A fintech company in Menlo Park is seeking an Offensive Security Engineer to lead Red Team operations, conduct penetration tests, and mentor junior team members. The ideal candidate will have over 2 years of Red Team experience and a strong passion for security. Responsibilities include threat modeling, collaborating with stakeholders, and executing black box exercises. This role requires in-person attendance at least three days a week, fostering a collaborative environment that supports high-performance teams.
#J-18808-Ljbffr
$137k-194k yearly est. 3d ago
Looking for a job?
Let Zippia find it for you.
Offensive Security Engineer
Robinhood 4.7
Security architect job at Robinhood
Join us in building the future of finance. Our mission is to democratize finance for all. An estimated $124 trillion of assets will be inherited by younger generations in the next two decades. The largest transfer of wealth in human history. If you're ready to be at the epicenter of this historic cultural and financial shift, keep reading.
About the team + role
We are building an elite team, applying frontier technologies to the world's biggest financial problems. We're looking for bold thinkers. Sharp problem-solvers. Builders who are wired to make an impact. Robinhood isn't a place for complacency, it's where ambitious people do the best work of their careers. We're a high-performing, fast-moving team with ethics at the center of everything we do. Expectations are high, and so are the rewards.
Robinhood is looking for an Offensive Security Engineer who is passionate about Red Teaming, Adversarial Simulation, and breaking / fixing systems, to join the Red Team.
The Red Team is a core pillar of the Offensive Security team and situated within the Safety & Productivity Engineering organization. The Red Team works with teams across Robinhood to ensure our products, services, and processes are secure through threat modeling, penetration testing, adversarial simulations, and red teaming.
Here are some examples of things our team does frequently that you'll be heavily involved with:
* Red Teaming to validate assumptions, facilitate decisions, and improve our ability to detect and respond to incidents.
* Perform threat modeling against critical and new services. Articulate the actual security risk to risk working groups.
* Penetration testing our critical infrastructure, production applications, networks, offices, and processes.
* Sparring with Detection and Response and other stakeholders via Adversarial Simulations to prepare for incidents.
* Partnering with the physical security team to conduct assessments of Robinhood properties.
* Serving as a technical advocate and Subject Matter Expert for privacy and security decisions, designs, and discussions.
* Driving innovative ideas to implementation as the company evolves and grows.
* Conduct vulnerability research to understand latest TTPs, exploits, and forward looking capabilities.
* Leaving things better than you found them by partnering to fix the issues and not just finding broken things.
As an Offensive Security Engineer, you will work across multiple domains, partner with key teams across Robinhood, and help build an even more resilient and secure product for our customers.
This role is based in our Menlo Park, CA and Bellevue, WA offices, with in-person attendance expected at least 3 days per week.
At Robinhood, we believe in the power of in-person work to accelerate progress, spark innovation, and strengthen community. Our office experience is intentional, energizing, and designed to fully support high-performing teams.
What you'll do
* Evangelize the Offensive Security Team's Findings and Projects with stakeholders throughout the company and collaborate with other teams to create solutions that balance security with other priorities.
* Mentor and provide guidance to the members of the Offensive Security team.
* Utilize threat modeling to identify threats and shape Red Team priorities and exercises.
* Plan and execute long term, broadly scoped, black box Red Team exercises utilizing vulnerability research, exploit development, and utilizing public proof of concept code.
* Perform penetration testing, code reviews, and design/architecture reviews.
* Write tooling to assist with and automate Red Team assessments.
* Plan and participate in Adversarial Simulation exercises with various security teams.
* Lead Security Incidents when Pentest or Red Team findings require them.
* Publish blog posts and present talks at security conferences.
What you bring
* 2+ years of Red Team experience.
* Experience mentoring other team members.
* Passion and demonstrated experience for challenging security assumptions.
* Excellent written and verbal communication skills and ability to communicate your findings at many different levels of abstraction from Engineers to Executives.
* Passion for fixing security issues and not just identifying security issues.
* Familiarity with common network protocols and standards such as DNS and TCP/IP.
* Experience with MacOS and Linux.
* Experience with leveraging components of a modern software development stack to attack companies, including CI, container orchestration systems (Kubernetes/Docker), cloud providers (AWS, GCP), etc and be able to give hardening suggestions.
* Experience/knowledge of defensive tools/techniques (IDS/IPS, Packet Capture, Network Analysis, AV, EDR, etc.) and how to evade them.
* Deep understanding of Mitre's ATT&CK Framework.
* Strong understanding of the security fundamentals of access and identity.
* Comfortable reading / writing python, go, and javascript.
* Ability to research and execute a testing plan to access a new technology or process.
* Demonstrated experience working with a distributed team.
* Proficiency to communicate over a text-based medium (Slack, JIRA Issues, GitHub issues, & Email) and can succinctly document technical details.
Bonus points
* Experience in the Financial Technology domain.
* Experience being a technical lead at other organizations.
What we offer
* Challenging, high-impact work to grow your career
* Performance driven compensation with multipliers for outsized impact, bonus programs, equity ownership, and 401(k) matching
* Best in class benefits to fuel your work, including 100% paid health insurance for employees with 90% coverage for dependents
* Lifestyle wallet - a highly flexible benefits spending account for wellness, learning, and more
* Employer-paid life & disability insurance, fertility benefits, and mental health benefits
* Time off to recharge including company holidays, paid time off, sick time, parental leave, and more!
* Exceptional office experience with catered meals, events, and comfortable workspaces.
In addition to the base pay range listed below, this role is also eligible for bonus opportunities + equity + benefits.
Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. The expected base pay range for this role is based on the location where the work will be performed and is aligned to one of 3 compensation zones. For other locations not listed, compensation can be discussed with your recruiter during the interview process.
Base Pay Range:
Zone 1 (Menlo Park, CA; New York, NY; Bellevue, WA; Washington, DC)
$157,000-$185,000 USD
Zone 2 (Denver, CO; Westlake, TX; Chicago, IL)
$139,000-$163,000 USD
Zone 3 (Lake Mary, FL; Clearwater, FL; Gainesville, FL)
$122,000-$144,000 USD
Click here to learn more about our Total Rewards, which vary by region and entity.
If our mission energizes you and you're ready to build the future of finance, we look forward to seeing your application.
Robinhood provides equal opportunity for all applicants, offers reasonable accommodations upon request, and complies with applicable equal employment and privacy laws. Inclusion is built into how we hire and work-welcoming different backgrounds, perspectives, and experiences so everyone can do their best. Please review the Privacy Policy for your country of application.
A financial services company in San Francisco is seeking an experienced security professional to assess access controls and mentor peers in security best practices. The candidate should have over 6 years of experience in security operations and a Bachelor's degree. The role offers competitive compensation ranging from $157,000 to $200,000, along with a hybrid work model and comprehensive benefits.
#J-18808-Ljbffr
$157k-200k yearly 4d ago
Identity & Access Security Engineer (IAM)
Zip 4.7
San Francisco, CA jobs
A leading procurement platform company in San Francisco is seeking a Software Engineer to develop core identity products like authentication and encryption key management. The role requires experience in web application and API development, particularly with Python, Typescript, React, and GraphQL. The salary range is competitive, between $150,000 - $180,000, and the company offers a variety of perks, including start-up equity and flexible PTO. Apply now and join a diverse and inclusive company culture.
#J-18808-Ljbffr
$150k-180k yearly 5d ago
Manager, Security Systems
Barclays Center 4.6
New York, NY jobs
**Department:** Security**FLSA Status:** Exempt / Full-Time Salary**Union Code:** Non-Union**Minimum Pay Rate:** $82,400**Maximum Pay Rate:**$92,200**Join Our Team at Barclays Center!**Congratulations on taking the first step toward embarking on an exciting new adventure at Barclays Center! Our focus is YOU!At Barclays Center, we're more than just a venue - we're a dynamic community driven by a shared passion for creating unforgettable live experiences. We're dedicated to nurturing our team members and empowering them to thrive in an environment where innovation, collaboration, and a love for sports entertainment intersect.If you're someone who lives and breathes events, fueled by an unwavering passion for creating magic in every moment, then we want you to join us in shaping the future of live entertainment. Come be a part of our vibrant community, where every day offers the chance to inspire, innovate, and make memories that last a lifetime!**Our Company Values**We understand that it is important for you to know what our values are to determine if they align with yours. Our four company values, Care, Integrity, Accountability and Growth Mindset, are reflected in everything that we do here at Barclays Center. From the interview process to employee recognition, we make certain to incorporate the four values.**Key Attributes for Success**To excel in this role, candidates must possess a genuine passion for service, strong teamwork abilities, adaptability, effective communication skills, a guest-centric approach, problem-solving capabilities, and keen attention to detail. These attributes are essential for creating unforgettable experiences and maintaining a positive atmosphere for our guests. Joining our team promises not only a fulfilling experience but also an opportunity to make a meaningful difference in the lives of our guests and contribute to the success of Barclays Center.**Strong Teamwork Abilities:*** Enjoys collaborating effectively with colleagues and partners.* Likes building and nurturing strong relationships within the team.* Values the importance of teamwork in achieving shared goals.**Adaptability:*** Enjoys handling unexpected challenges with flexibility and composure.* Wants to quickly adjust to changes in the environment to ensure guest satisfaction.* Thrives in dynamic and fast-paced work environments.**Proactive Problem-Solving:*** Desires to identify and resolve issues creatively and efficiently.* Enjoys handling guest concerns with empathy and professionalism, turning challenges into opportunities.* Likes taking initiative to address potential problems before they escalate.**Meticulous Attention to Detail:*** Wants to pay close attention to details that contribute to organizational satisfaction.* Enjoys ensuring every aspect of service delivery is meticulously executed to maintain high standards.* Desires to take pride in delivering flawless capabilities through meticulous attention to detail.**ESSENTIAL DUTIES & RESPONSIBILITIES: What You Will Do*** Assist with the installation, configuration, and maintenance of security systems, including surveillance cameras, access control systems, alarm systems, and other related technologies and applications.* Supervise employees and operations in all areas of Security, including the Dean and Event Level Command Centers.* Maintain high standards for security equipment, including inventory management, cleaning, and distribution for security personnel.* Collaborate closely with outside contractors to ensure the optimal operation of our security equipment and systems.* Ensure that staffing levels for operating security systems during events are appropriate. Properly brief, deploy, and redeploy staffing resources as necessary to maintain effective security operations.* Implement and monitor the daily event and non-event badging system to ensure proper access control and security compliance.* Conduct comprehensive training and information-sharing sessions with employees on the operations of building security systems. Develop and execute training programs to enhance employee awareness and proficiency.* Conduct regular assessments and audits of security systems to identify vulnerabilities. Implement necessary improvements to maintain the integrity and effectiveness of the security infrastructure.* Manage the operation, and execution of events at Barclays Center, ensuring all security protocols are followed and the safety of attendees is maintained.* Respond promptly to requests from upper management, risk management, and other departments for investigations, ensuring timely and accurate delivery of required information and footage.* Provide comprehensive administrative support, complete projects and tasks, and update security forms, databases, and office records to ensure smooth security operations.* Develop, manage, and update all departmental policy and procedural guidelines, ensuring compliance with industry standards and regulatory requirements.* Collaborate closely with the IT department to ensure seamless integration and alignment of security systems with IT infrastructure and protocols, facilitating efficient communication and troubleshooting.* Demonstrate understanding of managing both internal and external customer requirements and measurement criteria.* Establish positive and collaborative relationships with customers, including local, state, & federal fire, police authorities, and international authorities.* Develop, create, and implement an accepted and sustainable security culture.* Ensure processing, adjudication, and disposition of corporate personnel security actions comply with US Government and International statutory, regulatory, customer contractual, and business requirements* Assist with confidential investigations, ensuring timely and accurate delivery of required information and or footage.* Provide comprehensive administrative support, complete projects and tasks, and update security forms, databases, and office records to ensure smooth security operations.* Help develop, manage, and update all departmental policy and procedural guidelines, ensuring compliance with industry standards and regulatory requirements.**CANDIDATE PROFILE: Who You Are*** The Manager of Security Systems is a results-driven security professional with extensive experience overseeing security operations, risk management, and venue safety for high-profile events.* Adept at managing comprehensive security systems, including CCTV, access control, and screening equipment, ensuring operational readiness and compliance with industry standards.* Proven track record in project management, successfully leading security infrastructure upgrades, vendor coordination, and budget oversight.* Skilled in developing and executing security protocols for large-scale events while fostering strong relationships with internal stakeholders and law enforcement agencies.* Committed to delivering exceptional service, enhancing security technology, and driving continuous improvements in operational efficiency.**KEY COMPETENCIES: Skills You Possess*** Minimum of 2 years customer/guest service experience, preferably in a sports and/or entertainment facility.* Proficiency in Microsoft Office Programs (Word, Excel, Outlook, PowerPoint) is required.* Proficient in the operation of CCTV systems* Proficient in general IT operations. Certifications strongly preferred.* Ability to be proactive, recognize problems and find solutions.* Excellent interpersonal, verbal and written communication skills.* Ability to work in a fast-paced environment and simultaneously manage a high level of detail across multiple projects.* Ability to demonstrate flexibility and quickly adapt to changes while maintaining high levels of productivity and effectiveness under pressure.* Ability to work well within a team environment, assisting and supporting team members whenever
#J-18808-Ljbffr
$82.4k-92.2k yearly 1d ago
Malware Defense Malware Analyst
Bank of America 4.7
Washington, DC jobs
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in‑office culture with specific requirements for office‑based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role‑specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Bank of America is one of the world's leading financial institutions, serving over 66 million consumers and small businesses. Company success is only possible with a strong cyber defense, which enables Bank of America to safely conduct global operations across the United States and in approximately 35 countries. Our primary goal is to safeguard not only the company, but our clients and their trust. The Malware Defense Team is looking for top talent who would like to join one of the most advanced cybersecurity teams in the world.
Responsibilities
In-depth analysis of malware, including authoring analysis reports.
Tracking malware campaigns, malicious actors, and related infrastructure.
Creation of tools and scripts to assist in the analysis of malware analysis.
Field escalations of potentially malicious files and websites from teams within Malware Defense.
Required Qualifications
Strong direct experience of analyzing malware.
Intermediate to advanced malware analysis skills.
Experience creating innovative ways to track progression of malware families, infrastructure, and campaigns conducted by e‑crime, and cyber espionage actors.
Experience creating tools and scripts to accelerate malware and threat analysis.
Background in network traffic analysis - WireShark, Fiddler, proxy logs, etc.
Experience analyzing malicious web content such as ClickFix, ClearFake, SocGholish, etc.
Experience authoring YARA, Suricata, and EKFiddle detection rules.
Experience with penetration testing and/or adversary emulation is a plus.
Able to work independently on tasks, but also work well within a team environment.
Desired Qualifications
Experience analyzing malware targeting Linux, Android, and IOT platforms.
Skills
Cyber Security
Data Privacy and Protection
Problem Solving
Process Management
Threat Analysis
Business Acumen
Data and Trend Analysis
Interpret Relevant Laws, Rules, and Regulations
Risk Analytics
Stakeholder Management
Access and Identity Management
Data Governance
Encryption
Information Systems Management
Technology System Assessment
Shift:
1st shift (United States of America)
Hours Per Week:
40
Pay Transparency details
US - CO - Denver - 1144 15th St - Denver GIS (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540) Pay and benefits information Pay range $95,700.00 - $144,900.00 annualized salary, offers to be determined based on experience, education and skill set. Discretionary incentive eligible. This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company. Benefits This role is currently benefits eligible. We provide industry‑leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.
#J-18808-Ljbffr
A leading financial institution in Washington, DC is seeking a cybersecurity expert to enhance its malware defense team. Responsibilities include analyzing malware, tracking campaigns, and authoring reports. The ideal candidate must possess strong malware analysis skills, experience in creating analytical tools, and a solid understanding of network traffic analysis. This position offers an annual salary between $95,700.00 and $144,900.00 based on experience, alongside robust benefits aimed at ensuring employee wellness.
#J-18808-Ljbffr
$95.7k-144.9k yearly 1d ago
Enterprise Information Security Architect
Fisher Investments 3.9
Plano, TX jobs
It's an exciting time to join Fisher Investments; we're investing in the future of our firm's technology and information security. Our business is growing internationally, which emphasizes the need to build an unparalleled team that promotes future global growth through strategic solutions and progress. We are important to supporting our firm's diverse businesses, and we're excited to continue solidifying that foundation as we add more experienced technologists to our Technology team.
The Opportunity:
As Enterprise Information SecurityArchitect you will report to the VP of Enterprise Architecture and Standards to design and evolve our information securityarchitecture across the enterprise. In this strategic role, you will provide technical expertise, resolve complex architectural challenges, and drive alignment on security principles and standards. You will collaborate with cross-functional teams to ensure our security capabilities are scalable, resilient, and aligned with business objectives, including our enterprise AI initiatives.
The Day-to-Day:
Partner with interdepartmental teams to improve information security management processes and controls
Drive alignment between securityarchitecture, enterprise architecture, and business objectives
Work closely with project teams in an Agile/Scrum environment to integrate security by design
Foster collaboration across Technology, Risk, Compliance, and business units
Identify opportunities for process automation and optimization within security operations
Lead implementation of security improvements in partnership with Information Security and Technology project teams
Analyze business needs and translate them into scalable securityarchitectural solutions
Ensure security capabilities align with and enable enterprise AI and innovation goals
Manage the quality and consistency of securityarchitecture deliverables
Document and maintain security standards, procedures, policies, and architectural patterns
Provide strategic input to Information Security leadership for roadmap planning and prioritization
Conduct risk assessments and develop mitigation strategies for securityarchitecture decisions
Your Qualifications:
7+ years of hands-on experience in identity and access management and information securityarchitecture
Proven track record designing and implementing enterprise security solutions at scale
Demonstrated expertise in risk assessment and mitigation within complex IT environments
Experience working in Agile/Scrum delivery methodologies
Deep technical knowledge of Identity & Access Management platforms (Okta, SailPoint, Azure AD/Entra ID)
Proficiency with enterprise systems including Salesforce CRM, Active Directory, PowerShell scripting, and Group Policy
Strong understanding of IT systems architecture, design principles, and security frameworks
Knowledge of securityarchitecture patterns for cloud, hybrid, and on-premise environments
Bachelor's degree in information security, Information Technology, Computer Science, or related field required
Why Fisher Investments:
We work for a bigger purpose: bettering the investment universe. We take great pride in our inclusive culture, our learning and development framework customized for every employee, and our Great Place to Work Certification. It's the people that make the Fisher purpose possible, and we invest in them by offering exceptional benefits like:
100% paid medical, dental and vision premiums for you and your qualifying dependents
A 50% 401(k) match, up to the IRS maximum
20 days of PTO, plus 10 paid holidays
Family Support programs including 8 week Paid Primary Caregiver Leave, $10,000 fertility, family forming, and hormonal health assistance, and back-up child, adult, and elder care
This is an in-office role. Based on your role, tenure, and performance eligibility you may have the opportunity to participate in our hybrid work from home program. This program is subject to change.
FISHER INVESTMENTS IS AN EQUAL OPPORTUNITY EMPLOYER
$115k-157k yearly est. Auto-Apply 51d ago
Enterprise Information Security Architect
Fisher Investments 3.9
Tampa, FL jobs
It's an exciting time to join Fisher Investments; we're investing in the future of our firm's technology and information security. Our business is growing internationally, which emphasizes the need to build an unparalleled team that promotes future global growth through strategic solutions and progress. We are important to supporting our firm's diverse businesses, and we're excited to continue solidifying that foundation as we add more experienced technologists to our Technology team.
The Opportunity:
As Enterprise Information SecurityArchitect you will report to the VP of Enterprise Architecture and Standards to design and evolve our information securityarchitecture across the enterprise. In this strategic role, you will provide technical expertise, resolve complex architectural challenges, and drive alignment on security principles and standards. You will collaborate with cross-functional teams to ensure our security capabilities are scalable, resilient, and aligned with business objectives, including our enterprise AI initiatives.
The Day-to-Day:
Partner with interdepartmental teams to improve information security management processes and controls
Drive alignment between securityarchitecture, enterprise architecture, and business objectives
Work closely with project teams in an Agile/Scrum environment to integrate security by design
Foster collaboration across Technology, Risk, Compliance, and business units
Identify opportunities for process automation and optimization within security operations
Lead implementation of security improvements in partnership with Information Security and Technology project teams
Analyze business needs and translate them into scalable securityarchitectural solutions
Ensure security capabilities align with and enable enterprise AI and innovation goals
Manage the quality and consistency of securityarchitecture deliverables
Document and maintain security standards, procedures, policies, and architectural patterns
Provide strategic input to Information Security leadership for roadmap planning and prioritization
Conduct risk assessments and develop mitigation strategies for securityarchitecture decisions
Your Qualifications:
7+ years of hands-on experience in identity and access management and information securityarchitecture
Proven track record designing and implementing enterprise security solutions at scale
Demonstrated expertise in risk assessment and mitigation within complex IT environments
Experience working in Agile/Scrum delivery methodologies
Deep technical knowledge of Identity & Access Management platforms (Okta, SailPoint, Azure AD/Entra ID)
Proficiency with enterprise systems including Salesforce CRM, Active Directory, PowerShell scripting, and Group Policy
Strong understanding of IT systems architecture, design principles, and security frameworks
Knowledge of securityarchitecture patterns for cloud, hybrid, and on-premise environments
Bachelor's degree in information security, Information Technology, Computer Science, or related field required
Why Fisher Investments:
We work for a bigger purpose: bettering the investment universe. We take great pride in our inclusive culture, our learning and development framework customized for every employee, and our Great Place to Work Certification. It's the people that make the Fisher purpose possible, and we invest in them by offering exceptional benefits like:
100% paid medical, dental and vision premiums for you and your qualifying dependents
A 50% 401(k) match, up to the IRS maximum
20 days of PTO, plus 10 paid holidays
Family Support programs including 8 week Paid Primary Caregiver Leave, $10,000 fertility, family forming, and hormonal health assistance, and back-up child, adult, and elder care
This is an in-office role. Based on your role, tenure, and performance eligibility you may have the opportunity to participate in our hybrid work from home program. This program is subject to change.
FISHER INVESTMENTS IS AN EQUAL OPPORTUNITY EMPLOYER
$112k-156k yearly est. Auto-Apply 51d ago
Principal Security Architect
Tencent 4.5
Palo Alto, CA jobs
About the Hiring TeamTencent Overseas IT has the mission to empower Tencent's rapid global growth with future ready, global IT platforms, applications and services. We are chartered to lead the Overseas IT strategy, architecture, roadmap and execution. Satisfying our internal/external customers and becoming a world class global IT team are our top aspirations.What the Role Entails
Tencent Overseas IT is committed to accelerating Tencent's international business growth and enabling its success through the deployment of cutting-edge technology platforms in IT services, cloud, security, and DevOps. As leaders in IT technology, we are responsible for defining and executing on Tencent's Overseas IT strategy, architecture, and roadmap. Our primary focus is to deliver exceptional value to satisfy the diverse needs of our internal and external customers, while striving to build a world-class global IT team.
Responsibilities
We're seeking a Principal SecurityArchitect to drive the overall securityarchitecture of Tencent overseas business. This role will work closely with foundation IT and Business teams to ensure compliance with security best practices, regulatory requirements, and internal policies. Key responsibilities include:
Security Strategy and Planning: Defining and implementing the organization's security strategy, roadmaps, and long-term vision.
SecurityArchitecture Design: Developing and maintaining the overall securityarchitecture, including defining security frameworks, standards, and controls.
Incident Response: Participating in incident response activities, providing expertise in identifying, containing, and recovering from security incidents.
Risk Management: Identifying and assessing security risks, developing mitigation strategies, and ensuring alignment with business objectives.
Security Compliance: Ensuring compliance with relevant security regulations, industry standards (e.g., NIST, ISO 27001, HIPAA), and internal policies.
Who We Look For
Key Skills
• SecurityArchitecture Design: Ability to design and implement secure and scalable architectures across various environments (e.g., cloud, containerized, on-premises), including developing and maintaining threat models and security reference architectures, with a strong emphasis on Zero Trust principles.
• Security Operations & Incident Response: Experience with Security Information & Event Management (SIEM) systems, vulnerability scanners, malware analysis, and handling security incidents. The ability to lead threat modeling activities and support penetration testing is also important.
• Networking: In-depth knowledge of networking principles, including routers, switches, firewalls, load balancers, and wireless devices, as well as network security protocols and technologies like VLANs, VPNs, IDS/IPS, and network segmentation.
• Cloud Security: Expertise in cloud security principles and technologies across major platforms like AWS, Azure, and GCP, including implementing security controls and best practices in cloud environments.
• Identity and Access Management (IAM): Strong understanding of enterprise IAM systems, including platforms like Okta, SailPoint, and Active Directory (AD), and the ability to implement and manage secure access controls based on the principle of least privilege.
• Data Protection: Knowledge of data protection methods like encryption, pseudonymization, and shuffling, and how to apply them effectively to safeguard against data corruption, compromise, and loss.
• Security Testing & Analysis: Experience in conducting penetration testing, vulnerability assessments, ethical hacking, and risk analysis to identify and mitigate security risks.
• Security Automation & DevSecOps: Hands-on experience with security automation tools and scripting languages (e.g., Python, Lambda, Terraform) to streamline security processes and embed security into CI/CD workflows and Infrastructure-as-Code (IaC) processes.
• Security Tools & Technologies: Proficiency in using various security tools and technologies, including SIEM platforms, XDR, cloud-native threat detection tools, vulnerability scanners, and encryption tools.
• Operating Systems: Experience with various operating systems, including Windows, Linux, and UNIX.
• Application Security: Experience in web application security, OWASP, API security, and secure design and testing.
• SaaS Security: Experience with SaaS permission management, experience with SSPM (SaaS Security Posture Management)
• AI for Security: real word experience with AI/LLM/Agentic for security, especially adopt LLM in SIEM rule, SOAR optimization.
• Scripting skills in Python, PowerShell or Bash
Qualifications
• Education: Typically, a master's degree in computer science, Information Security, or a related technical field is required.
• Minimum of 10-12+ years of progressive experience in cybersecurity, including at least 5-7 years in a securityarchitecture or senior-level engineering role.
• Experience securing workspace and key enterprise systems, including IAM, e-mail, DevSecOps, SaaS, and back-office systems.
• Essential soft skills: Analytical Thinking; Problem-Solving; Risk Management; Adaptability & Continuous Learning;Attention to Detail
• Experience working with remote, globally distributed teams
• Previous experience in the gaming industry is a plus.
• Relevant certifications:
Certified Information Systems Security Professional (CISSP)
Certified Cloud Security Professional (CCSP)
Certified Information Security Manager (CISM)
AWS Certified Security - Specialty
Other certifications like AWS Certified SA, Certified Ethical Hacker (CEH), CompTIA Security+, and GIAC Security Essentials Certification (GSEC) can also be beneficial.
Location State(s)
US-California-Palo AltoThe expected base pay range for this position in the location(s) listed above is $141,200.00 to $328,400.00 per year. Actual pay may vary depending on job-related knowledge, skills, and experience. Employees hired for this position may be eligible for a sign on payment, relocation package, and restricted stock units, which will be evaluated on a case-by-case basis. Subject to the terms and conditions of the plans in effect, hired applicants are also eligible for medical, dental, vision, life and disability benefits, and participation in the Company's 401(k) plan. The Employee is also eligible for up to 15 to 25 days of vacation per year (depending on the employee's tenure), up to 13 days of holidays throughout the calendar year, and up to 10 days of paid sick leave per year. Your benefits may be adjusted to reflect your location, employment status, duration of employment with the company, and position level. Benefits may also be pro-rated for those who start working during the calendar year.Equal Employment Opportunity at Tencent
As an equal opportunity employer, we firmly believe that diverse voices fuel our innovation and allow us to better serve our users and the community. We foster an environment where every employee of Tencent feels supported and inspired to achieve individual and common goals.
$141.2k-328.4k yearly Auto-Apply 60d+ ago
Lead Cyber Security Architect
Jpmorganchase 4.8
Plano, TX jobs
Join one of the world's most influential companies and leverage your skills in cybersecurity to have a real impact on the financial industry.
As a Lead Cybersecurity Architect at JPMorganChase within Cybersecurity and Technology Controls, you are an integral part of a team that works to develop high-quality cybersecurity solutions for various software applications on modern cloud-based technologies. As a core technical contributor, you are responsible for carrying out critical cybersecurity architecture solutions by identifying, creating, and communicating risk, mitigation options, and solutions across multiple technical areas within various business functions in support of project goals.
Job responsibilities
Partnering with the Engineering & Architecture teams to integrate security controls into platforms e.g. AWS, Application architecture, AI Solutions, etc.
Creating and propagating (developing ) security design patterns to support building consistent and secure technology solutions
Assisting and guiding engineering teams in the secure development of infrastructure services and products
Ensure security considerations are delivered in compliance with firm wide technology controls from the start and throughout the Software Development Lifecycle.
Developing extensible security solutions aligned to the product strategy in future developments.
Conduct security assessments, threat modeling, and vulnerability assessments of products and features to identify and prioritize security risks.
Required qualifications, capabilities, and skills
Formal training or certification and 5+ years 0f experience in Cybersecurity Architecture or related field.
Hands-on practical experience delivering enterprise-level cybersecurity solutions and controls . Advanced in one or more programming languages
Proficiency in automation and continuous delivery methods . Proficiency in all aspects of the Software Development Life Cycle
Advanced understanding of agile methodologies such as continuous integration and delivery, application resiliency, and security
Demonstrated proficiency in software applications and technical processes within a technical discipline (e.g., public cloud, artificial intelligence, machine learning, mobile, etc.)
Practical cloud native experience . Deep knowledge of one or more software and applications
Ability to evaluate current and emerging technologies to recommend the best solutions for the future state architecture
Experience effectively communicating with senior business leaders
Preferred qualifications, capabilities, and skills
Proven experience in a product security role with a track record of driving security initiatives. Strong knowledge of secure software development practices and common vulnerabilities (e.g., OWASP Top Ten).
Experience with threat modeling, risk assessment, and vulnerability management.
Familiarity with security frameworks (e.g., NIST Cybersecurity Framework), ATTACK MITRE and industry regulations (e.g., GDPR, HIPAA)
Certifications such as CISSP, CISSP-ISSAP, AWS Solutions Architect Associate, etc.
Bachelor's or Master's degree in Computer Science, Information Security, or a related field (or equivalent work experience).
$113k-139k yearly est. Auto-Apply 60d+ ago
Lead Cyber Security Architect
Jpmorgan Chase & Co 4.8
Plano, TX jobs
JobID: 210672620 JobSchedule: Full time JobShift: : Join one of the world's most influential companies and leverage your skills in cybersecurity to have a real impact on the financial industry. As a Lead Cybersecurity Architect at JPMorganChase within Cybersecurity and Technology Controls, you are an integral part of a team that works to develop high-quality cybersecurity solutions for various software applications on modern cloud-based technologies. As a core technical contributor, you are responsible for carrying out critical cybersecurity architecture solutions by identifying, creating, and communicating risk, mitigation options, and solutions across multiple technical areas within various business functions in support of project goals.
Job responsibilities
* Partnering with the Engineering & Architecture teams to integrate security controls into platforms e.g. AWS, Application architecture, AI Solutions, etc.
* Creating and propagating (developing ) security design patterns to support building consistent and secure technology solutions
* Assisting and guiding engineering teams in the secure development of infrastructure services and products
* Ensure security considerations are delivered in compliance with firm wide technology controls from the start and throughout the Software Development Lifecycle.
* Developing extensible security solutions aligned to the product strategy in future developments.
* Conduct security assessments, threat modeling, and vulnerability assessments of products and features to identify and prioritize security risks.
Required qualifications, capabilities, and skills
* Formal training or certification and 5+ years 0f experience in Cybersecurity Architecture or related field.
* Hands-on practical experience delivering enterprise-level cybersecurity solutions and controls . Advanced in one or more programming languages
* Proficiency in automation and continuous delivery methods . Proficiency in all aspects of the Software Development Life Cycle
* Advanced understanding of agile methodologies such as continuous integration and delivery, application resiliency, and security
* Demonstrated proficiency in software applications and technical processes within a technical discipline (e.g., public cloud, artificial intelligence, machine learning, mobile, etc.)
* Practical cloud native experience . Deep knowledge of one or more software and applications
* Ability to evaluate current and emerging technologies to recommend the best solutions for the future state architecture
* Experience effectively communicating with senior business leaders
Preferred qualifications, capabilities, and skills
* Proven experience in a product security role with a track record of driving security initiatives. Strong knowledge of secure software development practices and common vulnerabilities (e.g., OWASP Top Ten).
* Experience with threat modeling, risk assessment, and vulnerability management.
* Familiarity with security frameworks (e.g., NIST Cybersecurity Framework), ATTACK MITRE and industry regulations (e.g., GDPR, HIPAA)
* Certifications such as CISSP, CISSP-ISSAP, AWS Solutions Architect Associate, etc.
* Bachelor's or Master's degree in Computer Science, Information Security, or a related field (or equivalent work experience).
#CTC
$113k-139k yearly est. Auto-Apply 60d+ ago
Lead Cyber Security Architect
Jpmorgan Chase 4.8
Plano, TX jobs
Join one of the world's most influential companies and leverage your skills in cybersecurity to have a real impact on the financial industry. As a Lead Cybersecurity Architect at JPMorganChase within Cybersecurity and Technology Controls, you are an integral part of a team that works to develop high-quality cybersecurity solutions for various software applications on modern cloud-based technologies. As a core technical contributor, you are responsible for carrying out critical cybersecurity architecture solutions by identifying, creating, and communicating risk, mitigation options, and solutions across multiple technical areas within various business functions in support of project goals.
**Job responsibilities**
+ Partnering with the Engineering & Architecture teams to integrate security controls into platforms e.g. AWS, Application architecture, AI Solutions, etc.
+ Creating and propagating (developing ) security design patterns to support building consistent and secure technology solutions
+ Assisting and guiding engineering teams in the secure development of infrastructure services and products
+ Ensure security considerations are delivered in compliance with firm wide technology controls from the start and throughout the Software Development Lifecycle.
+ Developing extensible security solutions aligned to the product strategy in future developments.
+ Conduct security assessments, threat modeling, and vulnerability assessments of products and features to identify and prioritize security risks.
**Required qualifications, capabilities, and skills**
+ Formal training or certification and 5+ years 0f experience in Cybersecurity Architecture or related field.
+ Hands-on practical experience delivering enterprise-level cybersecurity solutions and controls . Advanced in one or more programming languages
+ Proficiency in automation and continuous delivery methods . Proficiency in all aspects of the Software Development Life Cycle
+ Advanced understanding of agile methodologies such as continuous integration and delivery, application resiliency, and security
+ Demonstrated proficiency in software applications and technical processes within a technical discipline (e.g., public cloud, artificial intelligence, machine learning, mobile, etc.)
+ Practical cloud native experience . Deep knowledge of one or more software and applications
+ Ability to evaluate current and emerging technologies to recommend the best solutions for the future state architecture
+ Experience effectively communicating with senior business leaders
**Preferred qualifications, capabilities, and skills**
+ Proven experience in a product security role with a track record of driving security initiatives. Strong knowledge of secure software development practices and common vulnerabilities (e.g., OWASP Top Ten).
+ Experience with threat modeling, risk assessment, and vulnerability management.
+ Familiarity with security frameworks (e.g., NIST Cybersecurity Framework), ATTACK MITRE and industry regulations (e.g., GDPR, HIPAA)
+ Certifications such as CISSP, CISSP-ISSAP, AWS Solutions Architect Associate, etc.
+ Bachelor's or Master's degree in Computer Science, Information Security, or a related field (or equivalent work experience).
\#CTC
JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
$113k-139k yearly est. 60d+ ago
SAP - Security Administrator
Toyota Motor Company 4.8
Plano, TX jobs
Who we are Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world's most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. We're looking for talented team members who want to Dream. Do. Grow. with us.
An important part of the Toyota family is Toyota Financial Services (TFS), the finance and insurance brand for Toyota and Lexus in North America. While TFS is a separate business entity, it is an essential part of this world-changing company- delivering on Toyota's vision to move people beyond what's possible. At TFS, you will help create best-in-class customer experience in an innovative, collaborative environment.
To save time applying, Toyota does not offer sponsorship of job applicants for employment-based visas or any other work authorization for this position at this time.
Who we're looking for
This role is responsible of the design, implementation, and maintenance of SAP security across multiple platforms. This role is critical to ensure secure access, compliance, and operational integrity of our SAP landscape, including S/4 HANA, Fiori, and MDG.
What you'll be doing
* Design and manage SAP security roles and authorizations across S/4 HANA, Fiori, Solution Manager, MDG.
* Configure and maintain SAP GRC Access Control modules (ARA, ARM, BRM).
* Implement and monitor segregation of duties (SOD) policies and controls.
* Troubleshoot and resolve authorization issues across SAP modules.
* Collaborate with functional and technical teams to align security with business processes.
* Support SAP upgrades, migrations, and transformation initiatives.
* Conduct periodic audits and ensure compliance with internal and external regulations.
* Document security procedures, role matrices, and access control policies.
What you bring
* Bachelor's degree in computer science, Information Systems, or related field.
* 10+ years of hands-on SAP security experience.
* Strong knowledge of SAP GRC, Fiori authorization concepts, and HANA DB security.
* Experience with SAP Activate methodology and UI/UX aspects of SAP Security.
* Familiarity with compliance frameworks (SOX, GDPR, etc.).
* Excellent problem-solving, communication, and documentation skills.
Added bonus if you have
* SAP Certified Technology Associate - System Security.
* Experience with SAP BTP and cloud-based security models.
* Knowledge of identity management tools and integration.
What We Bring
During your interview process, our team can fill you in on all the details of our industry-leading benefits and career development opportunities. A few highlights include:
* A work environment built on teamwork, flexibility, and respect.
* Professional growth and development programs to help advance your career, as well as tuition reimbursement.
* Team Member Vehicle Purchase Discount.
* Toyota Team Member Lease Vehicle Program (if applicable).
* Comprehensive health care and wellness plans for your entire family.
* Toyota 401(k) Savings Plan featuring a company match, as well as an annual retirement contribution from Toyota regardless of whether you contribute.
* Paid holidays and paid time off.
* Referral services related to prenatal services, adoption, childcare, schools, and more.
* Tax-Advantaged Accounts (Health Savings Account, Health Care FSA, Dependent Care FSA).
* Relocation assistance (if applicable).
Belonging at Toyota
Our success begins and ends with our people. We embrace all perspectives and value unique human experiences. Respect for all is our North Star. Toyota is proud to have 10+ different Business Partnering Groups across 100 different North American chapter locations that support team members' efforts to dream, do and grow without questioning that they belong.
Applicants for our positions are considered without regard to race, ethnicity, national origin, sex, sexual orientation, gender identity or expression, age, disability, religion, military or veteran status, or any other characteristics protected by law.
Have a question, need assistance with your application or do you require any special accommodations? Please send an email to *****************************.
$85k-111k yearly est. Auto-Apply 60d+ ago
Information Security Manager
Piermont Bank 3.8
New York jobs
About Us:
Piermont Bank is a commercial bank with a mission to serve growth companies. We are entrepreneur-led and tech-forward. We believe in being a partner for enterprising companies, acting as a catalyst for mid-market innovation and growth. Piermont's financial solutions and expertise empower our business community to thrive. At Piermont, we are purpose-driven, practical, and offer fast answers and flexible solutions, creating value for clients in today's fast-changing economy. For more information, visit *********************
The Role:
The Information Security Manager is responsible for developing, implementing, and maintaining the bank's information security program to protect sensitive data, systems, and infrastructure. This role ensures compliance with regulatory requirements, manages risk, and leads initiatives to safeguard the bank against cyber threats. The Information Security Manager will collaborate with IT, risk, and business teams to promote a culture of security awareness and drive continuous improvement in security practices.
Responsibilities:
Design, implement, and manage information security policies, procedures, and controls.
Perform initial and annual due diligence on critical vendors and BaaS Third Party vendors.
Monitor and respond to security incidents, vulnerabilities, and threats.
Conduct risk assessments, security audits, and compliance reviews.
Provide strategic risk guidance for IT projects, including the evaluation and recommendation of technical controls.Lead security awareness training and education programs for employees.
Collaborate with IT and business units to ensure secure system architecture and data protection.
Maintain up-to-date knowledge of regulatory requirements (e.g., FFIEC, GLBA) and ensure ongoing compliance.
Prepare reports for senior management on security posture, incidents, and risk mitigation activities.
Manage relationships with external vendors, auditors, and regulatory agencies.
Qualifications:
Bachelor's degree in Information Security, Computer Science, or a related field; relevant certifications (CISSP, CISM, or similar) strongly preferred.
Minimum of 7 years' experience in information security, preferably within banking or financial services.
Strong knowledge of security frameworks, regulatory requirements, and risk management practices.
Experience with security technologies, incident response, and vulnerability management.
Excellent analytical, problem-solving, and communication skills.
Ability to lead cross-functional teams and manage multiple priorities.
High ethical standards and commitment to confidentiality and compliance.
The hiring range for this position is $140,000 to $175,000 per year. The base pay actually offered will take into account internal equity and also may vary depending on the candidate's job-related knowledge, skills, and experience, among other factors. A bonus and/or incentives may be provided as part of the compensation package, in addition to the full range of medical, dental, vision, 401k, and other benefits.
Piermont Bank is an equal-opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We do not discriminate based upon race, religion, color, national origin, political affiliation, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability or other applicable legally protected characteristics.
$140k-175k yearly Auto-Apply 7d ago
Manager, U.S. Information Security & Control
Scotiabank 4.9
Dallas, TX jobs
Salary Range: -
Please note that the Salary Range shown is a guideline only. Salary offered may vary based on factors, including, but not limited to, the successful candidate's relevant knowledge, skills, and experience.
Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.
Global Banking and Markets
Global Banking and Markets (GBM) is a leading Canadian Capital Markets and Investment Banking business with a growing platform in the US and Latin America, operating globally for over 100 years. Scotiabank's strong U.S. presence provides our clients an important bridge to this key global market for trade and investment flows across the Americas and the world.
Global Banking & Markets provides a full range of investment banking, credit and risk management products and services relevant to the financing and strategic development needs of our clients. Our products include debt and equity financing, mergers & acquisitions, corporate banking, institutional equity sales, trading and research, fixed income products, derivatives, energy, foreign exchange and precious & metals. We also cross-sell the full range of wholesale products and services offered by the Scotiabank Group.
Be part of an innovative, Global Capital Markets and Investment Banking business with a unique geographic footprint that puts capital to work for our clients across industries! We work together to drive ambition for every future!
Purpose
The Cyber and Regulatory Audit Manager will participate and manage various aspects of information security, cyber risk assessments, and contribute to the overall success of the U.S. IS&C's governance, regulatory compliance, and risk program.
This role requires a seasoned professional with a strong background in information security, risk management, cybersecurity technology risk, compliance, policy, and governance. The IS&C Manager will assist with regulatory responses, audit requests, and participate in various cybersecurity risk assessments, risk mitigation strategies, and safeguard the Bank from potential informational security threats. The person will also play a role in reviewing and implementing security policies, procedures, and controls to protect the organization's data, systems, and networks.
The position will be expected to work closely with cross-functional teams to establish and maintain a robust cybersecurity and technology risk management program to proactively safeguard the organization from security threats by ensuring that vulnerabilities are identified, monitored, and treated, as well as assuring the Bank meets regulatory compliance.
What You'll Do
• Regulatory and Compliance Management (specific to cybersecurity):
- Participates in engagements with external regulatory and internal/3rd party auditors requests for information security and cybersecurity.
- Monitors, analyzes, and reports on cybersecurity requirements against relevant U.S. regulations and cybersecurity standards, such as NYSDFS, FFIEC, and NIST CSF.
- Provides support to IT&S auditors and compliance with respect to regulatory and audit information requests.
- Continuously monitors and assesses the effectiveness of security controls and processes.
- Reviews cybersecurity control library periodically and provides updates as needed.
- Participate in annual regulatory control testing exercises.
• Cybersecurity and Technology Risk Governance:
- Understand how the Bank's risk appetite and risk culture should be considered in day-to-day activities and decisions.
- Identifies and assesses cybersecurity and technology risks to ensure compliance with regulations and internal policies.
- Performs cybersecurity risk assessments and provide updates to US IS&C senior management.
• Risk and Issues Management:
- Reports and tracks all cybersecurity-related issues that pertain to audits, regulatory requirements, control testing, and other issues.
- Provides guidance to internal stakeholders on cybersecurity best practices.
- Prepares regular reports and presentation decks on risk management, gap assessment, cybersecurity-related issues for senior management and stakeholders.
- Monitors and tracks the progress of risk mitigation efforts related to cybersecurity.
- Participates in quarterly and annual Compliance Risk and Control Assessments for cybersecurity.
• Actively pursues effective and efficient operations of his/her respective areas in accordance with Scotiabank's Values, its Code of Conduct, and the Global Sales Principles, while ensuring the adequacy, adherence to and effectiveness of day-to-day business controls to meet obligations with respect to operational, compliance, AML/ATF/sanctions and conduct risk.
• Champions a high-performance environment and contributes to an inclusive work environment.
What You'll Bring
• Required 5+ years of experience as an Information Security Analyst or related cybersecurity field with technology risk background.
• Experience in IT key security controls/mechanisms and risk assessment concepts pertaining to complex data, application, and networking environments.
• Prior experience and knowledge with NYDFS, FFIEC, or other US financial regulatory audits.
• Have strong verbal and written communication skills in English with excellent individual project management and tracking skills.
• Cybersecurity related certification is preferred (CISSP, CCSP, CRISC, CISM).
• University degree or college diploma in a cybersecurity related field is preferred.
Interested?
If your experience is closely related but doesn't align perfectly with every qualification, we do encourage you to apply - you might be the right candidate for this or other roles at Scotiabank!
At Scotiabank, every employee is empowered to reach their fullest potential, respected for who they are and, embraced for their differences. That's why we work to grow and diversify talent and engage employees in a performance-oriented culture.
What's in it for you?
Scotiabank wants you to be able to bring your best self to work - and life, every day. With a focus on holistic well-being, our many flexible benefit programs are designed to help support your unique family, financial, physical, mental, and social health needs.
#Dallas
Location(s): United States : Texas : Dallas
Scotiabank is a leading bank in the Americas. Guided by our purpose: "for every future", we help our customers, their families and their communities achieve success through a broad range of advice, products and services, including personal and commercial banking, wealth management and private banking, corporate and investment banking, and capital markets.
At Scotiabank, we value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. If you require accommodation (including, but not limited to, an accessible interview site, alternate format documents, ASL Interpreter, or Assistive Technology) during the recruitment and selection process, please let our Recruitment team know. If you require technical assistance, please click here. Candidates must apply directly online to be considered for this role. We thank all applicants for their interest in a career at Scotiabank; however, only those candidates who are selected for an interview will be contacted.
Scotiabank is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other characteristic protected by federal, state, or local law.
$102k-124k yearly est. 25d ago
Manager, Information Security (Monitoring and Investigation)
TD Bank 4.5
New York, NY jobs
Hours: 37.5 Line of Business: Technology Solutions Pay Details: 91,200 - 136,800 CAD TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Job Description:
TD Bank is seeking a strategic and technically skilled Manager to join our Information Security team, focused on strengthening our fraud detection, authentication, and CIAM (Customer Identity and Access Management) capabilities. This role will lead the expansion of our monitoring and alerting footprint across enterprise platforms, ensuring control effectiveness, regulatory alignment, and rapid incident response in a complex financial environment.
Key Responsibilities
* Lead the design and deployment of monitoring and alerting strategies using Splunk, Datadog, Dynatrace, and Databricks across TD's digital ecosystem
* Define alert thresholds and tuning logic to minimize false positives while maintaining high sensitivity to fraud and access anomalies
* Oversee triage workflows for triggered alerts, coordinating with global teams to ensure timely investigation and resolution
* Develop governance frameworks for alert lifecycle management, including setup, ownership, escalation, and audit readiness
* Monitor control effectiveness across CIAM, authentication, and fraud domains, driving continuous improvement
* Collaborate with fraud and cybersecurity teams to support incident investigations and mitigation strategies
* Analyze alert trends and performance metrics to inform strategic improvements and risk prioritization
* Champion automation and workflow optimization for alert handling, reporting, and compliance documentation
* Ensure alignment with TD's enterprise risk management and regulatory obligations (e.g., OSFI, OCC)
* Provide mentorship and leadership within the security monitoring team, fostering a culture of accountability and innovation
Required Qualifications & Expertise
* 5+ years of experience in information security, CIAM/fraud detection, or observability engineering within financial services
* Hands-on expertise with Splunk, Datadog, Dynatrace, and Databricks for alert creation, analytics, and dashboarding
* Strong understanding of CIAM, authentication protocols, and fraud risk indicators in regulated environments
* Experience designing governance frameworks and control monitoring programs aligned with financial compliance standards
* Proven ability to lead cross-functional teams and drive incident response processes across geographies
* Excellent communication and documentation skills, with a strategic mindset and attention to regulatory detail
Who We Are:
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing - and so will you.
Our Total Rewards Package
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental well-being goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Learn more
Additional Information:
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.
Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements.
Colleague Development
If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD - and we're committed to helping you identify opportunities that support your goals.
Training & Onboarding
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.
Interview Process
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
Accommodation
Your accessibility is important to us. Please let us know if you'd like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process.
We look forward to hearing from you!
Language Requirement (Quebec only):
Sans Objet
$102k-126k yearly est. Auto-Apply 8d ago
Manager, Information Security (Monitoring and Investigation)
TD Bank 4.5
New York, NY jobs
Toronto, Ontario, Canada **Hours:** 37.5 **Line of Business:** Technology Solutions **Pay Details:** 91,200 - 136,800 CAD TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
**Job Description:**
TD Bank is seeking a strategic and technically skilled Manager to join our Information Security team, focused on strengthening our fraud detection, authentication, and CIAM (Customer Identity and Access Management) capabilities. This role will lead the expansion of our monitoring and alerting footprint across enterprise platforms, ensuring control effectiveness, regulatory alignment, and rapid incident response in a complex financial environment.
Key Responsibilities
- Lead the design and deployment of monitoring and alerting strategies using Splunk, Datadog, Dynatrace, and Databricks across TD's digital ecosystem
- Define alert thresholds and tuning logic to minimize false positives while maintaining high sensitivity to fraud and access anomalies
- Oversee triage workflows for triggered alerts, coordinating with global teams to ensure timely investigation and resolution
- Develop governance frameworks for alert lifecycle management, including setup, ownership, escalation, and audit readiness
- Monitor control effectiveness across CIAM, authentication, and fraud domains, driving continuous improvement
- Collaborate with fraud and cybersecurity teams to support incident investigations and mitigation strategies
- Analyze alert trends and performance metrics to inform strategic improvements and risk prioritization
- Champion automation and workflow optimization for alert handling, reporting, and compliance documentation
- Ensure alignment with TD's enterprise risk management and regulatory obligations (e.g., OSFI, OCC)
- Provide mentorship and leadership within the security monitoring team, fostering a culture of accountability and innovation
Required Qualifications & Expertise
- 5+ years of experience in information security, CIAM/fraud detection, or observability engineering within financial services
- Hands-on expertise with Splunk, Datadog, Dynatrace, and Databricks for alert creation, analytics, and dashboarding
- Strong understanding of CIAM, authentication protocols, and fraud risk indicators in regulated environments
- Experience designing governance frameworks and control monitoring programs aligned with financial compliance standards
- Proven ability to lead cross-functional teams and drive incident response processes across geographies
- Excellent communication and documentation skills, with a strategic mindset and attention to regulatory detail
**Who We Are:**
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing - and so will you.
**Our Total Rewards Package**
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental well-being goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Learn more (**********************************************************************
**Additional Information:**
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.
Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements.
**Colleague Development**
If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD - and we're committed to helping you identify opportunities that support your goals.
**Training & Onboarding**
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.
**Interview Process**
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
**Accommodation**
Your accessibility is important to us. Please let us know if you'd like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process.
We look forward to hearing from you!
**Language Requirement (Quebec only):**
Sans Objet
Federal law prohibits job discrimination based on race, color, sex, sexual orientation, gender identity, national origin, religion, age, equal pay, disability and genetic information.
$102k-126k yearly est. 57d ago
Information Security - Sr. Manager
Wells Fargo 4.6
Irving, TX jobs
About this role: Wells Fargo is seeking an Information Security Senior Manager in Technology as part of Cybersecurity. Learn more about the career areas and lines of business at wellsfargojobs.com. Wells Fargo is seeking an Information Security Senior Manager to join our Cyber Security team. This leadership role is essential for maintaining the successful operation and long-term stability of our organization. This position is responsible for setting strategic directions, overseeing program delivery, and driving continuous improvement including managing and enforcing web access security as well as email security enforcements, implementation and oversight of transport rules that protect sensitive data and ensure regulatory compliance. The leader also facilitates cross-departmental collaboration, supports talent development, and maintains adherence to industry standards.
In this role, you will:
* Manage and develop a team of individual contributors in roles to address security risks in the Web and Email domains.
* Maintain a broad awareness of the state of information security companywide.
* Identify, recommend, and drive complex and innovative solutions addressing cybersecurity risks inclusive of data loss concerns and mitigation strategies
* Set guidelines for compliance and risk management requirements for supported area and work with other stakeholders to implement key risk initiatives
* Advocate and adhere to Wells Fargo Risk Management Framework and practices
* Advise more experienced management on issues with high, critical impact
* Partnership with DLP to reduce risk to data exfiltration.
* Collaborate and influence all levels of professionals including more experienced managers
* Interface with Information Security Industry Leaders, Financial industry Leaders, Analysts and Regulators
* Manage allocation of people and financial resources for Information Security Analysis
* Develop and guide a culture of talent development to meet business objectives and strategy
Required Qualifications, US:
* 6+ years of Information Security Analysis experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education.
* 3+ years of Management experience
* 6+ years of people or project leadership
* 5 years of developing and implementing solutions
Desired Qualifications:
* Proxy, CASB, Email Security
* Broad set of information risk management practices
* CISSP or related Security certifications for on-prem or cloud.
Job Expectations:
* 10-20% Travel
Pay Range
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to achievements, skills, experience, or work location. The range listed is just one component of the compensation package offered to candidates.
$159,000.00 - $305,000.00
Benefits
Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs for an overview of the following benefit plans and programs offered to employees.
* Health benefits
* 401(k) Plan
* Paid time off
* Disability benefits
* Life insurance, critical illness insurance, and accident insurance
* Parental leave
* Critical caregiving leave
* Discounts and savings
* Commuter benefits
* Tuition reimbursement
* Scholarships for dependent children
* Adoption reimbursement
Posting End Date:
18 Jan 2026
* Job posting may come down early due to volume of applicants.
We Value Equal Opportunity
Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
Applicants with Disabilities
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo.
Drug and Alcohol Policy
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy to learn more.
Wells Fargo Recruitment and Hiring Requirements:
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.
$95k-118k yearly est. 2d ago
Information Security - Sr. Manager
Wells Fargo 4.6
Irving, TX jobs
**About this role:** Wells Fargo is seeking an Information Security Senior Manager in Technology as part of Cybersecurity. Learn more about the career areas and lines of business at wellsfargojobs.com. Wells Fargo is seeking an Information Security Senior Manager to join our Cyber Security team. This leadership role is essential for maintaining the successful operation and long-term stability of our organization. This position is responsible for setting strategic directions, overseeing program delivery, and driving continuous improvement including managing and enforcing web access security as well as email security enforcements, implementation and oversight of transport rules that protect sensitive data and ensure regulatory compliance. The leader also facilitates cross-departmental collaboration, supports talent development, and maintains adherence to industry standards.
**In this role, you will:**
+ Manage and develop a team of individual contributors in roles to address security risks in the Web and Email domains.
+ Maintain a broad awareness of the state of information security companywide.
+ Identify, recommend, and drive complex and innovative solutions addressing cybersecurity risks inclusive of data loss concerns and mitigation strategies
+ Set guidelines for compliance and risk management requirements for supported area and work with other stakeholders to implement key risk initiatives
+ Advocate and adhere to Wells Fargo Risk Management Framework and practices
+ Advise more experienced management on issues with high, critical impact
+ Partnership with DLP to reduce risk to data exfiltration.
+ Collaborate and influence all levels of professionals including more experienced managers
+ Interface with Information Security Industry Leaders, Financial industry Leaders, Analysts and Regulators
+ Manage allocation of people and financial resources for Information Security Analysis
+ Develop and guide a culture of talent development to meet business objectives and strategy
**Required Qualifications, US:**
+ 6+ years of Information Security Analysis experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education.
+ 3+ years of Management experience
+ 6+ years of people or project leadership
+ 5 years of developing and implementing solutions
**Desired Qualifications:**
+ Proxy, CASB, Email Security
+ Broad set of information risk management practices
+ CISSP or related Security certifications for on-prem or cloud.
**Job Expectations:**
+ 10-20% Travel
**Pay Range**
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to achievements, skills, experience, or work location. The range listed is just one component of the compensation package offered to candidates.
$159,000.00 - $305,000.00
**Benefits**
Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs (*************************************************************** for an overview of the following benefit plans and programs offered to employees.
+ Health benefits
+ 401(k) Plan
+ Paid time off
+ Disability benefits
+ Life insurance, critical illness insurance, and accident insurance
+ Parental leave
+ Critical caregiving leave
+ Discounts and savings
+ Commuter benefits
+ Tuition reimbursement
+ Scholarships for dependent children
+ Adoption reimbursement
**Posting End Date:**
18 Jan 2026
***** **_Job posting may come down early due to volume of applicants._**
**We Value Equal Opportunity**
Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
**Applicants with Disabilities**
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo (****************************************************************** .
**Drug and Alcohol Policy**
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy (********************************************************************** to learn more.
**Wells Fargo Recruitment and Hiring Requirements:**
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.
**Req Number:** R-514030