Work Location:
Mount Laurel, New Jersey, United States of America
Hours:
40
Pay Details:
$98,160 - $159,270 USD
TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Line of Business:
Technology Solutions
Job Description:
You will be a core member of a high performing team of technology and risk professionals who utilize their subject matter expertise in Identity and Access Management (IAM), technology controls,and information and /cyber security risk management to provide effective guidance on a broad range of cybersecurity IAM-related policies, standards and controls in compliance with the Enterprise Risk and Control Framework. As part of the Platforms and Technology (P&T) Global Risk and Compliance (GR&C) Asset Assessment Centre of Excellence (COE) team, you will play a key role in ensuring required IAM risk and control assessments are completed efficiently and with quality/care
Meaningful work is fueled by meaningful performance and career development conversations with your manager. Here's some of what you may be asked to perform:
Update the risk and control assessments tracker on a regular basis, and prepare weekly, monthly, and quarterly risk and operationalreporting focused on IAM control testing status and findings.
Conduct required IAM risk and control assessments and evaluate control procedure appropriateness, and .design and operating effectiveness, including identity lifecycle, access management, privileged access, authentication and related controls.
Guide partners on a broad range of IAM and technology controls, as well as andinformation and cyber security programs, policies, and standards.
Contribute to the definition, development, and oversight of a global security management strategy and framework, with a focus on identity and access governance.
Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to both current and emerging IAM and technology and security threats against TDBG’s business.
Adhere to, advise, oversee, monitor and enforce enterprise frameworks and methodologies that relate to technology controls, IAMand information security activities.
Depth & Scope:
Participates on complex, comprehensive or large projects and initiatives
Acts as a lead expert resource in technology controls / information security for project teams, the business / organization and/or outside vendors
Has advanced knowledge of organization, technology controls / security/ risk issues
Education & Experience:
Bachelor's degree preferred
Information security certification / accreditation an asset
7+ years of relevant experience
Expert knowledge of IT security and risk disciplines and practices
Preferred Qualifications :
2+ years of relevant experience in the area of IT risk, and technology, and/or information security, IAM control assessment/testing, and/or data analysis in a large organization.
Working knowledge of IAM concepts, processes and common platforms (e.g. identity lifecycle management, PAM, MFA/SSO/federation, Active Directory / Entra ID, Ping Fed, CyberArk, and other equivalent IGA/PAM tools).
Information Security Certification/Accreditation (e.g., CISA, CRISC, CISSP, CISM, or equivalent) (an asset).
Skills to identify, assess, and monitor technology and IAM risks including information security, cyber security, access governance, resilience, operations/change management quality, data quality/security, and IT compliance.
Sound to advanced knowledge of business, technology controls, security, IAM, and risk issues.
Knowledge of industry standards and best practices in the areas of technology, information and , information and, cyber security,access governance, and risk management and governance(e.g. NIST, ISO 27001, COBIT, SOX/ITGC frameworks).
#TDCyberSecurity #Hybrid Onsite : Mount Laurel, NJ or Charlotte, NC
Physical Requirements:
Never: 0%; Occasional: 1-33%; Frequent: 34-66%; Continuous: 67-100%
Domestic Travel – Occasional
International Travel – Never
Performing sedentary work – Continuous
Performing multiple tasks – Continuous
Operating standard office equipment - Continuous
Responding quickly to sounds – Occasional
Sitting – Continuous
Standing – Occasional
Walking – Occasional
Moving safely in confined spaces – Occasional
Lifting/Carrying (under 25 lbs.) – Occasional
Lifting/Carrying (over 25 lbs.) – Never
Squatting – Occasional
Bending – Occasional
Kneeling – Never
Crawling – Never
Climbing – Never
Reaching overhead – Never
Reaching forward – Occasional
Pushing – Never
Pulling – Never
Twisting – Never
Concentrating for long periods of time – Continuous
Applying common sense to deal with problems involving standardized situations – Continuous
Reading, writing and comprehending instructions – Continuous
Adding, subtracting, multiplying and dividing – Continuous
The above statements are intended to describe the general nature and level of work being performed by people assigned to this job. They are not intended to be an exhaustive list of all responsibilities, duties and skills required. The listed or specified responsibilities & duties are considered essential functions for ADA purposes.