Senior Information Security Advisor

2 weeks ago


Toronto, Canada Scotiabank Full time

 

 

 

Requisition ID: 200402

Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.

 

 

The Senior Information Security Advisor (Cloud) provides guidance to business lines to ensure design, development and implementation of complex cloud projects and initiatives are in accordance with the Bank's Information Security Standards and in compliance with industry regulations. In this senior role, you will be supporting various business lines while assisting them in making informed decisions to protect information assets deployed in Public Clouds environments.

 

Is this role right for you?

  • You have a strong experience leading complex projects providing security advise to ensure information security risk are mitigated.
  • You thrive in solutioning for multiple security domains (Application Security, Data Protection, Cloud Security Engineering, Identity and Access Management, Cloud Security Architecture, Network Security, Risk Management, etc.) and knowledgeable of Zero Trust Architecture principles.
  • You have experience in solutioning security architecture for Public Clouds, creating and reviewing security patterns, and advising on security risks.
  • You are proficient in reviewing architecture and solution design documentation and can identify and assess potential risks.
  • You excel in reviewing Technical Design and Security Design documents and creating assessment documents (Threat Risk Assessment) and evaluating risks.
  • You are passionate about new technologies and enjoy the challenges of implementing security controls to protect them.
  • Working on different types of projects (from large complex to simple) is a part of your DNA.
  • You love to collaborate with various business lines, IT support functions and IS&C Control functions.

 

Do you have the skills that will enable you to succeed in this role?

  • Post-secondary education in Computer Science or in a related field.
  • You have at least 4 years of hands-on technical working experience in performing security assessments on cloud platforms, CI/CD deployment pipelines, network infrastructure and complex applications. Experience with Risk Assessments of applications migrated into the Cloud Environments.
  • You have at least 5 years experience in security solution architecture, software development, and/or hands-on experience with implementations of cloud environments, security controls and cloud-based solutions.
  • You are a strong communicator and capable of creating clear documentation.
  • You have solid knowledge of cloud technologies and cloud security (GCP or Azure or AWS, Kubernetes and IAM, CI/CD pipelines, Terraforms, infrastructure as a code).
  • Experience with GCP and Kubernetes is a strong asset.
  • Experience with tools used in securing cloud deployments such as CNAPP, CSPM, CWPP, etc.
  • You have cloud security engineering or cloud solution architecture certifications from Google, Microsoft or AWS.
  • You have used industry leading productivity tools to produce quantitative/qualitative reports, data flow diagrams & visual presentations.
  • Certifications (CISSP, CISM, CCSP, CRISC) are nice to have.
  • Familiar with industry standards and frameworks e.g., NIST 800-53, ISO 27001, ISO27002, ISO 27017, ISO27018, PCI DSS, CIS.
  • You possess advanced communication (verbal/written/presentation) skills in English. Knowledge of Spanish is an asset.

 

Key Job Accountabilities:
Providing the following functions to Scotiabank’s Cloud Initiatives for the regional Digital Factories:

  • Provide strategic guidance and technical expertise on cloud security solutions and recommend best practices.
  • Conduct comprehensive security assessments on large high-profile cloud initiatives implemented in GCP and Azure. 
  • Collaborate with cross-functional teams to design and implement robust security architectures for various systems, applications, and networks.
  • Evaluate existing security solutions and propose enhancements or new designs to address emerging threats and business requirements.
  • Ensure alignment with industry best practices, compliance standards, and organizational security policies.
  • Identify security weaknesses, vulnerabilities, and gaps in existing systems and recommend remediation strategies.
  • Conducting Threat Risk Assessments and performing security advisory work on specific applications and infrastructure associated with Scotiabank’s Cloud Initiatives ensuring that controls are adequate, meet Bank standards, and enable business objectives. 
  • Conducting Risk Management activities.
  • Provide Quality Assurance on Threat Risk Assessments and Threat Modelling as required for Cloud initiatives. 
  • Provide support on how to apply the Bank's portfolio of standards to the technology footprint of Scotiabank’s Cloud offering.
  • Provide oversight over the specific line of business security posture, ensuring that all tools available to detect and remediate security risks have been applied.
  • Conduct industry reviews and benchmarking exercises to ensure our controls are aligned with our peers, emerging threats, and available mitigation strategies.
  • Working directly with technical leads from assigned Lines of Businesses supporting their initiatives from an Information Security perspective.
  • Providing relationship management function primarily to the Enterprise Cloud team from an Information Security perspective.


What’s in it for you ?

  • Diversity, Equity, Inclusion & Allyship - We strive to create an inclusive culture where every employee is empowered to reach their fullest potential, respected for who they are, and are embraced through bias-free practices and inclusive values across Scotiabank. We embrace diversity and provide opportunities for all employee to learn, grow & participate through our various Employee Resource Groups (ERGs) that span across diverse gender identities, ethnicity, race, age, ability & veterans. 
  • Accessibility and Workplace Accommodations - We value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. Scotiabank continues to locate, remove and prevent barriers so that we can build a diverse and inclusive environment while meeting accessibility requirements.   

 

Location(s):  Canada : Ontario : Toronto 

Scotiabank is a leading bank in the Americas. Guided by our purpose: "for every future", we help our customers, their families and their communities achieve success through a broad range of advice, products and services, including personal and commercial banking, wealth management and private banking, corporate and investment banking, and capital markets.  

At Scotiabank, we value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. If you require accommodation (including, but not limited to, an accessible interview site, alternate format documents, ASL Interpreter, or Assistive Technology) during the recruitment and selection process, please let our Recruitment team know. If you require technical assistance, please click here. Candidates must apply directly online to be considered for this role. We thank all applicants for their interest in a career at Scotiabank; however, only those candidates who are selected for an interview will be contacted.



  • Toronto, Canada Scotiabank Full time

    The Senior Information Security Advisor (Cloud) provides guidance to business lines to ensure design, development and implementation of complex cloud projects and initiatives are in accordance with the Bank's Information Security Standards and in compliance with industry regulations. In this senior role, you will be supporting various business lines while...


  • Toronto, Canada Scotiabank Full time

    Requisition ID: 200042 Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. The Senior Manager, Information Security Advisor (Cloud) provides guidance to business lines to ensure design, development and implementation of complex cloud projects and initiatives are in accordance with the Bank's...


  • Toronto, Canada Scotiabank Full time

    Requisition ID: 200042 Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. The Senior Manager, Information Security Advisor (Cloud) provides guidance to business lines to ensure design, development and implementation of complex cloud projects and initiatives are in accordance with the Bank's...


  • Toronto, Canada Scotiabank Full time

       Requisition ID: 200042Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. The Senior Manager, Information Security Advisor (Cloud) provides guidance to business lines to ensure design, development and implementation of complex cloud projects and initiatives are in accordance with the Bank's...


  • Toronto, Canada Scotiabank Full time

       Requisition ID: 200042Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. The Senior Manager, Information Security Advisor (Cloud) provides guidance to business lines to ensure design, development and implementation of complex cloud projects and initiatives are in accordance with the Bank's...


  • Toronto, Ontario, Canada Scotiabank Full time

    Requisition ID: 200402 Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. The Senior Information Security Advisor (Cloud) provides guidance to business lines to ensure design, development and implementation of complex cloud projects and initiatives are in accordance with the Bank's Information Security...


  • Toronto, Canada Scotiabank Full time

    Requisition ID: 200402 Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. The Senior Information Security Advisor (Cloud) provides guidance to business lines to ensure design, development and implementation of complex cloud projects and initiatives are in accordance with the Bank's Information...


  • Toronto, Canada Scotiabank Full time

    Requisition ID: 200402 Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. The Senior Information Security Advisor (Cloud) provides guidance to business lines to ensure design, development and implementation of complex cloud projects and initiatives are in accordance with the Bank's Information...


  • Toronto, Canada Scotiabank Full time

    Requisition ID: 200402 Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. The Senior Information Security Advisor (Cloud) provides guidance to business lines to ensure design, development and implementation of complex cloud projects and initiatives are in accordance with the Bank's Information...


  • Old Toronto, Canada Security Bank & Trust Co. Full time

    Our client, a major post-secondary institution, is looking to bolster their security program with the addition of two Senior Security Analysts. The main focus of the role will be to work alongside leadership in managing the program as a whole. Your input will be instrumental in the further development of their program.Experience1. Minimum 5 years of...


  • Old Toronto, Canada Security Bank & Trust Co. Full time

    Our client, a major post-secondary institution, is looking to bolster their security program with the addition of two Senior Security Analysts. The main focus of the role will be to work alongside leadership in managing the program as a whole. Your input will be instrumental in the further development of their program.Experience1. Minimum 5 years of...


  • Toronto, Canada Scotiabank Full time

    Is this role right for you? You have led a team of senior professionals providing security advisory services. You have a strong experience leading complex projects providing security advise to ensure information security risk are mitigated. You thrive in solutioning for multiple security domains (Risk Management, Data Protection, Cloud Security...


  • Toronto, Canada Scotiabank Full time

    Is this role right for you? You have led a team of senior professionals providing security advisory services. You have a strong experience leading complex projects providing security advise to ensure information security risk are mitigated. You thrive in solutioning for multiple security domains (Risk Management, Data Protection, Cloud Security...


  • Old Toronto, Canada Thales e-Security, Inc. Full time

    OT Cyber Security Advisor page is loaded OT Cyber Security Advisor Apply locations Toronto time type Full time posted on Posted 2 Days Ago job requisition id R1002161 Location: Toronto, CanadaThales people architect solutions that support 85 million mainline and suburban passenger journeys, worldwide,...


  • Toronto, ON, Canada Thales e-Security, Inc. Full time

    OT Cyber Security Advisor page is loaded OT Cyber Security Advisor Apply locations Toronto time type Full time posted on Posted 2 Days Ago job requisition id R1002161 Location: Toronto, CanadaThales people architect solutions that support 85 million mainline and suburban passenger journeys, worldwide, every day. Our Rail Signalling and Communication...


  • Toronto, Canada Canadian Institute for Health Information (CIHI) Full time

    Who we are We are an organization comprised of industry thought leaders who are passionate about health data and want to make a difference in the health care field. We are an independent, not-for-profit organization and together with our partners we provide essential information on Canada's health systems, enabling decisions that lead to healthier Canadians....


  • Toronto, Canada Canadian Institute for Health Information (CIHI) Full time

    Who we are We are an organization comprised of industry thought leaders who are passionate about health data and want to make a difference in the health care field. We are an independent, not-for-profit organization and together with our partners we provide essential information on Canada's health systems, enabling decisions that lead to healthier...


  • Toronto, Canada Canadian Institute for Health Information (CIHI) Full time

    Who we areWe are an organization comprised of industry thought leaders who are passionate about health data and want to make a difference in the health care field. We are an independent, not-for-profit organization and together with our partners we provide essential information on Canada's health systems, enabling decisions that lead to healthier Canadians....


  • Toronto, Canada Canadian Institute for Health Information (CIHI) Full time

    Who we are We are an organization comprised of industry thought leaders who are passionate about health data and want to make a difference in the health care field. We are an independent, not-for-profit organization and together with our partners we provide essential information on Canada's health systems, enabling decisions that lead to healthier Canadians....


  • Toronto, Canada Canadian Institute for Health Information (CIHI) Full time

    Who we areWe are an organization comprised of industry thought leaders who are passionate about health data and want to make a difference in the health care field. We are an independent, not-for-profit organization and together with our partners we provide essential information on Canada's health systems, enabling decisions that lead to healthier Canadians....