Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via email$ 190000 - 210000
1 Vacancy
Were building a relationshiporiented bank for the modern world. We need talented passionate professionals who are dedicated to doing whats right for our clients.
At CIBC we embrace your strengths and your ambitions so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute.
To learn more about CIBC please visit CIBC
As the US Region Information Security Director of Regulatory and Controls you will be responsible for the departments efforts in ensuring compliance with relevant regulations and effectiveness of information security controls.
What youll be doing
As the US Region Information Security Director of Regulatory and Controls you will be responsible for the departments efforts in ensuring compliance with relevant regulations and effectiveness of information security controls. You will monitor relevant laws regulations and standards to ensure CIBC US security practices align with regulatory requirements and you will own regulatory compliance programs such as NYDFS GLBA and FFIEC. You will serve as primary point of contract for regulatory bodies during audits and be responsible for creation of materials for and participation in exams and quarterly briefings. You will be responsible for Information Security control management and providing oversight of controls that impact the US team. This includes conducting the Risk and Control SelfAssessment (RCSA) for Information Security and provide input into RCSAs for all other lines of business.
Work Arrangement: At CIBC we enable the work environment most optimal for you to thrive in your role. Youll have the flexibility to manage your work activities within a hybrid work arrangement where youll spend 13 days per week onsite while other days will be remote.
How youll succeed
Here are some key duties for this role:
Regulatory and Reporting
Monitor relevant laws regulations and standards to ensure organizations security practices align with regulatory requirements.
Own regulatory compliance programs such as NYDFS GLBA and FFIEC assessments.
Serve as primary point of contract for regulatory bodies during audits.
Creation of materials for and participation in regulatory exams and quarterly briefings to regulators as required.
Develop responses and drive resolution of Issues Deficiencies Matters Requiring Attention (MRAs) and Supervisory Recommendations (SRs) assigned to US Region Information Security.
Work closely with US TI&I Risk & Controls Team Regulatory Affairs Operational Risk Management (ORM) and Internal Audit as required.
Assist with creation of materials for Annual Cyber Security Board Review and Quarterly Board Risk Committee Meetings.
Creation of materials for various reporting committees and forums including weekly status
Creation of materials for various reporting committees and forums including weekly reports business unit reviews and horizontal reviews.
Control Management
Conduct Risk and Control SelfAssessment (RCSA) for Information Security and provide input into RCSA for all other lines of business.
Mapping of controls to industry frameworks (e.g. NIST PCI MITRE)
Work closely with controls testing teams
Drive remediation of ineffective controls owned by the US and provide oversight of control effectiveness for enterprise controls impacting the US.
Act as secretary for the Cyber Security Controls Oversight Council.
Leadership and CrossFunctional Relationships
Recruiting and hiring of Information Security professionals to support target operating model changes.
Provides ongoing advice and direction on a variety of complex conceptual or interpretative issues.
Establishing and leveraging peers relationships within the US Region and Parent bank organizations.
Will be required to foster relationships with middle to senior management and senior executives across a range of functions including Risk Management and Technology.
Who you are.
You can demonstrate experience at a financial institution of similar scope and scale with direct experience working with regulators and regulatory compliance programs. Its an asset if you have advanced knowledge of applicable US laws and regulations as they relate to Information Security and the effective management of Information Security Risks.
You are a caring and accountable leader. You have experience developing and implementing strategic team goals. You have experience coaching employees and inspiring successful team performance.
You know that details matter. You notice things that others dont. Your critical thinking skills help to inform your decisionmaking.
Values matter to you. You bring your real self to work and you live our values trust teamwork and accountability.
California residents your privacy rights regarding your actual or prospective employment
At CIBC we offer a competitive total rewards package. This role has an expected salary range of $190000.00 $210000.00 for the market based on experience qualifications and location of the position. The successful candidate may be eligible to participate in the relevant business units incentive compensation plan which may also include a discretionary bonus component. CIBC offers a full range of benefits and programs to meet our employees needs; including Medical Dental Vision Health Savings Account Life Insurance Disability and Other Insurance Plans Paid Time Off (including Sick Leave Parental Leave and Vacation) Holidaysand 401(k) in addition to other special perks reserved for our team members.
This position does not offer visa sponsorship.
#LITA
What CIBC Offers
At CIBC your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential. We aspire to give you a career rather than just a paycheck.
We work to recognize you in meaningful personalized ways including a competitive salary incentive pay banking benefits a benefits program* a vacation offering wellbeing support and MomentMakers our social pointsbased recognition program.
Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients.
We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development.
*Subject to plan and program terms and conditions
What you need to know
CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience. If you need accommodation please contact
You need to be legally eligible to work at the location(s) specified above and where applicable must have a valid work or study permit.
We may ask you to complete an attributebased assessment and other skills tests (such as simulation coding MS Office). Our goal for the application process is to get to know more about you all that you have to offer and give you the opportunity to learn more about us.
Job Location
IL70 W Madison St 9th FlEmployment Type
RegularWeekly Hours
40Skills
Audit Management Internal Controls Operating Effectiveness People Management Risk Based Auditing Risk Management and Mitigation Technical LeadershipRequired Experience:
Director
Full-Time