to analyze client operations, assess risks, and select the most suitable audit approach.

Values matter to you. You bring your real self to work and you live our values trust, teamwork and accountability.

What CIBC Offers

At CIBC, your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential.

We aspire to give you a career, rather than just a paycheck.

We work to recognize you in meaningful, personalized ways including a competitive salary , incentive pay, banking benefits, a benefits program*, defined benefit pension plan*, an employee share purchase plan, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program.

Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients.

We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development.

Subject to plan and program terms and conditions

What you need to know

CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience.

If you need accommodation, please contact [email protected]

You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit.

We may ask you to complete an attribute-based assessment and other skills tests (such as simulation, coding, French proficiency, MS Office).

Our goal for the application process is to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us.

Job Location

Toronto-81 Bay, 34th Floor

Employment Type

Regular

Weekly Hours

37.5

Skills

Application Development, Auditing, Audit Management, Communication, Documentations, Information Technology (IT) Risk, Information Technology Applications, Internal Auditing, Internal Controls, Management Reporting, Technology Applications

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

J-18808-Ljbffr

3 days ago