Enable job alerts via email!

Information Security Specialist - Cyber Threat Management

TD

Toronto

On-site

CAD 91,000 - 137,000

Full time

Today
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a leading financial institution as an Information Security Specialist in Toronto. You will be responsible for detecting and responding to cyber threats, leading investigations, and collaborating with various teams to enhance security measures. This role offers growth opportunities and a competitive salary range.

Qualifications

  • 7+ years of relevant experience in IT security and incident management.
  • Hands-on experience with SIEM, EDR, Firewall, and various operating systems.

Responsibilities

  • Lead cybersecurity incidents and develop containment and recovery plans.
  • Enhance operational security measures and ensure compliance with policies.
  • Guide partners on technology during incidents.

Skills

IT security
Incident management
Communication
Leadership
Data analysis

Education

University degree

Tools

SIEM
EDR
Firewall
WAF
NIDS
Forensics tools

Job description

Information Security Specialist - Cyber Threat Management

Join to apply for the Information Security Specialist - Cyber Threat Management role at TD.

Position Details

Location: Toronto, Ontario, Canada

Hours: 37.5 hours/week

Line Of Business: Technology Solutions

Salary Range: $91,200 - $136,800 CAD

This role is eligible for a discretionary variable compensation that considers performance. TD offers fair and equitable pay, growth opportunities, and skill development. Actual offered salary may vary based on skills, experience, location, and organizational needs. Candidates are encouraged to discuss compensation openly with recruiters.

Job Description

As an Information Security Specialist, you will detect, investigate, and respond to cyber threats targeting TD. You will work within the Cyber Security Incident Response Team (CSIRT), leading investigations, developing detection and hunting techniques, and enhancing incident response capabilities. This role requires deep technical expertise in incident handling, malware investigation, and cyber kill chain analysis. You will collaborate with stakeholders across Protect Platform, ITS, and business teams to reduce risk and improve security posture.

The role involves 24x7 security monitoring operations on a rotating shift schedule, including occasional on-call and weekend support.

Key Responsibilities
  • Guide partners on technology during incidents
  • Lead cybersecurity incidents and events
  • Develop containment and recovery plans for incidents
  • Contribute to security management strategy and framework
  • Ensure monitoring, detection, prevention, and response to threats
  • Enhance operational security measures
  • Adhere to policies, standards, and regulatory guidelines
  • Review and improve internal processes
  • Support enterprise security controls and risk management culture
Minimum Requirements
  • University degree or equivalent experience
  • 7+ years of relevant experience
  • Expertise in IT security and incident management across multiple domains
  • Hands-on experience with SIEM, EDR, XDR, Firewall, WAF, email proxies, NIDS
  • Proficiency with various operating systems (Windows, UNIX, Cloud, Mobile)
  • Advanced scripting and data analysis skills
  • Knowledge of enterprise controls, cybersecurity, and risks
  • Strong communication and leadership skills
  • Ability to lead complex projects and serve as a technology controls expert
  • Eligibility to work under applicable regulatory standards
Preferred Qualifications
  • Experience with network layer 7/application attacks and internet-facing threats
  • Experience as an incident commander or manager
  • Experience briefing executives on cyber incidents
  • Authoring operational playbooks and governance documents
  • Knowledge of security frameworks (NIST, SANS, OWASP, MITRE)
  • Expertise with SIEM and UEBA solutions (Splunk, Azure Sentinel, CrowdStrike, MS Defender, XSOAR)
  • Experience with forensics tools (Encase, Axiom, Autopsy, OSForensics, FTK)
  • Relevant certifications (GIAC, CCNP, CCNA, CISSP, Cloud Security)
About TD

TD is a leading global financial institution, the fifth largest bank in North America, serving over 27 million customers. With over 95,000 colleagues, we are committed to customer experience, innovation, and community support. We offer comprehensive total rewards, including salary, benefits, and development programs.

Additional Information

We support career development through regular conversations, training, and mentoring. Our onboarding ensures you succeed in your role. We accommodate accessibility needs during the hiring process. We look forward to your application!

Other Details

Seniority Level: Mid-Senior level

Employment Type: Full-time

Job Function: Information Technology

Industry: Banking

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Information Security Specialist - Cyber Threat Management

TD

Toronto

On-site

CAD 91.000 - 137.000

Today
Be an early applicant

Analyste princ., Sécurité de l'information

TD

Toronto

On-site

CAD 76.000 - 116.000

11 days ago

Information Security Analyst II (Cyber Crime Protection)

TD Bank

Old Toronto

On-site

CAD 65.000 - 99.000

30+ days ago