Director Application Security

Toronto, ON, Canada

Job Description


We are a leading financial services provider committed to making decisions easier and lives better for our customers and colleagues around the world. From our environmental initiatives to our community investments, we lead with values throughout our business. To help us stand out, we help you step up, because when colleagues are healthy, respected and meaningfully challenged, we all thrive. Discover how you can grow your career, make impact and drive real change with our Winning Team today.

Working Arrangement

Hybrid



Are you looking for unlimited opportunities to develop and succeed? With work that challenges and makes a difference, within a flexible and supportive environment, we can help our customers achieve their dreams and aspirations.

Your Opportunity

We are looking for an experienced and highly motivated Senior Director, IS Program Management and Security Engineering to join Manulife\xe2\x80\x99s Global Wealth and Asset Management Enterprise Architecture team. The role will push forward GWAMs Cross-Enterprise architecture vision by creating guidance and governance mechanisms that enable the company to think firm-wide when considering capabilities development. You\'ll work closely with business, product, and technology partners to translate long-term objectives into designs that fuel firm-wide reuse and convergence.

As a Senior Director, IS Program Management and Security Engineering you will lead and guide a small team of security engineers that drive the application security strategy in Manulife\xe2\x80\x99s Global Wealth and Asset Management (GWAM) business to develop the target state architecture, enabling the vision and evolution of security practices for the firm. You will work closely with our GWAM IT Risk and Cybersecurity teams in improving the maturity of the practices within third-party and originally developed software solutions. In parallel, you will also have a small team of leads that drive forward Global\xe2\x80\x99s Enterprise Information Risk Program that focuses on our ability to meet specific goals tied to Global Information Risk standards and sustainability.

Our Manulife / John Hancock family is going through an exciting, yet challenging metamorphosis. We are transforming from a wise 130-year-old company into an agile 130-year-young company. This is a journey, and to quote T.S. Elliot; \xe2\x80\x9cThe journey, Not the destination matters...\xe2\x80\x9d. On this journey, we expect all to bring their knowledge, skills and experience as a team and, when we don\xe2\x80\x99t know, we will learn.

Within the Manulife family, our team is within Global Wealth and Asset Management (GWAM) and as a Segment we believe the truth is in the numbers. We believe it\xe2\x80\x99s time to change the investment game. To do it differently by focusing on the value we bring our clients, rather than on the usual topics of performance and fees. We have just surpassed $1 trillion in assets under management with a diverse range of both public and private asset classes. Our division is global and have operations in North America, Asia and Europe and we serve a diverse range of clients from our own on-balance general account assets to institutional, retail and wealth.

The right individual will be a proactive, self-starter that enjoys and thrives when connecting people and technology to solve complex problems at-scale. If you have a passion and skill for long-term end-to-end thinking balanced with architecture and solutioning that enable value for customers now, this opportunity is for you!

We are an organization that values diverse and big thinking, rewards both behaviors and delivery, and focuses on growth and continuous improvement \xe2\x80\x93 all in support of Manulife\xe2\x80\x99s mission to help clients and one another succeed. This role is a unique opportunity to join a team and company at the beginning of a multi-year platform transformation whose work will have direct impact on company direction, our customers, and our industry.

What you\xe2\x80\x99re good at

  • Providing honesty, integrity, professionalism and empathy as a people manager
  • Mentoring and growing other technologists within the firm to improve maturity
  • Developing and implementing a Division security strategy and roadmap in line with Global\xe2\x80\x99s Security and Risk Strategy
  • Managing Security Awareness and Training Programs
  • Managing the \xe2\x80\x9cGlobal\xe2\x80\x9d program to evaluate, and help address our segment\xe2\x80\x99s strengths and weaknesses as security goals are developed, and security risks are mitigated
  • Defining and applying, pragmatically, standard Information Security organizational guidelines
  • Meeting with stakeholders across the enterprise to drive program status and goals
  • Driving forward sustainable and measurable Information Security goals (aligned to Global) for the segment
  • Collaborating with Product, Risk, Cyber and Technology teams to craft secure application security programs and patterns that enables business and technology vision.
  • Overseeing Security Application Architecture and providing guidance to the Security Engineering Services team
  • Understanding complex modern and legacy integrations and business information models to ensure integrity and a strong security profile
  • Leading application security practice including threat modeling, risk assessment, application security to ensure the Non Functional Requirements are identified, and controls/requirements are required to mitigate these risks.
  • Supporting evaluations of third-party suppliers, products, and solutions with a focus on the security aspects of the solutions.
  • Reviewing, advising, and providing feedback on security within and outside the team
  • Developing reference implementation patterns related to security solutions.
  • Leading the end to end solution design and data architecture for key company initiatives.
  • Contributing to or leading definition of standards, guidance, and points-of-view that enable engineers to thrive and cross-enterprise application security thinking to become the norm.
  • Helping to develop new and revising security governance (secure design reviews) processes to ensure alignment of a diverse set of technology projects with the enterprise target state vision.
  • Presenting security engineering and innovative ideas to executive leadership for the purposes of alignment and key decision making
  • Connecting your business and technical insights to develop innovative proposals for evolving Manulife\xe2\x80\x99s platforms, introducing new products or capabilities, or improving processes that benefit the firm or its customers.
What you have
  • Proficient in security management with specific experience
  • Ability to manage program timelines and actively develop medium to long terms plans
  • Ability to work across the enterprise, with various levels and stakeholders
  • Passion for Information Security and Information Technology
  • Ability to prepare financial forecasts and be involved to drive recommendations
  • Ability to own security engineering and influence strategic direction and vision for the future.
  • Ability to analyze the information flow and recommend appropriate technology to support the business process
  • Experience with Threat modeling, secure development lifecycle and secure testing methodologies
  • Knowledge of Vault capabilities and Security Incident and Event management systems
  • Experience enabling and actively guiding others on Application security including Static Analysis (SAST), Dynamic Analysis (DAST), OSS (Open-source vulnerabilities), Pen testing.
  • Desire and ability to understand diverse business domains and develop architectures that meet the current and anticipated business needs across a broad set of partners.
  • Ability to evaluate new technologies and know the latest industry trends.
  • Good judgment and the ability to handle high pressure situations.
  • Knowledge of data and application integration patterns (Domain-Driven, APIs, messaging, streaming, sync/async).
  • Knowledge of the enterprise technology space: languages, frameworks, techniques, and industry trends.
  • Ability (and preference) to work in an Agile environment.
  • Refined presentation and communication skills and expertise interfacing and communicating effectively with both engineers and executives.
About Manulife and John Hancock

Manulife Financial Corporation is a leading international financial services group that helps people make their decisions easier and lives better. With our global headquarters in Toronto, Canada, we operate as Manulife across our offices in Asia, Canada, and Europe, and primarily as John Hancock in the United States. We provide financial advice, insurance, and wealth and asset management solutions for individuals, groups and institutions. At the end of 2022, we had more than 40,000 employees, over 116,000 agents, and thousands of distribution partners, serving over 34 million customers. At the end of 2022, we had $1.3 trillion (US$1.0 trillion) in assets under management and administration, including total invested assets of $0.4 trillion (US $0.3 trillion), and segregated funds net assets of $0.3 trillion (US$0.3 trillion). We trade as \xe2\x80\x98MFC\xe2\x80\x99 on the Toronto, New York, and the Philippine stock exchanges, and under \xe2\x80\x98945\xe2\x80\x99 in Hong Kong.

Manulife is an Equal Opportunity Employer

At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention, advancement and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, colour, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy-related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law.

It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process. All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and Manulife/John Hancock policies. To request a reasonable accommodation in the application process, contact .

Salary & Benefits

The annual base salary for this role is listed below.

Primary Location Toronto, Ontario

Salary range is expected to be between $105,070.00 CAD - $195,130.00 CAD

If you are applying for this role outside of the primary location, please contact for the salary range for your location. The actual salary will vary depending on local market conditions, geography and relevant job-related factors such as knowledge, skills, qualifications, experience, and education/training. Employees also have the opportunity to participate in incentive programs and earn incentive compensation tied to business and individual performance.

Manulife offers eligible employees a wide array of customizable benefits, including health, dental, mental health, vision, short- and long-term disability, life and AD&D insurance coverage, adoption/surrogacy and wellness benefits, and employee/family assistance plans. We also offer eligible employees various retirement savings plans (including pension and a global share ownership plan with employer matching contributions) and financial education and counseling resources. Our generous paid time off program in Canada includes holidays, vacation, personal, and sick days, and we offer the full range of statutory leaves of absence. If you are applying for this role in the U.S., please contact for more information about U.S.-specific paid time off provisions.

Manulife

Beware of fraud agents! do not pay money to get a job

MNCJobz.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Related Jobs

Job Detail

  • Job Id
    JD2202007
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    Toronto, ON, Canada
  • Education
    Not mentioned