Senior Information Security Analyst (US)
TDAbout the role
Work Location:
Mount Laurel, New Jersey, United States of AmericaHours:
40Pay Details:
-TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Line of Business:
Technology SolutionsJob Description:
Department Overview:
The Senior Information Security Analyst (US) coordinates ongoing testing of existing network, mainframe, eCommerce, and other third-party distributed applications security intrusion and vulnerability testing as well as due diligence of vendor information security.
Depth & Scope:
- Maintains information security systems and architecture across Company's infrastructure. Applies developed knowledge of information systems technology to execute plans for implementing information security structures for new IT projects
- Takes appropriate action to ensure security of Company's information systems and data
- Designs security parameters for new systems and business applications and verifies conformance to existing security goals and policy
- Performs periodic reviews of vendors. Takes corrective action as necessary
- Manages information security aspects of IT projects, ensuring security protocols are in place and compliance with other applicable information security policies. Analyzes project plans to determine security requirements and follows up to ensure security of new systems
- Plans ongoing intrusion and vulnerability testing
- Reviews logs and reports, analyzing results to determine vulnerabilities
- Takes corrective action as necessary
- Conducts information security awareness training for business line staff
- Relates and explains security concepts and procedures outlined by Company policy
- Assists senior staff in supporting internal audit and external regulators with compliance issues and investigations. Provides supporting documentation for information security processes and procedures
- Delivers information security awareness training sessions to various business line groups. Follows up with participants to resolve any unanswered questions or provide additional materials and support
- Develops, reviews, and updates related security reporting systems. Develops new reporting criteria based on security policies. Periodically reviews security related systems and reports exceptions to management for resolution. Implements new reporting and monitoring capabilities
- Mentors less experienced staff in information technology infrastructure and associated information security problems and vulnerabilities
- Maintains current knowledge of information technology environment, proactively pursuing knowledge of new and developing technologies
- Assists management in supporting internal audit and external regulators with compliance issues and investigations. Provides supporting documentation, explanation, and analysis for information security processes and procedures
- Assists internal and external auditors as well as federal regulators and department management with on-line security issues and fraudulent activity investigations
Education & Experience:
- Associate's degree or the equivalent combination of education and work experience required
- 5-7 years related experience required
- SSCP, MCSA, and CCNA certifications preferred
- Knowledge of hardware and software aspects of IT infrastructure and associated security issues including knowledge of mainframe security systems, protocols, and procedures
- Solid knowledge of encryption algorithms and associated security protocols
- Some project management skills including ability to coordinate efforts of others and influence decision- making processes without explicit authority
- Strong technical writing and procedural documentation skills
- Ability to independently identify, address and resolve security issues
- Strong interpersonal communications skills
Preferred Qualifications:
- Certifications such as CEH, SANS-GEVA or equivalent.
- Familiarity with regulatory standards (e.g., ISO 27001, PC
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s