
Search by job, company or skills
Manulife is seeking an Analyst, Information Risk Management to support the execution of secondline oversight and challenge activities across technology, data, and operational risk domains. Reporting to the Director, IRM IRO, this role provides analytical, operational, and governance support to ensure that technology and data risks are managed in alignment with Manulife's risk appetite and regulatory expectations.
This role is an individual contributor focused on execution and delivery by performing independent challenges and oversight over core functions.
Domain Level Challenge and Oversight:
The Analyst will support secondline oversight activities across multiple disciplines, including:
Key Responsibilities:
Risk & Control Self-Assessments (RCSA)
Coordinate evidence collection, control reviews, and documentation.
Compare assessments against standards and highlight potential control gaps.
ThirdParty / Vendor Technology Risk
Assist in duediligence reviews, evidence validation, and thirdparty residual risk analysis.
Support challenge of vendor risk assessments and remediation activities.
Initiative & Change Risk
Support the review of technology and operational change initiatives for potential risk impacts.
Assist in assessing design adequacy of proposed controls.
Reportable Events & Incident Analysis
Support secondline review of incidents, root cause analysis, and event classification.
Track remediation effectiveness and recurring themes.
Issue Management
Support challenge of risk acceptances and corrective action plans (CAPs).
Assist in monitoring remediation progress and assessing sufficiency of closure evidence.
BCM, DR, and Critical Operations Assessments
Support oversight of Business Continuity Plans, Disaster Recovery testing, and Critical Operations identification.
Perform analysis of test results, gaps, and effectiveness of resilience controls.
Data Analysis & Risk Insights
Perform data extraction, cleansing, and analysis to identify trends across risk events, issues, controls, and assessments.
Support production of risk intelligence packages for stakeholders
Help translate technical data into clear, stakeholderfriendly insights.
Automation, Generative AI & Agentic AI Enablement
Utilize workflow automation tools and GenAI to streamline review, reporting, and analysis tasks.
Support the adoption of Agentic AI automations to reduce manual effort in risk assessments and data validation.
Assist in testing, tuning, and iterating automated processes used in secondline oversight.
Contribute to continuous control monitoring by applying datadriven and automation-enabled analysis.
Stakeholder Engagement & Collaboration
Partner with stakeholders to support oversight activities and analysis.
Work closely with second line representation of Segments
Maintain strong, professional relationships while delivering objective challenges.
Key Outcomes
Accurate and timely support of secondline assessments and oversight activities.
Improved consistency and traceability of second line deliverables
Increased use of automation, AI, and orchestration in risk processes.
Enhanced quality of risk reporting, data insights, and evidence reviews.
Strengthening regulatory confidence in technology and operational risk oversight.
Required Qualifications
2-4+ years of experience in Information Risk, Technology Risk, Operational Risk, Cybersecurity, Compliance, or related fields.
Strong ability to adhere to consistent process-oriented requirements for challenge and oversight
Foundational understanding of risk management practices (RCSA, issues, incidents, BC/DR, vendor risk, etc.).
Ability to analyze technical and operational data and summarize findings clearly.
Experience with or interest in learning automation tooling, Generative AI, and Agentic AI.
Familiarity with GRC platforms (e.g., Archer, ServiceNow, Fusion) is an asset.
Knowledge of control frameworks (NIST, ISO, COBIT, CSA, etc.) is beneficial.
Strong communication, documentation, and analytical skills with the ability to work in a structured, detailoriented way.
When you join our team:
We'll empower you to learn and grow the career you want.
We'll recognize and support you in a flexible environment where well-being and inclusion are more than just words.
As part of our global team, we'll support you in shaping the future you want to see.
About Manulife and John Hancock
Manulife Financial Corporation is a leading international financial services provider, helping people make their decisions easier and lives better. To learn more about us, visit .
Manulife is an Equal Opportunity Employer
At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention, advancement and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, colour, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy-related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law.
It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process. All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and Manulife/John Hancock policies. To request a reasonable accommodation in the application process, contact .
Working Arrangement
Job ID: 144163125