CIBC

Sr. Consultant, Information Security(Cryptography Operations)

Toronto, ON Full time

We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.

At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute.

To learn more about CIBC, please visit CIBC.com

What You’ll Be Doing

As a Senior Information Security Consultant you will join CIBC’s Enterprise Cryptographic Services to ensure that all areas are following appropriate compliance requirements and identifying gaps and risks to the organization. You will then make recommendations on how to mitigate and improve the gaps to ensure alignment to best practices. Additionally you will act in a team lead capacity acting as an escalation point for junior staff providing coaching and mentorship.

At CIBC we enable the work environment most optimal for you to thrive in your role. You’ll have the flexibility to manage your work activities within a hybrid work arrangement where you’ll spend 1-3 days per week on-site, while other days will be remote

How You’ll Succeed

  • Cryptographic, key management and certificate management services: Oversee and review projects ensuring that they meet the compliance requirements in relation to Cryptographic, key management and certificate management services. Oversee the  delivery of multiple projects and manage the team schedules to meet the project timelines. Participate in the audit and compliance reviews and work with the stakeholders to close the audit and compliance deficiencies. Participate in maintenance of a Public Key Infrastructure (PKI) and Certificate Authority (CA) services within the Enterprise Cryptographic Services (ECS) team and develop PKI policies and procedures. Review changes to the industry-wide and regulatory requirements; looking at current state process and determine enhancements to meet the new requirements. Perform day to day operations within a centralized Key & Certificate management team. Perform cryptographic consultancy services to support certificate and key management requirements across the organization. Ensure Certificate and Key Management processes and activities are executed in a fully compliant manner. Identify needs and contribute to governance initiatives by bringing expertise gained in the Cryptography field around practical security governance, in the development of CIBC policies, standards, procedures, and guidelines; develop guidelines for the usage, control, maintenance and compliance of information and computer resources.
  • Coaching and mentorship: Provide technical expertise in development and support of all activities, processes, procedures and tools related to cryptographic services. Provide coaching and mentorship to junior staff
  • Troubleshooting and Issue Resolution: Investigate and resolve PKI-related incidents, such as certificate expirations or revocation failures. Troubleshoot connectivity issues related to certificate usage. Collaborate with IT teams to address technical challenges promptly.
  • Data Analytics: Analyze PKI-related data to identify trends, anomalies, and potential security risks. Develop insights from certificate usage patterns and recommend improvements. Utilize data-driven approaches to enhance PKI operations.

Who You Are

  • You can demonstrate 5+ years of experience in Information Security focusing on PKI and cryptography troubleshooting and analysis and network protocols. You have strong knowledge of security infrastructure & controls within heavily regulated environments with compliance frameworks and all related integrations associated with the services. You know the processes, tools, techniques and practices for assuring consistency to standards associated with accessing, altering and securing organizational data with proxies.

  • You have a degree/diploma in Computer Science, Engineering or a related field.

  • You act like an owner. You thrive when you're empowered to take the lead, go above and beyond, and deliver results.

  • You’re digitally savvy. You seek out innovative solutions and embrace evolving technologies. You can easily adapt to new tools and trends.

  • You’re a certified professional. You have current accreditation and good standing in Security certifications It’s an asset if you have Certified Information Systems Security Professional (CISSP), CISA – Certified Information Systems Auditor (CISA), CEH – Certified Ethical Hacker (CEH), CISM – Certified Information Security Manager (CISM), ISSEP – Information Systems Security Engineering Professional (ISSEP), Microsoft Certified - Azure Security Engineer Associate

  • Values matter to you. You bring your real self to work, and you live our values - trust, teamwork, and accountability.

#LI-TA 

What CIBC Offers

At CIBC, your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential. We aspire to give you a career, rather than just a paycheck.

  • We work to recognize you in meaningful, personalized ways including a competitive salary, incentive pay, banking benefits, a benefits program*, defined benefit pension plan*, an employee share purchase plan, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program.

  • Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients.

  • We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development.

*Subject to plan and program terms and conditions

What you need to know

  • CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience. If you need accommodation, please contact Mailbox.careers-carrieres@cibc.com

  • CIBC is committed to clarity in our hiring process. All roles posted are opportunities we’re actively recruiting for, unless stated otherwise.

  • You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit.

  • We may ask you to complete an attribute-based assessment and other skills test (such as simulation, coding, French proficiency).

  • We use artificial intelligence tools during the recruitment process. Our goal for the application process is to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us.

Job Location

Toronto-81 Bay, 17th Floor

Employment Type

Regular

Weekly Hours

37.5

Skills

Certificate Management, Cryptography, Data Analytics, Hardware Security Modules (HSM), Information Security, Key Management, Risk Management, Security Infrastructure, Security Operations, Technical Leadership, Troubleshooting