Talent.com
Information Security Specialist - Cyber Security Incident Response
Information Security Specialist - Cyber Security Incident ResponseThe Toronto-Dominion Bank (Canada) • Toronto, Ontario
No longer accepting applications
Information Security Specialist - Cyber Security Incident Response

Information Security Specialist - Cyber Security Incident Response

The Toronto-Dominion Bank (Canada) • Toronto, Ontario
30+ days ago
Job type
  • Full-time
Job description

Description

  • As an Information Security Specialist, you will play a critical role in detecting, investigating, and responding to cyber threats targeting TD.

  • You will work within the Cyber Security Incident Response Team (CSIRT), leading in complex. Investigations, developing detection and hunting techniques, and strengthening our incident response capabilities.

  • This role requires an experienced security professional with deep technical expertise in incident handling and analysis, malware investigation and containment, and cyber kill chain. You will be responsible for identifying and mitigating cyberthreats, collaborating with stakeholders across Protect Platform, ITS, and business teams to reduce risk and enhance our security posture.

The personnel in this role will work as part of a cyber security operations team responsible for carrying out 24x7 security monitoring operations. Operations are carried out on a rotating shift schedule than involves occasional on-call and/or weekend support.

Here are the essential job functions of this position:

  • Guide partners on a broad range of technology throughout incidents

  • Lead Cybersecurity Incidents and Cybersecurity events

  • Lead or contribute to containment and recovery plans for Cybersecurity Incidents

  • Contribute to the definition, development, and oversight of a global security management strategy and framework

  • Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to both current and emerging technology and security threats against TD businesses and network domains

  • Develop on-going operational enhancements for Cybersecurity including alerting, monitoring, and detection across multiple security domains

  • Adhere to internal policies and procedures, technology control standards, and applicable regulatory guidelines

  • Contribute to the review of internal processes and activities and assist in identifying potential opportunities for improvement

  • Adhere to, advise, oversee, monitor and enforce enterprise frameworks and methodologies that relate to technology controls / information security activities

  • Influence behavior to reduce risk and foster a strong technology risk management culture throughout the enterprise


Job Requirements

  • Here are the minimum requirements for this position:

  • University degree or equivalent hands-on work experience

  • 7+ years of hands-on relevant experience

  • Expert knowledge of Information Technology (IT) security and Incident Management practices across multiple cybersecurity domains.

  • Candidate must possess strong hands-on experience with traditional incidents response detection tools such as SIEM, EDR, XDR, Firewall, WAF, email proxies, NIDS, and equivalent

  • Candidate should possess advanced hands-on experience in all modern Operating Systems (Window/NIX/Cloud/Mobile)

  • Should have advanced scripting skills, can read data structures and software binary code

  • Advanced knowledge of Enterprise, technology controls, cybersecurity, and cyber risk issues

  • Strong communications, leadership and people building skills within Information Technology and/or Cybersecurity

  • A demonstrated ability to participate in complex, comprehensive and large projects

  • Has the ability to serve as a leading expert in technology controls and information security for project teams, the business, organization, and external vendors

  • Must be eligible for employment under regulatory standards applicable to the position


Preferred qualifications for this role:

  • Extensive experience as an Incident commander or manager working on complex information security and cybercrime-related incidents, requiring coordination with internal and external enterprise teams, as well as third parties and vendors, partners

  • Extensive experience working cybersecurity events and incidents related to network layer 7/application and internet facing attacks ·

  • Extensive experience briefing Senior Executives related to cybercrimes, information security incident triage, incident containment, and incident recovery

  • Extensive experience authoring complex communications associated with cybercrime and information security incident triage, incident containment, and incident recovery ·

  • Extensive experience authoring and maintaining electronic and operational playbooks, and other process/governance documentation.

  • Understanding of Security principles, techniques and technologies such as NIST Cybersecurity Framework, SANS Top 20 Critical Security Controls and OWASP Top 10, MITRE Attack.

  • Expert knowledge of SIEM and UEBA solutions such as Splunk, Azure Sentinel or similar, along with experience of CrowdStrike, MS Defender for Endpoint, XSOAR.

  • Expert knowledge of forensics tools such as Encase, Axiom, Autospy, OSForenscis, FTK imager or similar.

  • Certifications: GIAC (GCIA, GPEN, GWAPT, GCIH, GSEC, GCFA), CCNP, CCNA, CISSP, Cloud security

Who We Are:TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we strive to make every interaction, product, and experience remarkably human and refreshingly simple for over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to foster deeper relationships, ensure disciplined execution, and build a simpler, faster banking experience. TD is deeply committed to being a leader in client experience, that is why we believe that all colleagues, no matter where they work, are client facing. Together, we are reimagining what banking can be for our clients, colleagues and communities.Our Total Rewards Package
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental well-being goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Additional Information:
We’re delighted that you’re considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we’re committed to providing the support our colleagues need to thrive both at work and at home.Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements.
Colleague Development If you’re interested in a specific career path or are looking to build certain skills, we want to help you succeed. You’ll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities.If you’re passionate about helping clients and building deep, lasting relationships, TD offers diverse career paths where you can grow your expertise and make a meaningful impact. We're committed to your success and foster a respectful workplace where diverse perspectives are valued, everyone has fair opportunities to grow, and you can unlock your full potential to achieve your career goals. Here at TD, we hire and develop the best.Training & Onboarding
We will provide training and onboarding sessions to ensure that you’ve got everything you need to succeed in your new role.Interview Process
We’ll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
Accommodation
Your accessibility is important to us. Please let us know if you’d like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process.

We look forward to hearing from you!Language Requirement (Quebec only):Sans Objet
Create a job alert for this search

Information Security Specialist - Cyber Security Incident Response • Toronto, Ontario

Similar jobs

Cybersecurity Incident Response Specialist for Innovative Protection

Questrade Financial GroupToronto, ON, CA
Full-time

Lead cybersecurity initiatives as an Incident Response Specialist in a collaborative hybrid environment.Engage in proactive threat assessments and manage incident responses to ensure the organizati...Show more

 • Promoted

Information Security Specialist

DexianToronto, ON, CA
Full-time

This role is responsible for conducting detailed.The position is project-based and involves reviewing technology initiatives across multiple business units to identify risks, validate controls, and...Show more

 • Promoted

Cybersecurity Specialist for Incident Management

Hudbay Minerals Inc.Toronto, ON, CA
Full-time

Join as a Cybersecurity Specialist focused on incident management.Monitor and enhance security programs while supporting IT staff to maintain high user satisfaction.This role involves day-to-day se...Show more

 • Promoted

Manager, Security Incident Response

TechAlliance of Southwestern Ontario, London Economic Development CorporationToronto
Full-time

Security Incident Response Manager.This role is critical to protecting our business, data, and clients by ensuring rapid, effective, and efficient responses to cybersecurity incidents and threats.T...Show more

 • Promoted

Information Security Risk Advisory Consultant

Manulife FinancialToronto, ON, CA
Full-time

Lead the charge in information security as an Advisory Consultant focused on risk management.Assess technologies and facilitate compliance in a hybrid work environment, particularly regarding AI an...Show more

 • Promoted

Information Security Specialist in Cyber Defense

NumerisToronto, ON, CA
Full-time

Lead in cybersecurity initiatives as an Information Security Analyst.Monitor threats, manage vulnerabilities, and ensure compliance to safeguard sensitive data.This role emphasizes security awarene...Show more

 • Promoted

Information Security Compliance Specialist

Nestlé SAToronto, ON, CA
Full-time

Lead security compliance initiatives as an Information Security Compliance Specialist.Drive the management of ISMS ensuring adherence to regulatory frameworks and security standards in a hybrid wor...Show more

 • Promoted

Information Security Lead

Fluid - Solutions de Talents/Workforce SolutionsToronto, ON, CA
Permanent

Job Title: Information Security Lead.Our client alaw firm is seeking an Information Security Lead responsible for the security, integrity, and availability of information assets.This role drives th...Show more

 • Promoted

Information Security Specialist

Insight GlobalToronto, ON, CA
Full-time

Get AI-powered advice on this job and more exclusive features.Insight Global provided pay range.This range is provided by Insight Global.Your actual pay will be based on your skills and experience ...Show more

 • Promoted

AI Incident Response Specialist

AlignerrToronto, ON, CA
Full-time

Drive AI security innovation as an Incident Response Analyst.Utilize SOC expertise to analyze threats and enhance AI detection systems while enjoying a flexible, fully remote schedule.This role see...Show more

 • Promoted

Incident Response Specialist

Astellas PharmaMarkham
Full-time

Astellas is a global life sciences company committed to turning innovative science into VALUE for patients.We provide transformative therapies in disease areas that include oncology, ophthalmology,...Show more

 • Promoted

Cyber Security Incident Response Expert

Astellas PharmaMarkham, York Region, CA
Full-time

Protect vital information systems as a Cyber Security Incident Response Expert in a remote capacity.Lead coordinated responses to cyber incidents using industry frameworks, collaborating across mul...Show more

 • Promoted

Expert Information Security Specialist for Cyber Risk Management

People CorporationToronto, ON, CA
Full-time

Drive security initiatives as an Information Security Specialist, protecting critical assets.Utilize your expertise in cybersecurity while collaborating with business and IT stakeholders in a hybri...Show more

 • Promoted

Specialist Cyber Defence

ipss inc.Toronto, ON, CA
Full-time +1

Office of the Chief Information Security Officer.Monday to Friday, 35 hours work week.To support the execution of the Office of the CISO’s mandate, cyber vision, and strategy by assisting with tech...Show more

 • Promoted

Lead Cybersecurity Specialist for Incident Response and Strategy

Hack The BoxToronto, Ontario, Canada
Full-time

Step into a leadership role as a Cybersecurity Specialist focused on Incident Response.Transform your expertise into actionable strategies that mitigate threats and enhance security resilience.In t...Show more

 • Promoted

Information Security Specialist

TD BankToronto, ON, CA
Full-time

Nous et certains tiers sélectionnés utilisons des technologies et des outils de suivi (témoins) pour recueillir des renseignements sur votre utilisation de ce site Web.Les témoins essentiels soutie...Show more

 • Promoted

Senior Cyber Security Architect — Incident Readiness Lead

Rubicon PathToronto, ON, CA
Full-time

A consulting firm is seeking a Senior Cyber Security Specialist in Toronto to lead cyber tabletop exercises and enhance the incident response readiness for Ontario's ministries.The ideal candidate ...Show more

 • Promoted

Hybrid Digital Security Specialist: Incident Response

IAMGOLD CorporationToronto, ON, CA
Full-time

A leading Canadian mining company is seeking a Digital Security Specialist to bolster its cybersecurity operations.This role involves coordinating incident responses, managing vulnerabilities, and ...Show more