Scotiabank’sSecurity Advisory Services team is responsible for providing advisory services to Tangerine Bank and it’s business lines, subsidiaries and affiliates enabling the achievement of the Bank's Information Security as it continues to move to the Public Cloud.
The RoleReporting to the Senior Manager of Security Advisory (Tangerine), the Information Security Advisor provides guidance to business lines to ensure design, development and implementation of complex projects and initiatives are in accordance with the Bank's Information Security Standards and in compliance with industry regulations. In this role, you will be supporting various business lines while assisting them in making informed decisions to protect information assets deployed in Public Clouds environments.
Isthis role right for you? In this role, you will:
- You have a strong experience leading complex projects providing security advise to ensure information security risk are mitigated.
- You thrive in solutioning for multiple security domains (Application Security, Data Protection, Cloud Security Engineering, Identity and Access Management, Cloud Security Architecture, Network Security, Risk Management, etc.) and knowledgeable of Zero Trust Architecture principles.
- You have experience in solutioning security architecture, creating and reviewing security patterns, and advising on security risks.
- You are proficient in reviewing architecture and solution design documentation and can identify and assess potential risks.
- You excel in reviewing Technical Design and Security Design documents and creating assessment documents (Threat Risk Assessment) and evaluating risks.
- You are passionate about new technologies and enjoy the challenges of implementing security controls to protect them.
- Working on different types of projects (from large complex to simple) is a part of your DNA.
- You love to collaborate with various business lines, IT support functions and IS&C Control functions
- Post-secondary education in Computer Science or in a related field.
- You have at least 5 years of hands-on technical working experience in performing security assessments on cloud platforms, CI/CD deployment pipelines, network infrastructure and complex applications. Experience with Risk Assessments of applications migrated into the Cloud Environments.
- You have at least 5 years experience in security solution architecture, software development, and/or hands-on experience with implementations of cloud environments, security controls and cloud-based solutions.
- You are a strong communicator and capable of creating clear documentation and communicating ideas to others
- You have solid knowledge of cloud technologies and cloud security (GCP or Azure or AWS, Kubernetes and IAM, CI/CD pipelines, Terraforms, infrastructure as a code).
- Experience with GCP and Kubernetes is a strong asset.
- Experience with tools used in securing cloud deployments such as CNAPP, CSPM, CWPP, etc.
- You have cloud security engineering or cloud solution architecture certifications from Google, Microsoft or AWS.
- You have used industry leading productivity tools to produce quantitative/qualitative reports, data flow diagrams & visual presentations.
- Certifications (CISSP, CISM, CCSP, CRISC) are nice to have.
- Familiar with industry standards and frameworks e.g., NIST 800-53, ISO 27001, ISO
27002, ISO 27017, ISO
27018, PCI DSS, CIS. - You possess advanced communication (verbal/written/presentation) skills in English. Knowledge of Spanish is an asset.
- Provide strategic guidance and technical expertise to business lines, IT support functions, and IS&C Control functions to include security within early stages of the design of Bank´s technological solutions.
Providing the following functions to Tangerine/Scotiabank’s Initiatives: - Conducting Threat Risk Assessments and performing security advisory work on specific applications and infrastructure associated with Scotiabank’s Cloud and other Initiatives ensuring that controls are adequate, meet Bank standards, and enable business objectives.
- Provide…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: