Salary
💰 $87,000 - $151,000 per year
About the role
- Define, develop and/or implement Technology Controls / Information Security related policies, programs and tools
- Provide specialized expertise and guidance on assessing risks and identifying potential gaps
- Provide security solutions to mitigate risks and protect the Bank
- Participate on projects of moderate to high complexity and provide complex reporting, analysis and assessments at the functional, business line or enterprise level
- Act as a lead expert resource in technology controls/security for project teams, the business/organization and/or outside vendors
- Apply advanced knowledge of organization, technology controls, security and risk issues
- Support vulnerability disclosure programs and collaborate with security disclosure communities
Requirements
- 7+ years of relevant experience
- Bachelor's degree preferred
- Information security certification / accreditation an asset
- Expert knowledge of IT security and risk disciplines and practices
- Advanced penetration testing experience (preferred)
- Experience working in security disclosure program communities
- Experience with Threat Modelling applications
- Certifications in the domain of penetration testing or application security (e.g., OSCP, OSWE, GWAPT)
- Participation in Bug Bounties, CTFs, or similar activities
- Program Management experience