Back to job search
TD logo

Segment Risk Specialist – Technology and Cyber Risk Management (ATH 5304)

  • Toronto, ON
  • On-site
  • Posted Oct 8, 2026
  • 1 position

$115,600–$163,200 / year

Opens an external site

Sign in to save this job
Employment type
Full-time
Experience level
Lead · 10+ years
Minimum education
Professional degree
Apply by
Oct 20, 2026
Posting language
English
Working hours
38 hours per week

Job summary

The Segment Risk Specialist oversees and challenges risk management activities, ensuring alignment with technology and cyber threat landscapes. This role provides expert advisory services to senior management and leads the execution of second-line risk oversight programs.

Job details

Work Location: Toronto, Ontario, Canada Hours: 37.5 Line of Business: Risk Management Pay Details: $115,600 - $163,200 CAD TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs. As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role. Job Description: Job Description Segment Risk Specialist – Technology and Cyber and Risk Management The Segment Risk Specialist will partner with 2A Segments team, 2A TDRM enterprise and the First line of defense to oversee and challenge the execution of risk management activities and leading practices/technologies used to keep up with the constantly evolving technology and cyber threat landscape. Reporting to the 2A ORM Segment AVP, Segment Risk Specialist Management, this role will have the following accountabilities: • Senior specialist providing advisory services to executives, business segment leaders, and governs requirements for own work. • Integrates knowledge of the enterprise function’s or business segment’s strategy in leading program design, policy formulation, or operating standards. • Anticipates emerging business trends and regulatory/risk issues to recommend large-scale products, technical, functional, or operations improvements. • Serves as a source of expert advice to senior management and team colleagues • Advises on execution strategy and leads development/deployment of functional programs or initiatives within own field or across multiple specialties. • Solves unique and ambiguous problems with broad impact. • Execute 2nd line challenge activities required to support the ORM Framework, including but not limited to: • Review and escalate Segment Technology and Cyber RAS Measure limit & excesses and report Segment CRO and Senior Management • Support 2A Segment in the Review and Challenge of the PRCSA / RCSA; • Technology and cyber scenario analysis; • Challenge the design and operating effectiveness testing performed by the first line on the segment for Tech, Cyber, • Key Risk Indicators (KRI), Adhere to enterprise frameworks or methodologies that relate to activities for our business area; Ensure respective programs/policies/practices are well managed, meets business needs, complies with internal and external requirements, and aligns with business priorities; Review and escalate Segment RAS Measure limit & excesses and report to Segment CRO and Senior Management Challenge the design and operating effectiveness testing performed by the first line on the segment for Tech, Cyber and Data; and; • Segment Deep Dives or Segment Target Reviews • Other areas as appropriate to support technology and cyber in risk management. • Effectively communicate risk management practices and methodologies and results of risk assessments to Executive and senior management in a supportive and collaborative manner and influence risk-based remediation. • Quality writing and maintaining enforceable technology policies with “must” statements • Be a positive team player to consistently maintain high levels of integrity, motivation, and morale. Job Requirements Bachelor's degree from a recognized university or equivalent experience. At least 10+ years of relevant experience within the Financial Services industry that includes 1st / 2nd line Technology & Control Function Experience in Operational Risk Management (2nd line ORM) Experience in operating in and engaging with technical SMEs across a range of topics including Incident Management, Change Management, Problem Management and technical Control Standards. A high level awareness of regulatory and Controls requirements: FFIEC, OCC 1042, OSFI B-10/B-13/E-21, GLBA 501(b), PCI, FFIEC, SOX, HIPAA, COBIT, ISO 27001/22301 and NIST standards. Aligning firm-wide control domains to frameworks (e.g., NIST → ITGC → RCSA mapping). Ability to work in ambiguity must be flexible to deal with changes in a fast paced and new environment, working closely with peers where subject matter expertise is required. Organizationally astute, with superior influencing, collaboration, and communication skills. Experience assessing risk and challenging the status quo and break silos. Strong analytical skills, including segment risk analysis, data analysis, and comparative analysis. In order to provide effective oversight and independent challenge the role requires the candidate to have a good understanding of the following areas: Risk management frameworks and methodologies; Cybersecurity frameworks, operations, processes, controls, and tools; Technology operations and processes; Infrastructure and application security domains; Change & Configuration Management; Technology Resilience (HA, DR, RTO/RPO, backup immutability); IT Asset Management & Lifecycle Governance; Logging, Monitoring, and Observability Tools; Trend & Root Cause Analysis; Continuous Control Monitoring (CCM) Logic; Cloud service provider management; Audit & Regulatory Engagement, preparing management responses and evidencing control coverage. Education & Accreditation This role requires successful completion of all three levels of TD Operational Risk Management certification. Certification is not a requirement to apply for this role. The successful candidate will have 12 months from the start date in the role to complete required certifications. The required courses are available internally through TD Operational Risk Management. Undergraduate degree in Computer Science/Computer Engineering/Risk Management is an asset. Accreditation such as CISSP, CISM, CISA, CDPSE, AAIA and CRISC and/or similar is preferred. Who We Are: TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we strive to make every interaction, product, and experience remarkably human and refreshingly simple for over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to foster deeper relationships, ensure disciplined execution, and build a simpler, faster banking experience. TD is deeply committed to being a leader in client experience, that is why we believe that all colleagues, no matter where they work, are client facing. Together, we are reimagining what banking can be for our clients, colleagues and communities. Our Total Rewards Package Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental well-being goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Learn more Additional Information: We’re delighted that you’re considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we’re committed to providing the support our colleagues need to thrive both at work and at home. Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements. Colleague Development If you’re interested in a specific career path or are looking to build certain skills, we want to help you succeed. You’ll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. If you’re passionate about helping clients and building deep, lasting relationships, TD offers diverse career paths where you can grow your expertise and make a meaningful impact. We're committed to your success and foster a respectful workplace where diverse perspectives are valued, everyone has fair opportunities to grow, and you can unlock your full potential to achieve your career goals. Here at TD, we hire and develop the best. Training & Onboarding We will provide training and onboarding sessions to ensure that you’ve got everything you need to succeed in your new role. Interview Process We’ll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call. Accommodation Your accessibility is important to us. Please let us know if you’d like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process. We look forward to hearing from you! Language Requirement (Quebec only): Sans Objet

What you’ll do

The Segment Risk Specialist oversees and challenges risk management activities, ensuring alignment with technology and cyber threat landscapes. This role provides expert advisory services to senior management and leads the execution of second-line risk oversight programs.

Requirements

Candidates must possess at least 10 years of relevant experience in financial services, specifically within technology and operational risk management. A bachelor's degree is required, along with a strong understanding of cybersecurity frameworks and regulatory standards.

Benefits

  • Health and well-being benefits
  • Savings and retirement programs
  • Paid time off
  • Banking benefits and discounts
  • Career development
  • Reward and recognition programs

Listed skills

  • Change Management · Preferred
  • Incident Management · Preferred
  • Regulatory Compliance · Preferred
  • Data analysis · Preferred
  • Risk Management · Preferred
  • IT asset management · Preferred

Other relevant skills

Identified from the job description. Confirm important requirements above.

  • Risk management
  • Cybersecurity
  • Technology risk
  • Operational risk
  • Regulatory compliance
  • Incident management
  • Change management
  • Control standards
  • Data analysis
  • Risk assessment
  • Infrastructure security
  • Application security
  • IT asset management
  • Cloud service provider management
  • Audit engagement
  • Strategic advisory
  • Certified Information System Auditor (CISA)
  • Influencing Skills
  • Cloud Services
  • Program Design
  • Cyber Threat Intelligence
  • Policy Development
  • Certified Data Privacy Solutions Engineer (CDPSE)
  • Observability
  • Regulatory Risk
  • Time Off Management
  • Resilience
  • Analytical Skills
  • Data Analysis
  • Application Security
  • Banking
  • Financial Institution
  • Management
  • Investments
  • Certified Case Manager (CCM)
  • Certified Information Systems Security Professional
  • Certified Information Security Manager
  • Change Management
  • Configuration Management
  • Control Objectives For Information And Related Technology (COBIT)
  • Communication
  • Computer Science
  • Computer Engineering
  • Training And Development
  • Creativity
  • Certified In Risk And Information Systems Control
  • Cyber Security
  • Financial Services
  • Governance
  • Health Insurance Portability And Accountability Act (HIPAA) Compliance

Job areas

  • Finance & Accounting
  • Security & Safety
  • Technology
  • Management & Leadership
  • Consulting
  • Cyber Risk Manager
  • Risk Manager
  • Management and Organization Analysts
  • Financial Risk Specialists

More jobs from TD

See all jobs from TD