Container Vulnerability Management Specialist/ Information Security Specialist (US)
TDAbout the role
Work Location:
Mount Laurel, New Jersey, United States of AmericaHours:
40Pay Details:
$87,000 - $151,000 USDTD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Line of Business:
Technology SolutionsJob Description:
Department Overview:
We are looking for someone experienced in vulnerability management practices to develop and implement technology controls and information security related policies, programs and tools related to containerized environments. You will provide specialized expertise and guidance on assessing risks, identifying potential gaps, and providing security solutions to mitigate vulnerability risk in TD containerized environments. You may also participate on projects of moderate to high complexity and provide complex reporting, analysis, and assessments at the functional, business line or enterprise level.
Job Description:
The Information Security Specialist defines, develops and/or implements Technology Controls / Information Security related policies, programs, tools and provides specialized expertise and guidance on assessing risks, identifying potential gaps and providing security solutions to mitigate risks and protect the Bank. Participates on projects of moderate to high complexity and provides complex reporting, analysis, and assessments at the functional, business line or enterprise level for own area.
Education & Experience:
- Bachelor's degree preferred
- Information security certification / accreditation an asset
- 7+ years of relevant experience
- Expert knowledge of IT security and risk disciplines and practices
Preferred Qualifications:
- Function as a technical expert for vulnerability scanning, prioritization, and remediation tracking strategies, focused on vulnerabilities within containers and containerized applications
- Evaluate risks associated with vulnerabilities impacting the container ecosystem, considering factors like business criticality and system exposure
- Generate reports on vulnerabilities to communicate impact and status of remediation to relevant stakeholders
- Contribute to and enforce standard controls, procedures, and guidance to ensure best practices are followed throughout the development lifecycle
- Interact across business lines to guide business partners on relevant technology controls and information security programs, standards, and policies
- Lead or contribute to enterprise-level projects and initiatives to meet risk mitigation and remediation plan objectives
- Influence behavior to reduce risk and foster a strong technology risk management culture throughout the enterprise
- Future opportunity to manage direct report(s) and perform managerial tasks, including delegation, supervision, training, and supporting career development objectives for subordinate(s)
- Strong technical background with expert knowledge in deploying containerized applications
- Experience with the vulnerability management lifecycle, including identifying, assessing, mitigating, and reporting security vulnerabilities
- Working knowledge of container security tooling such as AquaSec, Wiz, etc.
- Familiarity with ServiceNow Vulnerability Response module(s)
- Working knowledge of information security concepts, such as risk treatment, to implement response strategies for identified risks
- Demonstrated ability to participate in complex, comprehensive or large projects and initiatives
- Ability to serve as a lead expert resource in technology controls and information security for project teams, the business, organization, and outside vendors
- Ability to work independently without supervision; d
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s