Information Security Specialist
by
TD Canada Trust
Reference #:
R_1430033
Position Type:
Regular, Full-time
Remote work options:
Hybrid
Location:
London, Ontario
Date Posted:
Jul 04, 2025
Job Description
Job Description:
Responsibilities:
Provide consultation and advice to partners on a broad range Technology Controls / Information Security programs / policies / standards and incidents within the Data as a Service (DaaS) Platform
Conduct project consulting on assessment of risk, definition of required controls, appropriateness of implemented control procedures, vulnerability assessments and any other relevant areas
Lead or contribute to completion of risk and control design assessments for an application portfolio, articulate and document impact of control gaps to the business and the overall Bank, risk mitigation and remediation plans, remediation strategy document as applicable.
Collaborate with business and technology partners to ensure findings and gaps are remediated in a timely manner and ensure they do not go overdue
Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to both current and emerging technology / security threats against TDBG’s business
Develop on-going Technology Risk reporting, monitoring key trends and defining metrics to regularly measure control effectiveness for own area
Work proactively with technology partners / stakeholders and service/platform owners to ensure all technology security components are integrated into the bank’s overall Enterprise Architecture, and any control gaps are addressed.
Consult on Regulatory compliance requirements, reporting and questions
Provide support and consulting in preparation for Audits and in composing management responses and appropriate remediation activities
Participate in computer security incident responses relevant to business (or enterprise wide) and represent respective function and Enterprise position to the business, and business needs to incident response team
Requirements:
7+ years of relevant experience
Expert knowledge of IT security and risk disciplines and practices
Advanced knowledge of organization, technology controls / security/ risk issues
Experience participating on complex, comprehensive or large projects and initiatives
Expert knowledge of technology controls / information security for project teams, the business / organization and/or outside vendors
Post-Secondary degree in a relevant field (such as Technology, Software Engineering, Information Security)
Expertise in the field of "Big Data" or Data Management would be an asset
Information security certification / accreditation (CISSP, CISA, CCSP, CISM etc.) an asset