Work Location:Mississauga, Ontario, Canada
Hours:37.5
Line of Business:Enterprise Enabling Functions
Pay Details:$96,900 - $136,800 CAD
Job Description:Job Summary You will support the development, maintenance, and ongoing effectiveness of
CIAM Standards and control requirements that govern how customer identity and authentication controls are designed and implemented across the Bank.
Your work ensures CIAM standards are
clear, risk-
based, implementable, and defensible - enabling consistent adoption by Product and Technology teams while meeting regulatory and audit expectations.
Department Overview (Workday: Organization / Department Description)
PurposeCIAM Standards and Control Design establishes and maintains the control requirements that define how customer identity, authentication, and access protections are implemented across platforms, channels, and lines of business. This function ensures standards remain aligned to risk, regulation, and evolving threat landscapes while remaining practical for delivery teams.
People You will work closely with CIAM Product and Platform teams, Architecture, Engineering, Governance & Control partners (1B), Threat Intelligence, Fraud, BISOs, and Audit/Risk stakeholders to ensure standards are understood, adopted, and sustained.
Presence Our standards underpin customer authentication and identity controls across digital channels, third-party integrations, and multiple regulatory environments.
Key Accountabilities / Responsibilities - Maintain and evolve CIAM Standards, control requirements, and supporting guidance in alignment with risk appetite, regulatory expectations, and industry best practices.
- Translate regulatory, audit, and risk themes into clear, actionable CIAM control requirements.
- Partner with CIAM Product, Engineering, and Architecture teams to ensure standards are implementable and aligned with platform capabilities.
- Support interpretation of CIAM standards for application teams, including clarification of requirements, intent, and acceptable implementation patterns.
- Assess proposed exceptions, design deviations, or time-bound risk acceptances related to CIAM standards and provide risk-based recommendations.
- Monitor emerging threats and regulatory feedback to inform standards updates and control uplift priorities.
- Support governance forums by preparing materials that articulate control intent, rationale, and risk trade-offs.
- Contribute to periodic reviews and off-cycle updates of CIAM standards to address material risk or regulatory change.
- Maintain traceability between CIAM standards, enterprise policies, and external regulatory expectations.
Required Qualifications - 5+ years of experience in risk management, control design, governance, or technology standards in a regulated environment
- Experience developing, interpreting, or maintaining technology or security standards
- Strong understanding of risk-based control design and governance concepts
- Ability to translate technical and regulatory concepts into clear written requirements
- Strong stakeholder management and communication skills, including engagement with senior partners
Preferred Qualifications - Experience in financial services, digital identity, authentication, or access management domains
- Familiarity with regulatory frameworks (e.g., OSFI, OCC, NIST) as they relate to security controls
- Experience working with architecture, engineering, or platform teams
- Exposure to exception management, standards governance, or control lifecycle management
Language Requirement (Quebec only):Sans Objet