Full-Time

Cyber & Technology Risk

Updated on 8/1/2026

Canadian Tire

Canadian Tire

Compensation Overview

CA$79k - CA$131k/yr

+ Performance incentives

Toronto, ON, Canada

In Person

Category
Engineering Management (1)
Required Skills
Computer Networking
Operating Systems
Cybersecurity
Risk Management
Requirements
  • Over 7+ years of experience in a cyber technology management role in retail, with a global footprint, or in a similar industry.
  • Deep knowledge of industry-leading cybersecurity frameworks and regulations for identifying and managing cybersecurity risk, including NIST, ISO, COBIT, and PCI.
  • Expert knowledge of network technologies, cloud, hardware platforms, and operating systems.
  • Expert understanding of security interoperability through an entire technology stack.
  • Good knowledge of applicable data privacy practices and laws.
  • Ability to exercise effective independent judgment, prioritize, and deliver business results in a fast-moving, high-pressure, and demanding environment with competing priorities.
  • Strong interpersonal, communication, and influencing skills to build credibility and collaboration.
  • A bachelor's degree or equivalent experience in Cybersecurity, Computer Science, Engineering, Business, Mathematics, or a related field.
Responsibilities
  • Provide a layer of independent challenge of cyber risk through targeted independent assessments of current cybersecurity practices, roadmaps, and strategies across the enterprise.
  • Evaluate existing and future cyber technologies within the CTC environment to ensure the correct technologies are deployed to effectively mitigate cyber risks to an adequate level.
  • Ensure technology alignment with the published cybersecurity roadmap.
  • Maintain the process for developing and managing cyber risk governance and management activities.
  • Act as a liaison between cyber and technology risk functions in the first line, including IT, cybersecurity, business, Enterprise Risk, and Internal Audit functions.
  • Measure the cyber program against defined risk appetite and tolerance limits based on business needs and informed by regulatory compliance, industry standards, frameworks, and technical capabilities.
  • Facilitate the identification and influence the remediation of cyber risk initiatives through effective key performance indicator management, leveraging metrics and stakeholders as required.
  • Partner with cybersecurity, IT, and business stakeholders to assess the effectiveness of current operational resilience, business continuity planning, and disaster recovery, providing recommendations and influencing as required.
  • Promote a culture of cyber risk awareness throughout CTC.
Desired Qualifications
  • Experience in evaluating and deploying a wider range of cybersecurity technologies, including firewalls, cloud, intrusion detection and prevention systems, data loss prevention, and identity and access management.
  • Certifications in Certified Information Systems Security Professional, Certified Information Security Manager, and SCF.
  • Certified in Risk and Information Systems Control and Certified Information Systems Auditor certifications are definite assets.

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A