A financial services company in San Francisco is seeking an experienced security professional to assess access controls and mentor peers in security best practices. The candidate should have over 6 years of experience in security operations and a Bachelor's degree. The role offers competitive compensation ranging from $157,000 to $200,000, along with a hybrid work model and comprehensive benefits.
#J-18808-Ljbffr
$157k-200k yearly 1d ago
Looking for a job?
Let Zippia find it for you.
Identity & Access Security Engineer (IAM)
Zip 4.7
San Francisco, CA jobs
A leading procurement platform company in San Francisco is seeking a Software Engineer to develop core identity products like authentication and encryption key management. The role requires experience in web application and API development, particularly with Python, Typescript, React, and GraphQL. The salary range is competitive, between $150,000 - $180,000, and the company offers a variety of perks, including start-up equity and flexible PTO. Apply now and join a diverse and inclusive company culture.
#J-18808-Ljbffr
$150k-180k yearly 2d ago
Managing Director - Head, Fraud & Physical Security Oversight
BMO 4.7
Chicago, IL jobs
Application Deadline: 10/31/2025
Job Family Group: Audit, Risk & Compliance
Identifies, assesses, remediates and reports all non-financial risks related to the area of expertise and ensures these risks are managed within the Bank's risk appetite. Delivers expert advice, credible challenge, and effective oversight across to identify, assess, control, and manage these risks throughout the company. Provides strategic, future-forward vision for the maturity of risk domains leveraging more predictive analytics. Plays a critical role in ensuring the company's risk-taking entities are aware of risks, the impact on the enterprise, and opportunities to reduce, mitigate, or avoid risks. As an Operational NFR leader, works closely with ERPM and with other businesses and functions across the enterprise.
Core responsibilities include:
Oversight over 1st line activities establishing risk frameworks required to mitigate Non-Financial Risk exposures, to comply with regulatory requirements, Corporate Policies, Corporate Standards and other published directives that support these policies and standards
Subject matter expertise, specialist support, and oversight for transactions and circumstances representing significant risk exposures to the Enterprise
Ensures alignment between risk framework and NFRMF for consistency and to support aggregation of results; reviews, provides Effective Challenge and monitors sub-risks so that the Non-Financial Risk Profile is consistent with business strategy
Ensures appropriate actions are underway to manage significant Non-Financial Risk exposures, providing Effective Challenge and oversight as appropriate
Implements and maintains a monitoring, surveillance and/or assessment function that provides reasonable assurance of compliance with policies and frameworks
Monitors non-financial sub-risks to ensure exposures are within Enterprise Non-Financial Risk tolerances and recommends corrective actions to Operating Groups / Corporate Services when outside tolerances
Reviews and recommends changes to processes or procedures, and oversees any significant business unit corrective actions as necessary
Reports an independent Non-Financial Risk Profile for their sub-risk category, or as required by the NFRMF
Leads the Operational NFR risk oversight team, establishing a solid understanding of internal and external NFR risks that can impact the organization's overall business and value chain
Assesses and enhances the organization's NFR sub-risk capability maturity; maintains and updates risk models, identifies and develops innovative risk assessment techniques, and incorporates data-driven risk assessment that is end-to-end
Provides independent expertise during capability maturity reviews, prepares independent assessments of maturity levels, and develops reports for senior management. Identifies and assesses alternative approaches to risk mitigation and advises leadership on trade-offs
Speaks authoritatively with regulatory officials regarding controls, the risk management framework, and emerging threats
As part of the second line of defense, collaborates with corporate areas, technology, Lines of Business, and other risk management offices to evaluate the firm's NFR sub-risk capability maturity levels and offers independent advice for further mature risk management capabilities; helps identify new/emerging NFR sub-risks and integrates capability maturity assessment with other risk programs
Contributes to clarity of roles and accountabilities within the organization and refines team and portfolio structure
Manages independent evaluations of the firm's information security, cybersecurity, cloud and technology capabilities, and provides expertise to accelerate maturity of cyber capabilities
Identifies and develops quantitative assessments of vulnerabilities, risks and remediation strategies; provides insights to senior leaders, regulators, and the Board as needed
Drives a risk management focus with a customer/resilience lens that supports the bank's digital strategy while maintaining soundness
Stays current on emerging NFR sub-risk threats and mentors more junior team members
Collaborates effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives
Leads program-related activities to ensure effective collaboration within the team and across stakeholder groups
Ensures initiatives comply with regulatory standards and corporate policies and considers impact on profitability and firm reputation
Understands and helps manage key NFR sub-risks impacting operations and business functions
Collaborates with business partners and Enterprise functions to design target state and interim NFR risk management tool architecture
Drives evolution of the NFR sub-risk function and appetite view and reporting requirements
Leads development and implementation of key risk indicators (KRIs) and KPIs that are risk-sensitive and adapt to new threats
Promotes and supports the Bank's risk culture, ensuring employees understand risk-taking accountabilities and fostering open communication and effective challenge
Complies with the Bank's Risk Appetite framework and ensures activities remain within limits and regulatory requirements
Models simplicity and productivity improvements for optimization across groups and drives continuous improvement
Promotes a winning culture aligned with Purpose and drives engagement and execution
Fosters diversity, equity and inclusion and creates an inclusive environment
Develops leaders, plans for succession, and fosters a high-performance culture
Drives top talent acquisition and retention and builds organizational capabilities
Leads and mentors a team with diverse risk and business experience
Leads and reinforces customer focus to support the Bank's vision
Role models customer-focus and drives sustainable improvements in loyalty and growth
Adheres to and supports enterprise customer experience and brand standards
Qualifications:
Certified Fraud Examiner (CFE) and Certified Anti-Money Laundering Specialist (CAMS) credentials
Must be a highly skilled NFR sub-risk professional with experience and a proven ability to deliver high-impact results
Proven ability to manage a team and work independently in a fast-paced environment
Please note the base salary range for this position is USD 230,000.00 to USD 260,000.00
Salary:
Pay Type: Salaried
The above represents BMO Financial Group's pay range and type.
Salaries vary based on location, skills, experience, education, and qualifications, and may include a commission structure. Salaries for part-time roles will be pro-rated based on hours worked. For commission roles, the salary listed represents the target for the first year.
BMO Financial Group's total compensation package varies based on pay type and may include incentives, bonuses, and other perks. Benefit details are available at the Total Rewards page. Note: visit: jobs.bmo.com/global/en/Total-Rewards
About Us
At BMO we are driven by the Purpose: Boldly Grow the Good in business and life. We create lasting, positive change for customers, communities, and people.
As a member of the BMO team you are valued, respected and heard, with opportunities to grow and make an impact. We provide tools and resources to reach milestones, including training and coaching, manager support, and network-building opportunities.
For more information visit: jobs.bmo.com/us/en
BMO is an equal employment opportunity employer. We evaluate applicants without regard to race, religion, color, national origin, sex, sexual orientation, gender identity, gender expression, age, protected veteran status, disability, or any other legally protected characteristic. We also consider applicants with criminal histories as allowed by law.
BMO is committed to providing reasonable accommodations to individuals with disabilities. To request accommodations, email ************************** with your contact information and the nature of your request.
Note to Recruiters: BMO does not accept unsolicited resumes from any source other than directly from a candidate. Unsolicited resumes sent to BMO may be considered BMO property. A recruiting agency must have a valid written agency agreement to submit resumes.
#J-18808-Ljbffr
$126k-173k yearly est. 4d ago
Manager, Security Systems
Barclays Center 4.6
New York, NY jobs
**Department:** Security**FLSA Status:** Exempt / Full-Time Salary**Union Code:** Non-Union**Minimum Pay Rate:** $82,400**Maximum Pay Rate:**$92,200**Join Our Team at Barclays Center!**Congratulations on taking the first step toward embarking on an exciting new adventure at Barclays Center! Our focus is YOU!At Barclays Center, we're more than just a venue - we're a dynamic community driven by a shared passion for creating unforgettable live experiences. We're dedicated to nurturing our team members and empowering them to thrive in an environment where innovation, collaboration, and a love for sports entertainment intersect.If you're someone who lives and breathes events, fueled by an unwavering passion for creating magic in every moment, then we want you to join us in shaping the future of live entertainment. Come be a part of our vibrant community, where every day offers the chance to inspire, innovate, and make memories that last a lifetime!**Our Company Values**We understand that it is important for you to know what our values are to determine if they align with yours. Our four company values, Care, Integrity, Accountability and Growth Mindset, are reflected in everything that we do here at Barclays Center. From the interview process to employee recognition, we make certain to incorporate the four values.**Key Attributes for Success**To excel in this role, candidates must possess a genuine passion for service, strong teamwork abilities, adaptability, effective communication skills, a guest-centric approach, problem-solving capabilities, and keen attention to detail. These attributes are essential for creating unforgettable experiences and maintaining a positive atmosphere for our guests. Joining our team promises not only a fulfilling experience but also an opportunity to make a meaningful difference in the lives of our guests and contribute to the success of Barclays Center.**Strong Teamwork Abilities:*** Enjoys collaborating effectively with colleagues and partners.* Likes building and nurturing strong relationships within the team.* Values the importance of teamwork in achieving shared goals.**Adaptability:*** Enjoys handling unexpected challenges with flexibility and composure.* Wants to quickly adjust to changes in the environment to ensure guest satisfaction.* Thrives in dynamic and fast-paced work environments.**Proactive Problem-Solving:*** Desires to identify and resolve issues creatively and efficiently.* Enjoys handling guest concerns with empathy and professionalism, turning challenges into opportunities.* Likes taking initiative to address potential problems before they escalate.**Meticulous Attention to Detail:*** Wants to pay close attention to details that contribute to organizational satisfaction.* Enjoys ensuring every aspect of service delivery is meticulously executed to maintain high standards.* Desires to take pride in delivering flawless capabilities through meticulous attention to detail.**ESSENTIAL DUTIES & RESPONSIBILITIES: What You Will Do*** Assist with the installation, configuration, and maintenance of security systems, including surveillance cameras, access control systems, alarm systems, and other related technologies and applications.* Supervise employees and operations in all areas of Security, including the Dean and Event Level Command Centers.* Maintain high standards for security equipment, including inventory management, cleaning, and distribution for security personnel.* Collaborate closely with outside contractors to ensure the optimal operation of our security equipment and systems.* Ensure that staffing levels for operating security systems during events are appropriate. Properly brief, deploy, and redeploy staffing resources as necessary to maintain effective security operations.* Implement and monitor the daily event and non-event badging system to ensure proper access control and security compliance.* Conduct comprehensive training and information-sharing sessions with employees on the operations of building security systems. Develop and execute training programs to enhance employee awareness and proficiency.* Conduct regular assessments and audits of security systems to identify vulnerabilities. Implement necessary improvements to maintain the integrity and effectiveness of the security infrastructure.* Manage the operation, and execution of events at Barclays Center, ensuring all security protocols are followed and the safety of attendees is maintained.* Respond promptly to requests from upper management, risk management, and other departments for investigations, ensuring timely and accurate delivery of required information and footage.* Provide comprehensive administrative support, complete projects and tasks, and update security forms, databases, and office records to ensure smooth security operations.* Develop, manage, and update all departmental policy and procedural guidelines, ensuring compliance with industry standards and regulatory requirements.* Collaborate closely with the IT department to ensure seamless integration and alignment of security systems with IT infrastructure and protocols, facilitating efficient communication and troubleshooting.* Demonstrate understanding of managing both internal and external customer requirements and measurement criteria.* Establish positive and collaborative relationships with customers, including local, state, & federal fire, police authorities, and international authorities.* Develop, create, and implement an accepted and sustainable security culture.* Ensure processing, adjudication, and disposition of corporate personnel security actions comply with US Government and International statutory, regulatory, customer contractual, and business requirements* Assist with confidential investigations, ensuring timely and accurate delivery of required information and or footage.* Provide comprehensive administrative support, complete projects and tasks, and update security forms, databases, and office records to ensure smooth security operations.* Help develop, manage, and update all departmental policy and procedural guidelines, ensuring compliance with industry standards and regulatory requirements.**CANDIDATE PROFILE: Who You Are*** The Manager of Security Systems is a results-driven security professional with extensive experience overseeing security operations, risk management, and venue safety for high-profile events.* Adept at managing comprehensive security systems, including CCTV, access control, and screening equipment, ensuring operational readiness and compliance with industry standards.* Proven track record in project management, successfully leading security infrastructure upgrades, vendor coordination, and budget oversight.* Skilled in developing and executing security protocols for large-scale events while fostering strong relationships with internal stakeholders and law enforcement agencies.* Committed to delivering exceptional service, enhancing security technology, and driving continuous improvements in operational efficiency.**KEY COMPETENCIES: Skills You Possess*** Minimum of 2 years customer/guest service experience, preferably in a sports and/or entertainment facility.* Proficiency in Microsoft Office Programs (Word, Excel, Outlook, PowerPoint) is required.* Proficient in the operation of CCTV systems* Proficient in general IT operations. Certifications strongly preferred.* Ability to be proactive, recognize problems and find solutions.* Excellent interpersonal, verbal and written communication skills.* Ability to work in a fast-paced environment and simultaneously manage a high level of detail across multiple projects.* Ability to demonstrate flexibility and quickly adapt to changes while maintaining high levels of productivity and effectiveness under pressure.* Ability to work well within a team environment, assisting and supporting team members whenever
#J-18808-Ljbffr
$82.4k-92.2k yearly 3d ago
SAP Architect
Fintech Staffing Partners 4.2
Parsippany-Troy Hills, NJ jobs
Job Title: SAP Supply Planning & Co-Packing Architect - CPG (Food & Confectionery)
Department: Supply Chain / SAP Center of Excellence
Employment Type: Part time or Full-time / Contract
Position Summary
The SAP Supply Planning & Co-Packing Specialist will drive material and production planning excellence across internal and external manufacturing sites for a leading CPG food and confectionery environment. The role ensures that Material Requirements Planning (MRP), co-packing operations, and forecasting processes within SAP are fully optimized to meet service, cost, and quality objectives.
This position bridges commercial demand, production scheduling, and third-party co-packer execution-maintaining end-to-end visibility from raw materials to finished goods such as lozenges, gums, and candies.
Key Responsibilities
SAP MRP & Supply Planning
Manage and optimize MRP runs (MD01N / MRP Live) to balance raw-material availability and production capacity across multiple manufacturing and co-packing sites.
Maintain planning parameters (lot sizes, safety stocks, lead times, procurement types) in SAP Material Master for all SKUs.
Analyze and resolve MRP exception messages to ensure timely replenishment and eliminate shortages during seasonal peaks.
Collaborate with Procurement and Production teams to align component deliveries with packaging schedules.
Co-Packing & Subcontracting Management
Set up and maintain subcontracting processes for co-packers, including subcontract BOMs, routing, and purchase orders.
Ensure accurate component issuance (movement type 541) and reconciliation of finished-goods receipts (543) from co-packers.
Monitor co-packer capacity utilization, yield variances, and conversion costs.
Support vendor onboarding and periodic audits to ensure compliance with food-grade standards (GMP, HACCP).
Forecasting & Demand Translation
Partner with the Demand Planning and Sales teams to translate forecast signals into executable production plans.
Support short- and medium-term forecasting processes to manage seasonal launches and promotional activities.
Track forecast accuracy, bias, and service level performance by product family.
BOM & Master Data Management
Build and maintain multi-level Bills of Material (BOMs) for finished goods, semi-finished goods, and packaging components.
Coordinate with R&D and Quality teams to update ingredient compositions, flavor profiles, and regulatory data.
Maintain version control to manage product changeovers, flavor variants, and regional packaging differences.
Support cost roll-ups to ensure accurate COGS visibility by SKU.
Continuous Improvement & SAP Enablement
Participate in S/4HANA supply chain transformation or SAP enhancement projects involving PP/MM integration, co-packing automation, and forecasting integration with IBP.
Lead testing, documentation, and training for planning teams and co-packer users.
Identify automation opportunities through Fiori apps, SAP Analytics Cloud (SAC), and SAP BTP AI extensions to improve forecast accuracy and MRP efficiency.
Qualifications
Bachelor's degree in Supply Chain Management, Industrial Engineering, or Food Science.
Minimum 5 years of SAP PP/MM experience in a CPG food or confectionery environment (e.g., candy, lozenges, chewing gum, nutraceuticals).
Proven hands-on expertise in MRP, subcontracting/co-packing, and BOM configuration.
Understanding of batch management, lot traceability, and shelf-life planning.
Strong analytical and cross-functional collaboration skills with commercial and technical teams.
Preferred Skills
Familiarity with SAP IBP, SAP APO DP/SNP, or advanced forecasting models.
Knowledge of FDA, GMP, and food-safety compliance standards.
Experience with SKU proliferation management, promotional lift modeling, and seasonal inventory builds.
Exposure to AI-enabled demand planning or predictive replenishment within SAP BTP or Datasphere.
Strong Excel, SQL, or analytics capabilities for ad-hoc supply diagnostics.
Performance Indicators (KPIs)
MRP exception closure rate & forecast accuracy (>85%)
Co-packer OTIF (On-Time In-Full) delivery rate
BOM data accuracy & master data error reduction
Inventory turns improvement & service level adherence
Reduction in material write-offs and co-packing variance
$77k-107k yearly est. 3d ago
Enterprise Information Security Architect
Fisher Investments 3.9
Plano, TX jobs
It's an exciting time to join Fisher Investments; we're investing in the future of our firm's technology and information security. Our business is growing internationally, which emphasizes the need to build an unparalleled team that promotes future global growth through strategic solutions and progress. We are important to supporting our firm's diverse businesses, and we're excited to continue solidifying that foundation as we add more experienced technologists to our Technology team.
The Opportunity:
As Enterprise Information SecurityArchitect you will report to the VP of Enterprise Architecture and Standards to design and evolve our information securityarchitecture across the enterprise. In this strategic role, you will provide technical expertise, resolve complex architectural challenges, and drive alignment on security principles and standards. You will collaborate with cross-functional teams to ensure our security capabilities are scalable, resilient, and aligned with business objectives, including our enterprise AI initiatives.
The Day-to-Day:
Partner with interdepartmental teams to improve information security management processes and controls
Drive alignment between securityarchitecture, enterprise architecture, and business objectives
Work closely with project teams in an Agile/Scrum environment to integrate security by design
Foster collaboration across Technology, Risk, Compliance, and business units
Identify opportunities for process automation and optimization within security operations
Lead implementation of security improvements in partnership with Information Security and Technology project teams
Analyze business needs and translate them into scalable securityarchitectural solutions
Ensure security capabilities align with and enable enterprise AI and innovation goals
Manage the quality and consistency of securityarchitecture deliverables
Document and maintain security standards, procedures, policies, and architectural patterns
Provide strategic input to Information Security leadership for roadmap planning and prioritization
Conduct risk assessments and develop mitigation strategies for securityarchitecture decisions
Your Qualifications:
7+ years of hands-on experience in identity and access management and information securityarchitecture
Proven track record designing and implementing enterprise security solutions at scale
Demonstrated expertise in risk assessment and mitigation within complex IT environments
Experience working in Agile/Scrum delivery methodologies
Deep technical knowledge of Identity & Access Management platforms (Okta, SailPoint, Azure AD/Entra ID)
Proficiency with enterprise systems including Salesforce CRM, Active Directory, PowerShell scripting, and Group Policy
Strong understanding of IT systems architecture, design principles, and security frameworks
Knowledge of securityarchitecture patterns for cloud, hybrid, and on-premise environments
Bachelor's degree in information security, Information Technology, Computer Science, or related field required
Why Fisher Investments:
We work for a bigger purpose: bettering the investment universe. We take great pride in our inclusive culture, our learning and development framework customized for every employee, and our Great Place to Work Certification. It's the people that make the Fisher purpose possible, and we invest in them by offering exceptional benefits like:
100% paid medical, dental and vision premiums for you and your qualifying dependents
A 50% 401(k) match, up to the IRS maximum
20 days of PTO, plus 10 paid holidays
Family Support programs including 8 week Paid Primary Caregiver Leave, $10,000 fertility, family forming, and hormonal health assistance, and back-up child, adult, and elder care
This is an in-office role. Based on your role, tenure, and performance eligibility you may have the opportunity to participate in our hybrid work from home program. This program is subject to change.
FISHER INVESTMENTS IS AN EQUAL OPPORTUNITY EMPLOYER
$115k-157k yearly est. Auto-Apply 48d ago
Enterprise Information Security Architect
Fisher Investments 3.9
Tampa, FL jobs
It's an exciting time to join Fisher Investments; we're investing in the future of our firm's technology and information security. Our business is growing internationally, which emphasizes the need to build an unparalleled team that promotes future global growth through strategic solutions and progress. We are important to supporting our firm's diverse businesses, and we're excited to continue solidifying that foundation as we add more experienced technologists to our Technology team.
The Opportunity:
As Enterprise Information SecurityArchitect you will report to the VP of Enterprise Architecture and Standards to design and evolve our information securityarchitecture across the enterprise. In this strategic role, you will provide technical expertise, resolve complex architectural challenges, and drive alignment on security principles and standards. You will collaborate with cross-functional teams to ensure our security capabilities are scalable, resilient, and aligned with business objectives, including our enterprise AI initiatives.
The Day-to-Day:
Partner with interdepartmental teams to improve information security management processes and controls
Drive alignment between securityarchitecture, enterprise architecture, and business objectives
Work closely with project teams in an Agile/Scrum environment to integrate security by design
Foster collaboration across Technology, Risk, Compliance, and business units
Identify opportunities for process automation and optimization within security operations
Lead implementation of security improvements in partnership with Information Security and Technology project teams
Analyze business needs and translate them into scalable securityarchitectural solutions
Ensure security capabilities align with and enable enterprise AI and innovation goals
Manage the quality and consistency of securityarchitecture deliverables
Document and maintain security standards, procedures, policies, and architectural patterns
Provide strategic input to Information Security leadership for roadmap planning and prioritization
Conduct risk assessments and develop mitigation strategies for securityarchitecture decisions
Your Qualifications:
7+ years of hands-on experience in identity and access management and information securityarchitecture
Proven track record designing and implementing enterprise security solutions at scale
Demonstrated expertise in risk assessment and mitigation within complex IT environments
Experience working in Agile/Scrum delivery methodologies
Deep technical knowledge of Identity & Access Management platforms (Okta, SailPoint, Azure AD/Entra ID)
Proficiency with enterprise systems including Salesforce CRM, Active Directory, PowerShell scripting, and Group Policy
Strong understanding of IT systems architecture, design principles, and security frameworks
Knowledge of securityarchitecture patterns for cloud, hybrid, and on-premise environments
Bachelor's degree in information security, Information Technology, Computer Science, or related field required
Why Fisher Investments:
We work for a bigger purpose: bettering the investment universe. We take great pride in our inclusive culture, our learning and development framework customized for every employee, and our Great Place to Work Certification. It's the people that make the Fisher purpose possible, and we invest in them by offering exceptional benefits like:
100% paid medical, dental and vision premiums for you and your qualifying dependents
A 50% 401(k) match, up to the IRS maximum
20 days of PTO, plus 10 paid holidays
Family Support programs including 8 week Paid Primary Caregiver Leave, $10,000 fertility, family forming, and hormonal health assistance, and back-up child, adult, and elder care
This is an in-office role. Based on your role, tenure, and performance eligibility you may have the opportunity to participate in our hybrid work from home program. This program is subject to change.
FISHER INVESTMENTS IS AN EQUAL OPPORTUNITY EMPLOYER
$112k-156k yearly est. Auto-Apply 48d ago
Principal Security Architect
Tencent 4.5
Palo Alto, CA jobs
About the Hiring TeamTencent Overseas IT has the mission to empower Tencent's rapid global growth with future ready, global IT platforms, applications and services. We are chartered to lead the Overseas IT strategy, architecture, roadmap and execution. Satisfying our internal/external customers and becoming a world class global IT team are our top aspirations.What the Role Entails
Tencent Overseas IT is committed to accelerating Tencent's international business growth and enabling its success through the deployment of cutting-edge technology platforms in IT services, cloud, security, and DevOps. As leaders in IT technology, we are responsible for defining and executing on Tencent's Overseas IT strategy, architecture, and roadmap. Our primary focus is to deliver exceptional value to satisfy the diverse needs of our internal and external customers, while striving to build a world-class global IT team.
Responsibilities
We're seeking a Principal SecurityArchitect to drive the overall securityarchitecture of Tencent overseas business. This role will work closely with foundation IT and Business teams to ensure compliance with security best practices, regulatory requirements, and internal policies. Key responsibilities include:
Security Strategy and Planning: Defining and implementing the organization's security strategy, roadmaps, and long-term vision.
SecurityArchitecture Design: Developing and maintaining the overall securityarchitecture, including defining security frameworks, standards, and controls.
Incident Response: Participating in incident response activities, providing expertise in identifying, containing, and recovering from security incidents.
Risk Management: Identifying and assessing security risks, developing mitigation strategies, and ensuring alignment with business objectives.
Security Compliance: Ensuring compliance with relevant security regulations, industry standards (e.g., NIST, ISO 27001, HIPAA), and internal policies.
Who We Look For
Key Skills
• SecurityArchitecture Design: Ability to design and implement secure and scalable architectures across various environments (e.g., cloud, containerized, on-premises), including developing and maintaining threat models and security reference architectures, with a strong emphasis on Zero Trust principles.
• Security Operations & Incident Response: Experience with Security Information & Event Management (SIEM) systems, vulnerability scanners, malware analysis, and handling security incidents. The ability to lead threat modeling activities and support penetration testing is also important.
• Networking: In-depth knowledge of networking principles, including routers, switches, firewalls, load balancers, and wireless devices, as well as network security protocols and technologies like VLANs, VPNs, IDS/IPS, and network segmentation.
• Cloud Security: Expertise in cloud security principles and technologies across major platforms like AWS, Azure, and GCP, including implementing security controls and best practices in cloud environments.
• Identity and Access Management (IAM): Strong understanding of enterprise IAM systems, including platforms like Okta, SailPoint, and Active Directory (AD), and the ability to implement and manage secure access controls based on the principle of least privilege.
• Data Protection: Knowledge of data protection methods like encryption, pseudonymization, and shuffling, and how to apply them effectively to safeguard against data corruption, compromise, and loss.
• Security Testing & Analysis: Experience in conducting penetration testing, vulnerability assessments, ethical hacking, and risk analysis to identify and mitigate security risks.
• Security Automation & DevSecOps: Hands-on experience with security automation tools and scripting languages (e.g., Python, Lambda, Terraform) to streamline security processes and embed security into CI/CD workflows and Infrastructure-as-Code (IaC) processes.
• Security Tools & Technologies: Proficiency in using various security tools and technologies, including SIEM platforms, XDR, cloud-native threat detection tools, vulnerability scanners, and encryption tools.
• Operating Systems: Experience with various operating systems, including Windows, Linux, and UNIX.
• Application Security: Experience in web application security, OWASP, API security, and secure design and testing.
• SaaS Security: Experience with SaaS permission management, experience with SSPM (SaaS Security Posture Management)
• AI for Security: real word experience with AI/LLM/Agentic for security, especially adopt LLM in SIEM rule, SOAR optimization.
• Scripting skills in Python, PowerShell or Bash
Qualifications
• Education: Typically, a master's degree in computer science, Information Security, or a related technical field is required.
• Minimum of 10-12+ years of progressive experience in cybersecurity, including at least 5-7 years in a securityarchitecture or senior-level engineering role.
• Experience securing workspace and key enterprise systems, including IAM, e-mail, DevSecOps, SaaS, and back-office systems.
• Essential soft skills: Analytical Thinking; Problem-Solving; Risk Management; Adaptability & Continuous Learning;Attention to Detail
• Experience working with remote, globally distributed teams
• Previous experience in the gaming industry is a plus.
• Relevant certifications:
Certified Information Systems Security Professional (CISSP)
Certified Cloud Security Professional (CCSP)
Certified Information Security Manager (CISM)
AWS Certified Security - Specialty
Other certifications like AWS Certified SA, Certified Ethical Hacker (CEH), CompTIA Security+, and GIAC Security Essentials Certification (GSEC) can also be beneficial.
Location State(s)
US-California-Palo AltoThe expected base pay range for this position in the location(s) listed above is $141,200.00 to $328,400.00 per year. Actual pay may vary depending on job-related knowledge, skills, and experience. Employees hired for this position may be eligible for a sign on payment, relocation package, and restricted stock units, which will be evaluated on a case-by-case basis. Subject to the terms and conditions of the plans in effect, hired applicants are also eligible for medical, dental, vision, life and disability benefits, and participation in the Company's 401(k) plan. The Employee is also eligible for up to 15 to 25 days of vacation per year (depending on the employee's tenure), up to 13 days of holidays throughout the calendar year, and up to 10 days of paid sick leave per year. Your benefits may be adjusted to reflect your location, employment status, duration of employment with the company, and position level. Benefits may also be pro-rated for those who start working during the calendar year.Equal Employment Opportunity at Tencent
As an equal opportunity employer, we firmly believe that diverse voices fuel our innovation and allow us to better serve our users and the community. We foster an environment where every employee of Tencent feels supported and inspired to achieve individual and common goals.
$141.2k-328.4k yearly Auto-Apply 60d+ ago
Information Security Architect
Drexel 4.0
Philadelphia, PA jobs
Reporting to the Chief Information Security Officer and working closely with the campus community and outside parties, the Information SecurityArchitect protects the people, the information, and the systems of Drexel University.
Essential Functions
Awareness, training and communications.
Forensics, intrusion detection, incident response, and threat hunting.
Vulnerability scanning and monitoring, including patch management and retirement of obsolete systems. - (Non-Essential)
End-point security, including encryption at rest.
Network security, including encryption in transit.
Identity management.
In-house software development and maintenance.
Cloud computing and software contracts.
Support the Chief Information Security Officer's work on leadership, strategy, policy, risk management, disaster recovery, business continuity, compliance, external relations, and emerging technologies and threats.
Required Qualifications
Minimum of a Bachelor's Degree in computer science, information systems, or a related field or the equivalent combination of education and work experience.
(
Please review the Equivalency Chart for additional information.)
Minimum of Ten years of experience in information security.
Mastery of and experience with four or more of the following functions:
Management of information security technologies to protect information, networks, servers, endpoints, and cloud services, e.g., firewalls, antivirus, encryption, data leak prevention, security information and event management systems, and intrusion detection and prevention systems.
Vulnerability and threat management.
Incident detection, documentation, response, and remediation.
Identity management.
Application of information security and privacy laws, regulations and guidelines, e.g., data breach state laws, FERPA, HIPAA, NIST, PCI-DSS, DFARS, and GDPR.
Preferred Qualifications
Master's degree in a related discipline greatly preferred.
Physical Demands
Typically sitting at a desk/table
Location
University City - Philadelphia, PA
Additional Information
This position is classified as Exempt, grade N. Compensation for this grade ranges from $90,430.00 to $135,640. per year. Please note that the offered rate for this position typically aligns with the minimum to midrange of this grade, but it can vary based on the successful candidate's qualifications and experience, department budget, and an internal equity review.
Applicants are encouraged to explore the Professional Staff salary structure and Compensation Guidelines & Policies for more details on Drexel's compensation framework. For information about benefits, please review Drexel's Benefits Brochure.
Special Instructions to the Applicant
Please make sure you upload your CV/resume and cover letter when submitting your application.
A review of applicants will begin once a suitable candidate pool is identified.
$90.4k-135.6k yearly 3d ago
Lead Cyber Security Architect
Jpmorgan Chase 4.8
Plano, TX jobs
Join one of the world's most influential companies and leverage your skills in cybersecurity to have a real impact on the financial industry. As a Lead Cybersecurity Architect at JPMorganChase within Cybersecurity and Technology Controls, you are an integral part of a team that works to develop high-quality cybersecurity solutions for various software applications on modern cloud-based technologies. As a core technical contributor, you are responsible for carrying out critical cybersecurity architecture solutions by identifying, creating, and communicating risk, mitigation options, and solutions across multiple technical areas within various business functions in support of project goals.
**Job responsibilities**
+ Partnering with the Engineering & Architecture teams to integrate security controls into platforms e.g. AWS, Application architecture, AI Solutions, etc.
+ Creating and propagating (developing ) security design patterns to support building consistent and secure technology solutions
+ Assisting and guiding engineering teams in the secure development of infrastructure services and products
+ Ensure security considerations are delivered in compliance with firm wide technology controls from the start and throughout the Software Development Lifecycle.
+ Developing extensible security solutions aligned to the product strategy in future developments.
+ Conduct security assessments, threat modeling, and vulnerability assessments of products and features to identify and prioritize security risks.
**Required qualifications, capabilities, and skills**
+ Formal training or certification and 5+ years 0f experience in Cybersecurity Architecture or related field.
+ Hands-on practical experience delivering enterprise-level cybersecurity solutions and controls . Advanced in one or more programming languages
+ Proficiency in automation and continuous delivery methods . Proficiency in all aspects of the Software Development Life Cycle
+ Advanced understanding of agile methodologies such as continuous integration and delivery, application resiliency, and security
+ Demonstrated proficiency in software applications and technical processes within a technical discipline (e.g., public cloud, artificial intelligence, machine learning, mobile, etc.)
+ Practical cloud native experience . Deep knowledge of one or more software and applications
+ Ability to evaluate current and emerging technologies to recommend the best solutions for the future state architecture
+ Experience effectively communicating with senior business leaders
**Preferred qualifications, capabilities, and skills**
+ Proven experience in a product security role with a track record of driving security initiatives. Strong knowledge of secure software development practices and common vulnerabilities (e.g., OWASP Top Ten).
+ Experience with threat modeling, risk assessment, and vulnerability management.
+ Familiarity with security frameworks (e.g., NIST Cybersecurity Framework), ATTACK MITRE and industry regulations (e.g., GDPR, HIPAA)
+ Certifications such as CISSP, CISSP-ISSAP, AWS Solutions Architect Associate, etc.
+ Bachelor's or Master's degree in Computer Science, Information Security, or a related field (or equivalent work experience).
\#CTC
JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
$113k-139k yearly est. 60d+ ago
Lead Cyber Security Architect
Jpmorgan Chase & Co 4.8
Plano, TX jobs
JobID: 210672620 JobSchedule: Full time JobShift: : Join one of the world's most influential companies and leverage your skills in cybersecurity to have a real impact on the financial industry. As a Lead Cybersecurity Architect at JPMorganChase within Cybersecurity and Technology Controls, you are an integral part of a team that works to develop high-quality cybersecurity solutions for various software applications on modern cloud-based technologies. As a core technical contributor, you are responsible for carrying out critical cybersecurity architecture solutions by identifying, creating, and communicating risk, mitigation options, and solutions across multiple technical areas within various business functions in support of project goals.
Job responsibilities
* Partnering with the Engineering & Architecture teams to integrate security controls into platforms e.g. AWS, Application architecture, AI Solutions, etc.
* Creating and propagating (developing ) security design patterns to support building consistent and secure technology solutions
* Assisting and guiding engineering teams in the secure development of infrastructure services and products
* Ensure security considerations are delivered in compliance with firm wide technology controls from the start and throughout the Software Development Lifecycle.
* Developing extensible security solutions aligned to the product strategy in future developments.
* Conduct security assessments, threat modeling, and vulnerability assessments of products and features to identify and prioritize security risks.
Required qualifications, capabilities, and skills
* Formal training or certification and 5+ years 0f experience in Cybersecurity Architecture or related field.
* Hands-on practical experience delivering enterprise-level cybersecurity solutions and controls . Advanced in one or more programming languages
* Proficiency in automation and continuous delivery methods . Proficiency in all aspects of the Software Development Life Cycle
* Advanced understanding of agile methodologies such as continuous integration and delivery, application resiliency, and security
* Demonstrated proficiency in software applications and technical processes within a technical discipline (e.g., public cloud, artificial intelligence, machine learning, mobile, etc.)
* Practical cloud native experience . Deep knowledge of one or more software and applications
* Ability to evaluate current and emerging technologies to recommend the best solutions for the future state architecture
* Experience effectively communicating with senior business leaders
Preferred qualifications, capabilities, and skills
* Proven experience in a product security role with a track record of driving security initiatives. Strong knowledge of secure software development practices and common vulnerabilities (e.g., OWASP Top Ten).
* Experience with threat modeling, risk assessment, and vulnerability management.
* Familiarity with security frameworks (e.g., NIST Cybersecurity Framework), ATTACK MITRE and industry regulations (e.g., GDPR, HIPAA)
* Certifications such as CISSP, CISSP-ISSAP, AWS Solutions Architect Associate, etc.
* Bachelor's or Master's degree in Computer Science, Information Security, or a related field (or equivalent work experience).
#CTC
$113k-139k yearly est. Auto-Apply 60d+ ago
Lead Cyber Security Architect
Jpmorganchase 4.8
Plano, TX jobs
Join one of the world's most influential companies and leverage your skills in cybersecurity to have a real impact on the financial industry.
As a Lead Cybersecurity Architect at JPMorganChase within Cybersecurity and Technology Controls, you are an integral part of a team that works to develop high-quality cybersecurity solutions for various software applications on modern cloud-based technologies. As a core technical contributor, you are responsible for carrying out critical cybersecurity architecture solutions by identifying, creating, and communicating risk, mitigation options, and solutions across multiple technical areas within various business functions in support of project goals.
Job responsibilities
Partnering with the Engineering & Architecture teams to integrate security controls into platforms e.g. AWS, Application architecture, AI Solutions, etc.
Creating and propagating (developing ) security design patterns to support building consistent and secure technology solutions
Assisting and guiding engineering teams in the secure development of infrastructure services and products
Ensure security considerations are delivered in compliance with firm wide technology controls from the start and throughout the Software Development Lifecycle.
Developing extensible security solutions aligned to the product strategy in future developments.
Conduct security assessments, threat modeling, and vulnerability assessments of products and features to identify and prioritize security risks.
Required qualifications, capabilities, and skills
Formal training or certification and 5+ years 0f experience in Cybersecurity Architecture or related field.
Hands-on practical experience delivering enterprise-level cybersecurity solutions and controls . Advanced in one or more programming languages
Proficiency in automation and continuous delivery methods . Proficiency in all aspects of the Software Development Life Cycle
Advanced understanding of agile methodologies such as continuous integration and delivery, application resiliency, and security
Demonstrated proficiency in software applications and technical processes within a technical discipline (e.g., public cloud, artificial intelligence, machine learning, mobile, etc.)
Practical cloud native experience . Deep knowledge of one or more software and applications
Ability to evaluate current and emerging technologies to recommend the best solutions for the future state architecture
Experience effectively communicating with senior business leaders
Preferred qualifications, capabilities, and skills
Proven experience in a product security role with a track record of driving security initiatives. Strong knowledge of secure software development practices and common vulnerabilities (e.g., OWASP Top Ten).
Experience with threat modeling, risk assessment, and vulnerability management.
Familiarity with security frameworks (e.g., NIST Cybersecurity Framework), ATTACK MITRE and industry regulations (e.g., GDPR, HIPAA)
Certifications such as CISSP, CISSP-ISSAP, AWS Solutions Architect Associate, etc.
Bachelor's or Master's degree in Computer Science, Information Security, or a related field (or equivalent work experience).
Financial Resources FCU has been designated one of the Best Places to Work in NJ since 2022! At FRFCU, we are "putting people first" and that starts with our employees! Come see why our team members have voted us for Best Places to Work in NJ for 4 consecutive years!
Financial Resources is a not-for-profit federal credit union with locations in Somerset, Hunterdon, Middlesex, Hudson and Union Counties. With a history of serving our members for more than 100 years, we have grown to more than $650 million in assets serving more than 29,000 members with 6 public access branches and a team of 100 employees. We are available Nationwide!
Financial Resources Federal Credit Union (FRFCU) is looking for an Azure Cloud SecurityArchitect to join our Information Technology team in making a difference in peoples' lives and helping us achieve our digital transformation goals! THIS POSITION IS LOCATED ON SITE IN BRANCHBURG, NJ.
The Azure Cloud SecurityArchitect will lead the design and implementation of secured cloud solutions and data lakes across our financial services cloud infrastructure. This person is critical in deploying solutions on the cloud with ensuring the confidentiality, integrity and availability of sensitive data while maintaining compliance with industry regulations such as FFIEC, PCI-DSS and GLBA.
We are looking for someone who exemplifies the following traits:
Caring
Initiative
Ethics
Job Knowledge
Self-Development
Teamwork
Results Driven
Problem Solving
Communication
Leadership
Some of your essential duties will include, but are not limited to:
Design and deploy secure Azure cloud architectures for financial applications and data platforms.
Develop and enforce security policies, standards, and procedures aligned with financial regulatory frameworks.
Lead risk assessments, threat modeling, and vulnerability management across cloud environments.
Integrate Zero Trust principles, identity and access management (IAM), and encryption strategies.
Collaborate with IT, network, risk and audit teams to ensure regulatory alignment and compliance.
Implement and manage SIEM, SOAR, and cloud-native security tools (e.g., Microsoft Defender for Cloud, Sentinel).
Collaborate with IT team to deploy and maintain Azure virtual desktops.
Provide oversight for DevSecOps practices, embedding security into CI/CD pipelines.
Respond to and investigate security incidents, ensuring rapid containment and remediation.
Conduct security awareness training and provide guidance to engineering and operations teams.
Collaborate with the credit union's network and IT teams during build out of resources on the cloud
Collaborate with the credit union's Data Operations and Automation team to build data resources and pipelines on the cloud
What we offer to our team members:
Work Life Balance Programs that includes a 4 Day Work Week and Hybrid work environment after satisfactory completion of your training period
A competitive salary
Generous paid time off
Health, dental and vision plans for employees and their families
Health Savings and Flex Spending Accounts
Paid Parental Leave Programs
Short and Long-Term Disability Programs
Company provided life insurance and low-cost supplemental insurance plans
401K with 100% employer match, up to 6%, after one year and potential for additional profit-sharing contributions
Paid volunteer days
Opportunities for career advancement with continuous learning and development
Tuition reimbursement
We ask that you have:
Bachelor's Degree in Cybersecurity, Computer Science, Engineering, related field. MS degree will be a plus, but not required
Minimum 4+ years of experience in infrastructure as code (IaC) - such as Terraform, Bicep and ARM
7+ years of experience in cloud architecture and security with 3+ years focused on Azure in financial services
We would also be willing to talk to a candidate that is a recent graduate or with less experience but willing to learn and grow with us!
Deep coding and scripting experience in Python, SQL, KQL and Powershell
Strong knowledge in building and securing CI/CD pipelines for cloud infrastructure and digital platforms
Experience in software development lifecycle (SDLC) is preferred
Deep knowledge of Azure security services including Azure Firewalls, Bastion, Key Vault, Log Analytics, Route Tables, Network Security Groups, Security Center, Sentinel and Azure Policies
Previous experience in deploying and maintaining enterprise grade of Azure virtual desktops (AVD) is preferred
Strong understanding of financial compliance standards (e.g., SOX, GLBA, PCI-DSS, FFIEC)
Experience with network security, IAM, encryption and secure data architecture
Certifications such as AZ-500, CISSP, CCSP OR CISM are preferred
Familiarity with hybrid cloud and multi-cloud environments preferred
Experience with container security (AKS, Kubernetes) preferred
Background in incident response and digital forensics preferred
Knowledge of data loss prevention (DLP) and endpoint protection in cloud environments preferred
If you want to work in a friendly environment and with an organization that is looking to expand its footprint, please consider applying for this opportunity.
$93k-143k yearly est. Auto-Apply 10d ago
SAP - Security Administrator
Toyota Motor Company 4.8
Plano, TX jobs
Who we are Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world's most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. We're looking for talented team members who want to Dream. Do. Grow. with us.
An important part of the Toyota family is Toyota Financial Services (TFS), the finance and insurance brand for Toyota and Lexus in North America. While TFS is a separate business entity, it is an essential part of this world-changing company- delivering on Toyota's vision to move people beyond what's possible. At TFS, you will help create best-in-class customer experience in an innovative, collaborative environment.
To save time applying, Toyota does not offer sponsorship of job applicants for employment-based visas or any other work authorization for this position at this time.
Who we're looking for
This role is responsible of the design, implementation, and maintenance of SAP security across multiple platforms. This role is critical to ensure secure access, compliance, and operational integrity of our SAP landscape, including S/4 HANA, Fiori, and MDG.
What you'll be doing
* Design and manage SAP security roles and authorizations across S/4 HANA, Fiori, Solution Manager, MDG.
* Configure and maintain SAP GRC Access Control modules (ARA, ARM, BRM).
* Implement and monitor segregation of duties (SOD) policies and controls.
* Troubleshoot and resolve authorization issues across SAP modules.
* Collaborate with functional and technical teams to align security with business processes.
* Support SAP upgrades, migrations, and transformation initiatives.
* Conduct periodic audits and ensure compliance with internal and external regulations.
* Document security procedures, role matrices, and access control policies.
What you bring
* Bachelor's degree in computer science, Information Systems, or related field.
* 10+ years of hands-on SAP security experience.
* Strong knowledge of SAP GRC, Fiori authorization concepts, and HANA DB security.
* Experience with SAP Activate methodology and UI/UX aspects of SAP Security.
* Familiarity with compliance frameworks (SOX, GDPR, etc.).
* Excellent problem-solving, communication, and documentation skills.
Added bonus if you have
* SAP Certified Technology Associate - System Security.
* Experience with SAP BTP and cloud-based security models.
* Knowledge of identity management tools and integration.
What We Bring
During your interview process, our team can fill you in on all the details of our industry-leading benefits and career development opportunities. A few highlights include:
* A work environment built on teamwork, flexibility, and respect.
* Professional growth and development programs to help advance your career, as well as tuition reimbursement.
* Team Member Vehicle Purchase Discount.
* Toyota Team Member Lease Vehicle Program (if applicable).
* Comprehensive health care and wellness plans for your entire family.
* Toyota 401(k) Savings Plan featuring a company match, as well as an annual retirement contribution from Toyota regardless of whether you contribute.
* Paid holidays and paid time off.
* Referral services related to prenatal services, adoption, childcare, schools, and more.
* Tax-Advantaged Accounts (Health Savings Account, Health Care FSA, Dependent Care FSA).
* Relocation assistance (if applicable).
Belonging at Toyota
Our success begins and ends with our people. We embrace all perspectives and value unique human experiences. Respect for all is our North Star. Toyota is proud to have 10+ different Business Partnering Groups across 100 different North American chapter locations that support team members' efforts to dream, do and grow without questioning that they belong.
Applicants for our positions are considered without regard to race, ethnicity, national origin, sex, sexual orientation, gender identity or expression, age, disability, religion, military or veteran status, or any other characteristics protected by law.
Have a question, need assistance with your application or do you require any special accommodations? Please send an email to *****************************.
$85k-111k yearly est. Auto-Apply 60d+ ago
Director, Information Security - Regulatory & Controls
Canadian Imperial Bank of Commerce 3.8
Chicago, IL jobs
We're building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what's right for our clients. At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute.
To learn more about CIBC, please visit CIBC.com
What you'll be doing: As the US Region Information Security Director of Regulatory and Controls, you will be responsible for the department's efforts in ensuring compliance with relevant regulations and effectiveness of information security controls.
You will monitor relevant laws, regulations, and standards to ensure CIBC US security practices align with regulatory requirements and you will own regulatory compliance programs such as NY-DFS, GLBA and FFIEC.
You will serve as primary point of contract for regulatory bodies during audits and be responsible for creation of materials for and participation in exams and quarterly briefings.
You will be responsible for Information Security control management and providing oversight of controls that impact the US team.
This includes conducting the Risk and Control SelfAssessment (RCSA) for Information Security and provide input into RCSA's for all other lines of business.
Work Arrangement: At CIBC we enable the work environment most optimal for you to thrive in your role. You'll have the flexibility to manage your work activities within a hybrid work arrangement where you'll spend 1-3 days per week on-site, while other days will be remote.
Key Duties:
Regulatory and Reporting:
* Monitor relevant laws, regulations and standards to ensure organization's security practices align with regulatory requirements.
* Own regulatory compliance programs such as NY-DFS, GLBA and FFIEC assessments.
* Serve as primary point of contract for regulatory bodies during audits.
* Creation of materials for and participation in regulatory exams and quarterly briefings to regulators as required.
* Develop responses and drive resolution of Issues, Deficiencies, Matters Requiring Attention (MRAs), and Supervisory Recommendations (SR's) assigned to US Region Information Security.
* Work closely with US TI&I Risk & Controls Team, Regulatory Affairs, Operational Risk Management (ORM) and Internal Audit as required.
* Assist with creation of materials for Annual Cyber Security Board Review and Quarterly Board Risk Committee Meetings.
* Creation of materials for various reporting committees and forums, including weekly status.
* Creation of materials for various reporting committees and forums, including weekly reports, business unit reviews and horizontal review.
Control Management:
* Conduct Risk and Control Self-Assessment (RCSA) for Information Security and provide input into RCSA for all other lines of business. .
* Mapping of controls to industry frameworks (e.g. NIST, PCI, MITRE) • Work closely with controls testing teams.
* Drive remediation of ineffective controls owned by the US and provide oversight of control effectiveness for enterprise controls impacting the US. • Act as secretary for the Cyber Security Controls Oversight Council.
Leadership and Cross-Functional Relationships:
* Recruiting and hiring of Information Security professionals to support target operating model changes.
* Provides ongoing advice and direction on a variety of complex conceptual or interpretative issues.
* Establishing and leveraging peer's relationships within the US Region and Parent bank organizations.
* Will be required to foster relationships with middle to senior management, and senior executives across a range of functions including Risk Management and Technology.
Who You Are:
* You can demonstrate experience at a financial institution of similar scope and scale with direct experience working with regulators and regulatory compliance programs.
* It's an asset if you have advanced knowledge of applicable US laws and regulations as they relate to Information Security and the effective management of Information Security Risks.
* You are a caring and accountable leader.
* You have experience developing and implementing strategic team goals. You have experience coaching employees and inspiring successful team performance.
* You know that details matter. You notice things that others don't. Your critical thinking skills help to inform your decision-making.
* Values matter to you. You bring your real self to work, and you live our values - trust, teamwork, and accountability
This role is Hybrid and requires 2-3 days on-site per week.
At CIBC, we offer a competitive total rewards package. This role has an expected salary range of $190,000.00 - $230,000.00 for the Chicago market based on experience, qualifications, and location of the position. The successful candidate may be eligible to participate in the relevant business unit's incentive compensation plan, which may also include a discretionary bonus component. CIBC offers a full range of benefits and programs to meet our employee's needs; including Medical, Dental, Vision, Health Savings Account, Life Insurance, Disability, and Other Insurance Plans, Paid Time Off (including Sick Leave, Parental Leave and Vacation), Holidays and 401(k), in addition to other special perks reserved for our team members.
This position does not offer visa sponsorship.
#LI-TA
What CIBC Offers
At CIBC, your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential. We aspire to give you a career, rather than just a paycheck.
* We work to recognize you in meaningful, personalized ways including a competitive salary, incentive pay, banking benefits, a benefits program*, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program.
* Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients.
* We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development.
* Subject to plan and program terms and conditions
What you need to know
* CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience. If you need accommodation, please contact **********************************
* You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit.
* We may ask you to complete an attribute-based assessment and other skills tests (such as simulation, coding, MS Office). Our goal for the application process is to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us.
Job Location
IL-70 W Madison St, 9th Fl
Employment Type
Regular
Weekly Hours
40
Skills
Analytical Thinking, Information Management, Information Security, Leadership, Long Term Planning, People Management, Security Risk, Security Trainings
$190k-230k yearly Auto-Apply 27d ago
Seller/Servicer Information Security Risk Oversight Manager
Freddie Mac 4.5
Dallas, TX jobs
At Freddie Mac, our mission of Making Home Possible is what motivates us, and it's at the core of everything we do. Since our charter in 1970, we have made home possible for more than 90 million families across the country. Join an organization where your work contributes to a greater purpose.
Position Overview:
Freddie Mac is seeking an experienced Manager to join our Third Party Risk Governance (TPRG) Information Security (Cyber) team. Your role will be vital in identifying potential risks and ensuring that effective mitigation strategies are in place. If you have a strong foundation in risk management and cybersecurity, and are committed to protecting organizations from threats, we invite you to apply for this critical role at Freddie Mac.
Our Impact:
The Seller/Servicer Information Security Oversight Team, within Third-Party Risk Management, is responsible for monitoring the information security standards of seller/servicers to ensure the safeguarding of Freddie Mac's data in alignment with the Freddie Mac Guide. Our team of cyber risk specialists is actively involved in monitoring, identifying, detecting, and responding to cyber threats. Through regular vulnerability scans, they work diligently to mitigate information security risks to Freddie Mac.
Your Impact:
* As a Manager, you will play a key role in enhancing our oversight of third-party risk management. Your responsibilities will include:
* Leading initiatives to conduct thorough cybersecurity risk assessments.
* Applying the Cybersecurity Framework (CSF) to structure and improve our risk management processes.
* Collaborating with various stakeholders to identify and assess potential information security risks.
* Developing and implementing strategic plans to effectively mitigate identified risks.
* Ensuring the continuous improvement of our cybersecurity posture through proactive risk management and oversight.
* Conducting comprehensive Information Security risk reviews and interviews with seller/servicers as part of the annual Consolidated Origination and Risk Evaluation (CORE) review.
* Analyzing findings from these reviews and developing a detailed risk assessment, backed by supporting evidence.
Qualifications:
* 8+ years of experience in risk management, internal controls, audit, or compliance, preferably within financial services or mortgage operations
* 8 to 10 years of experience in cybersecurity or cyber risk management, with a focus on highly regulated industries.
* Bachelor's degree in computer science, engineering, or a related field, or equivalent work experience, preferred.
* Proficiency in performing risk analyses, vulnerability assessments, and threat modeling.
* Proven track record of leading risk assessment and controls initiatives across business functions
* Proven experience engaging with senior leadership to understand and align with strategic goals.
* Experience in IT governance, risk, and controls, including familiarity with frameworks such as COBIT, FFIEC, ISO 2700x, and NIST.
* Strong analytical and problem-solving skills.
* Excellent communication skills for articulating technical risks to non-technical audiences.
* In-depth knowledge of cybersecurity principles, networks, and operating systems, with experience in relevant frameworks like NIST and ISO 27001.
* Industry certifications such as Sec+, SSCP, GSEC or C|EH, preferred
Keys to Success:
* Significant understanding of the Third-Party Risk Governance process
* Ability to perform additional duties as assigned to support the organization's evolving needs.
* Strong analytical and problem-solving skills.
* Excellent communication skills for articulating technical risks to non-technical audiences.
* In-depth knowledge of cybersecurity principles, networks, and operating systems, with experience in relevant frameworks like NIST and ISO 27001
* Possess a deep understanding of NIST standards and evaluate seller/servicers' compliance with the Freddie Mac Guide.
* Identify and assess potential risks and vulnerabilities to our systems and data posed by third parties, utilizing approved monitoring tools.
* Conduct thorough risk assessments, analyze potential threats, and evaluate third-party information security processes and procedures.
* Identify associated risks and provide a comprehensive risk assessment with supporting evidence.
Current Freddie Mac employees please apply through the internal career site.
We consider all applicants for all positions without regard to gender, race, color, religion, national origin, age, marital status, veteran status, sexual orientation, gender identity/expression, physical and mental disability, pregnancy, ethnicity, genetic information or any other protected categories under applicable federal, state or local laws. We will ensure that individuals are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
A safe and secure environment is critical to Freddie Mac's business. This includes employee commitment to our acceptable use policy, applying a vigilance-first approach to work, supporting regulatory mandates, and using best practices to protect Freddie Mac from potential threats and risk. Employees exercise this responsibility by executing against policies and procedures and adhering to privacy & security obligations as required via training programs.
CA Applicants: Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.
Notice to External Search Firms: Freddie Mac partners with BountyJobs for contingency search business through outside firms. Resumes received outside the BountyJobs system will be considered unsolicited and Freddie Mac will not be obligated to pay a placement fee. If interested in learning more, please visit ****************** and register with our referral code: MAC.
Time-type:Full time
FLSA Status:Exempt
Freddie Mac offers a comprehensive total rewards package to include competitive compensation and market-leading benefit programs. Information on these benefit programs is available on our Careers site.
This position has an annualized market-based salary range of $142,000 - $214,000 and is eligible to participate in the annual incentive program. The final salary offered will generally fall within this range and is dependent on various factors including but not limited to the responsibilities of the position, experience, skill set, internal pay equity and other relevant qualifications of the applicant.
$142k-214k yearly Auto-Apply 60d+ ago
Information Security Manager
Piermont Bank 3.8
New York jobs
About Us:
Piermont Bank is a commercial bank with a mission to serve growth companies. We are entrepreneur-led and tech-forward. We believe in being a partner for enterprising companies, acting as a catalyst for mid-market innovation and growth. Piermont's financial solutions and expertise empower our business community to thrive. At Piermont, we are purpose-driven, practical, and offer fast answers and flexible solutions, creating value for clients in today's fast-changing economy. For more information, visit *********************
The Role:
The Information Security Manager is responsible for developing, implementing, and maintaining the bank's information security program to protect sensitive data, systems, and infrastructure. This role ensures compliance with regulatory requirements, manages risk, and leads initiatives to safeguard the bank against cyber threats. The Information Security Manager will collaborate with IT, risk, and business teams to promote a culture of security awareness and drive continuous improvement in security practices.
Responsibilities:
Design, implement, and manage information security policies, procedures, and controls.
Perform initial and annual due diligence on critical vendors and BaaS Third Party vendors.
Monitor and respond to security incidents, vulnerabilities, and threats.
Conduct risk assessments, security audits, and compliance reviews.
Provide strategic risk guidance for IT projects, including the evaluation and recommendation of technical controls.Lead security awareness training and education programs for employees.
Collaborate with IT and business units to ensure secure system architecture and data protection.
Maintain up-to-date knowledge of regulatory requirements (e.g., FFIEC, GLBA) and ensure ongoing compliance.
Prepare reports for senior management on security posture, incidents, and risk mitigation activities.
Manage relationships with external vendors, auditors, and regulatory agencies.
Qualifications:
Bachelor's degree in Information Security, Computer Science, or a related field; relevant certifications (CISSP, CISM, or similar) strongly preferred.
Minimum of 7 years' experience in information security, preferably within banking or financial services.
Strong knowledge of security frameworks, regulatory requirements, and risk management practices.
Experience with security technologies, incident response, and vulnerability management.
Excellent analytical, problem-solving, and communication skills.
Ability to lead cross-functional teams and manage multiple priorities.
High ethical standards and commitment to confidentiality and compliance.
The hiring range for this position is $140,000 to $175,000 per year. The base pay actually offered will take into account internal equity and also may vary depending on the candidate's job-related knowledge, skills, and experience, among other factors. A bonus and/or incentives may be provided as part of the compensation package, in addition to the full range of medical, dental, vision, 401k, and other benefits.
Piermont Bank is an equal-opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We do not discriminate based upon race, religion, color, national origin, political affiliation, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability or other applicable legally protected characteristics.
$140k-175k yearly Auto-Apply 4d ago
Manager, U.S. Information Security & Control
Scotiabank 4.9
Dallas, TX jobs
Salary Range: 76,600.00 - 142,300.00
Please note that the Salary Range shown is a guideline only. Salary offered may vary based on factors, including, but not limited to, the successful candidate's relevant knowledge, skills, and experience.
Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.
Global Banking and Markets
Global Banking and Markets (GBM) is a leading Canadian Capital Markets and Investment Banking business with a growing platform in the US and Latin America, operating globally for over 100 years. Scotiabank's strong U.S. presence provides our clients an important bridge to this key global market for trade and investment flows across the Americas and the world.
Global Banking & Markets provides a full range of investment banking, credit and risk management products and services relevant to the financing and strategic development needs of our clients. Our products include debt and equity financing, mergers & acquisitions, corporate banking, institutional equity sales, trading and research, fixed income products, derivatives, energy, foreign exchange and precious & metals. We also cross-sell the full range of wholesale products and services offered by the Scotiabank Group.
Be part of an innovative, Global Capital Markets and Investment Banking business with a unique geographic footprint that puts capital to work for our clients across industries! We work together to drive ambition for every future!
Purpose
The Cyber and Regulatory Audit Manager will participate and manage various aspects of information security, cyber risk assessments, and contribute to the overall success of the U.S. IS&C's governance, regulatory compliance, and risk program.
This role requires a seasoned professional with a strong background in information security, risk management, cybersecurity technology risk, compliance, policy, and governance. The IS&C Manager will assist with regulatory responses, audit requests, and participate in various cybersecurity risk assessments, risk mitigation strategies, and safeguard the Bank from potential informational security threats. The person will also play a role in reviewing and implementing security policies, procedures, and controls to protect the organization's data, systems, and networks.
The position will be expected to work closely with cross-functional teams to establish and maintain a robust cybersecurity and technology risk management program to proactively safeguard the organization from security threats by ensuring that vulnerabilities are identified, monitored, and treated, as well as assuring the Bank meets regulatory compliance.
What You'll Do
• Regulatory and Compliance Management (specific to cybersecurity):
- Participates in engagements with external regulatory and internal/3rd party auditors requests for information security and cybersecurity.
- Monitors, analyzes, and reports on cybersecurity requirements against relevant U.S. regulations and cybersecurity standards, such as NYSDFS, FFIEC, and NIST CSF.
- Provides support to IT&S auditors and compliance with respect to regulatory and audit information requests.
- Continuously monitors and assesses the effectiveness of security controls and processes.
- Reviews cybersecurity control library periodically and provides updates as needed.
- Participate in annual regulatory control testing exercises.
• Cybersecurity and Technology Risk Governance:
- Understand how the Bank's risk appetite and risk culture should be considered in day-to-day activities and decisions.
- Identifies and assesses cybersecurity and technology risks to ensure compliance with regulations and internal policies.
- Performs cybersecurity risk assessments and provide updates to US IS&C senior management.
• Risk and Issues Management:
- Reports and tracks all cybersecurity-related issues that pertain to audits, regulatory requirements, control testing, and other issues.
- Provides guidance to internal stakeholders on cybersecurity best practices.
- Prepares regular reports and presentation decks on risk management, gap assessment, cybersecurity-related issues for senior management and stakeholders.
- Monitors and tracks the progress of risk mitigation efforts related to cybersecurity.
- Participates in quarterly and annual Compliance Risk and Control Assessments for cybersecurity.
• Actively pursues effective and efficient operations of his/her respective areas in accordance with Scotiabank's Values, its Code of Conduct, and the Global Sales Principles, while ensuring the adequacy, adherence to and effectiveness of day-to-day business controls to meet obligations with respect to operational, compliance, AML/ATF/sanctions and conduct risk.
• Champions a high-performance environment and contributes to an inclusive work environment.
What You'll Bring
• Required 5+ years of experience as an Information Security Analyst or related cybersecurity field with technology risk background.
• Experience in IT key security controls/mechanisms and risk assessment concepts pertaining to complex data, application, and networking environments.
• Prior experience and knowledge with NYDFS, FFIEC, or other US financial regulatory audits.
• Have strong verbal and written communication skills in English with excellent individual project management and tracking skills.
• Cybersecurity related certification is preferred (CISSP, CCSP, CRISC, CISM).
• University degree or college diploma in a cybersecurity related field is preferred.
Interested?
If your experience is closely related but doesn't align perfectly with every qualification, we do encourage you to apply - you might be the right candidate for this or other roles at Scotiabank!
At Scotiabank, every employee is empowered to reach their fullest potential, respected for who they are and, embraced for their differences. That's why we work to grow and diversify talent and engage employees in a performance-oriented culture.
What's in it for you?
Scotiabank wants you to be able to bring your best self to work - and life, every day. With a focus on holistic well-being, our many flexible benefit programs are designed to help support your unique family, financial, physical, mental, and social health needs.
#Dallas
Location(s): United States : Texas : Dallas
Scotiabank is a leading bank in the Americas. Guided by our purpose: "for every future", we help our customers, their families and their communities achieve success through a broad range of advice, products and services, including personal and commercial banking, wealth management and private banking, corporate and investment banking, and capital markets.
At Scotiabank, we value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. If you require accommodation (including, but not limited to, an accessible interview site, alternate format documents, ASL Interpreter, or Assistive Technology) during the recruitment and selection process, please let our Recruitment team know. If you require technical assistance, please click here. Candidates must apply directly online to be considered for this role. We thank all applicants for their interest in a career at Scotiabank; however, only those candidates who are selected for an interview will be contacted.
Scotiabank is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other characteristic protected by federal, state, or local law.
$102k-124k yearly est. 22d ago
Manager, Information Security (Monitoring and Investigation)
TD Bank 4.5
New York, NY jobs
Toronto, Ontario, Canada **Hours:** 37.5 **Line of Business:** Technology Solutions **Pay Details:** 91,200 - 136,800 CAD TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
**Job Description:**
TD Bank is seeking a strategic and technically skilled Manager to join our Information Security team, focused on strengthening our fraud detection, authentication, and CIAM (Customer Identity and Access Management) capabilities. This role will lead the expansion of our monitoring and alerting footprint across enterprise platforms, ensuring control effectiveness, regulatory alignment, and rapid incident response in a complex financial environment.
Key Responsibilities
- Lead the design and deployment of monitoring and alerting strategies using Splunk, Datadog, Dynatrace, and Databricks across TD's digital ecosystem
- Define alert thresholds and tuning logic to minimize false positives while maintaining high sensitivity to fraud and access anomalies
- Oversee triage workflows for triggered alerts, coordinating with global teams to ensure timely investigation and resolution
- Develop governance frameworks for alert lifecycle management, including setup, ownership, escalation, and audit readiness
- Monitor control effectiveness across CIAM, authentication, and fraud domains, driving continuous improvement
- Collaborate with fraud and cybersecurity teams to support incident investigations and mitigation strategies
- Analyze alert trends and performance metrics to inform strategic improvements and risk prioritization
- Champion automation and workflow optimization for alert handling, reporting, and compliance documentation
- Ensure alignment with TD's enterprise risk management and regulatory obligations (e.g., OSFI, OCC)
- Provide mentorship and leadership within the security monitoring team, fostering a culture of accountability and innovation
Required Qualifications & Expertise
- 5+ years of experience in information security, CIAM/fraud detection, or observability engineering within financial services
- Hands-on expertise with Splunk, Datadog, Dynatrace, and Databricks for alert creation, analytics, and dashboarding
- Strong understanding of CIAM, authentication protocols, and fraud risk indicators in regulated environments
- Experience designing governance frameworks and control monitoring programs aligned with financial compliance standards
- Proven ability to lead cross-functional teams and drive incident response processes across geographies
- Excellent communication and documentation skills, with a strategic mindset and attention to regulatory detail
**Who We Are:**
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing - and so will you.
**Our Total Rewards Package**
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental well-being goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Learn more (**********************************************************************
**Additional Information:**
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.
Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements.
**Colleague Development**
If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD - and we're committed to helping you identify opportunities that support your goals.
**Training & Onboarding**
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.
**Interview Process**
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
**Accommodation**
Your accessibility is important to us. Please let us know if you'd like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process.
We look forward to hearing from you!
**Language Requirement (Quebec only):**
Sans Objet
Federal law prohibits job discrimination based on race, color, sex, sexual orientation, gender identity, national origin, religion, age, equal pay, disability and genetic information.
$102k-126k yearly est. 54d ago
Manager, Information Security (Monitoring and Investigation)
TD Bank 4.5
New York, NY jobs
Hours: 37.5 Line of Business: Technology Solutions Pay Details: 91,200 - 136,800 CAD TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Job Description:
TD Bank is seeking a strategic and technically skilled Manager to join our Information Security team, focused on strengthening our fraud detection, authentication, and CIAM (Customer Identity and Access Management) capabilities. This role will lead the expansion of our monitoring and alerting footprint across enterprise platforms, ensuring control effectiveness, regulatory alignment, and rapid incident response in a complex financial environment.
Key Responsibilities
* Lead the design and deployment of monitoring and alerting strategies using Splunk, Datadog, Dynatrace, and Databricks across TD's digital ecosystem
* Define alert thresholds and tuning logic to minimize false positives while maintaining high sensitivity to fraud and access anomalies
* Oversee triage workflows for triggered alerts, coordinating with global teams to ensure timely investigation and resolution
* Develop governance frameworks for alert lifecycle management, including setup, ownership, escalation, and audit readiness
* Monitor control effectiveness across CIAM, authentication, and fraud domains, driving continuous improvement
* Collaborate with fraud and cybersecurity teams to support incident investigations and mitigation strategies
* Analyze alert trends and performance metrics to inform strategic improvements and risk prioritization
* Champion automation and workflow optimization for alert handling, reporting, and compliance documentation
* Ensure alignment with TD's enterprise risk management and regulatory obligations (e.g., OSFI, OCC)
* Provide mentorship and leadership within the security monitoring team, fostering a culture of accountability and innovation
Required Qualifications & Expertise
* 5+ years of experience in information security, CIAM/fraud detection, or observability engineering within financial services
* Hands-on expertise with Splunk, Datadog, Dynatrace, and Databricks for alert creation, analytics, and dashboarding
* Strong understanding of CIAM, authentication protocols, and fraud risk indicators in regulated environments
* Experience designing governance frameworks and control monitoring programs aligned with financial compliance standards
* Proven ability to lead cross-functional teams and drive incident response processes across geographies
* Excellent communication and documentation skills, with a strategic mindset and attention to regulatory detail
Who We Are:
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing - and so will you.
Our Total Rewards Package
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental well-being goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Learn more
Additional Information:
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.
Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements.
Colleague Development
If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD - and we're committed to helping you identify opportunities that support your goals.
Training & Onboarding
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.
Interview Process
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
Accommodation
Your accessibility is important to us. Please let us know if you'd like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process.
We look forward to hearing from you!
Language Requirement (Quebec only):
Sans Objet