Senior Analyst, Cyber Security Control & Defense

01 Jun 2024
14 Jun 2024
Job Type
Cyber Security
Employer Sector
Technology, IT & Telecoms
Contract Type
Full Time

Press Tab to Move to Skip to Content Link

Select how often (in days) to receive an alert:

Title: Senior Analyst, Cyber Security Control & Defense

Requisition ID: 198872

Join a purpose driven winning team, committed to results, in an inclusive and high–performing culture.

As a Security Engineer under Cloud Platform Engineering, you will be responsible for working with a diverse team, leveraging industry leading SDLC processes to engineer, maintain, integrate and automate security tools and infrastructure.

Contributes to the overall success of the Cloud Security Engineering team with a global focus on Cloud Security tools, code control, and pipeline security, supporting the achievement of the Bank's information security objectives of integrity, confidentiality/privacy, availability, and continuity.

The incumbent is responsible for supporting and upholding the Bank's application change control standards.

Is the role right for you?

Collaborate in a team environment spanning multiple geographies to execute support and project tasks.

Perform various DevOps activities supporting tools and infrastructure spanning on–premise, private cloud, and public cloud environments supporting the bank's SDLC processes – expanding support levels towards a targeted 24/7 support model.

Work with vendors and technology teams to maintain security compliance and software currency within our tools and infrastructure

Working from requirements, assist in design, development, and implementing solutions supporting application security at the bank.

Develop and support operations support for tools developed by Security Engineering teams and transition to Day 2 operations.

Reporting to management on the status of the system of internal controls with recommendations for remediation of risks.

Understand how the Bank's risk appetite and risk culture should be considered in day–to–day activities and decisions.

Actively pursues effective and efficient operations of his/her respective areas in accordance with Scotiabank's Values, its Code of Conduct, and the Global Sales Principles, while ensuring the adequacy, adherence to, and effectiveness of day–to–day business controls to meet obligations with respect to operational, compliance, AML/ATF/sanctions and conduct risk.

Champions a high–performance environment and contributes to an inclusive work environment.

Do you have the skills that will enable you to succeed in this role?

Experience with the execution and delivery of strategic objectives.

Influence decision–makers and stakeholders to achieve a consistently high security bar

Support developing security tools and automation

Working knowledge of the Bank's operating policies, procedures, ethics and values, and familiarity with confidentiality/privacy codes and data integrity expectations of regulatory agencies are necessary.

Ability to drive deliverables, streamline processes and work closely with our digital factory & labs to achieve our Security Standards & deliver on Agile Deployments.

Ability to effectively communicate information regarding Global Code Management department, both verbally and written, within our group itself and externally to Bank clients, management, and audit teams.

Coding and scripting experience in Python, Bash, or Java 2+ years

Experience with administration of Windows and Linux systems, 2+ years

Experience with Linux, Windows, and database systems (Oracle, Postgres, Sybase, etc.) 1+ years

Experience with SCM and build tools for continuous integration (GIT, Jenkins, Azure DevOps, etc.)

Experience with container–based virtualization technologies (Docker, Kubernetes, etc.) is an asset for this position

Experience with configuration management and Infrastructure as Code (IaC) tools (Terraform, Ansible, etc.) is an asset for this position

Experience or knowledge of application security tools including one or more of the following is an asset

Sonrai, Aqua Sec, Fortify WebInspect, Fortify Software Security Center, Fortify Static Code Analyzer, Code Dx, Black Duck, NowSecure Auto, SD Elements.

Excellent organization, time management, problem–solving, and analytical skills

Fluent in English, Spanish an asset

What's in it for you ?

  • Diversity, Equity, Inclusion & Allyship – We strive to create an inclusive culture where every employee is empowered to reach their fullest potential, respected for who they are, and are embraced through bias–free practices and inclusive values across Scotiabank. We embrace diversity and provide opportunities for all employee to learn, grow & participate through our various Employee Resource Groups (ERGs) that span across diverse gender identities, ethnicity, race, age, ability & veterans.
  • Accessibility and Workplace Accommodations – We value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. Scotiabank continues to locate, remove and prevent barriers so that we can build a diverse and inclusive environment while meeting accessibility requirements.
  • Upskilling through online courses, cross–functional development opportunities, and tuition assistance.
Location(s): Canada : Ontario : Toronto

Scotiabank is a leading bank in the Americas. Guided by our purpose: "for every future", we help our customers, their families and their communities achieve success through a broad range of advice, products and services, including personal and commercial banking, wealth management and private banking, corporate and investment banking, and capital markets.

At Scotiabank, we value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. If you require accommodation (including, but not limited to, an accessible interview site, alternate format documents, ASL Interpreter, or Assistive Technology) during the recruitment and selection process, please let our Recruitment team know. If you require technical assistance, please click here . Candidates must apply directly online to be considered for this role. We thank all applicants for their interest in a career at Scotiabank; however, only those candidates who are selected for an interview will be contacted.