Director of Internal Audit leading audits and advisory work in technology and digital risk at Fairstone Bank. Ensuring independence assurance over technology risks including cybersecurity and data management.
Responsibilities
Lead the planning and delivery of risk-based audits and advisory work across the Bank’s technology and digital risk domains.
Provide independence assurance over technology risks across ITGCs, cybersecurity governance, cloud governance, data management, AI, and technology operations.
Own and maintain the technology audit universe for core domains: Technology Strategy, Data, and AI, Technology Integration, Software Engineering, Digital Services, Technical Services & Performance, Technology Operations, and Information & Cyber Security.
Maintain awareness of technological changes in both external and internal environments including trends in risk management practices and regulatory expectations, and changes in business activities to perform quarterly risk assessments.
Lead the annual technology risk assessment, identify appropriate audits to be included in the annual audit plan and help develop the Plan for the Audit Committee approval.
Oversee execution and end-to-end delivery of all audit projects, ensuring all documentation and audit reports are complete.
Coordinate use of co-sourced technical experts for deep cyber/cloud/AI testing where needed.
Deliver balanced and insightful reporting to the Chief Internal Auditor and Audit Committee on technology risk posture, themes, and systemic gaps.
Requirements
University degree in information systems, Computer Science, Engineering, Accounting, or related field.
Certified Information Security Audit designation.
Certifications in Audit: CIA, Risk: CRISC, CGEIT, Security: CISSP, CISM, CCSP, ISO 27001.
Cloud: AWS/Azure/GCP security or architecture certifications.
Data/Privacy: CDMP, CIPT/CIPM/CIPP, ISO 27701.
10+ years of progressive experience within the Financial Services Industry.
Solid Information Technology (IT)/Information Security (IS) audit and/or similar management experience in a regulated financial institution.
Strong experience leading audits of information technology, information security, data management, and project management, in conformance with IIA Standards.
Benefits
Generous vacation based on your role, statutory holidays, plus 6 wellness days to prioritize your well-being.
Competitive base salary plus an annual incentive bonus tied to performance.
Robust health and dental coverage through Manulife, as well as virtual healthcare through Dialogue.
Group Retirement Savings Plan with up to 7% employer match.
Discounts from top retailers via WorkPerks, plus location-based perks like gym memberships and Toronto Bike Share.
Gym access at our London and Montreal offices.
Education Assistance Program and Fairstone Academy for training and skill development.
Parental leave top-up program to help you during life’s big moments.
One paid volunteer day to give back to causes that matter to you.
Security Consultant II responsible for delivering customer success and integrating solutions. Working with global customers to enhance security services at Akamai.
Director of Access Request Control at RBC establishing a framework for access request compliance. Collaborating across teams to streamline access and audit processes.
Senior Red Team Operator executing Red Team and Purple Team operations in Canada. Delivering scenario - driven operations in a continuously evolving cybersecurity landscape.
Product Owner driving evolving proactive security services portfolio across Risk Advisory, Application Security, and Cloud & AI Security. Collaborating with technology stakeholders to deliver high - value outcomes.
Loss Prevention Home Office Security Coordinator ensuring workplace safety and security for TJX Canada. Responsible for day - to - day monitoring and crisis management as a first responder.
Consultant managing complex cybersecurity projects remotely for Optiv in Vancouver. Establishing relationships and leading technology deployment in business continuity and resilience.
Manager of Global Security and Safety at Genetec leading global security programs and protecting physical assets. Collaborating with executive leadership to implement risk - based security strategies.
Product Manager directing the product roadmap and execution for OCIANA capabilities. Collaborating with stakeholders to enhance maritime security and operational decision - making.
Principal Business Information Security Officer at LastPass leading risk advisory and governance processes. Driving cross - functional collaboration to ensure scalable security frameworks in a competitive environment.