Consultant, Supplier Risk Management

CIBCToronto, ON
Hybrid

About The Position

We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients. At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute. As a Consultant, Supplier Risk Management you will be responsible for conducting Third Party due diligence assessments to identify potential risks to help our technology and business stakeholders meet security goals and objectives. Utilizing your relationship building skills, you will partner with line of business, Third Party suppliers, technology teams and help them proactively identify potential risks and present recommendations that are practical and achievable. At CIBC we enable the work environment most optimal for you to thrive in your role. You’ll have the flexibility to manage your work activities within a hybrid work arrangement where you’ll spend 1-3 days per week on-site, while other days will be remote.

Requirements

  • Experience in Information Security, Threat-risk assessments, Vulnerability & Penetration testing, and application security development projects.
  • Familiarity with the Financial Services industry.
  • Proficiency in email management systems with strong organizational and prioritization skills.
  • Ability to communicate detailed information in an impactful way.
  • Ability to adapt to new tools and trends.
  • Ability to inspire outcomes by making yourself heard.
  • Ability to investigate complex problems, and making sense of information.
  • Ability to bring your real self to work and live CIBC values – trust, teamwork and accountability.
  • Must successfully complete security checks, including a criminal record check prior to starting in this role.
  • An annual criminal record check may also be required.

Nice To Haves

  • Supporting the Capital Markets, International, Commercial Payments & Wealth ecosystem.
  • Experience in Cloud Computing technologies.
  • Exposure to Agile Development processes.
  • CISSP certification is an asset.

Responsibilities

  • Conduct ongoing Third Party due diligence, including the review of independent assurance reports to help determine the potential information security risk to CIBC.
  • Assess business needs against potential risks and provide your recommendations to enhance our information security landscape.
  • Execute detailed Information Security risk assessments for key Third Party suppliers, conduct ongoing monitoring of these suppliers and provide detailed reporting/analytics.
  • Provide direction and remediation directions to Third Parties and business partners.
  • Maintain and manage third party risk database to ensure proper risk management and proper awareness.
  • Build and present documentation to executive management aimed at communicating potential risks and providing recommendations.
  • Provide feedback to and participate in the design and implementation of security assessment processes across the organization.
  • Research, design, and implement security monitoring practices and operationalize these processes across the group.
  • Efficiently organize communications, maintain secure records, leveraging email automation tools, and ensuring timely stakeholder engagement with attention to detail.

Benefits

  • competitive salary
  • incentive pay
  • banking benefits
  • a benefits program
  • defined benefit pension plan
  • an employee share purchase plan
  • a vacation offering
  • wellbeing support
  • MomentMakers, our social, points-based recognition program.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

No Education Listed

Number of Employees

5,001-10,000 employees

© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service