Global Head, Technology Risk Officer
Job in
Toronto, Ontario, M5A, Canada
Listing for:
Scotiabank
Full Time
position
Listed on 2026-07-25
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Support, IT Project Manager
Job Description & How to Apply Below
Requisition
Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.
The role:
The Global Head, Technology Risk Officer (TRO) leads the First Line of Defense (1B) Technology Risk and Internal Control function, accountable for the design, implementation, operation, and continuous improvement of technology and cybersecurity risk management practices across the enterprise. The role ensures technology and cybersecurity risks are identified, assessed, mitigated, monitored, and reported in alignment with the firm’s risk appetite, regulatory expectations, and business strategy.
This role requires a visionary leader with a deep understanding of cybersecurity principles, risk management, and compliance frameworks. The ideal candidate will possess strong communication and leadership skills, the ability to navigate complex regulatory landscapes, and a commitment to continuous improvement in the face of a rapidly evolving cybersecurity environment.
What will you do?
Own execution and accountability for Technology Risk Management and Internal Controls within the First Line of Defense (1B).Provide direction and oversight to Technology 1A risk owners to strengthen their capability to identify, assess, mitigate, and monitor technology and cyber risks.Serve as a trusted 1B Technology Risk partner to Technology, Product, and Business teams.Lead the identification, escalation, monitoring, and measurement of technology and operational risks in alignment with firm-wide risk management programs.Serve as a deep subject matter expert and trusted Technology 1B partner on cybersecurity, resiliency and physical security principles, practices and technologies across key domains, including, Threat and Vulnerability Management, Data Protection, Identity and Access Management, Cyber Incident Response, Cyber Threat Intelligence, Technology Resilience, Third Party Cyber Risk, Physical Security and Application Security.Monitor technology risk KRIs and KPIs, supports review and challenge of remediation and get-to-green plans, and tracks delivery of sustainable risk reduction.Ensures technology risk outcomes remain aligned to the firm’s risk appetite and governance expectations.Prepare and presents technology risk insights, trends, and recommendations to senior management and governance forums.Provide 1B risk and control advisory support, including targeted risk reviews, root cause analysis, and development of sustainable mitigation strategies.Implements the firm’s technology risk management strategy, ensuring alignment with regulatory and industry standards.Drives a proactive risk and control culture focused on prevention, transparency, and continuous improvement.Partner with Second Line of Defense to support effective review, challenge, and enterprise consistency.Collaborate with Technology leadership, Product Owners, Business Control Managers, and key stakeholders to maintain a comprehensive enterprise technology risk view.Engage with regulators and internal governance bodies, as required.Leads and scales a large, global Technology Risk and Internal Control organization, providing clear direction, priorities, and accountability across multiple teams and geographiesEstablish a strong operating model, including defined roles, decision rights, escalation paths, and performance expectations.Build a strong leadership bench through coaching, succession planning, and capability development.Drive workforce planning, capacity management, and resource allocation aligned to strategic priorities and regulatory commitments.Foster an inclusive, high-performance culture emphasizing ownership, execution discipline, and continuous improvement.Lead through change, effectively managing organizational complexity while maintaining focus on risk outcomes and control effectiveness.Create an environment in which the team pursues effective and efficient operations of their respective areas in accordance with Scotiabank’s Values, its Code of Conduct, and the Global Sales Principles, while ensuring the adequacy, adherence to, and effectiveness of day-to-day business controls to meet obligations with respect…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here: