JOB DESCRIPTION:
Description
- Review and analyze current network designs to ensure they are in line with TD Standards and Controls
- Work with Project teams to understand and accommodate application architecture and the App’s specific requirements for Azure/GCP networking
- Work with security team to understand and accommodate network security requirements for application
- Work with network engineering team to help them build and troubleshoot Cloud networks (focus on Azure and GCP)
- Define network governance model within an infrastructure as code environment.
- Opine on designs that account for the end-to-end solution of a system that is in line with the business and security objectives, which could include the design of the functional architecture for multiple functions of the enterprise.
- Analyzes the chosen technologies against the implied target state and leverages deep operational knowledge to identify technical and business gaps from a security perspective
- Establish requirements and drive implementation of network monitoring and management infrastructure for both availability and performance management within the content of the overall Azure cloud implementation
- Will require both operational and design skills to help execute the intended architecture in a secure and maintainable way on the Azure/GCP/AWS platforms.
- Review requests for firewall rules and/or security exceptions (e.g. URL filtering exceptions, SSL decryption bypass, Pull Requests). Work with the client to ensure the requests meet the required security standards
- Oversee, monitor, enforce enterprise frameworks and methodologies that relate to technology controls / information security activities
- May be required to provide after-hours support for firewall Rules review.
- Participate in business specific / cross-functional / enterprise initiatives helping to identify risk and provide guidance
- Identify and recommend opportunities to enhance productivity, effectiveness and operational efficiency especially of existing processes
- Participate in the investigation of Information Security Incidents and development of remediation/prevention mechanisms
Qualifications:
- 10+ years of experience as a full time IT professional
- 3+ years of experience designing and supporting Azure environments, including IaaS and PaaS
- Thorough understanding of networking/firewalling concepts and network security deployment strategies, including both traditional on premises and cloud deployments.
- This includes a detailed understanding of layers 3/4 and 7.
- Knowledgeable of cloud and hybrid-cloud implementations including IaaS, PaaS and SaaS
- Demonstrable experience deploying enterprise workloads to Azure and/or GCP
- Ability to understand network security standards and effectively apply these as part of network security governance
- Understanding and experience working with Infrastructure As Code – ability to review and understand YAML/JSON files and templates as they pertain to networking. Familiarity with Bitbucket and GitHub is a plus
- Hands on experience using the Azure administration portal
- Understand product offerings from Azure/GCP/AWS and vendor partners
- Have intimate knowledge of Cloud Micro-segmentation and Cloud network automation
- Have intimate knowledge of Azure networking services or and offerings, and best practices and patterns for Azure cloud-native network design, Azure firewall, azure private link, VPN gateways, Network Watcher, Azure Monitor.
- Have intimate knowledge of cloud tools and capabilities (SIEM, SOAR, EDR and similar) and integration requirements required to automate cloud on-boarding and ongoing security operations
- Must have extensive working experience with Microsoft Office technologies
- JIRA experience is a plus
LI-Tech
WHO WE ARE:
TD is one of the world’s leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you’ve got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we’re here to support you towards your goals. As an organization, we keep growing – and so will you.