Manulife is seeking aDirector, Information Risk Managementto lead and oversee the execution of independent secondline challenge and oversight across technology, data, operational resilience, and enterprise risk programs. Reporting directly to the AVP, Information Risk Officer for Group Functions, this role has full accountability for delivery, quality, and execution of all second-line oversight activities performed by the team.
This role ensures all assessments and oversight outputs adhere to secondline expectations, risk governance standards, and Manulife's risk appetitewhile providing highquality risk insights to senior stakeholders.
Position Responsibilities:
- Lead and improve second line challenge across technology, data, and operational risk.
- Challenge first line risk assessments, controls, remediation, and risk acceptances.
- Provide clear, evidencebased second line risk opinions and escalate material issues.
- Oversee review and challenge of RCSAs, vendor risks, major initiatives, and incidents.
- Ensure quality challenge of risk acceptances, corrective action plans, and resilience controls (BCM/DR).
- Direct a team of managers and analysts to deliver timely, highquality oversight work.
- Review and approve all second line deliverables to ensure accuracy, consistency, and standards alignment.
- Lead thematic risk analysis and deliver dashboards, reports, and executivelevel insights.
- Champion automation, Generative AI, and continuous monitoring tools within oversight processes.
- Engage senior stakeholders, communicate challenge outcomes clearly, and represent second line in governance forums.
- Ensure timely delivery of oversight commitments and support improved enterprise risk posture.
Required Qualifications:
- 1012+ years of experience in Information Risk, Technology Risk, Cybersecurity, Operational Risk, or GRC.
- Strong experience leading secondline or audit-style oversight programs across global enterprises.
- Proven ability to deliver complex, multidomain oversight programs with accountability for quality and timeliness.
- Ability to lead blended teams (onshore and offshore) through influence, guidance, and technical direction.
- Deep knowledge of cloud, infrastructure, data platforms, resilience, and enterprise IT environments.
- Familiarity with regulatory frameworks (ISO, NIST, COBIT, CSA/CCM, OSFI, etc.).
- Experience with Generative AI, automation workflows, or continuous control monitoring tools is preferred.
- Excellent communication, risk judgment, and stakeholder engagement skills.
When you join our team:
- We'll empower you to learn and grow the career you want.
- We'll recognize and support you in a flexible environment where well-being and inclusion are more than just words.
- As part of our global team, we'll support you in shaping the future you want to see.