Senior Information Security Specialist
![]() | |
![]() | |
![]() | |
![]() United States, North Carolina, Charlotte | |
![]() | |
*Top Skills' Details*** FS / Banking experience is a must have*
* The Leads he's trying to hire is a domain expert with the ability to guide folks through the whole process making sure they're collecting information within the SLA, and handling the processes and activities along the way, not only meeting deadlines but providing quality responses to their regulators. * The Exam Execution Lead is responsible for start to finish, managing an exam. From pre-planning which happens 3-4 months ahead of an exam starting they'll be engaged in pre-planning activities, bringing all the stakeholders together and setting the stage for the exam, briefing them on what's coming, what they need to be thinking about (gaps in the environment, potential areas that regulators have been poking them on, etc.) providing value to the stakeholder community and ensuring they're collecting the right list of stakeholders. The next step is essentially the 'field work' which includes collecting information from various stakeholders, getting questions from their regulators answered, ensuring they're orchestrating, and collecting information then documenting and providing that information back. * Must have sound IT risk management and audit background with regulatory experience/knowledge. FFIEC, CIS Benchmarks, regulatory experience in general. Having a similar role in the past would be a HUGE advantage. * There's a lot that has to be done in terms of dealing with senior level executives, regulators, 2nd LoD, 3rd LoD partners - He's talking to every kind of senior leader on a daily basis and they're exposed to a lot of information. He sits in meetings with their regulators and his management, they support every aspect - They are training folks on how to speak to regulators and conduct themselves. Giving them wholesome support is what their function is about. * Emphasis on soft skills/internal customer facing must haves: The role requires a lot of finesse, soft sills, staying calm. Maturity, positive attitude, empathy, assurance, putting others before themselves and taking care of their stakeholders are all required. The role will also include after hours support at times. Location/In office frequency: Candidates are required to go on-site 2 days/week and can sit out of any of the following TD Locations - Mt. Laurel, NJ, Charlotte, NC, and New York City, NY (One Vanderbilt) Team Focus and Support: What they do is support end to end exam execution. They have exams that they manage for P&T (Platforms and Technology). There are a lot of complexities because they have to coordinate with several stakeholders, bringing it down to the basics and ensuring that the information they're providing to their regulators is comprehensive, complete, and wholesome. They go through a pre-exam preparation phase, then exam execution is basically when the examiners meet with the executives, have meetings, ensuring they're able to orchestrate. * Regulatory, Audit & Compliance Assurance: The team supports all P&T (Platforms & Technology) related regulatory interactions, including business-led, second line of defense, and third line of defense exams. They ensure that all regulatory requirements are met and that the bank's operations are compliant. * Risk Assessment and Mitigation: The team conducts complex reporting, analysis, and assessments at the functional, business line, or enterprise level. They identify potential security risks and provide solutions to mitigate these risks, protecting the bank from potential threats. * The team participates in large, complex projects and initiatives, acting as lead expert resources in technology controls and information security. They collaborate with project teams, business units, and external vendors to ensure security measures are integrated into all projects. * The team is committed to continuous learning and improvement. They stay abreast of industry trends, share knowledge, and educate others within the organization.. Job Description: The Information Security Specialist defines, develops and/or implements Technology Controls / Information Security related policies, programs, tools and provides specialized expertise and guidance on assessing risks, identifying potential gaps and providing security solutions to mitigate risks and protect the Bank. Participates on projects of moderate to high complexity and provides complex reporting, analysis, and assessments at the functional, business line or enterprise level for own area. Depth & Scope: * Participates on complex, comprehensive or large projects and initiatives * Acts as a lead expert resource in technology controls / information security for project teams, the business / organization and/or outside vendors * Has advanced knowledge of organization, technology controls / security/ risk issues * Guides partners on a broad range of specific Technology Controls and Information Security programs, policies, standards, and incidents. * Conduct risk assessment, required controls definition, control procedure appropriateness, vulnerability assessments and any other relevant areas. * Lead or contribute to the completion of risk and control design assessments for an assigned business application, business portfolio, and overall enterprise, as well as risk mitigation and remediation plans and remediation strategy. * Contribute to the definition, development, and oversight of a global security management strategy and framework. * Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to both current and emerging technology and security threats against TDBG's business. * Develop on-going technology risk reporting, monitoring key trends and defining metrics to regularly measure control effectiveness for own area. * Influence behavior to reduce risk and foster a strong technology risk management culture throughout the enterprise. Preferred Qualifications: * CRISC certification or equivalent experience * CISA certification or equivalent experience * CISSP certification or equivalent experience a plus * Inspire a positive work environment and help champion quality, innovation, teamwork and service to the business. * Learn voraciously, stretch your thinking, share your knowledge and educate others. * Communicate and collaborate with both technical and non-technical professionals. * Cultivate winning relationships by building trust with business and technology partners. * Share our commitment to productivity, effectiveness and operational efficiency. * Embrace change and witness amazing things happen - from the inside. * Ability to work in a high paced, multifaceted environment with minimal supervision * Ability to work independently and often autonomously in the management of projects, teams and operational disciplines and apply strategic thinking throughout the execution of work plans * Diverse, innovative thinking with respect to reusability of architecture and processes * Sound management techniques, experience in problem resolution and development of strategies for operational improvement * Drive to boost your knowledge and expertise by staying abreast of industry and business trends * Willingness to work closely and effectively with clients, stay connected to business needs and direction *Skills* information security, regulatory compliance, risk assessment, audit, RCSA, FFIEC, banking experience *Top Skills Details* information security,regulatory compliance,risk assessment,audit,RCSA,FFIEC,banking experience *Pay and Benefits* The pay range for this position is $65.00 - $75.00/hr. Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following: * Medical, dental & vision * Critical Illness, Accident, and Hospital * 401(k) Retirement Plan - Pre-tax and Roth post-tax contributions available * Life Insurance (Voluntary Life & AD&D for the employee and dependents) * Short and long-term disability * Health Spending Account (HSA) * Transportation benefits * Employee Assistance Program * Time Off/Leave (PTO, Vacation or Sick Leave) *Workplace Type* This is a hybrid position in Charlotte,NC. *Application Deadline* This position is anticipated to close on Apr 29, 2025. About TEKsystems: We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company. The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law. |