Lieu de travail : Toronto, Ontario, Canada
Horaire : 37.5
Secteur d’activité : Solutions technologiques
Détails de la rémunération : $108,800 - $163,200 CAD. Ce poste est temporairement admissible à une prime supérieure à l’échelle salariale publiée, qui est réévaluée chaque année. Nous vous encourageons à avoir une conversation franche avec votre recruteur qui sera en mesure de vous fournir des détails plus précis sur la rémunération pour ce poste.
Description du poste :
Responsibilities :
- Provide support for all Platform and Technology related regulatory and support interactions which include business, 2nd or 3rd LOD led exams.
- Provide oversight and governance over remediation, site visits, supervisory and inquiry activities to meet Regulatory commitments.
- Responsible for scoping, gathering evidence, responding to requests for information, meetings, clarification, observations and oversight (escalation and report support).
- Responsible for Regulatory Quarter meetings and Regulatory Annual Visit and Board Updates.
- Ensure team provide technical expertise and consultation to partners on a broad range of Technology Controls / Information Security programs / policies / standards and incidents for own specialized discipline / practice area.
- Oversee and assign expert resources on project consulting on assessment of risk, definition of required controls, appropriateness of implemented control procedures, vulnerability assessments and any other relevant areas.
- Conduct comprehensive risk and control design assessments for an application portfolio, articulate and document impact of control gaps to the business and the overall Bank, risk mitigation and remediation plans, remediation strategy document or provide info security solutions to address risks as applicable.
- Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to current and emerging security threats against TDBG’s business.
- Contribute to the definition, development, and oversight of a global network and endpoint security threat management strategy and framework.
- Provide guidance to the team in the development of on-going Technology Risk reporting, monitoring key trends and defining metrics to regularly measure control effectiveness for own area.
- Provide guidance to team and proactively work with Technology leaders / stakeholders and service / platform owners to ensure all technology controls, security components are integrated into the bank’s overall Enterprise Architecture and any control gaps are addressed.
- Consult on Regulatory compliance requirements, reporting and questions.
- Provide support and consulting in preparation for Audits and in composing management responses and appropriate remediation activities.
- Manage executive communications and reporting of Application Security and Customer Protection programs, risks, incidents and threats for the enterprise.
- Develop and implement a technology controls / security awareness and software security training curriculum for technology partners.
- Participate in computer security incident responses relevant to business (or enterprise wide) and represent respective function and Enterprise position to the business, and business needs to incident response team.
Requirements :
Solid risk management experience and knowledge.Experience with regulatory exam management and regulatory supervision activities.Skilled and high comfort level with regulatory issue management and regulatory reporting.Responsible for management of the overall team(s) providing both leadership and guidance.Strong Program Management skill set required for this role (planning cycles, status reporting etc).Audit background preferred.Previous people management.Deep expertise and knowledge of Bank, technology standards and leading large and varied teams of professionals.Future-focused, providing thought leadership.Excellent communication, negotiation and organizational skills specifically including the ability to present options in business terms to both IT and business staff including executives.University degree.Information security certification / accreditation an asset (CISA, ISACA CRISC, CISSP).LI-TECH
J-18808-Ljbffr