Information Security Specialist - The Information Security Specialist, AIVM Risk Assurance

TD Bank
Fort Lauderdale, FL
$87K-$151K a year
Full-time
We are sorry. The job offer you are looking for is no longer available.

Work Location :

United States of America

Hours : Pay Details :

Pay Details :

$87,000 - $151,000 USD

TD is committed to providing fair and equitable compensation opportunities to all colleagues. The included salary range for this role takes into account multiple factors that are considered in making compensation decisions.

The base pay actually offered may vary based upon candidate's skills and experience, job-related knowledge, licensure and certifications, geographic location, and other specific business and organizational needs.

As TD puts career development at the forefront of our colleague experience, it is not typical for an individual to be hired at or near the top of the range for their role.

As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.

Line of Business : Technology Solutions

Technology Solutions

Job Description :

The Application and Infrastructure Vulnerability Management (AIVM) organization's role is to support a continuous and sustainable process for the discovery and remediation of software vulnerabilities and application security defects.

AIVM is comprised two operational areas :

  • Application Security, which Manages a strategic, sustainable, and proactive approach to improve the security of applications and APIs (Application Program Interfaces) for all TD Technology Solutions (TS) areas.
  • Infrastructure Vulnerability management, which executes scanning activities for continuous identification, assessment, reporting, and remediation of vulnerabilities within TD infrastructure.

Job Description Summary

Members of the AIVM Audit, ORM and Regulatory assurance team are responsible for leading AIVM involvement in risk partner assessments and supporting AIVM teams with the execution of activities closely tied to TD's Technology Risk Management, Governance and Oversight Framework.

The Information Security Specialist, AIVM Risk Assurance, supports definition, development and / or implementation of AIVM-related Technology Controls / Information Security related policies, programs, tools and provides specialized expertise and guidance on assessing risks, identifying potential gaps and providing security solutions to mitigate risks and protect the Bank .

May participate on projects of moderate to high complexity and provide complex reporting, analysis, and assessments at the functional, business line or enterprise level for AIVM.

The role is expected to focus largely on regulatory, audit, and enterprise-impacting activities.

KEY ACCOUNTABILITIES

  • Consult on Regulatory compliance requirements, reporting and questions
  • Provide support and consulting in preparation for Audits and in composing management responses and appropriate remediation activities
  • Provide support and consulting in preparation for Operational Risk Management assessments and in composing management responses and appropriate remediation activities
  • Provide support and consulting in composing management responses and appropriate remediation activities for First Line control exceptions and Self-Declared findings
  • Provide consultation and advice to partners on a broad range Technology Controls / Information Security programs / policies / standards and incidents for AIVM
  • Conduct project consulting on assessment of risk, definition of required controls, appropriateness of implemented control procedures, vulnerability assessments and any other relevant areas
  • Lead or contribute to completion of risk and control design assessments for AIVM activities, articulate and document impact of control gaps to the business and the overall Bank, risk mitigation and remediation plans, remediation strategy document as applicable
  • Contribute to the definition, development, and oversight of a global security management strategy and framework
  • Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to both current and emerging technology / security threats against TDBG's business
  • Support development and maintenance of on-going Technology Risk reporting, monitoring key trends and defining metrics to regularly measure control effectiveness for own area
  • Work proactively with technology partners / stakeholders and service / platform owners to ensure all technology security components are integrated into the bank's overall Enterprise Architecture, and any control gaps are addressed.
  • Participate if required in computer security incident responses relevant to business (or enterprise wide) and represent respective function and Enterprise position to the business, and business needs to incident response team

Depth & Scope :

  • Participates on complex, comprehensive or large projects and initiatives
  • Acts as a lead expert resource in technology controls / information security for project teams, the business / organization and / or outside vendors
  • Has advanced knowledge of organization, technology controls / security / risk issues

Education & Experience :

  • Bachelor's degree preferred
  • Information security certification / accreditation an asset
  • 7+ years of relevant experience
  • Expert knowledge of IT security and risk disciplines and practices

Preferred Qualifications :

  • University degree
  • Information security certification / accreditation an asset (e.g. CRISC, CISM, CISA, CISSP)
  • Familiarity with dimensions of Application Security, Infrastructure Vulnerability Management and Application Programming Interfaces (APIs)
  • Experience with risk partner engagement (including ORM, Audit, and Regulators)
  • Experience with testing of technology controls
  • Experience with development and management of Key Performance Indicators (KPIs) and Key Risk Indicators (KRIs)
  • Excellent knowledge of cybersecurity industry control standards
  • Experience developing and managing issue remediation plans
  • Familiarity with various GRC platforms and alternative tracking methods (e.g. SharePoint, Confluence, JIRA)
  • Working knowledge of ServiceNow Security Operations modules a plus (e.g. Vulnerability Response, Configuration Compliance)

TDCyberSecurity #Hybrid

Who We Are :

TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches / stores.

Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world.

More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support.

We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.

TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing.

As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking.

Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential.

Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals.

As an organization, we keep growing - and so will you.

Our Total Rewards Package

Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical and mental well-being goals.

Total Rewards at TD includes base salary and variable compensation / incentive awards (e.g., eligibility for cash and / or equity incentive awards, generally through participation in an incentive plan) and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off (including Vacation PTO, Flex PTO, and Holiday PTO), banking benefits and discounts, career development, and reward and recognition. Learn more

Additional Information :

We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.

Colleague Development

If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities.

Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD - and we're committed to helping you identify opportunities that support your goals.

Training & Onboarding

We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.

Interview Process

We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.

Accommodation

If you are an applicant with a disability and need accommodations to complete the application process, email the TD Bank US Workplace Accommodations Program at USWAPTDO redacted Include your full name, best way to reach you, and the accommodation needed to assist you with the application process.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

6 days ago
Related jobs
N. Harris Computer Corporation - USA
Florida,Remote
Remote

As the Information Security Risk Management Specialist, you will utilize your wide area of expertise in risk management, security frameworks, regulatory compliance, cybersecurity, vulnerability management, disaster recovery and business continuity planning, incident management, and other areas to pr...

GDIT
Miami Gardens, Florida

The position shall have the detailed knowledge and expertise required to manage the security aspects of an information system and, in many organizations, is assigned responsibility for the day-to-day security operations of a system. The ISSO is responsible for ensuring the appropriate operational se...

Target
Davie, Florida

The role of a Target Security Specialist can provide you with the: . As a Target Security Specialist, no two days are ever the same, but a typical day will most likely include the following responsibilities: . Support sales by welcoming and engaging guests and team members at the front of store and ...

BankUnited
Miami Lakes, Florida

Information Security Engineers are responsible for establishing and maintaining a corporate-wide information security technology program to ensure that information assets are adequately protected. This includes having an up-to-date understanding of the latest security threats, trends, and technologi...

Ciox Health
Pompano Beach, Florida

Associate must at all times safeguard and protect the patient’s right to privacy by ensuring that only authorized individuals have access to the patient’s medical information and that all releases of information are in compliance with the request, authorization, company policy and HIPAA regulations....

Target
Deerfield Beach, Florida

The role of a Target Security Specialist can provide you with the:. As a Target Security Specialist, no two days are ever the same, but a typical day will most likely include the following responsibilities:. They protect profitable sales by mitigating shortage risks, preventing, investigating and re...

Lockheed Martin
California, Florida, Hawaii, Louisiana

Supporting the development and maintenance of cybersecurity related plans, procedures and guidance. Prior experience ensuring compliance with applicable laws, regulations, guidance and policies as they relate to DoD cybersecurity and SAPs (e. Prior experience with the system authorization process, a...

The Fresh Market Inc
Fort Lauderdale, Florida

At times the needs may change and as a full-time team member, The Fresh Market has the expectation that you are able to meet the needs of our stores, guests, and teams, this position requires the willingness to work a flexible schedule, including weekends, days, evenings, and holidays. To meet the n...

The Florida House
Deerfield Beach, Florida

The Mental Health Specialist is responsible for providing supportive services to mental health patients and is a participating member of the collaborative interdisciplinary treatment team to help assist in the mental health care of the people served. We provide innovative treatment by treating not j...

The Container Store
Hallandale Beach, Florida

This position understands sales goals and is accountable for partnering with the store team to reach these goals while understanding the direct impact visual presentation has on the sales success of the store. Established in 1978, The Container Store has grown to be the leading specialty retailer of...