123 Information Security jobs in Canada

Chief Information Security Officer

H2B Montréal, Quebec Donna Cona Inc.

Posted today

Job Viewed

Tap Again To Close

Job Description

Reference #: 7879
Location: Nunavut
Type: Sub-contract

Donna Cona Inc. is currently seeking a Chief Information Security Officer, for one of our key clients. The candidate will be a highly skilled and experienced Subject Matter Expert (SME) in Cybersecurity to lead the development of a comprehensive security program and operational plan. This critical role will support the protection of systems, data, and infrastructure by designing robust security frameworks, policies, and processes tailored to meet the unique needs of the client. The ideal candidate will bring extensive expertise in cybersecurity and IT governance, with a proven ability to deliver practical and scalable solutions. This role is instrumental in ensuring client systems and initiatives adhere to security best practices, safeguarding the integrity and confidentiality of client operations and services.

Key Duties and Responsibilities:

  • Program Development:
    • Design and establish a comprehensive cybersecurity program, including policies, standards, procedures, and guidelines;
    • Develop a governance framework to support compliance with relevant laws, regulations, and best practices; and
    • Conduct a detailed risk assessment to identify vulnerabilities and prioritize mitigation strategies.
  • Operational Planning:
    • Create an operational plan for implementing the security program, outlining timelines, resource requirements, and key milestones;
    • Define roles and responsibilities for cybersecurity within the organization, including staffing recommendations; and
    • Develop an incident response plan and disaster recovery protocols.
  • Participation in Projects:
    • Collaborate with project teams to ensure new solutions, systems, and technologies are designed and implemented in alignment with security best practices and standard;
    • Conduct security reviews and assessments during project lifecycles to identify and address risks; and
    • Provide expert recommendations to integrate security into the design, development, and deployment phases of initiatives.
  • Stakeholder Engagement:
    • Work with departments, agencies, and third-party stakeholders to align security initiatives with operational goals; and
    • Provide expert guidance to senior management and policymakers on emerging threats and strategic security priorities.
  • Training and Awareness:
    • Develop and implement a cybersecurity training and awareness program for employees at all levels; and
    • Promote a culture of security within the workforce.
  • Monitoring and Continuous Improvement:
    • Establish mechanisms for continuous monitoring and reporting on the security program's effectiveness; and
    • Stay abreast of new threats, vulnerabilities, and advancements in security technologies to ensure the program remains current and effective.
  • Technical Expertise:
    • Recommend and assist in deploying security tools and technologies, such as firewalls, intrusion detection systems, and encryption; and
    • Oversee the design of secure architecture for IT systems and infrastructure.
  • Compliance and Reporting:
    • Ensure compliance with applicable cybersecurity regulations, standards, and frameworks (e.g., ISO 27001, NIST, GDPR, or local regulations); and
    • Prepare detailed reports and presentations for executive leadership and external audits.

Donna Cona is committed to a diverse, equitable and inclusive workplace. We are an equal opportunity employer. We don't discriminate on the basis of gender, gender identity, sexual orientation, race, national origin, disability, age or any other protected status. We are committed to maintaining a barrier free recruitment process by providing equal employment opportunities through recruiting and retention of individuals.

  • To apply for this position please complete the form below.
  • Name First Last
    • Email
    • Daytime Phone
    • City
    • Province/State
    • Attach Cover Letter and Resume Max. file size: 20 MB. Please note that these must be in one document, and can be in .docx, .doc, .pdf or .rtf formats
This advertiser has chosen not to accept applicants from your region.

Chief Information Security Officer

Donna Cona Inc.

Posted today

Job Viewed

Tap Again To Close

Job Description

Reference #: 7879
Location: Nunavut
Type: Sub-contract

Donna Cona Inc. is currently seeking a Chief Information Security Officer, for one of our key clients. The candidate will be a highly skilled and experienced Subject Matter Expert (SME) in Cybersecurity to lead the development of a comprehensive security program and operational plan. This critical role will support the protection of systems, data, and infrastructure by designing robust security frameworks, policies, and processes tailored to meet the unique needs of the client. The ideal candidate will bring extensive expertise in cybersecurity and IT governance, with a proven ability to deliver practical and scalable solutions. This role is instrumental in ensuring client systems and initiatives adhere to security best practices, safeguarding the integrity and confidentiality of client operations and services.

Key Duties and Responsibilities:

  • Program Development:
    • Design and establish a comprehensive cybersecurity program, including policies, standards, procedures, and guidelines;
    • Develop a governance framework to support compliance with relevant laws, regulations, and best practices; and
    • Conduct a detailed risk assessment to identify vulnerabilities and prioritize mitigation strategies.
  • Operational Planning:
    • Create an operational plan for implementing the security program, outlining timelines, resource requirements, and key milestones;
    • Define roles and responsibilities for cybersecurity within the organization, including staffing recommendations; and
    • Develop an incident response plan and disaster recovery protocols.
  • Participation in Projects:
    • Collaborate with project teams to ensure new solutions, systems, and technologies are designed and implemented in alignment with security best practices and standard;
    • Conduct security reviews and assessments during project lifecycles to identify and address risks; and
    • Provide expert recommendations to integrate security into the design, development, and deployment phases of initiatives.
  • Stakeholder Engagement:
    • Work with departments, agencies, and third-party stakeholders to align security initiatives with operational goals; and
    • Provide expert guidance to senior management and policymakers on emerging threats and strategic security priorities.
  • Training and Awareness:
    • Develop and implement a cybersecurity training and awareness program for employees at all levels; and
    • Promote a culture of security within the workforce.
  • Monitoring and Continuous Improvement:
    • Establish mechanisms for continuous monitoring and reporting on the security program's effectiveness; and
    • Stay abreast of new threats, vulnerabilities, and advancements in security technologies to ensure the program remains current and effective.
  • Technical Expertise:
    • Recommend and assist in deploying security tools and technologies, such as firewalls, intrusion detection systems, and encryption; and
    • Oversee the design of secure architecture for IT systems and infrastructure.
  • Compliance and Reporting:
    • Ensure compliance with applicable cybersecurity regulations, standards, and frameworks (e.g., ISO 27001, NIST, GDPR, or local regulations); and
    • Prepare detailed reports and presentations for executive leadership and external audits.

Donna Cona is committed to a diverse, equitable and inclusive workplace. We are an equal opportunity employer. We don't discriminate on the basis of gender, gender identity, sexual orientation, race, national origin, disability, age or any other protected status. We are committed to maintaining a barrier free recruitment process by providing equal employment opportunities through recruiting and retention of individuals.

  • To apply for this position please complete the form below.
  • Name First Last
    • Email
    • Daytime Phone
    • City
    • Province/State
    • Attach Cover Letter and Resume Max. file size: 20 MB. Please note that these must be in one document, and can be in .docx, .doc, .pdf or .rtf formats
This advertiser has chosen not to accept applicants from your region.

CISO - Chief Information Security Officer

New
Iqaluit, Nunavut Donna Cona Inc.

Posted today

Job Viewed

Tap Again To Close

Job Description

Type: Sub-contract
Donna Cona Inc. is currently seeking a Chief Information Security Officer, for one of our key clients. The candidate will be a highly skilled and experienced Subject Matter Expert (SME) in Cybersecurity to lead the development of a comprehensive security program and operational plan. This critical role will support the protection of systems, data, and infrastructure by designing robust security frameworks, policies, and processes tailored to meet the unique needs of the client. The ideal candidate will bring extensive expertise in cybersecurity and IT governance, with a proven ability to deliver practical and scalable solutions. Program Development:
Design and establish a comprehensive cybersecurity program, including policies, standards, procedures, and guidelines;
Conduct a detailed risk assessment to identify vulnerabilities and prioritize mitigation strategies.
Operational Planning:
Define roles and responsibilities for cybersecurity within the organization, including staffing recommendations; Participation in Projects:
Collaborate with project teams to ensure new solutions, systems, and technologies are designed and implemented in alignment with security best practices and standard;
Conduct security reviews and assessments during project lifecycles to identify and address risks; Provide expert recommendations to integrate security into the design, development, and deployment phases of initiatives.
Provide expert guidance to senior management and policymakers on emerging threats and strategic security priorities.
Training and Awareness:
Develop and implement a cybersecurity training and awareness program for employees at all levels; Monitoring and Continuous Improvement:
Technical Expertise:
Oversee the design of secure architecture for IT systems and infrastructure.
Ensure compliance with applicable cybersecurity regulations, standards, and frameworks (e.g., ISO 27001, NIST, GDPR, or local regulations); We don’t discriminate on the basis of gender, gender identity, sexual orientation, race, national origin, disability, age or any other protected status. Daytime Phone *

This advertiser has chosen not to accept applicants from your region.

Chief Information Security Officer (CISO)

New
Iqaluit, Nunavut Donna Cona Inc.

Posted today

Job Viewed

Tap Again To Close

Job Description

Type: Sub-contract
Donna Cona Inc. is currently seeking a Chief Information Security Officer, for one of our key clients. The candidate will be a highly skilled and experienced Subject Matter Expert (SME) in Cybersecurity to lead the development of a comprehensive security program and operational plan. This critical role will support the protection of systems, data, and infrastructure by designing robust security frameworks, policies, and processes tailored to meet the unique needs of the client. The ideal candidate will bring extensive expertise in cybersecurity and IT governance, with a proven ability to deliver practical and scalable solutions. Program Development:
Design and establish a comprehensive cybersecurity program, including policies, standards, procedures, and guidelines;
Conduct a detailed risk assessment to identify vulnerabilities and prioritize mitigation strategies.
Operational Planning:
Define roles and responsibilities for cybersecurity within the organization, including staffing recommendations; Participation in Projects:
Collaborate with project teams to ensure new solutions, systems, and technologies are designed and implemented in alignment with security best practices and standard;
Conduct security reviews and assessments during project lifecycles to identify and address risks; Provide expert recommendations to integrate security into the design, development, and deployment phases of initiatives.
Provide expert guidance to senior management and policymakers on emerging threats and strategic security priorities.
Training and Awareness:
Develop and implement a cybersecurity training and awareness program for employees at all levels; Monitoring and Continuous Improvement:
Technical Expertise:
Oversee the design of secure architecture for IT systems and infrastructure.
Ensure compliance with applicable cybersecurity regulations, standards, and frameworks (e.g., ISO 27001, NIST, GDPR, or local regulations); We don’t discriminate on the basis of gender, gender identity, sexual orientation, race, national origin, disability, age or any other protected status. Daytime Phone *

This advertiser has chosen not to accept applicants from your region.

Chief Information Security Officer

New
Iqaluit, Nunavut Donna Cona Inc.

Posted today

Job Viewed

Tap Again To Close

Job Description

Type: Sub-contract
Donna Cona Inc. is currently seeking a Chief Information Security Officer, for one of our key clients. The candidate will be a highly skilled and experienced Subject Matter Expert (SME) in Cybersecurity to lead the development of a comprehensive security program and operational plan. This critical role will support the protection of systems, data, and infrastructure by designing robust security frameworks, policies, and processes tailored to meet the unique needs of the client. The ideal candidate will bring extensive expertise in cybersecurity and IT governance, with a proven ability to deliver practical and scalable solutions. Program Development:
Design and establish a comprehensive cybersecurity program, including policies, standards, procedures, and guidelines;
Conduct a detailed risk assessment to identify vulnerabilities and prioritize mitigation strategies.
Operational Planning:
Define roles and responsibilities for cybersecurity within the organization, including staffing recommendations; Participation in Projects:
Collaborate with project teams to ensure new solutions, systems, and technologies are designed and implemented in alignment with security best practices and standard;
Conduct security reviews and assessments during project lifecycles to identify and address risks; Provide expert recommendations to integrate security into the design, development, and deployment phases of initiatives.
Provide expert guidance to senior management and policymakers on emerging threats and strategic security priorities.
Training and Awareness:
Develop and implement a cybersecurity training and awareness program for employees at all levels; Monitoring and Continuous Improvement:
Technical Expertise:
Oversee the design of secure architecture for IT systems and infrastructure.
Ensure compliance with applicable cybersecurity regulations, standards, and frameworks (e.g., ISO 27001, NIST, GDPR, or local regulations); We don’t discriminate on the basis of gender, gender identity, sexual orientation, race, national origin, disability, age or any other protected status. Daytime Phone *

This advertiser has chosen not to accept applicants from your region.

Director, Senior Cloud Security Architect ( Global T&K)

New
Toronto, Ontario KPMG LLP Canada

Posted today

Job Viewed

Tap Again To Close

Job Description

Overview
At KPMG, you'll join a team of diverse and dedicated problem solvers, connected by a common cause: turning insight into opportunity for clients and communities around the world.
As a

Senior Cloud Security Architect , you will lead the design and implementation of secure cloud solutions across the enterprise. You will provide expert security consulting, develop scalable frameworks, and embed security into every stage of the solution lifecycle—from design through deployment.
What you will do
Security architecture engagement : Partner with solution teams to understand business drivers, assess application portfolios, and deliver secure architecture designs. Ensure alignment with enterprise security standards and business objectives.
Security workstream leadership : Define, manage, and track security workstream tasks. Ensure timely execution of deliverables and integration of security controls into project timelines and solution roadmaps.
Architecture artifacts development : Create and maintain high-quality security artifacts including reference architectures, design patterns, and whitepapers. Promote reuse and consistency across solution implementations.
Team leadership and mentoring : Provide guidance and mentorship to engineers, analysts, and developers. Foster a security-first mindset and ensure secure design principles are embedded in all phases of solution delivery.
Threat modeling and testing : Lead threat modeling exercises to proactively identify risks. Coordinate external penetration testing and ensure remediation of identified vulnerabilities.
Cross-functional collaboration : Work closely with architecture, engineering, and business teams to ensure a holistic and systemic approach to security. Build strong relationships to drive alignment and shared accountability.
What you bring to the role
Computer Science, Information Technology, or Engineering degree from an accredited college or university, or equivalent work experience.
Minimum 10-12 years of relevant application development and IT security experience.
Professional certifications such as CISSP, CISM, Azure Cybersecurity Expert, or equivalent are highly desirable.
Experience with security assessment tools, techniques, and methodologies.
Experience in integrating security into CI/CD solutions, enabling a secure delivery model (e.g., GitHub Actions).
Working knowledge of application security standards such as OWASP.
Ability to perform risk analysis and document risks and mitigating controls within application environments.
Understanding of threat models and their role in securing applications and environments.
Good knowledge of security design principles for building application systems.
Role model qualities, promoting a culture of good conduct and contributing to maintaining such a culture.
Fast learner and critical thinker with excellent problem-solving and presentation skills.
Our Values, The KPMG Way
Integrity — we do what is right | Excellence — we never stop learning and improving | Courage — we think and act boldly | Together — we respect each other and draw strength from our differences | For Better — we do what matters
KPMG in Canada is a proud equal opportunities employer committed to creating a respectful, inclusive, and barrier-free workplace that allows all our people to reach their full potential. We believe a diverse workforce is key to our success and encourage you to bring your whole self to work. All qualified candidates are welcome to apply.
Adjustments and accommodations are available throughout the recruitment process.
We are committed to fostering an inclusive recruitment process, offering adjustments (informal requests) and accommodations (formal requests) tailored to individual needs. For support, contact KPMG’s Employee Relations Service team at 1- .
J-18808-Ljbffr #J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Chief Information Security Officer

New
Iqaluit, Nunavut Donna Cona Inc.

Posted today

Job Viewed

Tap Again To Close

Job Description

Reference #: 7879
Location: Nunavut
Type: Sub-contract
Donna Cona Inc. is currently seeking a Chief Information Security Officer, for one of our key clients. The candidate will be a highly skilled and experienced Subject Matter Expert (SME) in Cybersecurity to lead the development of a comprehensive security program and operational plan. This critical role will support the protection of systems, data, and infrastructure by designing robust security frameworks, policies, and processes tailored to meet the unique needs of the client. The ideal candidate will bring extensive expertise in cybersecurity and IT governance, with a proven ability to deliver practical and scalable solutions. This role is instrumental in ensuring client systems and initiatives adhere to security best practices, safeguarding the integrity and confidentiality of client operations and services.
Key Duties and Responsibilities:
Program Development: Design and establish a comprehensive cybersecurity program, including policies, standards, procedures, and guidelines;
Develop a governance framework to support compliance with relevant laws, regulations, and best practices; and
Conduct a detailed risk assessment to identify vulnerabilities and prioritize mitigation strategies. Operational Planning: Create an operational plan for implementing the security program, outlining timelines, resource requirements, and key milestones;
Define roles and responsibilities for cybersecurity within the organization, including staffing recommendations; and
Develop an incident response plan and disaster recovery protocols. Participation in Projects: Collaborate with project teams to ensure new solutions, systems, and technologies are designed and implemented in alignment with security best practices and standard;
Conduct security reviews and assessments during project lifecycles to identify and address risks; and
Provide expert recommendations to integrate security into the design, development, and deployment phases of initiatives. Stakeholder Engagement: Work with departments, agencies, and third-party stakeholders to align security initiatives with operational goals; and
Provide expert guidance to senior management and policymakers on emerging threats and strategic security priorities. Training and Awareness: Develop and implement a cybersecurity training and awareness program for employees at all levels; and
Promote a culture of security within the workforce. Monitoring and Continuous Improvement: Establish mechanisms for continuous monitoring and reporting on the security program’s effectiveness; and
Stay abreast of new threats, vulnerabilities, and advancements in security technologies to ensure the program remains current and effective. Technical Expertise: Recommend and assist in deploying security tools and technologies, such as firewalls, intrusion detection systems, and encryption; and
Oversee the design of secure architecture for IT systems and infrastructure. Compliance and Reporting: Ensure compliance with applicable cybersecurity regulations, standards, and frameworks (e.g., ISO 27001, NIST, GDPR, or local regulations); and
Prepare detailed reports and presentations for executive leadership and external audits. Donna Cona is committed to a diverse, equitable and inclusive workplace. We are an equal opportunity employer. We don’t discriminate on the basis of gender, gender identity, sexual orientation, race, national origin, disability, age or any other protected status. We are committed to maintaining a barrier free recruitment process by providing equal employment opportunities through recruiting and retention of individuals.
To apply for this position please complete the form below.
Name First Last
Email *
Daytime Phone *
City *
Province/State *
Attach Cover Letter and Resume * Max. file size: 20 MB. Please note that these must be in one document, and can be in .docx, .doc, .pdf or .rtf formats #J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Information security Jobs in Canada !

Sr. Consultant, Information Security Engineer (Ms Purview)

Toronto, Ontario CIBC

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

Sr. Consultant, Information Security Engineer (Ms Purview)

Join to apply for the Sr. Consultant, Information Security Engineer (Ms Purview) role at CIBC

Sr. Consultant, Information Security Engineer (Ms Purview)

2 days ago Be among the first 25 applicants

Join to apply for the Sr. Consultant, Information Security Engineer (Ms Purview) role at CIBC

We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.
At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute.
To learn more about CIBC, please visit CIBC.com
What You’ll Be Doing
As a member of CIBC’s Security Engineering team, you’ll play a crucial role in all matters of Information Security. You’ll focus on assessing projects for security risks by examining and interpreting requirement documents and architecture diagrams. We are looking for an action-oriented, collaborative and innovative individual that would be responsible for designing, building, and deploying Microsoft Purview Data Loss Prevention solutions. The Senior Consultant Information Security Engineer will also be responsible for completing proof-of-concept and proof-of-technology exercises on new security offerings as well as designing and implementing successful solutions. This role is an excellent opportunity to join a world class team within a great organization and assist with meeting a large enterprise's growing Information Security needs. This role requires to be on call for a week once every four months.
At CIBC we enable the work environment most optimal for you to thrive in your role. Details on your work arrangement (proportion of on-site and remote work) will be discussed at the time of your interview.
How You’ll Succeed

  • Information Security Engineering– Designing and building integrated Information Security solutions that meet the needs of a large enterprise. Constantly evaluating our security posture and staying up to date with relevant industry perspectives.
  • Perimeter Security Engineering- Maintaining and supporting perimeter security tools including Microsoft Purview Data Loss Prevention (DLP), Microsoft Cloud Access Security Brokers (CASB) and Microsoft Defender for Cloud (CSPM).
  • Perimeter Security Design- Identifying current and emerging perimeter security. Sourcing and implementing new perimeter security solutions to better protect the organization.
  • Leadership & Communication –Collaborate with senior leaders across the company and make informed recommendations to enhance information system security. Weigh business needs against security concerns and provide risk-based recommendations to improve information systems security, which are practical and achievable, thereby allowing the Lines of Business to make informed risk decisions
Who You Are
  • You can demonstrate 5+ years' experience with Microsoft Purview DLP, Microsoft Defender for Cloud Apps (CASB), & Defender for Cloud Security Posture Management (CSPM). It is an asset if you have knowledge of data loss prevention policies, data sensitivity classifications, cloud access security brokers, cloud security posture management, security hardening of infrastructure, and audit events logging.
  • You have Engineering experience with Microsoft Purview DLP, Microsoft Azure infrastructure Deployments/support and Security principles. It is an asset if you have experience with Windows & Linux Platforms, knowledge of cloud storage architecture, firewalls, Azure Network Security Groups (NSG), Azure Role Based Access Control (RBAC), Azure Enterprise Applications, Azure Resource Graph, APIs, conditional access policies, and other network technologies.
  • You’re a certified professional. You have current accreditation and good standing in CISSP, CCSP or CISM. It’s an asset if you have any technical certifications in Azure, AWS, or GCP.
  • You have a degree/diploma in Computer Science, Engineering or a related field.
  • Values matter to you. You bring your real self to work and you live our values - trust, teamwork, and accountability.
What CIBC Offers
At CIBC, your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential. We aspire to give you a career, rather than just a paycheck.
  • We work to recognize you in meaningful, personalized ways including a competitive salary, incentive pay, banking benefits, a benefits program*, defined benefit pension plan*, an employee share purchase plan, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program.
  • Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients.
  • We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development.
  • Subject to plan and program terms and conditions
What You Need To Know
  • CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience. If you need accommodation, please contact
  • You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit.
  • We may ask you to complete an attribute-based assessment and other skills tests (such as simulation, coding, French proficiency, MS Office). Our goal for the application process is to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us.
Job Location
Toronto-81 Bay, 32nd Floor
Employment Type
Regular
Weekly Hours
37.5
Skills
Data Loss Prevention (DLP), Enterprise Information Security Architecture, Information Security Compliance, Information Security Consulting, Information Security Engineering, Microsoft Windows Defender, Payment Card Industry Data Security Standard (PCI DSS)

Seniority level

  • Seniority level

    Mid-Senior level

Employment type

  • Employment type

    Full-time

Job function

  • Job function

    Information Technology
  • Industries

    Banking

Referrals increase your chances of interviewing at CIBC by 2x

Sign in to set job alerts for “Senior Information Security Consultant” roles.

Senior Information Security Officer, SVP

Senior Director, Information Security Officer

Business Information Security Officer Manager, Global

Data Security Manager, Information Security, IT

IT Internal Audit Assistant Manager (Project Security)

Information Security Analyst - 6 month contract

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Penetration Tester Senior Associate, Global

Toronto, Ontario PwC Canada

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

Join to apply for the Penetration Tester Senior Associate, Global role at PwC Canada

2 days ago Be among the first 25 applicants

Join to apply for the Penetration Tester Senior Associate, Global role at PwC Canada

Get AI-powered advice on this job and more exclusive features.

Specialism
IFS - Internal Firm Services - Other

Job Description & Summary
At PwC Global, our people in information technology operations focus on managing and maintaining the technology infrastructure and systems to provide smooth operations and efficient delivery of IT services. This includes monitoring network performance, troubleshooting issues, and implementing security measures.
Those in IT support at PwC Global will focus on providing front-line technical assistance and troubleshooting to facilitate smooth functioning of computer systems software and hardware. Working in this area, you will be responsible for providing support to internal and external clients to address and resolve issues in a timely and efficient manner through a variety of mediums/channels. The guidance will help to resolve technical issues and maintain efficient IT operations at the L2 up to L4 support levels.
Meaningful work you’ll be part of As a Penetration Tester Senior Associate, Global, you’ll work as part of a team of problem solvers, helping to solve business issues, deliver high quality client service and operational efficiency. Responsibilities include but are not limited to:

  • Proactively assisting management in the scoping, planning and execution of assessments
  • Performing penetration testing assessments
  • Executing tasks aligned to the Pentest Team with autonomy
  • Presenting technical findings with a focus on business impact to management
  • Contributing to the development of a team’s technical acumen
  • Establishing thought leadership at the Network Information Security (NIS) and firm-wide level in a particular knowledge area
  • Demonstrating cultural dexterity and modifying behavior to the environment/culture
  • Collaborating with multiple stakeholders across functional and technical skill sets
  • Assisting in collaborating with Information Technology (IT) and NIS to align information security policies and standards, evaluations, and technological tools

Line of Service
Internal Firm Services

Industry/Sector
Not Applicable

Specialism
IFS - Internal Firm Services - Other

Management Level
Senior Associate

Job Description & Summary
At PwC Global, our people in information technology operations focus on managing and maintaining the technology infrastructure and systems to provide smooth operations and efficient delivery of IT services. This includes monitoring network performance, troubleshooting issues, and implementing security measures.
Those in IT support at PwC Global will focus on providing front-line technical assistance and troubleshooting to facilitate smooth functioning of computer systems software and hardware. Working in this area, you will be responsible for providing support to internal and external clients to address and resolve issues in a timely and efficient manner through a variety of mediums/channels. The guidance will help to resolve technical issues and maintain efficient IT operations at the L2 up to L4 support levels.
Meaningful work you’ll be part of As a Penetration Tester Senior Associate, Global, you’ll work as part of a team of problem solvers, helping to solve business issues, deliver high quality client service and operational efficiency. Responsibilities include but are not limited to:

  • Proactively assisting management in the scoping, planning and execution of assessments
  • Performing penetration testing assessments
  • Executing tasks aligned to the Pentest Team with autonomy
  • Presenting technical findings with a focus on business impact to management
  • Contributing to the development of a team’s technical acumen
  • Establishing thought leadership at the Network Information Security (NIS) and firm-wide level in a particular knowledge area
  • Demonstrating cultural dexterity and modifying behavior to the environment/culture
  • Collaborating with multiple stakeholders across functional and technical skill sets
  • Assisting in collaborating with Information Technology (IT) and NIS to align information security policies and standards, evaluations, and technological tools
Experiences and skills you’ll use to solve
  • Significant e xperience with common pentesting tools such as Rubeus, Mimikatz , Impacket , Certify, ForgeCert , ROADTools , ADOKit , and Burp Pro
  • Demonstrating proficiency in understanding programing or scripting languages (C/C++, C#, Python, Go, PowerShell)
  • Demonstrating knowledge of Active Directory concepts and Cloud infrastructure concepts in one of the following platforms: Azure, AWS, GCP
  • Demonstrating knowledge of Windows architecture and internals and appropriate judgment prior to escalating to management
  • Fostering healthy work relationships by demonstrating appropriate conflict-resolution skills
  • Demonstrating experience performing penetration testing assessments and high-level understanding of the principles of information security engineering, architecture, and application security
  • Demonstrating prior system administration, incident response, Security Operations Center (SOC) or network engineering experience preferred
  • PwC Canada is committed to cultivating an inclusive, hybrid work environment. Exact expectations for your team can be discussed with your interviewer
Why you’ll love PwC We’re inspiring and empowering our people to change the world. Powered by the latest technology, you’ll be a part of diverse teams helping public and private clients build trust and deliver sustained outcomes. This meaningful work, and our continuous development environment, will take your career to the next level. We reward your impact, and support your wellbeing, through a competitive compensation package, inclusive benefits and flexibility programs that will help you thrive in work and life. Learn more about our Application Process and Total Rewards Package at: Canada acknowledges that we work and live across Turtle Island, on the land that is now known as Canada, which are the lands of the ancestral, treaty and unceded territories of the First Nations, Métis and Inuit Peoples. We recognize the systemic racism, colonialism and oppression that Indigenous Peoples have experienced and still go through, and we commit to allyship and solidarity.

Required Skills

Optional Skills
Accepting Feedback, Accepting Feedback, Active Listening, Analytical Thinking, Communication, Computer Engineering, Computer Program Installation, Computer Programming, Computer Technical Support, Creativity, Embracing Change, Emotional Regulation, Empathy, Enterprise Architecture, Incident Management and Resolution (IMR), Inclusion, Information and Communications Technology (ICT), Intellectual Curiosity, IT Infrastructure Upgrades, IT Operations, IT Operations Management, IT Project Lifecycle, IT Support, IT Troubleshooting, Learning Agility {+ 11 more}

Desired Languages (If blank, desired languages not specified)

Travel Requirements
Not Specified

Available for Work Visa Sponsorship?
No

Government Clearance Required?
No

Job Posting End Date
At PwC Canada, our most valuable asset is our people and we grow stronger as we learn from one another. We’re committed to creating an equitable and inclusive community of solvers where everyone feels that they truly belong. We understand that experience comes in many forms and building trust in society and solving important problems is only possible if we reflect the mosaic of the society we live in.
We’re committed to providing accommodations throughout the application, interview, and employment process. If you require an accommodation to be at your best, please let us know during the application process.
To learn more about inclusion and diversity at PwC Canada: Be a part of The New Equation.
Chez PwC Canada, notre atout le plus précieux, c’est notre personnel. Et c’est en apprenant les uns des autres que nous devenons plus forts. Nous avons à cœur de créer une communauté équitable et inclusive de professionnels de la résolution de problèmes, dans laquelle chacun se sent vraiment à sa place. Nous savons que l’expérience peut prendre diverses formes et, pour nous, donner confiance au public et résoudre des problèmes importants n’est possible que si notre milieu de travail reflète la diversité de la société dans laquelle nous vivons.
Nous tenons à répondre à vos besoins tout au long du processus de demande d’emploi, d’entrevue et d’embauche. Si vous avez besoin de mesures d’adaptation pour être parfaitement à l’aise, faites-le-nous savoir à l’étape de la demande d’emploi.
Pour en savoir plus sur l’inclusion et la diversité chez PwC Canada: Faites partie de La Nouvelle équation.

Seniority level

  • Seniority level

    Mid-Senior level

Employment type

  • Employment type

    Full-time

Job function

  • Job function

    Information Technology
  • Industries

    Business Consulting and Services

Referrals increase your chances of interviewing at PwC Canada by 2x

Get notified about new Penetration Tester jobs in North York, Ontario, Canada.

Security Specialist (Penetration Tester) 8436-3112

Security Specialist (Penetration Tester) 8437-3112

Security Specialist (Penetration Tester) 8435-3112

Cybersecurity Engineer (Endpoint Security & SIEM)

Security Analyst – Project REACH - Temporary Full-Time 2025-13849 (2025-13849)

(Canada) -Intermediate Automation and Security Engineer

Mississauga, Ontario, Canada CA$110,000.00-CA$120,000.00 2 weeks ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Senior Manager, Information Security

Toronto, Ontario TD

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

Join to apply for the Senior Manager, Information Security role at TD

Join to apply for the Senior Manager, Information Security role at TD

Work Location:
Toronto, Ontario, Canada
Hours
37.5
Line Of Business
Technology Solutions
Pay Details
$108,800 - $63,200 CAD
TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Responsibilities
Job Description:

  • Lead Third-Party Cybersecurity governance and oversight program including scope, governance & transformation responsibilities.
  • Acts as an escalation point for the 3PCRM team, assisting and supporting them in dealing with the most complex and challenging engagements & stakeholders
  • Ensure effective governance and oversight of the 3PCRM program including the effective design and execution of cybersecurity controls.
  • Responsible to serve as a trusted SME providing bank wide third-party cyber strategy, guidance, governance over Third-Party Cybersecurity risks and controls
  • Lead program to identify and reduce the supply chain cyberattack surface by identifying risks represented by third parties, proposing remediation actions, and making risks transparent to stakeholders.
  • Develop Third-Party Cyber strategy to maintain and uplift the program to align with Regulatory, Industry and Bank standards
  • Establish the governance model and the accountability for Third-Party Cybersecurity end to end program
  • Streamline and standardize third party cyber processes and procedures for effective risk management
  • Manage technology and cyber risk controls in compliance with standards, processes and industry / regulatory guidelines
  • Collaborate with SMEs to ensure Third-Party risk reduction across all key security functions including IAM, Network Security, AppSec, Data Protection, etc
  • Identify potential threats in the outsourced infrastructure and implement effective mechanisms for mitigating them.
  • Support on Regulatory and Audit responses related to technology risks associated with 3PCRM.
  • Interact with a wide range of stakeholders both externally and within TD
  • Collaborate with partners by providing Cybersecurity & Third-Party expertise and advice to enable informed decisions in alignment with the overall risk tolerance of the Enterprise.
  • Proactively inform partners on overall risk position through reporting, metrics, analysis and insights.
  • Support speed, simplicity, agility in decision making and action
Qualifications
  • 10+ yrs of experience in Cybersecurity, Third-Party Risk and GRC
  • In-depth knowledge of assessing Third-Party risk and associate cyber controls for a FI
  • Experience implementing / managing operating model for risk management function in global organization
  • Leadership experience, executive communications, able to track deliverables and ensure quality of deliverables.
  • Problem-solving mindset and hands-on approach to complex issues
Who We Are
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you’ve got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we’re here to support you towards your goals. As an organization, we keep growing – and so will you.
Our Total Rewards Package
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental well-being goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Learn more
Additional Information
We’re delighted that you’re considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we’re committed to providing the support our colleagues need to thrive both at work and at home.
Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements.
Colleague Development
If you’re interested in a specific career path or are looking to build certain skills, we want to help you succeed. You’ll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD – and we’re committed to helping you identify opportunities that support your goals.
Training & Onboarding
We will provide training and onboarding sessions to ensure that you’ve got everything you need to succeed in your new role.
Interview Process
We’ll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
Accommodation
Your accessibility is important to us. Please let us know if you’d like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process.
We look forward to hearing from you!
Language Requirement (Quebec Only)
Sans Objet

Seniority level

  • Seniority level

    Mid-Senior level

Employment type

  • Employment type

    Full-time

Job function

  • Job function

    Information Technology
  • Industries

    Banking

Referrals increase your chances of interviewing at TD by 2x

Get notified about new Senior Manager Information Security jobs in Toronto, Ontario, Canada.

Director of Information Security and GRC

Director of Information Security (Toronto, ON /Vancouver, BC)

Senior Systems and Information Management Manager

Chief Information Security Officer (CISO)

Manager, Information Security Strategic Execution

Senior Information Security and Compliance Manager

Data Security Manager, Information Security, IT

Senior Manager, Identity, Access & Management

Senior Audit Manager, IT & Cyber Security Audit

Incident and Problem Manager, IT Security

Audit Manager, IT & Cyber Security Audit

Senior Manager, Information Risk Assurance Program

Information Security Specialist (Network Governance)

Toronto, Ontario, Canada CA$90.00-CA$100.00 3 weeks a o

Power BI Developer - Long term contract - Hybrid

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Information Security Jobs