Information Security Specialist

TDMississauga, ON
CA$96,900 - CA$136,800Onsite

About The Position

This role involves providing consultation and advice to partners on a broad range of Technology Controls / Information Security programs, policies, standards, and incidents. The specialist will conduct project consulting on risk assessment, control definition, vulnerability assessments, and lead or contribute to risk and control design assessments for application portfolios. They will also contribute to the development of a global security management strategy, ensure technology and processes are in place to monitor and prevent security threats, and develop Technology Risk reporting. The role requires proactive collaboration with technology partners to integrate security components into the bank’s Enterprise Architecture and address control gaps. Additionally, the specialist will consult on regulatory compliance, support audits, participate in computer security incident responses, and adhere to internal policies and regulatory guidelines. The role also involves contributing to process reviews, enforcing enterprise frameworks, influencing risk management culture, and staying informed of emerging issues and industry trends. The specialist will define, develop, implement, and manage standards, policies, procedures, and solutions to mitigate risk and maximize security, availability, efficiency, and effectiveness. They will manage relationships with various stakeholders to ensure alignment with enterprise and regulatory requirements, assess and escalate key issues, and maintain a culture of risk management. Participation in business-specific or enterprise initiatives as a subject matter expert is also expected, potentially involving complex reporting and analysis.

Requirements

  • Expert knowledge of IT security and risk disciplines and practices.
  • Advanced knowledge of organization, technology controls/security/risk issues.
  • University degree.
  • 7+ years of relevant experience.

Nice To Haves

  • Information security certification / accreditation an asset.
  • CISSP
  • CRISC

Responsibilities

  • Provide consultation and advice to partners on Technology Controls / Information Security programs, policies, standards, and incidents.
  • Conduct project consulting on risk assessment, control definition, appropriateness of implemented control procedures, and vulnerability assessments.
  • Lead or contribute to risk and control design assessments for an application portfolio, documenting impact of control gaps, risk mitigation, and remediation plans.
  • Contribute to the definition, development, and oversight of a global security management strategy and framework.
  • Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to technology/security threats.
  • Develop Technology Risk reporting, monitor key trends, and define metrics to measure control effectiveness.
  • Work proactively with technology partners and stakeholders to ensure technology security components are integrated into the bank’s Enterprise Architecture and control gaps are addressed.
  • Consult on Regulatory compliance requirements, reporting, and questions.
  • Provide support and consulting in preparation for Audits and in composing management responses and remediation activities.
  • Participate in computer security incident responses and represent the respective function and Enterprise position.
  • Adhere to internal policies, procedures, technology control standards, and applicable regulatory guidelines.
  • Contribute to the review of internal processes and activities to identify potential opportunities for improvement.
  • Advise on, oversee, monitor, and enforce enterprise frameworks and methodologies related to technology controls/information security.
  • Influence behavior to reduce risk and foster a strong technology risk management culture.
  • Remain informed of emerging issues, industry trends, and relevant changes.
  • Define, develop, implement, and manage standards, policies, procedures, and solutions that mitigate risk and maximize security, availability, efficiency, and effectiveness.
  • Actively manage relationships with other areas of Technology, businesses, and corporate/control functions to ensure alignment with enterprise and/or regulatory requirements.
  • Keep abreast of emerging issues, trends, and evolving regulatory requirements and assess potential impacts to the Bank.
  • Assess and identify key issues and escalate to appropriate levels and relevant stakeholders.
  • Maintain a culture of risk management and control, supported by effective processes and sound infrastructure in alignment with risk appetite.
  • Participate in business-specific/cross-functional/enterprise initiatives as a subject matter expert.
  • Develop/provide/contribute to complex reporting, analysis, and assessments at the functional or enterprise level.
  • Continuously enhance knowledge/expertise in own area.
  • Keep current on emerging trends/developments and grow knowledge of the business, analytical tools, and techniques.
  • Prioritize and manage own workload to deliver quality results and meet assigned timelines.
  • Support a positive work environment that promotes service to the business, quality, innovation, and teamwork.
  • Identify and recommend opportunities to enhance productivity, effectiveness, and operational efficiency.
  • Establish effective relationships across multiple business and technology partners, program and project managers.
  • Participate in knowledge transfer within the team and business units.

Benefits

  • health and well-being benefits
  • savings and retirement programs
  • paid time off
  • banking benefits and discounts
  • career development
  • reward and recognition programs
  • training programs
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service