**_Are you looking for a supportive, collaborative workplace with great teams and inspiring leaders? You’ve come to the right place. We’re looking for ambitious people who share our values and want to make every day better for people around the world. If this sounds like you, and the career below sounds exciting, we’d like to hear from you. _**
• *Working Arrangement**
Hybrid
• *Job Description - Cybersecurity Programs - Cybersecurity Business Analyst**
This role resides within Enterprise Technology and Services (ETS), specifically the Global Cybersecurity Services (GCS) Programs team, and reports to the Director, Cybersecurity Strategy.
• *Responsibilities**
• *Delivery**
- Strong data management and reporting skills
- Coordinating and fostering collaboration across cross-functional teams, multiple business segments and lines of defense as the overall cybersecurity strategy is developed
- Ensuring transparent and accurate reporting of control strength through assessment techniques and evidence gathering
- Positive and effective engagement with the business/risk/security teams to ensure a cohesive cybersecurity services strategy is delivered
- Effectively communicate and escalate impediments within the risk assessment and reporting capabilities
- Continuously work on improvements and team capabilities
- Support the creation of standard operating procedures documentation, reporting dashboards and presentations as required
• *Strategy**
- Deliver a coordinated assessment approach incorporating existing testing practices as well as key cybersecurity frameworks such as NIST/CIS/ISO
- Identify opportunities to reduce loss through prioritizing assessment gaps using cyber risk quantification techniques
- Collaborate and contribute to the delivery and maintenance of the enterprise Cybersecurity functional strategies and target operating model
• *Promote Risk Aware Culture**
- Model change leadership to the organization
- Lead through influence and work across multiple stakeholders and teams to drive strategic and operational outcomes
- Be emblematic of Manulife’s core values, as the cybersecurity team’s brand is built out
• *Qualifications**
- 2-5 years’ experience in Cybersecurity and risk assessments using industry frameworks
- Experience in Agile delivery frameworks/methodology
- A committed cyber professional willing to learn and grow, and demonstrating resilience to adapt to ever-changing priorities and areas of opportunity
- Ability to build positive and productive relationships with diverse groups of people; a drive for results combined with an appreciation for organizational structures and processes; thrives in a collaborative and challenging team environment
- A proven innovative thinker and problem solver; brings a big-picture perspective - the ability to see how all the pieces fit together and contribute to the achievement of broader organizational security objectives and risk appetite; strong business acumen and judgment
- Highly developed planning, organizing, and negotiating skills; can manage multiple tasks and meet deadlines
- Excellent interpersonal and communication skills to organize and negotiate with multi
- disciplinary teams to meet security objectives
- Ability and desire to work in a fast-paced and dynamic environment where change and growth are part of the culture
- Lateral thinker with an end-to-end view of the security operating model, functions, and key processes with an ability to identify emerging risks, raise issues, and find resolutions that deliver the right business outcomes
- Analytical and strategic thinker with ability to perform data analysis and resolve complex issues
• *About John Hancock and Manulife**
• *Manulife is an Equal Opportunity Employer