Director, Configuration & Identity Exposure

Not Interested
Bookmark
Report This Job

profile Job Location:

Toronto - Canada

profile Monthly Salary: Not Disclosed
Posted on: 14 hours ago
Vacancies: 1 Vacancy

Job Summary

Were building a relationship-oriented bank for the modern world. We need talented passionate professionals who are dedicated to doing whats right for our clients.

At CIBC we embrace your strengths and your ambitions so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute.

To learn more about CIBC please visit

What youll be doing

As the Director Configuration& IdentityExposure within the Cyber Threat Exposure Management team you will play a pivotal role in safeguarding CIBCs digital landscape. You will lead a specialized function responsible for uncovering contextualizing and reducing risks tied to identity misconfigurations and entitlement driftattack pathsfrequentlyleveragedby threat actors. This is an opportunity to build and scale a team that continuously discovers exposures prioritizes them using risk-based methodologies and drives coordinated remediation across technology domains. Your work will strengthen CIBCs enterprise cyber threat exposure management program ensuring risks are measured governed and reduced with urgency and precision. This rolewill initially be an individualcontributor until the team is assembled. At that point this role willmanage people managers specialized individual contributors and work closely with other Directors to collectivelyoversee the operational aspects of cyber security for CIBC. This specific position is accountable for enterprise-wide Configuration& IdentityExposure management.

At CIBC we enable the work environment most optimal for you to thrive in your role. Youll have the flexibility to manage your work activities within a hybrid work arrangement where youll spend 1-3 days per week on-site while other days will be remote.

How youll succeed

  • Exposure Discovery:Build andoperatea proactive exposure-hunting capability focused on identity configuration and entitlement-related risks (e.g. privileged access weaknesses misconfigured cloud roles legacy IAM systems MFA gaps).

  • Risk Analysis & Contextualization:Integrate and analyze signals from multiple platforms (vaulting solutions identity platformsidentitygovernanceand administrationsolutions) to produce aconsolidatedrisk viewusingon-prem and cloud posture managementsolutions. Apply contextual risk scoring to exposures factoring in exploitability business criticality and compensating controlsusing tools.

  • Remediation Leadership:Lead enterprise-wide campaigns targeting high-impact misconfigurations and identity weaknesses. Define scope timelines owners and acceptance criteria for remediation efforts.

  • Governance & Collaboration:Establishgovernance routines with IAM Cloud Engineering and Architecture teams to detect drift early andeliminatecontrol regressions. Clarify collaboration boundaries with peer Director roles to ensure exposures are aggregated and prioritized for remediation.

  • Reporting & Metrics:Develop andmaintainexecutive dashboards showing exposure trends residual risk and backlog health. Track and report on remediation progress and campaign outcomes.

  • Continuous Improvement:Drive ongoing improvement of identity and configuration exposure management practices contributing to strategy and roadmap development across IAM cloud security posture configuration governance and related domains.

  • External Benchmarking:Maintainan external network of industry peers to benchmark and inform the evolution of CIBCs exposure reduction capabilities.

Who you are

  • You can demonstrate 10-12 years of experiencein Information Security IAM Cloud Security or related domains with experience implementing strategic team goals and coaching high-performing teams. Youpossessdeep knowledge of identity and access management cloud/IaaS roles configuration governance CIEM/CSPM tooling and entitlement drift detection. Security certifications such as CISSP CISM or equivalent experience are assets.
  • You know that details matter. You notice things that others dont. Your critical thinking skills help to inform your decision making. You excel at investigating complex problems synthesizing multi-source data and communicating technical details in a clear impactful manner.
  • Your influence makes a difference. You know that relationships and networks are essential to success. You inspire outcomes by sharing your expertise. You build strong internal and external relationships working effectively across technology risk audit and regulatory teams to drive remediation and control effectiveness.
  • Youre motivated by collective success. You know that teamwork can transform a good idea into a great one. You know that an inclusive team that enjoys working together can bring a vision to life.
  • You embrace and advocate for change. You continuously evolve your thinking and the way you work in order to deliver your best. You have experienceestablishinggovernance routines running enterprise campaigns and managing remediation backlogs at scale.
  • Values matter to you. You bring your real self to work and you live our values - trust teamwork and accountability.

#LI-TA

What CIBC Offers

At CIBC your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential. We aspire to give you a career rather than just a paycheck.

  • We work to recognize you in meaningful personalized ways including a competitive salary incentive pay banking benefits a benefits program* defined benefit pension plan* an employee share purchase plan a vacation offering wellbeing support and MomentMakers our social points-based recognition program.

  • Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients.

  • We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development.

*Subject to plan and program terms and conditions

What you need to know

  • CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience. If you need accommodation please contact

  • CIBC is committed to clarity in our hiring process. All roles posted are opportunities were actively recruiting for unless stated otherwise.

  • You need to be legally eligible to work at the location(s) specified above and where applicable must have a valid work or study permit.

  • We may ask you to complete an attribute-based assessment and other skills test (such as simulation coding French proficiency).

  • We use artificial intelligence tools during the recruitment process. Our goal for the application process is to get to know more about you all that you have to offer and give you the opportunity to learn more about us.

Job Location

Toronto-81 Bay 19th Floor

Employment Type

Regular

Weekly Hours

37.5

Skills

Analytical Thinking Information Management Information Security Leadership Long Term Planning People Management Security Risk Security Trainings

Required Experience:

Director

Were building a relationship-oriented bank for the modern world. We need talented passionate professionals who are dedicated to doing whats right for our clients.At CIBC we embrace your strengths and your ambitions so you are empowered at work. Our team members have what they need to make a meaningf...
View more view more

Key Skills

  • Children Activity
  • Business Continuity Planning
  • ICWA
  • HVAC
  • JDE
  • Air Conditioning