Senior Information Security Specialist role providing technology risk support and management for TD's global financial services. Facilitating enterprise-wide information security programs and AI governance.
Responsibilities
Provide technology risk advice and consultation to business partners.
Facilitate communication and execution of enterprise-wide information security programs.
Develop enterprise awareness training for AI.
Conduct risk assessments on business applications, third parties, and infrastructure.
Validate that security and technology controls are implemented to support business requirements.
Lead development and implementation of technology controls and information security strategies, policies, and programs.
Oversee control and governance activities, identifying and assessing potential security risks, breaches, and exposures.
Act as a primary technical expert, working with technology partners and service/platform owners to integrate security components into enterprise architecture.
Consult on regulatory compliance requirements, reporting, and questions.
Requirements
University degree required
Information security certification or accreditation is an asset
10+ years of relevant experience.
Deep understanding of AI risk management frameworks (e.g., NIST AI Risk Management Framework, ISO/IEC 23894 , ISO42001, OWASP, MITRE)
Familiarity with financial services industry regulations and standards (e.g., FFIEC, GLBA, GDPR, PCI DSS, NYDFS Cybersecurity Regulation)
Experience implementing AI governance and ethical guidelines in financial institutions.
Ability to assess and mitigate risks associated with AI models, including bias, explainability, and robustness.
Knowledge of secure AI development lifecycle and best practices for model validation and monitoring.
Expertise integrating AI security controls into enterprise architecture and technology platforms.
Awareness of emerging AI threats, adversarial attacks, and evolving regulatory requirements.
Ability to communicate complex AI risk concepts to executive stakeholders and non-technical audiences.
Experience with incident response and remediation for AI-related security events.
Commitment to continuous learning and staying current with industry trends, frameworks, and best practices in AI and financial services.
Manager at PwC contributing to digital transformation in Utilities through technology consulting and stakeholder management. Focused on creating strategies and providing technology solutions in a data - driven world.
Research Associate conducting advanced research in iOS security within a leading institute for applied cybersecurity. Emphasis on secure application development and vulnerability analysis.
Cybersecurity Engineer focused on threat monitoring and incident response for Verizon's network security. Collaborating on security architecture and vulnerability management across multiple locations.
Senior Manager of Application Security leading initiatives to protect applications at Nordstrom through strategic leadership and AI - driven tooling. Collaborating with engineering to ensure secure software development practices.
Information Security Engineer responsible for deploying and supporting security tools across cloud and on - premise systems. Collaborating with IT to mitigate security risks in a hybrid work environment.
Casual Retail Security Officer for MSS Security ensuring safety at Tweed Mall in Tweed Heads. Responsible for patrols, incident response, and customer service.
Financial security advisor at Desjardins developing client relationships and selling life and health insurance products. Focusing on customer satisfaction and personalized financial solutions.
Principal Information Security Consultant at Westpac focusing on security protocols and employee benefits for staff. Hybrid role centrally located with opportunities for professional development and employee perks.
Engineer supporting secure development lifecycle processes for product lines in the energy sector. Collaborating with R&D on security requirements and compliance audits.
Automation Oversight Engineer providing oversight of compliance in automated device configurations for Comcast Business. Managing configuration checks and reporting, ensuring reliable oversight and improvement strategies.