Senior Service Manager, Secure Virtual Workspace

Toronto-81 Bay, 17th Floor, Canada

CIBC

Bank on your terms with CIBC – whether it’s in person, over the phone or online, CIBC has you covered.

View all jobs at CIBC

Apply now Apply later

We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.

At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute.

To learn more about CIBC, please visit CIBC.com

What you'll be doing

As a Senior Service Manager within the Endpoint Security Services Team, you will play a leadership role in the lifecycle of various Endpoint Security services, tools, and processes.  In a dynamic landscape of host, perimeter, and identity based controls – this role will focus on the delivery and evolution of a Secure Virtual Workspace for privileged and high-risk user groups.  This includes driving the end-to-end service model for our hardened enterprise workstation platform, spanning Cloud-hosted virtual desktops, secure configuration baselines, and policy alignment across Cyber, Identity, and Infrastructure domains.

The Senior Service Manager collaborates with various stakeholders to identify new opportunities and enhance current controls that respond to the evolving threat landscape while balancing the impact to Business Partners.  You will be an advocate and promote a clear connection between security excellence and employee experience. Working with a tribe of peers, you will see the successful delivery of multiple projects, new service introduction, and process improvements that strive for an optimal outcome for all stakeholders with a strong focus on security excellence, service health, continuous improvement, compliance, and governance.

At CIBC we enable the work environment most optimal for you to thrive in your role you’ll have the flexibility to manage your work activities within a hybrid work arrangement where you’ll spend 1-3 days per week on-site, while other days will be remote.

How you’ll succeed

  • Service Governance - Manage and oversee the development and maintenance of strategic roadmaps for the domain of Secure Workspaces and Secure Access technologies in the end user ecosystem. Collaborate with various stakeholders on requirements, develop business cases and lead subsequent projects (including POCs) as product owner to support the strategy. Maintain a continuous improvement mindset, always looking for opportunities for efficiency and to enhance the security of the domain.

  • Communication – Build and present documentation to executive management aimed at communicating benefits of proposed security programs, as well as on current potential risks and providing recommendations. Provide awareness and training to the application developments teams of the benefits of web application layer protection services, data protection services, code scanning services, etc. Assess business needs against potential risks and provide your recommendations to enhance our information security landscape.

  • Advisory and Relationship Management - Working with the broader team, act as a trusted advisor to influence the application development, operational and infrastructure teams to build security into their design, development and scanning techniques, and to prioritize security vulnerabilities identified using a risk-based approach. Assist in the the identification, assessment, reporting, and management of security risks and design flaws identified in key applications with practical and achievable recommendations.  Stay on top of the latest threat landscape and maintain relationships with peers from other banks. Manage the vendor relationship for security services and tools used within the domains of Application Security, Vulnerability Management and Data Security.

Who you are

  • You can demonstrate experience in workspace virtualization, and workspace security in a senior level role (i.e. Microsoft SAW & PAW secure workspaces, Citrix, VMware, or Azure VDI), Secure/Enterprise Web Browsers, etc.

  • You bring passion for industry web application security, vulnerability management and data security standards and best practices.

  • You have implemented methodologies to ensure the protection of web applications including exploit, vulnerability and attack detection signatures, and network security improvements. You have the ability to develop strong relationships across various levels of an organization to bring about a positive result and communicate requirements effectively.

  • You have deep knowledge of the following domains in a cloud or on-premise context: endpoint security, routing/switching, distributed denial of service (DDoS) mitigation, web application firewalls, intrusion detection / prevention systems (IDS/IPS), network segregation and other threat and vulnerability management capabilities

  • You’re a certified professional. You have current accreditation and good standing CISSP, CISA, or CISM designation

  • You embrace and champion change. You'll continuously evolve your thinking and the way you work in order to deliver your best.

  • Values matter to you. You bring your real self to work and you live our values - trust, teamwork, and accountability.

Prior to starting in this role, security checks, including a criminal record check must be successfully completed to the satisfaction of CIBC. An annual criminal record check may also be required.

#LI-TA

What CIBC Offers

At CIBC, your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential. We aspire to give you a career, rather than just a paycheck.

  • We work to recognize you in meaningful, personalized ways including a competitive salary, incentive pay, banking benefits, a benefits program*, defined benefit pension plan*, an employee share purchase plan, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program.

  • Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients.

  • We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development.

*Subject to plan and program terms and conditions

What you need to know

  • CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience. If you need accommodation, please contact Mailbox.careers-carrieres@cibc.com

  • You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit.

  • We may ask you to complete an attribute-based assessment and other skills tests (such as simulation, coding, French proficiency, MS Office). Our goal for the application process is to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us.

Job Location

Toronto-81 Bay, 17th Floor

Employment Type

Regular

Weekly Hours

37.5

Skills

Endpoint Security, Service Introduction, Service Strategy, Virtual Desktop, Workspace Virtualization
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  8  0  0
Category: Leadership Jobs

Tags: Application security Azure Banking CISA CISM CISSP Citrix Cloud Compliance DDoS Endpoint security Exploit Firewalls Governance IDS Intrusion detection IPS Network security POCs Strategy VMware Vulnerabilities Vulnerability management

Perks/benefits: Career development Competitive pay Health care Team events

Region: North America
Country: Canada

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.