Job Description Cyber Security Risk Director – Full‑time, flexible hybrid schedule. Current work authorization for Canada required. The work location is 483 Bay Street in Toronto until approximately late 2026, after which the role will relocate to the new Mississauga office at 3 Robert Speck Parkway. What You Will Do The Cyber Security Risk Director leads the development of Fidelity Canada’s cyber security risk posture as part of the second line of defense. The role ensures that cyber security risks are identified, assessed, mitigated, and monitored across Fidelity Canada (FCC, FIC, FCIM) and collaborates with stakeholders in Information Security, Enterprise Risk, Technology Risk, and other relevant functions across Fidelity Canada, FIL, and FMR. Key Responsibilities Oversight and accountability of the cyber security risk framework and methodologies, conducting both planned and ad‑hoc technical risk reviews, evaluating technology and business initiatives with cyber security implications. Represent Fidelity Canada on FIL cyber governance committees. Lead the development of Fidelity Canada’s Cyber Risk Oversight Program. Design, implement, and maintain a comprehensive cybersecurity risk oversight program supported by well‑defined policies that align with enterprise risk appetite, regulatory requirements, and industry standards. Identify and assess cybersecurity risks and advise business units and Information Security stakeholders on risk issues to ensure awareness and accountability. Monitor external trends and evaluate potential impacts on business strategy; provide documented analytical insights of the risk profile while ensuring a sound operational control environment. Perform review and challenge of first line of defense cyber risk management processes and communicate risk opinions at various levels of management. Advise on remediation strategies for inconsistencies and gaps identified through independent assessments of key cybersecurity processes. Provide second line of defense leadership during response to major cyber incidents and coordinate engagement and response. Develop and provide regular reporting to senior management committees across Fidelity. Own relationships with external cyber security risk experts. Ensure all activities and deliverables achieve their timeliness, quality, and accuracy service levels. What We Are Looking For Completed university degree or equivalent experience. 7+ years of related work experience, including practical experience in multiple areas of cyber risk and 5+ years at the management level. Experience developing and implementing cybersecurity risk oversight programs in the financial services sector, preferably in a second or third line of defense. Knowledge of current and evolving regulatory requirements and current trends in cyber threats/vulnerabilities. Advanced knowledge of cyber risk management best practices and how to implement them. Experience with risk frameworks and standards such as NIST CSF and ISO 27001. Experience in cybersecurity risk consulting in the financial services sector, cyber security audit, or a similar second line of defense role is an asset. Proficiency with the COBIT risk framework is considered advantageous. Professional certifications in cybersecurity (CRISC, CISM, CISA, CISSP, CCSP). The Skills You Bring Demonstrated leadership skills and ability to lead oversight activities across different teams. Risk anticipation mindset with attention to detail and ability to challenge the status quo. Ability to build relationships, influence, and negotiate across diverse stakeholders. Excellent written and oral communication skills. Understanding of systems architecture. Excellent analytical, organizational, and project management skills. Strong risk, process, and control validation and/or assessment skills. Equal Opportunity Employer Fidelity Canada is committed to fostering a diverse and inclusive workplace. We consider all qualified applicants for employment regardless of race, color, religion, sex, sexual orientation, gender identity or expression, national or ethnic origin, age, disability, family status, protected veteran status, Aboriginal/Native American status, or any other legally protected ground. Accommodations Fidelity Canada welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates involved in the selection process. If you require accommodation, please email #J-18808-Ljbffr
Cyber Security Risk Director
FIDELITY CANADA
toronto, toronto
Published 19 days ago
Report job