Senior Manager, Cyber Security Governance at Hydro One Networks Inc | Toronto, Ontario, Canada | Rezi

Senior Manager, Cyber Security Governance at Hydro One Networks Inc

Senior Manager, Cyber Security Governance

Hydro One Networks Inc · Toronto, Ontario, Canada

1 weeks ago

Senior Manager, Cyber Security Governance

Hydro One Networks Inc · Toronto, Ontario, Canada

9 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

The Manager, Cyber Security Governance is responsible for contributing to and executing a strategy roadmap to mature Acronym's cyber security capabilities. This role requires knowledge of cyber security policies, standards, and modern governance practices to manage organizational risks. The position works closely with senior leadership and various internal teams to ensure secure operations.

Responsibilities

  • Lead the implementation of governance initiatives, providing technical and business advice.
  • Prepare and maintain a risk register identifying risk areas and themes.
  • Enhance and maintain the security risk assessment framework.
  • Align and refine Cyber Security policies and standards with industry best practices, regulations, and standards bodies (NERC CIP, ISO 27001/2, PCI DSS, CIS, NIST Series).
  • Prepare, track, maintain, and report risk acceptances and security exceptions.
  • Conduct security assessments for planned and unplanned initiatives.
  • Balance business needs against security concerns to guide informed risk decisions.
  • Review technical documents in line with company policies.
  • Report and measure the effectiveness of technical controls (KPI/KRI) and propose compensating controls.
  • Contribute to security governance initiatives, providing technical and business advice.
  • Implement and enforce Cyber Security policies and standards with industry best practices, regulations, and standards bodies.
  • Support the development and documentation of security processes for risk management activities across the SDLC, vendor management, project management, and risk acceptance.
  • Develop a security requirements matrix mapped to organization's policies and standards.
  • Examine and interpret requirement documents and architecture diagrams to determine security risks.
  • Collaborate with senior leaders to make informed, risk-based recommendations to enhance the organization's security posture.
  • Participate in and support security-related initiatives and serve as a key interface with external and internal auditors.
  • Stay informed about cybersecurity threats and assess their potential impact.
  • Lead and manage a team to achieve business objectives.
  • Provide guidance, support, and mentorship to team members.
  • Set performance expectations and goals for team members and provide feedback.
  • Manage the recruitment, onboarding, and training of new team members.
  • Foster a positive and collaborative team environment.
  • Identify and resolve team issues or conflicts.
  • Collaborate with other teams to ensure alignment and efficient execution of company initiatives.
  • Develop and implement strategies to improve team performance, productivity, and engagement.
  • Ensure compliance with company policies, procedures, and regulations.
  • Conduct regular performance reviews and assessments.

Requirements

  • Bachelor's degree in computer science, information security, or a related field.
  • Minimum 7 years in Cyber Security leadership/senior management/senior roles, preferably within the electric/energy utility sector or other large/multi-national organization.
  • Security certification of one or more of the following: CISSP, CISA, CISM or other security certification.
  • Strong knowledge of industry standards and best practices for cyber risk management, including NIST, ISO, and COBIT.
  • Demonstrated ability to build and implement new processes for governance frameworks and processes.
  • Experience in consulting stakeholders with complex business transformation, technical advisory, and cyber risk strategy underpinned by a deeper subject matter expertise in one or more cybersecurity domains.
  • Consistent record of developing and improving the security posture of enterprise and ICS/OT organization.
  • Strong leadership and analytical skills with a record of people development and technical delivery.
  • Maintain in-depth awareness and understanding of current and emerging cyber security threats, risks, and trends.
  • Background in NERC CIP, CSAE3416 SOC 2, PCI DSS, and ITIL is an asset.
  • Excellent communication skills, both verbal and written.
  • Ability to collaborate effectively with cross-functional teams.

Skills

  • Cyber Security Governance
  • Cyber Security Policies and Standards
  • Risk Management
  • Security Risk Assessment
  • Industry Best Practices
  • NERC CIP
  • ISO 27001/2
  • PCI DSS
  • CIS
  • NIST Series
  • Cyber Security Management
  • SDLC
  • Vendor Management
  • Project Management
  • Risk Acceptance
  • ICS/OT Security
  • Leadership
  • Analytical Skills
  • People Development
  • Technical Delivery
  • Communication Skills
  • Cross-functional Collaboration

Location

  • Rexdale, ON

Work Type

  • Full-time

Experience Level

  • Manager
  • Senior Management
  • Senior Roles

Education Level

  • Bachelor's degree in computer science, information security, or a related field
  • CISSP
  • CISA
  • CISM

Salary/Compensations

  • $110,500.00 - $143,000.00 / year

Benefits

  • Extensive offering of programs to promote a culture of safety, wellbeing, inclusivity, and sustainability.

About the Company

  • Acronym is a full-service information and communications technology company that provides a range of scalable and secure solutions.
  • With more than 20 years’ experience managing the communications system that enables Ontario’s electrical grid, Acronym is uniquely positioned to understand the mission-critical needs of any business.
  • We deliver innovative and reliable services that respond to the changing demands of businesses and support rapid growth and digital transformation.
  • Acronym understands that the success and strength of our business rests with our people.
  • We seek to create a workforce that reflects the diverse populations of the communities where we live and work and to create a culture based on safety, innovation and inclusiveness.
  • Recognized by Forbes in its list of Canada’s Best Employers for 2026.
  • Employer of the year 2026

Equal Opportunity

  • Acronym will provide reasonable accommodation for qualified individuals with disabilities in the job application process.