Information Security Specialist - Cyber Security Incident Response
$96.9k - $136.8k par annéeTD
Work Location:
Toronto, Ontario, Canada
37.5 Line of Business:
Technology Solutions Pay Details:
$96,900 - $136,800 CAD TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs. As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role. Job Description:
- As an Information Security Specialist, you will play a critical role in detecting, investigating, and responding to cyber threats targeting TD.
- You will work within the Cyber Security Incident Response Team (CSIRT), leading in complex. Investigations, developing detection and hunting techniques, and strengthening our incident response capabilities.
- This role requires an experienced security professional with deep technical expertise in incident handling and analysis, malware investigation and containment, and cyber kill chain. You will be responsible for identifying and mitigating cyberthreats, collaborating with stakeholders across Protect Platform, ITS, and business teams to reduce risk and enhance our security posture.
- Guide partners on a broad range of technology throughout incidents
- Lead Cybersecurity Incidents and Cybersecurity events
- Lead or contribute to containment and recovery plans for Cybersecurity Incidents
- Contribute to the definition, development, and oversight of a global security management strategy and framework
- Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to both current and emerging technology and security threats against TD businesses and network domains
- Develop on-going operational enhancements for Cybersecurity including alerting, monitoring, and detection across multiple security domains
- Adhere to internal policies and procedures, technology control standards, and applicable regulatory guidelines
- Contribute to the review of internal processes and activities and assist in identifying potential opportunities for improvement
- Adhere to, advise, oversee, monitor and enforce enterprise frameworks and methodologies that relate to technology controls / information security activities
- Influence behavior to reduce risk and foster a strong technology risk management culture throughout the enterprise
- Here are the minimum requirements for this position:
- University degree or equivalent hands-on work experience
- 7+ years of hands-on relevant experience
- Expert knowledge of Information Technology (IT) security and Incident Management practices across multiple cybersecurity domains.
- Candidate must possess strong hands-on experience with traditional incidents response detection tools such as SIEM, EDR, XDR, Firewall, WAF, email proxies, NIDS, and equivalent
- Candidate should possess advanced hands-on experience in all modern Operating Systems (Window/NIX/Cloud/Mobile)
- Should have advanced scripting skills, can read data structures and software binary code
- Advanced knowledge of Enterprise, technology controls, cybersecurity, and cyber risk issues
- Strong communications, leadership and people building skills within Information Technology and/or Cybersecurity
- A demonstrated ability to participate in complex, comprehensive and large projects
- Has the ability to serve as a leading expert in technology controls and information security for project teams, the business, organization, and external vendors
- Must be eligible for employment under regulatory standards applicable to the position
- Extensive experience as an Incident commander or manager working on complex information security and cybercrime-related incidents, requiring coordination with internal and external enterprise teams, as well as third parties and vendors, partners
- Extensive experience working cybersecurity events and incidents related to network layer 7/application and internet facing attacks •
- Extensive experience briefing Senior Executives related to cybercrimes, information security incident triage, incident containment, and incident recovery
- Extensive experience authoring complex communications associated with cybercrime and information security incident triage, incident containment, and incident recovery •
- Extensive experience authoring and maintaining electronic and operational playbooks, and other process/governance documentation.
- Understanding of Security principles, techniques and technologies such as NIST Cybersecurity Framework, SANS Top 20 Critical Security Controls and OWASP Top 10, MITRE Attack.
- Expert knowledge of SIEM and UEBA solutions such as Splunk, Azure Sentinel or similar, along with experience of CrowdStrike, MS Defender for Endpoint, XSOAR.
- Expert knowledge of forensics tools such as Encase, Axiom, Autospy, OSForenscis, FTK imager or similar.
- Certifications: GIAC (GCIA, GPEN, GWAPT, GCIH, GSEC, GCFA), CCNP, CCNA, CISSP, Cloud security
- Additional Job Description
Additional Job Description- As an Information Security Specialist, you will play a critical role in detecting, investigating, and responding to cyber threats targeting TD.
- You will work within the Cyber Security Incident Response Team (CSIRT), leading in complex. Investigations, developing detection and hunting techniques, and strengthening our incident response capabilities.
- This role requires an experienced security professional with deep technical expertise in incident handling and analysis, malware investigation and containment, and cyber kill chain. You will be responsible for identifying and mitigating cyberthreats, collaborating with stakeholders across Protect Platform, ITS, and business teams to reduce risk and enhance our security posture.
- Guide partners on a broad range of technology throughout incidents
- Lead Cybersecurity Incidents and Cybersecurity events
- Lead or contribute to containment and recovery plans for Cybersecurity Incidents
- Contribute to the definition, development, and oversight of a global security management strategy and framework
- Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to both current and emerging technology and security threats against TD businesses and network domains
- Develop on-going operational enhancements for Cybersecurity including alerting, monitoring, and detection across multiple security domains
- Adhere to internal policies and procedures, technology control standards, and applicable regulatory guidelines
- Contribute to the review of internal processes and activities and assist in identifying potential opportunities for improvement
- Adhere to, advise, oversee, monitor and enforce enterprise frameworks and methodologies that relate to technology controls / information security activities
- Influence behavior to reduce risk and foster a strong technology risk management culture throughout the enterprise
- Here are the minimum requirements for this position:
- University degree or equivalent hands-on work experience
- 7+ years of hands-on relevant experience
- Expert knowledge of Information Technology (IT) security and Incident Management practices across multiple cybersecurity domains.
- Candidate must possess strong hands-on experience with traditional incidents response detection tools such as SIEM, EDR, XDR, Firewall, WAF, email proxies, NIDS, and equivalent
- Candidate should possess advanced hands-on experience in all modern Operating Systems (Window/NIX/Cloud/Mobile)
- Should have advanced scripting skills, can read data structures and software binary code
- Advanced knowledge of Enterprise, technology controls, cybersecurity, and cyber risk issues
- Strong communications, leadership and people building skills within Information Technology and/or Cybersecurity
- A demonstrated ability to participate in complex, comprehensive and large projects
- Has the ability to serve as a leading expert in technology controls and information security for project teams, the business, organization, and external vendors
- Must be eligible for employment under regulatory standards applicable to the position
- Extensive experience as an Incident commander or manager working on complex information security and cybercrime-related incidents, requiring coordination with internal and external enterprise teams, as well as third parties and vendors, partners
- Extensive experience working cybersecurity events and incidents related to network layer 7/application and internet facing attacks •
- Extensive experience briefing Senior Executives related to cybercrimes, information security incident triage, incident containment, and incident recovery
- Extensive experience authoring complex communications associated with cybercrime and information security incident triage, incident containment, and incident recovery •
- Extensive experience authoring and maintaining electronic and operational playbooks, and other process/governance documentation.
- Understanding of Security principles, techniques and technologies such as NIST Cybersecurity Framework, SANS Top 20 Critical Security Controls and OWASP Top 10, MITRE Attack.
- Expert knowledge of SIEM and UEBA solutions such as Splunk, Azure Sentinel or similar, along with experience of CrowdStrike, MS Defender for Endpoint, XSOAR.
- Expert knowledge of forensics tools such as Encase, Axiom, Autospy, OSForenscis, FTK imager or similar.
- Certifications: GIAC (GCIA, GPEN, GWAPT, GCIH, GSEC, GCFA), CCNP, CCNA, CISSP, Cloud security
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental well-being goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Learn more Additional Information:
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home. Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements. Colleague Development If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. If you're passionate about helping clients and building deep, lasting relationships, TD offers diverse career paths where you can grow your expertise and make a meaningful impact. We're committed to your success and foster a respectful workplace where diverse perspectives are valued, everyone has fair opportunities to grow, and you can unlock your full potential to achieve your career goals. Here at TD, we hire and develop the best. Training & Onboarding
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role. Interview Process
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call. Accommodation
Your accessibility is important to us. Please let us know if you'd like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process. We look forward to hearing from you! Language Requirement (Quebec only):
Sans Objet
$96.9k - $136.8k par année
...more specific details for this role. Job Description: Information Security Specialist: Enterprise Vulnerability Management (EVM) Application... .../ Information Security programs, policies, standards, and incidents within your specialized area. Presence: Your work...SuggéréTemps pleinTravail à domicile$96.9k - $136.8k par année
...more specific details for this role. Job Description: Information Security Specialist: Enterprise Vulnerability Management (EVM) Application... .../ Information Security programs, policies, standards, and incidents within your specialized area. Presence: Your work...SuggéréTemps pleinTravail à domicile$59.5k - $84k par année
...someone to join our Audit and Operational Security Compliance pod which focuses on audit response, compliance, controls implementation,... ...of specific Technology Controls and Information Security programs, policies, standards and incidents. Engage in assessments related to...SuggéréTemps pleinStageTravail à domicile$50k - $150k par année
...with it. This is a unique opportunity to be part of the team that is the first response to all IT incidents and requests across stores, offices, and distribution centers. As the IT Service Specialist, you will support the team in the development and delivery of technology...SuggéréTemps pleinStageTravail au bureauLundi au vendrediTravail posté$96.9k - $136.8k par année
...Data Foundation team within U.S. Treasury Data Management is responsible for delivering and operating the strategic data foundation that... ...organizational strategies Design and implement complex business data information management frameworks to provide a solution that meets...SuggéréTemps pleinTravail au bureauTravail à domicile- ...construction de grands projets de génie civil recrute un(e) Responsable Santé Sécurité Le Job: Nous recherchons un(e) Gestionnaire... ...traitants. Diriger ou participer aux enquêtes concernant des incidents graves et veiller à la mise en place d’actions correctives...Emploi permanentTravail temporaireTemps partielZone localeTravail à distanceLe monde entier2 jours par semaine
$69.7k - $98.4k par année
...Description We're taking TD Securities to the next step in its... ...seeking a Marketing Technology Specialist to conceptualize, develop,... ...Specialist will be primarily responsible for the creation of email templates... .... Learn more Additional Information: We're delighted that you...Temps pleinTravail à domicileHoraires flexibles- We are looking for a temporary prevention information assistant to receive and respond to province wide WorkSafeBC calls. As a member of... ...organizational behaviours expected of all WorkSafeBC employees: responsive, respectful, fair, collaborative, accountable, and forward...Contrat Longue DuréeTravail temporaireTravail au bureauRecrutement immédiatTravail à distance
- ...Details: Position: Full-Time Security Guard Site: Guysborough... ...Payrate: $ 20.50 Key Responsibilities: • Patrol Hospital... ...Document daily activities, incidents, or accidents accurately. Complete... ...Certification Additional Information / Benefits Paladin Security...Tarif journalierTemps pleinZone localeRecrutement immédiatTravail posté
- ...on Tenable to understand and reduce cyber risk. Our global employees support 65... ...together! Your Role: Toronto based Security Engineer, responsible for identifying and matching... ...related to the collection of your private information. Please click here to review....Travail à distanceContrat Longue DuréeZone locale
$75k - $100k par année
...SHE & Security Manager Ayr, ON, Canada As the Site SHE professional... ..., driving a zero ‑ incident culture and making a visible... ...firmenich.com/ANH Your key responsibilities Lead and execute the site... ..., understand financial information, and use standard systems and...Taux horaireLogé Sur PlaceZone locale$126.8k - $164.1k par année
...Department Overview TD Securities is the wholesale banking arm... ...portable and re-usable systems. Responsibilities Collaborate with... ...teams in resolving escalated incidents. Job Requirements: Technical... ...work. Additional Information : Join in on what others...Travail manuelTravail à domicileHoraires flexibles$41.59 - $52.35 par heure
...difference? Join our team as a Security Engineer I and help shape the future of secure applications that protect millions... ...of all WorkSafeBC employees: responsive, respectful, fair, collaborative... ...years of work experience focused on information security and secure application...Taux horaireTemps pleinTravail au bureauRecrutement immédiatTravail à distance$114.6k - $151.8k par année
...Impact Starts Here. As a Cloud Security Architect , you will help shape the secure foundation that powers WSP's... ...the security escalation point for incidents across the platform engineering team... ..., including 7+ years in information security and cloud security architecture...Temps pleinZone localeTravail à distanceHoraires flexibles$105.1k - $129.4k par année
...Department Overview About TD Securities - Global FICC (Fixed Income,... ...engineers who want to take responsibility, make decisions, and see the... ...Build high-performance, secure, and maintainable server-side... ...mentorship. Additional Information Join in on what others in...Temps pleinTravail à domicileLe monde entier- ...Job Responsibility: Some of what you will do: The Vertical Sales Specialist will serve as a liaison and subject matter expert for the... ...sales support, expertise, information, and guidance while recommending... ...pricing, and sourcing as needed to secure deals. Proactively source...Temps pleinTravail à distance
$70k - $90k par année
...here. This role: As our Security SOC Analyst, you’ll be working... ...vector to 10 million users remains secure and unimpeded. Your key... ...Maintaining a high-velocity response rate to SOC alerts and internal... ...This will include: Triage & Incident Response : Monitoring SIEM...Travail à distanceEmploi permanentTemps pleinTravail au bureauTravail à domicile- ...tools, technology, and strategic security support. Founded in 2008 with... ...& Systems Operations Specialist to add to their team. Accountability... ...operations. This role is responsible for diagnosing and resolving... ...principles Support incident response efforts involving phishing...Temps pleinStageTravail à distance
- ...while receiving healthcare security training provided by Paladin... ...day off; 1800-0600 hrs Key Responsibilities: • Patrol Assigned... ...Document daily activities, incidents, or accidents accurately. Complete... ...Certification Additional Information / Benefits Paladin Security...Tarif journalierTemps pleinСontratTravail temporaireTravail occasionnelRecrutement immédiat
$102.2k - $125k par année
...Inclusive Technology Team TD Securities offers a wide range of... ...innovative and growing team responsible for creating and enhancing payments... ...are reliable, scalable, secure, and extensible. Continuously... ...is preferred Additional Information: Join in on what others in...Contrat Longue DuréeTemps pleinTravail à domicile$126.8k - $164.1k par année
...equal boring . Not at TD, anyway. TD Securities is the wholesale banking arm of TD Bank... ...Team (in TD Securities) is responsible for the development and support of our... ...process es a huge plus Additional Information : Join in on what others in TD Technology...Travail à domicile$91.5k - $98.4k par année
...Description: Department Overview TD Securities provides a wide range of capital... .... Enterprise Payments Technology is responsible for development of technology strategy... ...PySpark and Pandas Additional Information : Join in on what others in TD Technology...Temps pleinTravail à domicile$48.46 - $61.09 par heure
...of the position. As a senior analytics specialist on our Analytics Services team you will:... ...measurement to successfully convey key themes and inform decisions Design and execute... ...behaviors expected of all WorkSafeBC employees: responsive, respectful, fair, collaborative,...Taux horaireContrat Longue DuréeTravail temporaireTravail au bureauRecrutement immédiatTravail à distance$81.6k - $115.2k par année
...of implementation and completion on a timely basis. Team responsibilities include: Balancing of all year-end tax slips and completion... ...critical periods throughout the year Provide payroll data information to various business partners Participate in ad hoc requests...Salaire hebdomadaireTravail à domicileHoraires flexibles$81.6k - $115.2k par année
...moderately complex audits? Can you lead several audits and be responsible for their completion? Are you excited to explore TD's processes... ..., fulfilling your due diligence and handling confidential information with discretion Build a fair and positive work environment...Temps pleinTravail à domicile$36k par année
...The Role: The Customer Support Specialist will be responsible for providing exceptional support to our customers, ensuring their inquiries and... ...members to improve support processes. Provide product information and guidance to customers. Ideal Profile : The ideal...Temps pleinTravail à distance- ...details for this role. Job Description: Mortgage Mobile Specialist TD Canada Trust is TD's customer-focused personal and small... ...and reward and recognition programs. Learn more Additional Information: We're delighted that you're considering building a career with...Temps pleinTravail à domicileBureau à domicileHoraires flexibles
$114.6k - $151.8k par année
...Senior Network Infrastructure Specialist , you will play a pivotal... ...: ~ A Bachelor's degree in Information Technology, Computer Science,... ...and wireless LAN, perimeter security, SSE, ADC/load balancing, cloud... ...information security compliance and secure infrastructure operations....Temps pleinZone localeTravail à distanceHoraires flexibles$42k par année
...The Role: As a Customer Support Specialist, you will be the first point of contact for our customers, providing exceptional service and support. You will be responsible for addressing customer inquiries, resolving issues, and ensuring a positive customer experience. Respond...Temps pleinTravail à distance$47.2k - $66.6k par année
...specific details for this role. Job Description: Important Information: Start Date: July 6th, 2026 Training: Monday to Friday... ...performed independently, you'll spend about 95% of your time at your secure, private workspace. Your remaining time will be spent at a TD...Temps pleinTravail à domicileLundi au vendredi
Voulez-vous recevoir plus d'offres d'emploi ?
S'abonner et recevoir des offres d'emploi similaires à Information Security Specialist - Cyber Security Incident Response. Soyez parmi les premiers à postuler !
- security systems specialist Canada
- spécialiste en sécurité informatique Canada
- conseiller en sécurité financière Canada
- conseiller santé sécurité Canada
- junior security analyst Canada
- physical security specialist Canada
- physical security analyst Canada
- spécialiste en sécurité Canada
- security operations specialist Canada
- security analyst Canada
