Job Search and Career Advice Platform

Enable job alerts via email!

Information Security Specialist - Cloud Security Architect (Containers & Kubernetes)

TD

Canada

On-site

CAD 91,000 - 137,000

Full time

Yesterday
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading financial institution in Canada is seeking a Cloud Security Architect with expertise in Kubernetes and container security. The role includes designing secure platforms and developing security guidelines to mitigate cyber threats. Candidates should have a university degree in a relevant field and significant experience in information security. This position offers a salary range of CAD $91,200 to $136,800, along with opportunities for growth and development.

Benefits

Health and well-being benefits
Savings and retirement programs
Paid time off
Career development
Reward and recognition programs

Qualifications

  • 7+ years in information security with 3+ years in Kubernetes or container platform security.
  • Proven experience developing and maintaining STIGs.
  • Deep expertise in public cloud Kubernetes as a Service products.

Responsibilities

  • Design, implement, and govern secure container platforms and Kubernetes environments.
  • Develop and maintain Kubernetes and container security STIGs.
  • Architect secure solutions across AWS, Azure, GCP, and hybrid environments.

Skills

Information Security
Kubernetes
Cloud Security
CI/CD Integration
Container Security

Education

University Degree in Computer Science, Cybersecurity, or related field

Tools

IaC tooling
Security Technical Implementation Guides (STIGs)
Kubernetes RBAC
Job description
Work Location

Toronto, Ontario, Canada

Hours

37.5

Line of Business

Technology Solutions

Pay Details

$91,200 - $136,800 CAD

TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs. As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.

Department Overview

Building a World-Class Technology Team at TD.

We can't afford to be boring. Neither can you. The rapid pace of change makes it a business imperative for us to be smart and open-minded in the way we think about technology. TD's technology and business teams become more intertwined as new opportunities present themselves. This new era in banking does not equal boring. Not at TD, anyway.

TD Information Security covers the development and management of security strategies, policies, and programs to assess, prioritize, and mitigate business risk with technology controls. Priorities include: mitigating and managing cyber security threats, ensuring systems availability, aligning with global regulatory risk and compliance requirements, managing systems and network complexity, and partnering with businesses for better technology delivery by providing advice on technology controls.

There's room to grow in all of it.

About This Role

The Cloud Security Architect - Containers & Kubernetes Specialty is responsible for designing, implementing, and governing secure container platforms and Kubernetes environments across public cloud and hybrid deployments. This role will lead the development and maintenance of Security Technical Implementation Guides (STIGs) for containerized workloads, container registries, Kubernetes clusters, and related CI/CD processes.

Meaningful work is fueled by meaningful performance and career development conversations with your manager. Here's some of what you may be asked to perform:

  • Develop and maintain Kubernetes and container security STIGs, including baselines for:
    • Cluster configurations
    • Container runtimes
    • Image registries
    • Helm charts
    • Ingress controllers
  • Map STIGs to frameworks such as CIS Kubernetes Benchmarks, CIS Docker Benchmarks, NIST 800-53, and Zero Trust Architecture.
  • Ensure continuous updates aligned with new Kubernetes releases and emerging threats in the container ecosystem.
  • Architect secure Kubernetes and container-based solutions across AWS, Azure, GCP, and hybrid/on-prem environments.
  • Define secure configurations for Kubernetes components (API server, etcd, controller manager, scheduler, kubelet).
  • Establish and maintain zero-trust and least-privilege principles for workloads, service accounts, and cluster access.
  • Design secure deployment patterns for microservices, service mesh, and container networking.
  • Oversee integration of container security controls into CI/CD pipelines.
  • Support automated policy enforcement using Infrastructure as Code.
  • Support continuous compliance scanning for misconfigurations, vulnerabilities, and drift.
  • Define cluster governance, including namespace strategy, admission controls, RBAC, network policies, and logging standards.
  • Maintain end-to-end security posture across containerized workloads.
  • Mentor team members in secure container deployment practices and guide technical leadership on platform evolution, tooling, and best practices.
Job Requirements

What can you bring to TD? Share your credentials, but your relevant experience and knowledge can be just as likely to get our attention. It helps if you have:

  • University Degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
  • Information Security and Kubernetes certification.
  • 7+ years in information security with 3+ years in Kubernetes or container platform security.
  • Proven experience developing and maintaining Security Technical Implementation Guides (STIGs) or equivalent security baselines.
  • Deep expertise in public cloud Kubernetes as a Service products.
  • Strong understanding of Kubernetes RBAC, Pod Security, Network Policies, Ingress security, and Secrets management.
  • Hands-on experience with IaC tooling.
  • Familiarity with container security scanning tools.
  • Experience with CI/CD integration and DevSecOps governance.
Additional Information
  • Inspire a positive work environment and help champion quality, innovation, teamwork, and service to the business.
  • Learn voraciously and stretch your thinking.
#Li-tech
Who We Are

TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues. TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing - and so will you.

Our Total Rewards Package

Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental well-being goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Learn more.

Interview Process

We’ll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.

Accommodation

Your accessibility is important to us. Please let us know if you’d like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process.

Language Requirement (Quebec only)

Sans Objet

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.