Information Security Analyst

The Toronto-Dominion Bank (Canada)

Mississauga

On-site

CAD 82,000 - 115,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

TD in Mississauga, Ontario, seeks a qualified information security professional to lead EUC governance, risk assessment, and remediation efforts within a complex banking environment.

You will collaborate with business, technology, and risk partners to define controls, attestation, and governance reporting while maintaining asset classification and ongoing monitoring.

Qualifications

  • University degree or equivalent education with information security or risk focus.
  • Experience in EUC governance, risk assessments, and control design.
  • Ability to interpret regulatory requirements and translate into guidance.

Responsibilities

  • Define, develop, and implement EUC policies, programs, standards, and controls.
  • Assess risks, identify control gaps, and guide remediation strategies.
  • Coordinate asset classification, attestation, and risk reporting activities.

Skills

End-User Computing
EU C governance
risk assessment
control assessment
stakeholder engagement
governance reporting
ServiceNow

Education

University degree or equivalent

Tools

ServiceNow

Job description

Work Location: Mississauga, Ontario, Canada Hours: 37.5 Line of Business: Technology Solutions Pay Details: $81,600 - $115,200 CAD TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs. As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.

Job Description: Job Description Summary

Define, develop, and implement Technology Controls and Information Security-related policies, programs, standards, processes, and tools. Provide specialized expertise and guidance on assessing risks, identifying control gaps, and developing appropriate solutions to mitigate risk and protect the Bank. The role provides subject matter expertise for the Bank’s End-User Computing governance program, including asset classification, attestation, risk and control assessments, thematic remediation, high-risk mitigation, standards enhancement, stakeholder guidance, governance reporting, learning content, and intake management. The role may participate in projects of moderate to high complexity and provide complex reporting, analysis, and assessments at the functional, business-line, or enterprise level.

Job Description KEY ACCOUNTABILITIES
  • Provide consultation and advice to business, technology, and control partners on End-User Computing governance, information security requirements, policies, standards, processes, and controls.
  • Serve as an EUC risk and technology subject matter expert, helping stakeholders understand asset classification, registration, attestation, risk assessment, control, and remediation requirements.
  • Conduct or support Inherent Risk Assessments and Control Gap Assessments, document identified risks and control gaps, and provide practical guidance on remediation strategies.
  • Coordinate the intake, review, prioritization, and assignment of EUC-related requests, ensuring stakeholders receive timely and consistent guidance.
  • Develop and maintain EUC governance content, guidance, procedures, learning materials, and knowledge resources through approved collaboration platforms.
  • Lead or support stakeholder engagement sessions, office hours, and knowledge-sharing activities to promote understanding and consistent application of EUC requirements.
  • Establish effective relationships across business, technology, program, project, and control functions to support risk-based decision-making and timely issue resolution.
  • Maintain the integrity and quality of the EUC Book of Record through asset classification, attestation campaigns, ongoing monitoring, data-quality reviews, and assessment of asset changes and risk indicators.
  • Lead or contribute to risk and control design assessments, clearly documenting the impact of control gaps on the business and the Bank and supporting the development of risk-mitigation and remediation plans.
  • Support thematic analysis and remediation activities by identifying common risk patterns, determining affected populations, tracking corrective actions, and escalating material issues where required.
  • Support mitigation of Functionally High-Risk EUC assets and EUC assets subject to Payment Card Industry requirements, including risk identification, control-gap analysis, action tracking, stakeholder engagement, and management reporting.
  • Contribute to the definition, review, enhancement, and implementation of EUC security standards, controls, procedures, and supporting governance processes.
  • Develop ongoing EUC risk reporting and monitor Key Performance Indicators and Key Risk Indicators to measure program performance, risk exposure, remediation progress, and control effectiveness.
  • Perform or support quality assurance and quality control reviews to promote the accuracy, completeness, and consistency of EUC classifications, assessments, control determinations, and reporting.
  • Provide support and consultation for internal audits, regulatory examinations, compliance reviews, and management responses, including the coordination and tracking of remediation activities.
  • Consult on regulatory and compliance requirements, reporting, and information requests related to EUC governance.
  • Monitor emerging technology, security, regulatory, and industry developments and assess their potential impact on the Bank’s EUC governance and control environment.
  • Identify key risks and issues and elevate them to the appropriate stakeholders and levels of management.
  • Adhere to and support the oversight, monitoring, and enforcement of enterprise frameworks, methodologies, policies, procedures, technology-control standards, and applicable regulatory guidelines.
  • Maintain a strong culture of risk management and control supported by effective processes, sound governance, and alignment with the Bank’s risk appetite.
  • Continuously enhance knowledge and expertise in EUC governance, technology risk, information security, regulatory requirements, and industry practices.
  • Prioritize and manage individual workload to deliver accurate, high-quality results within assigned timelines.
  • Support a positive work environment that promotes service, quality, innovation, inclusion, collaboration, and teamwork.
  • Communicate issues, risks, dependencies, and points of interest to team members and stakeholders in a timely manner.
  • Identify and recommend opportunities to improve productivity, control effectiveness, stakeholder experience, and operational efficiency.
  • Participate in knowledge transfer, documentation, training, and learning activities within the team and across supported business areas.
  • Contribute specialized expertise to business-specific, cross-functional, and enterprise initiatives.
  • Influence stakeholder behaviour to reduce risk and promote a strong technology risk management culture throughout the organization.
BREADTH & DEPTH
  • Advanced knowledge of one or more technology-control, information-security, risk-management, or governance domains, disciplines, and practices.
  • Strong understanding of technology risk, control design, risk assessment, issue management, remediation, and governance reporting.
  • Ability to analyze complex information, identify risk themes and control gaps, and communicate findings and recommendations clearly.
  • Ability to interpret and apply policies, standards, control requirements, and regulatory expectations within a business and technology environment.
  • Ability to work independently as an individual contributor while collaborating effectively across business, technology, risk, compliance, audit, and control functions.
  • May participate in projects and initiatives of moderate to high complexity.
  • Acts as a key resource and subject matter expert within a specialized technology, information security, or governance area.
  • May develop or contribute to complex reporting, analysis, assessments, procedures, standards, and management presentations at the functional, business-line, or enterprise level.
  • Generally reports to a Manager or Senior Manager.
EXPERIENCE & EDUCATION

Required: University degree or equivalent relevant education and professional experience. Experience in information security, technology risk, governance, risk assessment, control assessment, or a related discipline. Experience conducting risk assessments, analyzing control gaps, documenting risk impacts, and supporting remediation activities. Strong stakeholder consultation, analytical, written communication, and presentation skills. Ability to interpret technology-control, information-security, governance, and regulatory requirements and translate them into practical guidance. Ability to manage multiple priorities independently and deliver accurate, high-quality results within established timelines. Ideally, 5 or more years of work experience with 2 years of experience in End User Computing Risk Assessment preferably in Financial Industry.

Preferred: Experience within financial services or another highly regulated industry. Experience supporting End-User Computing governance, asset governance, asset classification, attestation, or related technology-risk programs. Experience using ServiceNow or a comparable governance, risk, and compliance platform. Experience developing management reporting, dashboards, Key Performance Indicators, or Key Risk Indicators. Experience maintaining SharePoint or comparable knowledge-management content and developing governance guidance, procedures, or learning materials.

Who We Are:

TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we strive to make every interaction, product, and experience remarkably human and refreshingly simple for over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to foster deeper relationships, ensure disciplined execution, and build a simpler, faster banking experience. TD is deeply committed to being a leader in client experience, that is why we believe that all colleagues, no matter where they work, are client facing. Together, we are reimagining what banking can be for our clients, colleagues and communities.

Our Total Rewards Package

Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental wellbeing goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Learn more

Additional Information:

We’re delighted that you’re considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we’re committed to providing the support our colleagues need to thrive both at work and at home. Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements.

Colleague Development

If you’re interested in a specific career path or are looking to build certain skills, we want to help you succeed. You’ll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. If you’re passionate about helping clients and building deep, lasting relationships, TD offers diverse career paths where you can grow your expertise and make a meaningful impact. We're committed to your success and foster a respectful workplace where diverse perspectives are valued, everyone has fair opportunities to grow, and you can unlock your full potential to achieve your career goals. Here at TD, we hire and develop the best.

Training & Onboarding

We will provide training and onboarding sessions to ensure that you’ve got everything you need to succeed in your new role.

Interview Process

We’ll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.

Accommodation

Your accessibility is important to us. Please let us know if you’d like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process.

Language Requirement (Quebec only)

Sans Objet US Labor & Employment Posters | California Privacy | Accessibility | FAQ

Our Values

At TD we’re guided by our purpose to enrich the lives of our customers, communities and colleagues, and share a set of values that shape our culture and guide our behavior. In exchange for how our colleagues show up to help TD succeed, we are committed to delivering a colleague experience grounded in Impact, Growth and a Culture of Care. No matter where you work across TD, we empower you to make an impact at work and in your community, explore and grow your career and be part of our caring and inclusive culture.

Our Commitment to Diversity, Equity, and Inclusion

At TD, we’re committed to fostering an environment where all colleagues are encouraged to bring their authentic selves to work, experience equitable opportunities, and feel respected and supported. We’re dedicated to building an inclusive workforce that reflects the diversity of the customers and the communities in which we live and serve.

Helping to Make an Impact in Communities – TD Ready Commitment

Under the TD Ready Commitment, we are targeting a total of C$1 billion by 2030 in community giving across four key, interconnected drivers of change: Financial Security, Vibrant Planet, Connected Communities, and Better Health. It’s our goal to help support change, nurture progress, and contribute to making the world a better, more inclusive place for our customers, colleagues, and communities. Learn more: Canada | US | Europe & Asia Pacific

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Information Security Analyst (Vulnerability Governance)
Senior Information Security Analyst (Vulnerability Governance)

The Toronto-Dominion Bank (Canada) • Toronto

On-site
CAD 82,000 - 115,000
Senior Information Security Analyst (Vulnerability Governance)
Senior Information Security Analyst (Vulnerability Governance)

TD Bank Group • Toronto

On-site
CAD 82,000 - 115,000
Financial Crime Risk Analyst II
Financial Crime Risk Analyst II

The Toronto-Dominion Bank (Canada) • Toronto

On-site
CAD 70,000 - 98,000
Financial Crime Risk Analyst II (5550)
Financial Crime Risk Analyst II (5550)

The Toronto-Dominion Bank (Canada) • Toronto

On-site
CAD 70,000 - 98,000
Senior Business Analyst – Data Management & Enablement
Senior Business Analyst – Data Management & Enablement

The Toronto-Dominion Bank (Canada) • Toronto

On-site
CAD 82,000 - 115,000
Vice President, Risk Data Strategy and Transformation
Vice President, Risk Data Strategy and Transformation

The Toronto-Dominion Bank (Canada) • Toronto

On-site
CAD 185,000 - 275,000
Information Security Specialist (Security Posture Insights, Reporting and Remediation)
Information Security Specialist (Security Posture Insights, Reporting and Remediation)

TD Bank Group • Toronto

On-site
CAD 97,000 - 137,000
Information Security Specialist ( Attack Surface Reduction)
Information Security Specialist ( Attack Surface Reduction)

TD Bank Group • Toronto

On-site
CAD 97,000 - 137,000
Software Engineer II (SDET)
Software Engineer II (SDET)

TD Bank, N.A. • Toronto

On-site
CAD 82,000 - 115,000
Vice President, Risk Business Management and Governance
Vice President, Risk Business Management and Governance

The Toronto-Dominion Bank (Canada) • Toronto

On-site
CAD 185,000 - 275,000