Director, Business Unit Security Officer
Join Manulife as a Director, Business Unit Security Officer within our First Line of Defense. Collaborating with the Head of Information Security and Risk Management, you will lead risk-based security assessments for new technologies and IT solutions across Canadian Technology Business Units. You will safeguard our cloud and on-premises environments by identifying threats, recommending controls, ensuring compliance, and driving remediation. This role offers exposure to groundbreaking security practices and the opportunity to foster a culture of security awareness across the Canadian segment.
Position Responsibilities:- Conduct formal risk assessments for technology systems and infrastructure (e.g., NIST RMF).
- Identify compliance gaps, enforce security policies/standards, and drive timely remediation.
- Integrate security into workflows by partnering with technology teams (Agile/Dev Ops) and platform teams.
- Partner on RCSA initiatives to align with corporate and regulatory requirements.
- Manage audits, regulatory reviews, and second line of defense queries; provide evidence and mitigation plans.
- Define, track, and report remediation programs and corrective actions to meet regulatory requirements and global standards.
- Review, update, and socialize security policies, patterns, and guardrails across the organization.
- Offer consulting expertise to Business Unit Technology leaders to align with global security objectives.
- Represent the Canadian division in global security planning and standards.
- Maintain awareness of projects/initiatives impacting security posture and proactively influence design.
- Build strategic partnerships with counterparts in technology, business and global cybersecurity team; raise awareness of emerging cyber threats specific to their operations.
- Build deep knowledge of the Canadian segment and BUs’ or equivalent experience business processes and products to tailor risk mentorship.
- Report important metrics, control effectiveness, and risk posture; maintain customer dashboards and briefings.
- Continuously refine processes based on industry trends, threat intelligence, and audit findings.
- Delegate, lead, and mentor teams with the autonomy needed to facilitate decision-making.
- 10+ years in information security and risk management, including 5+ years in leadership roles.
- Bachelor’s degree in Information Security, Computer Science, or related field (or equivalent experience).
- Professional certifications: CISSP, CISM, CRISC (or equivalent).
- Deep understanding of security and risk management frameworks (ISO 27001, NIST, COBIT) and relevant regulations (e.g., GDPR, SOX).
- Deep technical knowledge and hands‑on experience in:
- Cloud and network security
- Cryptography and key management
- Identity and Access Management (IAM)
- Application security (SDLC, SAST/DAST, threat modeling)
- Experience working in Agile/Dev Ops environments and integrating security into CI/CD.
- Superb communication, consulting, and influencing skills; ability to tailor messages to technical and executive audiences.
- Strategic problem solver with analytical and innovative capabilities; proactive approach to issue remediation.
- Skilled in customer management, alignment, and cross‑functional collaboration.
- Ability to foster a culture of security awareness across the Canadian segment.
- Good interpersonal skills for engaging diverse communities and executive customers.
- We’ll empower you to learn and grow the career you want.
- We’ll recognize and support you in a flexible environment where well‑being and inclusion are more than just words.
- As part of our distributed team, we’ll support you in shaping the future you want to see.
Manulife Financial Corporation is a leading international financial services provider, helping people make their decisions easier and lives better. To learn more about us, visit
Manulife is an Equal Opportunity EmployerAt Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: