Sr. Consultant, Supplier Risk Management

CIBCToronto, ON
Hybrid

About The Position

We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients. At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute. As a Senior Consultant, Supplier Risk Management you will be responsible for conducting Third Party due diligence assessments to identify potential risks to help our technology and business stakeholders meet security goals and objectives. Utilizing your relationship building skills, you will partner with line of business, Third Party suppliers, technology teams and help them proactively identify potential risks and present recommendations that are practical and achievable. At CIBC we enable the work environment most optimal for you to thrive in your role. You’ll have the flexibility to manage your work activities within a hybrid work arrangement where you’ll spend 1-3 days per week on-site, while other days will be remote.

Requirements

  • Experience in Information Security
  • Experience in Threat-risk assessments
  • Experience in Vulnerability & Penetration testing
  • Experience in application security development projects
  • Must be legally eligible to work at the location(s) specified and, where applicable, must have a valid work or study permit.
  • Must successfully complete security checks, including a criminal record check prior to starting in this role.

Nice To Haves

  • Familiarity with the Financial Services industry
  • Experience in Cloud Computing technologies
  • Exposure to Agile Development processes
  • CISSP certification

Responsibilities

  • Conduct ongoing Third Party due diligence, including the review of independent assurance reports to help determine the potential information security risk to CIBC.
  • Assess business needs against potential risks and provide your recommendations to enhance our information security landscape.
  • Execute detailed Information Security risk assessments for key Third Party suppliers.
  • Conduct ongoing monitoring of these suppliers and provide detailed reporting/analytics.
  • Provide direction and remediation directions to Third Parties and business partners.
  • Maintain and manage third party risk database to ensure proper risk management and proper awareness.
  • Build and present documentation to executive management aimed at communicating potential risks and providing recommendations.
  • Provide feedback to and participate in the design and implementation of security assessment processes across the organization.
  • Research, design, and implement security monitoring practices and operationalize these processes across the group.

Benefits

  • competitive salary
  • incentive pay
  • banking benefits
  • a benefits program
  • defined benefit pension plan
  • an employee share purchase plan
  • a vacation offering
  • wellbeing support
  • MomentMakers, our social, points-based recognition program
  • Purpose Day; a paid day off dedicated for you to use to invest in your growth and development
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service