About this role
Requisition ID: 276032
Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.
Global Banking and Markets
Global Banking and Markets (GBM) is a leading Canadian Capital Markets and Investment Banking business with a growing platform in the US and Latin America, operating globally for over 100 years. Scotiabank’s strong U.S. presence provides our clients an important bridge to this key global market for trade and investment flows across the Americas and the world.
Global Banking & Markets provides a full range of investment banking, credit and risk management products and services relevant to the financing and strategic development needs of our clients. Our products include debt and equity financing, mergers & acquisitions, corporate banking, institutional equity sales, trading and research, fixed income products, derivatives, energy, foreign exchange and precious & metals. We also cross-sell the full range of wholesale products and services offered by the Scotiabank Group.
Be part of an innovative, Global Capital Markets and Investment Banking business with a unique geographic footprint that puts capital to work for our clients across industries! We work together to drive ambition for every future!
Purpose
As the 3rd Line of Defence, Internal Audit provides enterprise-wide, independent, and objective assurance over the design and operations of the Bank’s internal controls, risk management and governance processes. We are professionals who thrive in a challenging environment and work with management to find solutions to address control weaknesses.
The Senior Audit Manager leads and supports risk-based internal audit activities across IT Infrastructure and Cybersecurity , applying strong technical expertise, sound judgment, and disciplined engagement management to execute the Audit Department’s global mandate. The role ensures audit strategies, plans, testing, and reporting are delivered in compliance with governing regulations, internal policies, professional standards, and procedures.
The Senior Audit Manager is a dynamic, innovative, and trusted advisor who uses data and cybersecurity expertise to deliver industry-leading assurance and actionable insights. The role communicates complex technical risks clearly to senior management, regulators, and other stakeholders, while coaching audit teams and helping safeguard the Bank and its customers.
Accountabilities
- Acts primarily as Officer in Charge (OIC) for assigned audits and may serve as Audit Principal (AP) for low- to medium-complexity audits, demonstrating accountability for audit quality, scope, timelines, resources, stakeholder engagement, and team performance.
- Works with other audit teams as required.
- Carries out specific projects.
- As OIC/AP, oversees the execution, planning, and reporting. Obtains a thorough understanding of the end-to-end business/unit/process and associated risks, develops an appropriate risk-based audit approach and schedules timing and resources.
- Ensures audit results are gathered and determines the root cause of the problem. Prepares and/or reviews audit results and findings for presentation to management. Follows-up for corrective action/progress against any reported issues. Ensures relevant information that impacts other audit function areas is shared.
- Supports a client focused culture throughout their team to deepen client relationships and leverage broader Bank relationships, systems, and knowledge.
- Understands how the Bank’s risk appetite and risk culture should be considered in day-to-day activities and decisions.
- Plans, documents, and seeks agreement in advance to the project approach and confirms conclusions upon completion in writing.
- Ensures Scotiabank standards and the Institute of Internal Auditors (IIA) Code of Ethics are maintained in completion of all assignments.
- Builds and maintains strong relationships with internal and external stakeholders and regulators as required.
- Interacts and coordinates with other groups involved. Completes timely review of workpapers, ensuring internal control weaknesses are clearly documented with recommendations addressing the root cause and are communicated timely to management.
- Supports ongoing monitoring activities to stay abreast of changes (business/industry/regulatory), emerging risks, and themes or systemic issues that may impact the risk assessment of the audit universe and the audit plan.
- Supports a high-performance environment and implements a people strategy that attracts, retains, develops, and motivates their team by fostering an inclusive work environment and using a coaching mindset and behaviours; communicating vison/values/business strategy; and managing succession and development planning for the team.
- Meets Department training requirements.
- Performs risk assessments of complex IT and cybersecurity environments, including identity and access management, network and endpoint security, cloud security, security operations, vulnerability management, data protection, application security, resilience, general IT controls, automated controls, and underlying infrastructure.
- Evaluates the design and operating effectiveness of cybersecurity and technology controls using risk-based testing, data analytics, technical evidence, and recognized regulatory and industry frameworks; challenges control owners constructively and translates technical observations into clear business and risk implications.
- Leads, coaches, and reviews the work of multidisciplinary audit teams; sets clear expectations, provides timely feedback, develops technical capability, resolves delivery issues, and promotes consistent, high-quality execution.
- Communicates audit scope, status, findings, and risk implications with clarity and influence through concise workpapers, reports, presentations, and discussions tailored to technical teams, business leaders, senior executives, Audit Committees, and regulators.
- Accountable for specific audit work in assigned audits.
- Audit projects vary in complexity, involvement, and number.
Reporting Relationships
Primary Manager: Director, Audit
Direct Reports: Audit Managers and/or Auditors
Dimensions
- University/Post secondary degree in Business or equivalent. Relevant Audit or business certifications. e.g., CISA, CISSP, CISM).
- At least 7+ years of relevant experience.
- Working knowledge of the operations and regulatory environments for each unit as applicable.
- Proven ability to work in high levels of ambiguity and in a rapidly changing environment.
- Highly proficient at applying Scotiabank methodology and using risk-based auditing standards and practices.
- Strong analytical skills in the use of data analytics or visualization tools.
- Ability to execute and supervise multiple projects at any given time.
- Highly developed interpersonal and communication skills (verbal and written).
- Strong people management and coaching/development skills.
- Curiosity mindset.
Education / Experience / Other Information
- Bachelor’s degree in cybersecurity, information technology, computer science, engineering, accounting, business, or a related discipline; relevant advanced degree is an asset.
- Technical: Significant experience auditing or assessing cybersecurity and technology risks and controls, with sufficient technical depth to evaluate complex environments, challenge evidence, and apply applicable regulatory requirements and recognized frameworks. Relevant certifications such as CISSP, CISA, CISM, CRISC, CIA, or cloud security credentials are preferred.
- Management: Demonstrated ability to lead multiple risk-based audits or projects, manage scope, budgets, resources, timelines, quality, and issue escalation, and coach diverse teams in a dynamic environment.
- Communication: Exceptional written, verbal, presentation, negotiation, and influencing skills, including the ability to translate complex technical matters into concise, actionable messages for technical teams, business leaders, senior executives, Audit Committees, and regulators.
- Strong critical thinking, professional skepticism, data analysis, relationship management, and sound judgment, with the ability to identify root causes and develop practical, risk-based recommendations.
Working Conditions
- Work in a standard office-based environment; non-standard hours are a common occurrence, especially at quarter end.
- Moderate travel to participate on audit assignments.
- Deadlines and schedule changes are frequent due to unforeseen events.
Interested?
If your experience is closely related but doesn’t align perfectly with every qualification, we do encourage you to apply - you might be the right candidate for this or other roles at Scotiabank!
At Scotiabank, every employee is empowered to reach their fullest potential, respected for who they are and, embraced for their differences. That’s why we work to grow and diversify talent and engage employees in a performance-oriented culture.
What's in it for you?
Scotiabank wants you to be able to bring your best self to work – and life, every day. With a focus on holistic well-being, our many flexible benefit programs are designed to help support your unique family, financial, physical, mental, and social health needs.
#GBM
Location(s): United States : Texas : Dallas
Scotiabank is a leading bank in the Americas. Guided by our purpose: "for every future", we help our customers, their families and their communities achieve success through a broad range of advice, products and services, including personal and commercial banking, wealth management and private banking, corporate and investment banking, and capital markets.
At Scotiabank, we value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. If you require accommodation (including, but not limited to, an accessible interview site, alternate format documents, ASL Interpreter, or Assistive Technology) during the recruitment and selection process, please let our Recruitment team know. If you require technical assistance, please click here . Candidates must apply directly online to be considered for this role. We thank all applicants for their interest in a career at Scotiabank; however, only those candidates who are selected for an interview will be contacted.
Scotiabank is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other characteristic protected by federal, state, or local law.