Logo
Canadian Imperial Bank of Commerce

Director, Information Security - Regulatory & Controls

Canadian Imperial Bank of Commerce, Chicago, Illinois, United States, 60290

Save Job

What you’ll be doing As the US Region Information Security Director of Regulatory and Controls, you will be responsible for the department’s efforts in ensuring compliance with relevant regulations and effectiveness of information security controls.

You will monitor relevant laws, regulations, and standards to ensure CIBC US security practices align with regulatory requirements and you will own regulatory compliance programs such as NY-DFS, GLBA and FFIEC.

You will serve as primary point of contact for regulatory bodies during audits and be responsible for creation of materials for and participation in exams and quarterly briefings.

You will be responsible for Information Security control management and providing oversight of controls that impact the US team.

This includes conducting the Risk and Control SelfAssessment (RCSA) for Information Security and providing input into RCAs for all other lines of business.

Work Arrangement We enable a hybrid work arrangement where you’ll spend 1‑3 days per week on site and the remainder remote.

Key Duties

Monitor relevant laws, regulations and standards to ensure organization’s security practices align with regulatory requirements.

Own regulatory compliance programs such as NY‑DFS, GLBA and FFIEC assessments.

Serve as primary point of contact for regulatory bodies during audits.

Creation of materials for and participation in regulatory exams and quarterly briefings to regulators as required.

Develop responses and drive resolution of Issues, Deficiencies, Matters Requiring Attention and Supervisory Recommendations assigned to US Region Information Security.

Work closely with US TI&I Risk & Controls Team, Regulatory Affairs, Operational Risk Management and Internal Audit as required.

Assist with creation of materials for Annual Cyber Security Board Review and Quarterly Board Risk Committee Meetings.

Creation of materials for various reporting committees and forums, including weekly status reports, business unit reviews and horizontal reviews.

Control Management

Conduct Risk and Control SelfAssessment for Information Security and provide input into RCAs for all other lines of business.

Map controls to industry frameworks such as NIST, PCI, MITRE and work closely with controls testing teams.

Drive remediation of ineffective controls owned by the US and provide oversight of control effectiveness for enterprise controls impacting the US. Act as secretary for the Cyber Security Controls Oversight Council.

Leadership and Cross‑Functional Relationships

Recruit and hire Information Security professionals to support target operating model changes.

Provide ongoing advice and direction on a variety of complex conceptual or interpretative issues.

Establish and leverage peer relationships within the US Region and Parent bank organizations.

Foster relationships with middle to senior management, and senior executives across a range of functions including Risk Management and Technology.

Who you are

You can demonstrate experience at a financial institution of similar scope and scale with direct experience working with regulators and regulatory compliance programs.

It’s an asset if you have advanced knowledge of applicable US laws and regulations as they relate to Information Security and the effective management of Information Security Risks.

You are a caring and accountable leader.

You have experience developing and implementing strategic team goals. You have experience coaching employees and inspiring successful team performance.

You notice details that others don’t. Your critical thinking skills help inform your decision-making.

Values matter to you. You bring your real self to work and live our values of trust, teamwork, and accountability.

What CIBC offers At CIBC, your goals are a priority. We start with your strengths and ambitions as an employee and strive to create a career, rather than just a paycheck.

We recognize you in meaningful ways including a competitive salary, incentive pay, banking benefits, a benefits program, a vacation offering, wellbeing support, and MomentMakers, a social, points‑based recognition program.

Our spaces and technological toolkit make it simple to bring together great minds to create innovative solutions that make a difference for our clients.

We cultivate a culture where you can express your ambition through initiatives like Purpose Day, a paid day off dedicated for you to invest in your growth and development.

What you need to know

CIBC is committed to creating an inclusive environment where all team members and clients feel they belong. We seek applicants with a wide range of abilities and provide an accessible candidate experience. If you need accommodation, please contact Mailbox.careers-carrieres@cibc.com.

You need to be legally eligible to work at the location specified above and, where applicable, must have a valid work or study permit.

We may ask you to complete an attribute‑based assessment and other skills tests (such as simulation, coding, MS Office). Our goal for the application process is to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us.

This role is Hybrid and requires 2‑3 days on site per week.

This role has an expected salary range of $190,000.00 – $230,000.00 for the Chicago market based on experience, qualifications, and location of the position. The successful candidate may be eligible to participate in the relevant business unit’s incentive compensation plan, which may also include a discretionary bonus component. CIBC offers a full range of benefits and programs to meet our employees’ needs; including Medical, Dental, Vision, Health Savings Account, Life Insurance, Disability, and Other Insurance Plans, Paid Time Off (including Sick Leave, Parental Leave and Vacation), Holidays, 401(k), in addition to other special perks reserved for our team members.

This position does not offer visa sponsorship.

Job location IL‑70 W Madison St, 9th Fl

Employment type Regular

Weekly hours 40

Skills Analytical Thinking, Information Management, Information Security, Leadership, Long Term Planning, People Management, Security Risk, Security Trainings

#J-18808-Ljbffr