Information Security Analyst II - Asset Assessment & Governance
$69.7k - $98.4k per yearTD Bank
Work Location:
Toronto, Ontario, CanadaHours:
37.5Line of Business:
Technology SolutionsPay Details:
$69,700 - $98,400 CADTD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Job Description:
About This Role
You will be a core member of a high performing team of technology and risk professionals who utilize their subject matter expertise in technology and information and cyber security risk management to provide effective guidance on a broad range of cyber security policies, standards and controls in compliance with the Enterprise Risk and Control Framework. As part of the Global Technology & Solutions (GTS) Protect organization, the Centre of Excellence (COE) Assessment team, you will play a key role in ensuring required risk and control assessments are completed efficiently and with quality/care. The role also supports standards governance, assessment quality assurance, guidance maintenance, strategic partner engagement, and continuous improvement of the end-to-end assessment process.
Meaningful work is fueled by meaningful performance and career development conversations with your manager. Here's some of what you may be asked to perform:
Standards Governance & Advisory
- Represent GTS CoE Assessments in Standards working groups and stakeholder forums, perform preliminary analysis of proposed standard changes, and track related actions and follow-ups.
- Assess and challenge standard requirements for relevance to CGAs, support updates to CGA Guidance and related documentation, and help maintain traceability between standards, control requirements, guidance, and assessment requirements.
- Guide partners on a broad range of technology controls and information and cyber security programs, policies, and standards.
- Contribute to the definition, development, and oversight of a global security management strategy and framework.
- Contribute collaboratively to the review of internal processes and activities and assist in identifying potential opportunities for improvement.
- Support simplification and modernization of the CGA process through automation research, process mapping, documentation, assessor training, knowledge repositories, and identification of recurring assessment pain points.
- Adhere to, advise, oversee, monitor and enforce enterprise frameworks and methodologies that relate to technology controls and information security activities.
- Contributes to the ongoing evolution of the GTS CoE Assessment operating model and implementation of strategic process enhancements.
- Support stronger end-to-end assessment governance by improving process ownership, quality-control mechanisms, consistency of execution, and alignment between standards, guidance, and assessment practices.
- Strengthening relationships with Standards teams and stakeholders, provide proactive risk guidance, and act as a trusted advisor on control and assessment-related matters.
Assessment Execution & Risk Review
- Conduct: Technology Asset Risk Assessments (TARAs), Control Gap Assessments (CGAs), perform Quality Assurance reviews of risk assessments, and support assessment planning, coordination, documentation, evidence tracking, stakeholder follow-ups, and remediation activities.
- Conduct risk and control assessments and evaluate the appropriate control procedure.
- Interpret and communicate technology control and information security requirements arising from regulatory obligations, industry frameworks, internal policies and standards, and security best practices.
- Lead or contribute to the completion of risk and control design assessments for any assigned assets within the enterprise.
- Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to both current and emerging technology and security threats against TDBG’s business.
Reporting & Continuous Improvement
- Monitor assessment trends and emerging risk themes and help define and refine metrics that measure effectiveness and assessment quality, consistency, and efficiency.
- Influence behavior to reduce risk and foster a strong technology risk management culture throughout the enterprise.
- Contribute to the development of on-going technology risk reporting, monitoring key trends and providing assurance that metrics to regularly measure control effectiveness for own area are met.
What can you bring to GTS? Share your credentials, but your relevant experience and knowledge can be just as likely to get our attention.
- 2+ years of relevant experience in the area of IT risk and technology and/or information security and/or data analysis in a large organization.
- University degree and or Information Security Certification/Accreditation (an asset).
- Skills to identify, assess, and monitor technology risks including information security, cyber security, resilience, operations/change management quality, data quality/security, and IT compliance.
- Advanced knowledge of one or more technology controls or security domains, disciplines and practices.
- Knowledge of standards governance, control requirement interpretation, assessment Quality Assurance, and traceability between standards and assessment requirements.
- Strong critical thinking - ability to decompose complex issues into manageable pieces.
- Ability to articulate ideas, share experiences and skills.
- Sound knowledge of business, technology controls, security and risk issues.
- Firm commitment to staying informed/abreast of emerging cyber and information security issues, industry trends.
- Strength in prioritizing and managing your own workload to deliver quality results and meet timelines with limited guidance of management.
- Knowledge of industry standards and best practices in the areas of technology, information and cyber security, risk management and governance.
- High flexibility and are comfortable working in a fluid, changing environment.
- Strong communication, writing and presentation skills.
- Ability to multi-task and manage multiple team and client demands concurrently.
- Dedicated team player; comfortable with a dynamic work environment.
- Diligent and resourceful in research and information gathering.
- Must be proficient with technology tools including MS Office, databases and reporting tools.
- Ability to support process-improvement initiatives through research, analysis, process mapping, documentation, training materials, knowledge management, and identification of automation opportunities.
- Ability to navigate Co-Pilot for research, productivity and analysis.
Inclusiveness
At TD, we are committed to fostering an inclusive, accessible environment, where all employees and customers feel valued, respected and supported. We are dedicated to building a workforce that reflects the diversity of our customers and communities in which we live and serve. If you require accommodation for the recruitment/interview process (including alternate formats of materials, or accessible meeting rooms or other accommodation), please let us know and we will work with you to meet your needs.
#li-tech
Who We Are:
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we strive to make every interaction, product, and experience remarkably human and refreshingly simple for over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to foster deeper relationships, ensure disciplined execution, and build a simpler, faster banking experience. TD is deeply committed to being a leader in client experience, that is why we believe that all colleagues, no matter where they work, are client facing. Together, we are reimagining what banking can be for our clients, colleagues and communities.
Our Total Rewards Package
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental well-being goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Learn more
Additional Information:
We’re delighted that you’re considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we’re committed to providing the support our colleagues need to thrive both at work and at home.
Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements.
Colleague Development
If you’re interested in a specific career path or are looking to build certain skills, we want to help you succeed. You’ll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities.
If you’re passionate about helping clients and building deep, lasting relationships, TD offers diverse career paths where you can grow your expertise and make a meaningful impact.
We're committed to your success and foster a respectful workplace where diverse perspectives are valued, everyone has fair opportunities to grow, and you can unlock your full potential to achieve your career goals. Here at TD, we hire and develop the best.
Training & Onboarding
We will provide training and onboarding sessions to ensure that you’ve got everything you need to succeed in your new role.
Interview Process
We’ll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
Accommodation
Your accessibility is important to us. Please let us know if you’d like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process.
We look forward to hearing from you!
Language Requirement (Quebec only):
Sans Objet- ...stops. The Adventure Ahead As our Information Security Compliance Specialist , you will be... ..., ISO (27001, 9001, 42001), and NIS2 assessments. Automate for Efficiency: Leverage... ...hands-on experience with modern security governance platforms like Vanta and 1UP....SuggestedLong term contractFull timeWork at office3 days per week
- ...our growth, we are looking for SOC Analysts to join our growing cyber security function. This role will be supporting... ...Starling Group’s customers, assets, and systems using the latest technologies... ..., Go and/or Java. ~ A Cyber/Information Security related degree and/or relevant...AssetFull timeWorldwideVisa sponsorshipWork visaFlexible hours
$108.2k - $135.2k per year
...seeking an experienced Manager, Asset Management to lead enterprise-wide technology asset governance and lifecycle management... ...licensing, reduce costs, and improve security posture. Implement software... ...Bachelor's degree in Information Technology, Business Administration...AssetFull timeWork at officeRemote workFlexible hours$153k - $240.5k per year
...MongoDB. We're looking for a Senior Cloud Security Engineer II to join our Security Engineering... ...least privilege at scale Continually assess posture, surface systemic and emerging risk... ...prioritization, and remediation — for cloud assets Kubernetes & platform security:...AssetFull timeInternshipWork at officeLocal areaFlexible hours- ...defender of our organization's digital assets, infrastructure, and sensitive... ...Access Policies to guarantee secure authentication to all Microsoft... ...external security partners. Govern data protection by implementing Microsoft Purview Information Protection to eliminate unauthorized...AssetWork at office
- ...future! The Opportunity Cohere seeks a Chief Information Security Officer who can help shape Cohere’s security... ...term company growth. Build a Modern Risk, Governance & Compliance Program: Lead Cohere in identifying, assessing, and mitigating security risk across all...Long term contractFull timeWork at officeRemote workFlexible hours
- ...related to threat analysis, vulnerability assessment, and security architecture recommendations.... ...organization, MSSP, consultancy, or government/defense environment. ~ Background... ...about the interview process and platform information, please check: For any help or support...Hourly payFull timeContract workSummer workRemote work
$110k - $151.8k per year
...Secure Every Identity, from AI to Human Identity is the key to... ...looking for a Software Engineer II to join the Auth0 Security Engineering... ...permission boundaries that govern how services and humans... ...experience in software engineering or information security, with hands-on...Full timeLocal areaWorldwide$86.9k - $103.2k per year
Esri Canada Limited Information Security Analyst, Technology Infrastructure Esri Canada has an exceptional opportunity for a full-time Information... .... The role protects systems, networks, and information assets by monitoring controls, supporting audits, managing risk activities...AssetFull timeInternshipWork at officeRemote work$48.66 - $52.14 per hour
...RQ00226 - Security Analyst - Intermediate Duration: 6 Months (131 Business Days) Location: Hybrid, 3 days in office, 2 days... ...Professional security management certification is an asset, such as, Certified Information Systems Security Professional (CISSP), Certified Information...AssetFull timeContract workFor contractorsWork at officeRemote work$125k - $145k per year
...technical direction for DevSecOps, partner with the AVP of Corporate Information Security on strategy, mentor and grow the team, and personally own the... ...evolve the DevSecOps technical strategy across CI/CD, IaC, secure cloud architecture, detection, and compliance automation....Full timeWork at officeRemote workRelocationMonday to fridayFlexible hours- ...big problems. Every product, strategy, or asset we create must be both beautiful and... ...design, and implement AI strategies that are secure, scalable, and human-centered. We believe... ...broader conversation around AI safety and governance, this is it. What You'll Own Define...AssetFull timeFor contractorsInternshipRemote workDay shift
$85k - $95k per year
...meaningful work! The Senior Financial Analyst is responsible for analyzing the financial... ...Learning & Child Care funding, and other Government grants reconciliations by Region, as required... ...or equivalent work experience is an asset Knowledge of Canadian Accounting Standards...AssetFull timeInternshipImmediate startMonday to friday- ...supporting the optimization of security operations functions) is... ...skills to design, deploy and secure the best network in Canada. Working... ...vulnerabilities at scale. • Assess emerging vulnerabilities and... ...with threat and attack surface information such as MITRE ATT&CK and CISA...Long term contractFull timeWork at office3 days per week
$70 - $90 per hour
...Responsibilities Analyze and review content for security vulnerabilities with a focus on pattern... ...a short interview and questionnaire to assess domain expertise. Paid for up to 1... ...about the interview process and platform information, please check: For any help or...Full timeContract workSummer workRemote workFlexible hours$49.32 - $56.64 per hour
Our client, is seeking a high-performing Business Information Management Analyst II (Data Scientist II – Model Health & Governance) to join their Model Health Center of Excellence (CoE). In this critical analytical and governance role, you will represent the First Line of...AssetContract work- ...Your team’s dynamic: The Information Architecture, Intelligence & Analytics... ...an experienced Information Analyst to join our dynamic and... ...Establish policies for data quality, security, privacy, and lifecycle... ...simple, understandable way. An asset if you have: ~ CDMP (Certified...AssetFull timeFlexible hours
$110k - $120k per year
...Position: IT Security Analyst Position reports to: Director of IT Position Overview:... ...Analyst. Reporting to the Director of Information Technology, you will join our Technology... ...Plan and execute regular vulnerability assessments (e.g., using Rapid7, Nessus, or Qualys)...Long term contractFull time$45k - $52k per year
...Reporting to the Digital Asset Manager, the Digital Asset Management... ...technologies Additional Information What We Offer Working... ..., TBD) Role-specific assessment, where applicable AI in Our... ...subject to rigorous privacy, security, and risk assessments and are...AssetFull timeWorldwide- ...Provide expert knowledge of information management best practices, approaches... ...: Experience in: assessing and conducting business... ...principles identifying Information Security and Privacy Classification... ...collaborating with business analysts, business architects,...Full time
- ...Brand Strategy, Architecture & Governance leads the enterprise brand... ...including central guidance, reusable assets, stakeholder enablement,... ..., EQ uses AI to help screen, assess, and/or select applicants for... ...materials based on available information. These tools assist our...AssetHourly payLong term contractPermanent employmentFull timeInternshipWork at office
$140k - $165k per year
...re looking for an experienced Governance, Risk & Compliance (GRC) Manager... ...lead and mature Fullscript's security compliance program. This is a... ...frameworks, including SOC 2 Type II, PCI DSS, and HITRUST,... ...certification. Manage internal control assessments and readiness activities...Full timeWork at officeWork from homeFlexible hours- ...a collaborative, detail-oriented Cloud Security Analyst to support our multi-cloud posture, vulnerability... ...lifecycle, and cybersecurity risk governance. In this role, you will bridge... ...for cyber risk, conduct security risk assessments, manage intake for security requests,...Full timeContract work
$145.4k - $188.1k per year
...delivering reliable, scalable, and secure infrastructure across identity... ...As an IT Systems Engineer II on the IT Infrastructure team,... ...data, security, and legal governance processes and maintain compliance... ...military or veteran status, genetic information, disability status, or any...Full timeSeasonal workLocal area$125.28k - $210.6k per year
...We’re looking for a Software Engineer II to join our WhatsApp team. Our team is responsible... ...in marketing technology by industry analysts, and was voted a G2 “Best of Marketing... ...rights, such as rights to request further information about how AI is used in our recruitment process...Full timeInternshipWork at officeLocal areaFlexible hours- ...development of a privacy impact assessment that evaluates whether new technologies, information systems, or proposed programs... ...Excellent knowledge of privacy and security concepts, trends, and issues.... ...by the Ontario Ministry of Government Services; Good understanding...Full time
- ...The Associate Director, Government Relations serves as EQ Bank's... ...a unified, credible, and well-informed voice in the public-policy arena... ...financial crime, and privacy) and assess their implications for the Bank... ...MBA, LLB/JD) is considered an asset. Minimum 8–10 years of progressive...AssetHourly payPermanent employmentFull timeBank staffWork at office
$70 - $85 per hour
...results Leverage data to make informed decisions about the product's... ...on relevant topics to gather information for requirements, initiating... ...to inform product decisions Assess and prioritize stories, epics,... ...environment ~2+ years experience in Asset Management ~ High digital...AssetFull timeTemporary workInternship$61.24 per hour
...reporting, documentation, and maintenance of the Asset Management Program within the Integrated... ...to the Supervisor, Asset Management Governance, the Advisor, Asset Management Governance... ...and completion of BU/EAM maturity assessments and/or other Enterprise led assurance activities...AssetHourly payWork at officeFlexible hours$100k - $165k per year
...with specific expertise in environmental assessments, permitting, regulatory and compliance... ...with regard to environmental compliance, governance and permitting. Interface and communicate... .... Coordinate and disseminate regulatory information within the company. Develop...Remote jobFull timeWork at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Analyst II - Asset Assessment & Governance. Be the first to apply!
- stage data analyst Toronto, ON
- data governance analyst Toronto, ON
- senior data analyst Toronto, ON
- data analyst remote working Toronto, ON
- data analyst intern Toronto, ON
- information systems analyst Toronto, ON
- data analyst visa sponsorship Toronto, ON
- remote data analyst part time Toronto, ON
- entry level data analyst no experience Toronto, ON
- sas data analyst Toronto, ON

