Senior Information Security Analyst (Vulnerability Governance)
$81.6k - $115.2k per yearTD Bank
Work Location:
Toronto Ontario CanadaHours:
37.5Line of Business:
Technology SolutionsPay Details:
$81600 - $115200 CADTD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidates skills and experience job-related knowledge geographic location and other specific business and organizational needs.
As a candidate you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Job Description:
About This Role:
As a Senior Information Security Analyst at TD Bank you will be a member of the Enterprise Vulnerability Management (EVM) Governance team and support the governance and day-to-day operations of the vulnerability management program. You will help ensure application security scanning operations vulnerability data remediation processes and secure development training are executed consistently and in alignment with established standards procedures and control requirements.
Working with application security teams development teams technology partners and risk stakeholders you will support scanning operations analyze and validate vulnerability data identify process or data-quality issues track remediation activities maintain program documentation and support the secure coding training curriculum. You will also prepare clear reports analyses and communications for technical teams business partners and leadership.
To succeed in this position a background in governance risk or compliance and familiarity with application security vulnerability and patch management systems development or another relevant technical discipline is preferred. The successful candidate will be an effective communicator who can translate technical and risk information for different audiences manage responsibilities independently and consistently deliver accurate timely work.
Responsibilities:
- Support vulnerability management business-as-usual operations including scanning coordination operational tracking issue follow-up and stakeholder communications.
- Analyze and validate vulnerability data to identify data-quality issues process gaps trends and remediation priorities.
- Support the governance of application security testing and vulnerability remediation processes including adherence to applicable standards procedures controls and service-level expectations.
- Track vulnerability remediation activities and work with application owners development teams and security partners to resolve operational issues and improve program outcomes.
- Develop and maintain reports metrics dashboards procedures guidance and other governance documentation.
- Maintain and coordinate updates to the secure coding training curriculum supporting content accuracy program administration assignment requirements and stakeholder communications.
- Support the implementation and continuous improvement of application security scanning processes workflows data integrations and reporting capabilities.
- Communicate vulnerabilities control requirements operational issues risks and remediation expectations clearly to technical and non-technical audiences.
- Support audit regulatory risk and control-assurance requests by gathering evidence validating information and preparing clear and defensible responses.
- Build effective relationships across security technology development risk compliance and business teams.
- Work independently to prioritize assignments resolve issues escalate concerns when appropriate and deliver high-quality work within established timelines.
Job Requirements:
Must-haves
- Bachelors degree or equivalent relevant professional experience.
- Five or more years of experience in information security technology risk governance risk and compliance application security vulnerability management patch management systems development or another relevant technical role.
- Strong understanding of governance risk and compliance concepts including policies standards controls risk identification issue management remediation tracking and evidence validation.
- Familiarity with application security vulnerability management patch management secure software development or related security operations.
- Working knowledge of Common Vulnerabilities and Exposures (CVEs) Common Weakness Enumeration (CWEs) vulnerability severity and prioritization risk treatment and remediation processes.
- Experience using ServiceNow Security Operations module
- Familiarity with application infrastructure or cloud security scanning tools such as Veracode Snyk Qualys VM Wiz or comparable platforms.
- Experience analyzing validating and reporting data including the ability to identify inconsistencies explain trends and communicate actionable findings.
- Ability to develop and maintain clear procedures guidance reports training materials and governance documentation.
- Excellent written and verbal communication skills with the ability to communicate technical operational and risk information clearly to technical and non-technical audiences.
- Strong organizational skills and attention to detail with the ability to manage multiple priorities and deliver accurate work within established timelines.
- Demonstrated ability to work independently exercise sound judgment take ownership of assigned responsibilities and escalate issues appropriately.
- Ability to collaborate effectively with application owners developers security teams technology partners risk and compliance functions and external vendors.
- Demonstrated ability to support complex initiatives and contribute to the continuous improvement of processes controls reporting and operational practices.
Additional Information:
We cant afford to be boring. Neither can you. The scale and scope of what TD does may surprise you. The rapid pace of change makes it a business imperative for us to be smart and open-minded in the way we think about technology. TDs technology and business teams become more intertwined as new opportunities present themselves. This new era in banking does not equal boring. Not at TD anyway.
Who We Are:
TD is one of the worlds leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day we strive to make every interaction product and experience remarkably human and refreshingly simple for over 27 million households and businesses in Canada the United States and around the world. More than 95000 TD colleagues bring their skills talent and creativity to foster deeper relationships ensure disciplined execution and build a simpler faster banking experience. TD is deeply committed to being a leader in client experience that is why we believe that all colleagues no matter where they work are client facing. Together we are reimagining what banking can be for our clients colleagues and communities.
Our Total Rewards Package
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial physical and mental well-being goals. Total Rewards at TD includes a base salary variable compensation and several other key plans such as health and well-being benefits savings and retirement programs paid time off banking benefits and discounts career development and reward and recognition programs. Learn more
Additional Information:
Were delighted that youre considering building a career with TD. Through regular development conversations training programs and a competitive benefits plan were committed to providing the support our colleagues need to thrive both at work and at home.
Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations requirements.
Colleague Development
If youre interested in a specific career path or are looking to build certain skills we want to help you succeed. Youll have regular career development and performance conversations with your manager as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities.
If youre passionate about helping clients and building deep lasting relationships TD offers diverse career paths where you can grow your expertise and make a meaningful impact.
Were committed to your success and foster a respectful workplace where diverse perspectives are valued everyone has fair opportunities to grow and you can unlock your full potential to achieve your career goals. Here at TD we hire and develop the best.
Training & Onboarding
We will provide training and onboarding sessions to ensure that youve got everything you need to succeed in your new role.
Interview Process
Well reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
Accommodation
Your accessibility is important to us. Please let us know if youd like accommodations (including accessible meeting rooms captioning for virtual interviews etc.) to help us remove barriers so that you can participate throughout the interview process.
Language Requirement (Quebec only):
Sans ObjetRequired Experience:
Senior IC
- ...outputs related to threat analysis, vulnerability assessment, and security architecture recommendations.... ...organization, MSSP, consultancy, or government/defense environment. ~ Background... ...the interview process and platform information, please check: For any help or...SeniorHourly payFull timeContract workSummer workRemote work
$71.4k - $105.66k per year
...THE CHALLENGE Take-Two Security's goal is to empower our label... ...triple-A game content. The Information Security Engineer will... ...security control gaps, manage vulnerabilities, and automate endpoint asset... ...~3-5 years in a Security Analyst, Security Engineering, or Network...SuggestedFull timeCasual work$70 - $100 per hour
...interview based on your resume Submit form Resources & Support For details about the interview process and platform information, please check: For any help or support, reach out to: ****@*****.*** PS: Our team reviews applications daily. Please...SuggestedHourly payWeekly payFull timeContract workFor contractorsSummer workRemote work$70 - $90 per hour
...Role Responsibilities Analyze and review content for security vulnerabilities with a focus on pattern recognition and classification in... ...For details about the interview process and platform information, please check: For any help or support, reach out to:...SuggestedFull timeContract workSummer workRemote workFlexible hours- ...et avez un sens de l’intégrité à toute épreuve, investissez votre carrière ici. Description du poste En tant qu’Analyste principal(e), Information financière, vous contribuerez à assurer l’exactitude et l’intégrité des processus de production de rapports financiers de...SuggestedRemote jobFull timeWork at office
- ...with Incident Response experience to join our growing cyber security function. This role will be supporting our 24/7... ...technologies. Lead a team of subject matter experts and analysts to ensure Information Security is managed and continuously improved in line with...Full timeWorldwideFlexible hoursShift work
- ...We are seeking an experienced Information Management Specialist to... ...development of the Enterprise Data Governance Program . This role will... ...developers, data architects, business analysts) to identify data rules and... ..., including privacy, security, and retention practices....SeniorContract work
- ...stakeholders involving I&IT solutions, security, privacy, and accessibility... ...experience and knowledge of Information Architecture, Data Modelling,... ...\\ Experience in OPS Governance processes, Target State... ...\- Information Architect \- Senior","widgetId":"383123000000072311...SeniorContract work
$110k - $120k per year
...Position: IT Security Analyst Position reports to: Director of IT Position Overview:... ...Analyst. Reporting to the Director of Information Technology, you will join our Technology... ...during high-severity security breaches. Vulnerability & Risk Management: Plan and execute...Long term contractFull time- ...: \\ \ ~ Provide professional information architecture expertise, and undertake comprehensive... ...~ Demonstrated knowledge of information governance, including data mastering, data... ...outcomes, and obtaining buy\-in from senior level management, key stakeholders, and...SeniorContract workFor contractors
$81.6k - $115.2k per year
...Wholesale Banking including TD Securities TD had CDN$1.9 trillion... ...identifying and exploiting vulnerabilities in applications and... ...~ University degree ~ Information security certification / accreditation... ...only): Sans Objet Required Experience: Senior IC...SeniorFull timeWorldwide- ...potential attack vectors and security gaps. Reviewing system... ...and prioritizing threats and vulnerabilities across physical, cyber, and... ...., PHIPAA - Personal Health Information Protection Act). Proactive... ...Strong command of cybersecurity governance practices, including the...SeniorFull time
- ...The Sr. Security Specialist will support and deliver on multiple... ...initiatives related to Security Governance, Risk and Compliance and... ...Hands on experience with IPC (Information Privacy Commissioner)... ...of typical security threats, vulnerabilities and safeguards relevant to IT...SeniorFull time
$130k - $160k per year
...Conduct threat modeling and security design reviews for new and changing... ...changes). Translate vulnerability findings and incident learnings... ...detection, response, and secure design (e.g., logging/SIEM, SOAR... ...: ~5-7 years of combined Information Security Experience ~ B.S....SeniorLong term contractFull timeTemporary workWork at officeLocal areaRemote workFlexible hours$159.1k - $198k per year
...League is seeking a Software Security Engineer to join our... ...member data. This is not a governance, audit, or advisory-only role... ...Create scalable systems for vulnerability detection, remediation automation... ...with sensitive or regulated information How this scales by level:...SeniorFull timeWork at officeRemote workFlexible hours- ...The Security Specialist for Threat Risk Assessment, Threat Modelling, Vulnerability Assessment, Risk Identification will develop new workflows... ...Security Risk Management and Information Security Office growth and... ...Responsibilities: The Senior Security Specialist will be responsible...SeniorFull timeWork at office
- ...our mission and shape the future! As a Senior Security Engineer you will: Serve as trusted... ...operation functions – including vulnerability management, SAST, DAST, detection engineering... ...comfortable with ambiguity and are able to make informed decisions with little data ~ You...SeniorFull timeWork at officeRemote workFlexible hours
$78.31k per year
...Req ID: 34984 Faculty/Division: Ofc of the Chief Information Officer Department: Information Security Campus: St. George (Downtown Toronto) Position... ...security services such as identity and access management, vulnerability scanning, and detection and response capabilities...Full time$86.9k - $103.2k per year
Esri Canada Limited Information Security Analyst, Technology Infrastructure Esri Canada has an exceptional opportunity for a full-time Information... ...maintain security policies, standards, procedures, and governance documentation. * Provide technical leadership and recommendations...Full timeInternshipWork at officeRemote work$136k - $170k per year
...passengers entrust Lyft with their personal information and travel details to get where they... ...team is comprised of engineers and analysts dedicated to ensuring that appropriate... ...identify and mitigate potential privacy vulnerabilities Identify trends in privacy and regulatory...SeniorHourly payFull timeWork at officeFlexible hours3 days per week- ...We partner with municipal governments, planning authorities, and property... ...looking for an experienced Senior Project Manager, Government... ...stakeholder management, project governance, and cross-functional... ...Engineering, Computer Science, Information Systems, or a related field preferred...SeniorRemote jobFull timeContract workFlexible hours
$85k - $95k per year
...be engaged with meaningful work! The Senior Financial Analyst is responsible for analyzing the... ...Learning & Child Care funding, and other Government grants reconciliations by Region, as required... ...wellbeing of all children, youth, and vulnerable people in YMCA programs including...SeniorFull timeInternshipImmediate startMonday to friday- ...Experience in the use of information retrieval packages Knowledge... ...and international standards on security, privacy and accessibility... ...the following: Business Analyst Experience: Experience... ...integrated multi-ministries’ government services Knowledge and experience...SeniorContract work
- ...RQ10029 - Business Analyst - Senior ONSITE - 56 Wellesley St., 2nd Floor Contract -... ...Service Delivery and Procurement Security Level: CRJMC Leads requirements... ...impacts, readiness considerations) for governance bodies (PSC, JESC, and ARB as applicable...SeniorFull timeContract work
$120k - $150k per year
...who are lifelong learners. About The Role As the Senior Manager, Information Security, you will help lead the strategic and operational security... .... Manage security audits, risk assessments, and vulnerability management programs, proactively identifying and mitigating...SeniorWork at officeFlexible hours1 day per week- ...Description: The Senior Business Analyst will provide dedicated, handsâon business analysis... ...execution. ~ Experience working within government, public sector, or other highly... ...Knowledge of public sector procurement, security clearance protocols, and FOI (Freedom...SeniorHourly payFull time
$84.19 - $101.03 per hour
...RQ00753-Business Analyst - Senior Location: Toronto (200 Front St) Hybrid (up to 3 days... ...modernization and transformation through information management and information technology.... ...enabling technologies for modern, innovative, secure and efficient business solutions. The...SeniorFull timeContract workWork at office$100.71k - $125.92k per year
...Role impact: The Senior Manager Information Security Risk & Governance leads the Information Security Risk Management and Governance programs. Their main objective is to manage and continue the development of both programs to enhance and communicate the value of the Information...SeniorFull time- ...Experience in the use of information retrieval packages \\ Knowledge... ..., and presentations for senior management decision\-making \... ...completing business requirements in government settings or similar complex,... ...application \/ technology \/ security architectures. \\ ~5+...SeniorContract workFlexible hours
- ...Strong ability to analyze data for actionable insights to inform digital marketing, customer experience, and product strategies. \... ...}],"headerName":"RQ10498 \- Information Management Specialist \- Senior","widgetId":"383123000000072311","isJobBoard":"false","userId":"383123000000184003...SeniorContract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Information Security Analyst (Vulnerability Governance). Be the first to apply!
- sas data analyst Toronto, ON
- information systems analyst Toronto, ON
- business data analyst Toronto, ON
- senior data analyst Toronto, ON
- data & reporting analyst Toronto, ON
- remote data analyst Toronto, ON
- junior data analyst Toronto, ON
- stage data analyst Toronto, ON
- data analyst remote working Toronto, ON
- work from home data analyst Toronto, ON

