drjobs Information Security Specialist ( Cloud DevSecOps Engineer)

Information Security Specialist ( Cloud DevSecOps Engineer)

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Toronto - Canada

Monthly Salary drjobs

$ 91200 - 136800

Vacancy

1 Vacancy

Job Description

Work Location:

Toronto Ontario Canada

Hours:

37.5

Line of Business:

Technology Solutions

Pay Details:

$91200 - $136800 CAD

TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidates skills and experience job-related knowledge geographic location and other specific business and organizational needs.

As a candidate you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.

Job Description:

We are seeking a cloud compliance CAC test automation engineer to drive the security compliance and automation of cloud infrastructure in a highly regulated banking environment. This role is responsible for designing implementing and maintaining automated testing frameworks to validate cloud security policies governance rules and infrastructure compliance within our cloud and container environments (GCP Azure AWS)

The ideal candidate will have expertise in cloud infrastructure as code (IaC) policy as code (PaC) regulatory compliance (e.g. FFIEC call ma PCI DSS SOC 2 NIST 800 -53 CIS benchmarks) and test automation to enforce continuous security validation across the banks cloud operations.

Key responsibilities:

Automated testing for cloud policies

  • Develop and maintain automated test frameworks for validating cloud security and compliance policies in alignment with banking regulations.
  • Implement policy as a code testing using tools like Wizio hashicorp Sentinel GCP Org policies and Azure Policies to prevent misconfigurations and compliance drift
  • Ensure continuous validation of cloud CaC configurations meet internal and external regulatory and cybersecurity requirements.

Continuous testing & CI/CD integration

  • integrate compliance validation tests into CI CD pipelines GitHub actions GitHub workflows and terraform to enforce continuous compliance checks before deployment.
  • Automate security scanning and validation of terraform deployments with PowerShell and Python
  • Validate the enforcement of banking cloud security policies by embedding automated compliance checks into DEVSECOPS workflows and actions.

Cloud Security and Regulatory Compliance enforcement

  • Work closely with Banking security DevOps teams and Cloud Compliance governance teams to define and enforce cloud security controls in accordance with regulatory mandates.
  • Validate cloud resource configurations against financial industry standards (NIST ISO 27001 SOC 2)
  • Implement/validate runtime compliance monitoring an automated remediation workflows.

Observability reporting & Audit Readiness

  • Implement/test logging and monitoring solutions to detect compliance violations in real time.
  • Automate/validate the generation of compliance reports and dashboards using tools like SonarQube Splunk
  • Ensure that all TD Standards & STIG requirements for IAAS PaaS SaaS CaC development and testing activities are traceable and auditable for internal risk assessments and external regulatory audits.

Required Skills and Experience:

Cloud infrastructure as a code - experience with Terraform.

Policy as a code(PaC)- hands on experience with HashiCorp Sentinel Azure policy Wiz policy GCP Org policy and Open Policy Agent.

Test Automation Experience with tools like

CI/CD Pipelines- Familiarity with GitHub Jenkins

Cloud Security & Compliance Understanding of CIS benchmarks NIST standards and security frameworks.

Scripting and Automation-proficiency in Python bash PowerShell terraform and automate testing framework.

Preferred Qualifications:

Specifications; Azure fundamentals certification Azure security engineer associate GCP fundamentals certification

Experience with multi cloud security testing GCP Azure and AWS

Familiarity with Kubernetes security and policy automation

Education:

University degree

Information security certification / accreditation an asset

7 years of relevant experience

why join us

Work on cutting edge cloud security and compliance automation.

Be part of a DEV SEC OPS driven culture with CI CD integrated security testing

Collaborate with global teams to secure multi cloud environments.

#LI-Tech

Who We Are:

TD is one of the worlds leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day we deliver legendary customer experiences to over 27 million households and businesses in Canada the United States and around the world. More than 95000 TD colleagues bring their skills talent and creativity to the Bank those we serve and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers communities and colleagues.

TD is deeply committed to being a leader in customer experience that is why we believe that all colleagues no matter where they work are customer facing. As we build our business and deliver on our strategy we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether youve got years of banking experience or are just starting your career in financial services we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs were here to support you towards your goals. As an organization we keep growing and so will you.

Our Total Rewards Package
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial physical and mental well-being goals. Total Rewards at TD includes a base salary variable compensation and several other key plans such as health and well-being benefits savings and retirement programs paid time off banking benefits and discounts career development and reward and recognition programs. Learn more

Additional Information:
Were delighted that youre considering building a career with TD. Through regular development conversations training programs and a competitive benefits plan were committed to providing the support our colleagues need to thrive both at work and at home.

Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations requirements.


Colleague Development
If youre interested in a specific career path or are looking to build certain skills we want to help you succeed. Youll have regular career development and performance conversations with your manager as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience or you want to coach and inspire your colleagues there are many different career paths within our organization at TD and were committed to helping you identify opportunities that support your goals.

Training & Onboarding
We will provide training and onboarding sessions to ensure that youve got everything you need to succeed in your new role.

Interview Process
Well reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.


Accommodation
Your accessibility is important to us. Please let us know if youd like accommodations (including accessible meeting rooms captioning for virtual interviews etc.) to help us remove barriers so that you can participate throughout the interview process.

We look forward to hearing from you!

Language Requirement (Quebec only):

Sans Objet

Required Experience:

Unclear Seniority

Employment Type

Full-Time

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.