Title: Senior Analyst, Security Assurance
Requisition ID: 248625
Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.
Security Assurance team within Security Risk Governance is responsible for reviewing privileged accesses and configurations on a scheduled basis to identify areas where access and configurations have been changed without cause. Demonstrating security operation teams adhere to defined processes and procedures, supporting the achievement of the Bank’s information security objectives. Reviewing operational practices, reporting gaps, and working with the process owners to achieve resolution of any identified deficiencies. Identifying and managing compliance related issues, tracking IT risks as well as other key performance indicators.
Is this role right for you? In this role, you will:
- Review privileged access and configuration changes to ensure they follow defined processes and standards.
- Evaluate IT applications and IT pervasive controls, identifying gaps and recommending improvements.
- Maintain and update documentation supporting SOX Business Processes and SOX IT Pervasive areas under the guidance of IS&C management and control owners.
- Analyze large volumes of unstructured data, interpret findings, and provide clear reporting on risk, compliance issues, and operational gaps.
- Monitor and assess alerts and risk ratings for high‑risk, sensitive, or security‑related events.
- Work closely with business, technical, and operational groups across the Bank to ensure alignment between technical solutions and business strategies.
- Track IT risks and key performance indicators, ensuring timely escalation and resolution of identified deficiencies.
- Exercise sound judgment and independence in day‑to‑day decision‑making while adhering to the Bank’s Information Security Policies, Standards, and regulatory requirements.
Do you have the skills that will enable you to succeed in this role? We’d love to work with you if you have:
- Have familiarity and experience with several banking applications and infrastructure environment including, but not limited to, firewalls and network security.
- Have working knowledge within key IT controls and risk assessment concepts
- Experience with operational/security risks, threats & potential exposures and potential security breach situations.
- Knowledge of audit practices and methodologies.
- Industry certifications (i.e. CCNA, CISA, CRISC, etc.) would be an asset(s)
- Have strong communication (verbal/written) and good interpersonal skills to build relationships with internal and external customers.
- Expertise in IT key controls and risk assessment concepts.
- Strong verbal and written communication skills, especially report writing ability.
- One or more industry certifications like CISA, etc. in a related field is preferred with 1-2 years practical experience in information technology
- Thorough knowledge of the Bank’s application and infrastructure environment.
- University degree or college diploma in a related field is preferred
- Familiarity and experience with several Bank’s applications, network and infrastructure environment including, but not limited to IBM mainframe, Windows Active directory, AS400 and DB2
- Sound knowledge of regulatory requirements.
- Advanced presentation and communication skills.
What's in it for you?
- Diversity, Equity, Inclusion & Allyship - We strive to create an inclusive culture where every employee is empowered to reach their fullest potential, respected for who they are, and are embraced through bias-free practices and inclusive values across Scotiabank. We embrace diversity and provide opportunities for all employees to learn, grow & participate through our various Employee Resource Groups (ERGs) that span across diverse gender identities, ethnicity, race, age, ability & veterans.
- Accessibility and Workplace Accommodations - We value the unique skills and experiences each individual brings to the Bank and are committed to creating and maintaining an inclusive and accessible environment for everyone. Scotiabank continues to locate, remove and prevent barriers so that we can build a diverse and inclusive environment while meeting accessibility requirements.
- Upskilling through online courses, cross-functional development opportunities, and tuition assistance.
- Competitive Rewards program including bonus, flexible vacation, personal, sick days and benefits will start on day one.
Location(s): Canada : Ontario : Toronto
Scotiabank is a leading bank in the Americas. Guided by our purpose: "for every future", we help our customers, their families and their communities achieve success through a broad range of advice, products and services, including personal and commercial banking, wealth management and private banking, corporate and investment banking, and capital markets.
At Scotiabank, we value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. If you require accommodation (including, but not limited to, an accessible interview site, alternate format documents, ASL Interpreter, or Assistive Technology) during the recruitment and selection process, please let our Recruitment team know. If you require technical assistance, please click here. Candidates must apply directly online to be considered for this role. We thank all applicants for their interest in a career at Scotiabank; however, only those candidates who are selected for an interview will be contacted.
Job Segment:
Compliance, Information Security, Investment Banking, Network Security, Software Engineer, Technology, Legal, Engineering, Finance, Security