Your career compass awaits
Create a free account to unlock
- ✓ See how you match this role
- ✓ AI resume tailored to this specific job
- ✓ Inside Track Companion — find your insider contact
- ✓ Skills gap analysis and upskill plan
- ✓ Interview prep kit for this role
- ✓ Relocation concierge — salary, tax, cost of living
Free — no credit card required
Confirm Application
Are you applying to ?
We'll track this in your dashboard as Applied.
Information Security Specialist (Security Posture Insights, Reporting and Remediation)
ICT
Company shared salary
8,075 CAD–11,400 CAD/mo (96,900 CAD–136,800 CAD/yr)
Market rate
6,667 CAD–10,833 CAD/mo (80,004 CAD–129,996 CAD/yr)
Based on similar roles (title + domain + location).
Responsibilities
- ● Work Location:
- ● Toronto, Ontario, Canada
- ● Line of Business:
- ● Technology Solutions
- ● Pay Details:
- ● 96,900 - 136,800 CAD
- ● TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
- ● As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
- ● Job Description:
- ● The Information Security Specialist - Security Posture Insights, Reporting and Remediation is responsible for turning infrastructure configuration and cyber technology compliance data into trusted insights, decision-ready reporting and measurable remediation outcomes. The role identifies material control gaps, assesses trends and root causes, prioritizes issues based on risk and business impact, and works with accountable technology owners to drive remediation within established timelines. As a key business and product partner for the ServiceNow Configuration Compliance Management module, the specialist defines reporting and workflow requirements, uses the platform to manage findings through closure, and develops dashboards, metrics and executive insights that improve accountability and risk decisions. The role also advances AI-enabled security insights and risk management by improving data quality, automating analysis and reporting, and enabling responsible use of predictive signals and remediation recommendations. The role reports to the Senior Manager, Security Compliance and Operations Management and works across infrastructure security governance, security engineering, technology operations, ServiceNow delivery, asset management, risk and audit teams. Role and Responsibilities
- ● Analyze infrastructure configuration, asset, security tool and control data to identify material compliance gaps, recurring trends, emerging risks and systemic root causes across server, workstation, network, database, middleware, cloud and container environments.
- ● Produce accurate, timely and decision-ready operational and executive reporting on security posture, including compliance performance, control coverage, configuration drift, issue aging, remediation progress, threshold breaches, exceptions and residual risk.
- ● Develop and maintain dashboards, scorecards, KRIs, KPIs and management insights that clearly communicate what is non-compliant, why it matters, who is accountable, the required action and when remediation is due.
- ● Use ServiceNow Configuration Compliance Management as the system of record for findings, ownership, remediation tasks, service-level commitments, exceptions, evidence, validation, escalation and closure.
- ● Define and prioritize ServiceNow Configuration Compliance requirements for data ingestion, findings normalization, assignment logic, remediation workflows, notifications, escalations, dashboards, metrics and executive reporting.
- ● Develop actionable insights from ServiceNow Configuration Compliance, CMDB, Splunk and security assessment tools by correlating compliance gaps with asset criticality, exposure, business context, control criticality and remediation history.
- ● Establish risk-based prioritization and reporting models that direct remediation capacity to the gaps with the greatest potential business and security impact.
- ● Work directly with accountable technology and remediation owners to establish corrective action plans, clarify deliverables and due dates, resolve blockers, monitor progress, validate remediation evidence and confirm sustainable closure.
- ● Lead governance routines for outstanding gaps, including remediation reviews, aging analysis, challenge of recovery plans, dependency management and escalation of overdue or material issues to accountable leaders and risk partners.
- ● Identify systemic or recurring gaps and recommend broader corrective actions, including process improvements, engineering fixes, configuration baselines, automation, ownership changes and preventative controls.
⚡ Full Resume Sandbox Canvas