Senior Manager, Governance & Control (Toronto)

Senior Manager, Governance & Control (Toronto)

29 Sep
|
TD
|
Toronto

29 Sep

TD

Toronto

Work Location:Toronto, Ontario, CanadaHours:37.5Line of Business:Governance & ControlPay Details:$115,600 - $163,200 CADTD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.Job Description:The BISO will collaborate with Business, Risk, Privacy, and Technology teams to assess and analyze cybersecurity risks. The individual will provide security recommendations based on identified threats and risks, while considering compliance and regulatory requirements relevant to the Business Unit. Additionally, the individual will document and track identified risks and recommendations and obtain necessary risk and security approvals where required.The ideal candidate will demonstrate strong knowledge of modern application lifecycle practices, security architecture, cloud platforms, Generative AI tools, frontier models, API security, and application security standards such as OWASP, along with familiarity with frameworks such as ITIL, ISO, COBIT.What you will do:Serve as the primary information security liaison between the Business Unit and the IT.Translate Firm security policies, procedures, and standards into practical, risk-based controls for the Business Unit technology ecosystemProactively unblock and manage security, risk, and compliance issues by bringing together Advisory, Audit, ITS, Risk,



Security stakeholders, driving decisions, tracking actions, and ensuring issues are worked through to a clear and timely end stateMonitor compliance with security policies, standards, and control requirements; identify non-compliance, initiate remediation actions, and track exceptions through formal risk acceptance processes with appropriate compensating controlsAct as the BU key point of contact to understand security risks related to evolving business requirements for technology and solutions, and apply security-by-design principles to provide proactive, business-focused, guidance aligned with Firm’s security policies and standardsIn coordination with 1B team, assess and review business-requested software, tools, and AI capabilities (including SaaS and Generative AI solutions) for security, privacy, and compliance risks; lead intake, risk evaluation, and provide delegated approval or whitelisting where necessaryCollaborate with Project, Technology, Business, and Risk teams to gather requirements and support the Security Assessment Review (SAR) process, led by Platform SecurityDevelop and maintain a business unit Risk Register to track security risksCoordinate with stakeholders to ensure security requirements are documented and tracked throughout the project lifecycleGovernanceMaintain a robust understanding of Risk and Security policiesMaintain and validate a comprehensive inventory of business applications, tools, and technology assets (on-premises and cloud),



ensuring alignment with Firm security standardsCoordinate implementation and onboarding of new security programs and capabilitiesContribute to annual business planning processes and recommend initiatives to enhance security posture and operational efficiencyRepresent the business unit and provide key metrics in monthly security governance forumsMonitoringMonitor adherence to 1B security policies and standardsReview compliance reports generated by security tools and address identified issuesMaintain an accurate and up-to-date inventory of business applications (on-premises and cloud environments including Azure, AWS, and GCP)Monitor control effectiveness across all technology assets within the business unit, understand how to 'test' controlsWhat you bring to this role:Bachelor’s or Master’s degree in Information Technology, Computer Science, Cyber Security or a related field, or equivalent experience·10+ years of experience in application, technology, or solution design, architecture, development, and implementation10+ years of experience in secure design/architecture and project risk assessments across modern cloud and on-premises environments, including SaaS solutions5+ years of experience as a security practitioner in a leadership roleDeep understanding of modern application development ecosystems, open systems, Generative AI, and emerging technologiesStrong knowledge of information security standards and frameworks (e.G., CSA, ITIL, CCM, ISO 27001/27017/27018/42001, PCI DSS, NIST CSF, NIST 800-53) and data protection principlesExperience working with modern AI tools and capabilitiesProven experience in a consulting or advisory role, collaborating with Technology, Project, and Business stakeholdersHolding any of the following certifications would be considered an asset but not required: CISSP, CISA, CRISC, CISM, CGEITWho We Are:TD is one of the world's leading global financial institutions and is the fifth largest

📌 Senior Manager, Governance & Control (Toronto)
🏢 TD
📍 Toronto

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: senior manager, governance & control (toronto) / toronto

Subscribe to this job alert:

Get the latest job offers by email for: senior manager, governance & control (toronto) / toronto