Senior Manager, Information Security
at TD Bank
Toronto, ON, Canada -
Start Date | Expiry Date | Salary | Posted On | Experience | Skills | Telecommute | Sponsor Visa |
---|---|---|---|---|---|---|---|
Immediate | 25 Nov, 2024 | Not Specified | 01 Sep, 2024 | 3 year(s) or above | Financial Services,Thought Leadership,Multi Factor Authentication,Cloud Security,Oauth,Resiliency,Analytical Skills,Access,Communication Skills,Security,Management Skills,Financial Institutions,Information Technology,Customer Experience,Azure,Creativity | No | No |
Required Visa Status:
Citizen | GC |
US Citizen | Student Visa |
H1B | CPT |
OPT | H4 Spouse of H1B |
GC Green Card |
Employment Type:
Full Time | Part Time |
Permanent | Independent - 1099 |
Contract – W2 | C2H Independent |
C2H W2 | Contract – Corp 2 Corp |
Contract to Hire – Corp 2 Corp |
Description:
JOB DESCRIPTION
- Establish best practices, standards, and processes for Authentication
- Create roadmaps aligning Global Security, Line of Business and application architects on strategic and tactical needs with modern authentication patterns
- Delivers fit for purpose, secure, scalable identity platform integrations in an agile framework that evolves with the line of business via collaboration with AD teams, cloud teams, business, and engineering across all levels of the organization
- Domain expert and technical authority within an Insurance or Finance organization with demonstrable hands-on skills
- Work closely with software engineering, security peer teams, infrastructure, and other enterprise teams in validating and implementing proposed solutions
- As a technical leader, by example you will mentor your engineers’ capabilities to apply modern technology and technique for enterprise solutions through your hands-on experience
- Consolidate various identity stores and IDP technologies, driving integration and simplification of a diverse identity eco system
- Opportunity to assist hands-on with modern IDP solutions for critical projects
- Evangelize and raise the bar technically of the whole identity & access management organization through training, publishing, and mentoring
- Provide consultation and advice to partners on a broad range Technology Controls / Information Security programs / policies / standards and incidents for own specialized area
- Conduct project consulting on assessment of risk, definition of required controls, appropriateness of implemented control procedures, vulnerability assessments and any other relevant areas
- Lead or contribute to completion of risk and control design assessments for an application portfolio, articulate and document impact of control gaps to the business and the overall Bank, risk mitigation and remediation plans, remediation strategy document as applicable
- Contribute to the definition, development, and oversight of a global security management strategy and framework
- Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to both current and emerging technology / security threats against TDBG’s business
- Develop on-going Technology Risk reporting, monitoring key trends and defining metrics to regularly measure control effectiveness for own area
- Work proactively with technology partners / stakeholders and service/platform owners to ensure all technology security components are integrated into the bank’s overall Enterprise Architecture, and any control gaps are addressed.
- Consult on Regulatory compliance requirements, reporting and questions
- Provide support and consulting in preparation for Audits and in composing management responses and appropriate remediation activities
- Participate in computer security incident responses relevant to business (or enterprise wide) and represent respective function and Enterprise position to the business, and business needs to incident response team
- Adhere to internal policies / procedures, technology control standards, and applicable regulatory guidelines
- Contribute to the review of internal processes and activities and assist in identifying potential opportunities for improvement
- Adhere to and advise on / oversee / monitor / enforce enterprise frameworks and methodologies that relate to technology controls / information security activities
- Influence behavior to reduce risk and foster a strong technology risk management culture throughout the enterprise
- Remain informed of emerging issues, industry trends and/or relevant changes
- Define / develop / implement / manage standards, policies, procedures, and solutions that mitigate risk and maximize security, availability of service, efficiency and effectiveness
- Actively manage relationships with other areas of Technology / businesses / corporate and/or control functions and ensure alignment with enterprise and/or regulatory requirements
- Keep abreast of emerging issues, trends, and evolving regulatory requirements and assess potential impacts to the Bank
- Assess / identify key issues and escalate to appropriate levels and relevant stakeholders where required
- Maintain a culture of risk management and control, supported by effective processes and sound infrastructure an in alignment with risk appetite
- Participate in business specific / cross-functional / enterprise initiatives as a subject matter expert helping to identify risk / provide guidance
- May develop / provide / contribute to complex reporting, analysis, and assessments at the functional or enterprise level
- Continuously enhance knowledge / expertise in own area
- Keep current on emerging trends / developments and grow knowledge of the business, analytical tools and techniques
- Prioritize and manage own workload to deliver quality results and meet assigned timelines
- Support a positive work environment that promotes service to the business, quality, innovation and teamwork and ensure timely communication of issues/ points of interest
- Identify and recommend opportunities to enhance productivity, effectiveness and operational efficiency
- Establish effective relationships across multiple business and technology partners, program and project managers
- Participate in knowledge transfer within the team and business units
EXPERIENCE & EDUCATION
- Bachelor’s degree in an engineering discipline (Computer Science, Information Technology, Math or other engineering equivalent)
- 4+ years’ experience in IAM/CIAM and strong technical experience with building and operating enterprise-scale identity solutions
- IDaaS, and Cloud IAM Security experience are necessary
- 5+ years of experience with security including hands-on knowledge of SAML 2.0, oAuth, OpenID Connect, SSO, Multi-Factor Authentication, cloud security, etc.
- 3+ years of knowledge with Cloud Computing platforms with preferred experience in Azure, EntraID
- Knowledge and hands-on experience with Ping Identity etc.
- Demonstrated expertise in security, operational, and resiliency architecture principles
- Excellent verbal and written communication skills with focused attention to detail, as well as demonstrated professionalism and time/task management skills
- Strong analytical skills with demonstrated ability to apply analysis to actionable insights
- Thought leadership
Responsibilities:
Please refer the Job description for details
REQUIREMENT SUMMARY
Min:3.0Max:8.0 year(s)
Banking/Mortgage
IT Software - Network Administration / Security
IT
Graduate
An engineering discipline (computer science information technology math or other engineering equivalent
Proficient
1
Toronto, ON, Canada