Head Of Platforms And Technology, Governance And Control, Control Lead
The Head Of Platforms And Technology, Governance And Control, Control Lead is responsible for Control Testing, with ORM standards prescribing the required testing. Accountabilities in this role include being a trusted advisor providing guidance, frontline relationship management and challenge on all Cyber and Technology controls in P&T. This role will manage technology, information and cyber risk, in compliance with the approved set of polices, standards, processes and guidelines established by P&T Governance. This role will provide Cyber and Technology process and control leadership and support to partners as primary liaison on behalf of Enterprise Protect and P&T and support partners on regulatory responses related to Cyber and Technology Controls. Additionally, this role will consume the results of Cyber risk assessments to validate the effectiveness of third-party Cyber and Technology controls.
Depth and Scope :
- Provides people management leadership by hiring the best talent, setting goals, developing staff, managing employee performance and compensation decisions, promoting teamwork and handling any / all disciplinary actions, as required
Trusted Control Advisor :
Trusted advisor providing guidance, frontline relationship management and challenge on all Cyber and Technology controls in P&T. Lead internal control reviews, aligned to TD standards for Cyber and Technology processes including procedure testing, establishing test plans and test scripts, providing recommendations to 1B and 1A risk and control owners inclusive of SOX, SWIFT, PayCan and all 3LOD, 2LOD control engagementsRisk Management :
Manages technology, information and cyber risk in compliance with the approved set of polices, standards, processes and guidelines established by P&T Governance.Includes Cyber and Technology Risk Identification and Assessment, Risk Measurement, Risk Treatment, and Risk Monitoring and Reporting on compliance with TD's Risk Appetite and policies relative to controlsPerforms assessments of inherent risk and residual risks in control testing. Evaluates if required controls are in place for existing systems or will be implemented for new systemsActs as the SME leader on Cyber and Technology control partner for all Audits, Exams, 2LOD assessments, acting as the key point of contact across all Cyber and Technology control categoriesDetermines residual risk and management of control issues in accordance with our Technology Risk Treatment ProcessRelationship Management :
Provides Cyber and Technology process and control leadership and support to partners as primary liaison on behalf of Enterprise Protect and P&TProactively informs partners on overall risk position through reporting, metrics, analysis and insights on control efficacyProvides thought leadership with regards to Cyber and Technology control trends and their impact on the Enterprise and P&TCollaborates with risk and control partners in 1B, 1A and the LOD's for TD by providing expertise and advice to enable informed decisions in alignment with the overall risk tolerance of the Enterprise as related to control effectivenessRegulatory and Industry :
Supports partners on regulatory responses related to Cyber and Technology ControlsAdvocates for inclusion of regulatory Cyber and Technology controls in our standards and assessmentsEngages in industry group discussions on governance, guidance, challenge, and testing for Cyber and Technology controlsAdvocates for the Bank and partners in industry Cyber and Technology risk and control groups / forumsContract, Third Party and Industry :
Consumes the results of Cyber risk assessments to validate the effectiveness of third-party Cyber and Technology controlsConsumes the results of Industry Cyber and Technology risk assessments (SOC2, CSAE16, Paycan, SWIFT, SOX) to validate the effectiveness of TD Cyber and Technology controlsDrives control rationalization, driving a paradigm of test once use many across all testing programsEducation & Experience :
University or post-graduate degree15+ years' experiencePossesses the leadership skills needed to work at this, and eventually at higher levels, within the TDBFG organizationExcel at people / team development attract / develop the talent necessary to winExperience within a high transaction, large / complex / matrix business environment; Financial services experience is idealPossesses the leadership skills needed to work at this, and eventually at higher levels, within the TDBFG organization.Skill in conflict resolution, building partnerships and perseverance under pressure / crisisSubstantial experience in technology risk management that includes expertise in the areas of control testing and audit, operational risk management (ORM), Technology Risk and IS security.Deep knowledge of the Canadian and U.S. Regulatory landscape and impact to IT control governanceAbility to make an impact and execute on key strategies, influence management and build credibility across the organization.A proven collaborative and engaging leader who partners well with others; the individual will partner with divisional CIOs, business heads, vendors, auditors, Operational Risk teams, regulators and counterparts at other financial institutions.Ability as a leader to influence change within a dynamic regulatory environment, and a focused expense management cultureShareholder Accountabilities :
Ensures effective P&T wide governance and oversight of TD Cyber and Technology ControlsShapes the future of the business by enabling best in class solutions in partnership with Segment CIOs, risk, legal & compliance partnersMeets P&T regulatory control expectations in partnership with 2LOD risk partnersEnsures the completeness and accuracy of the P&T Cyber and Technology process and control inventory with P&T process and control ownersPhysical Requirements :
Never : 0%; Occasional : 1-33%; Frequent : 34-66%; Continuous : 67-100%
Domestic Travel OccasionalInternational Travel NeverPerforming sedentary work ContinuousPerforming multiple tasks ContinuousOperating standard office equipment - ContinuousResponding quickly to sounds OccasionalSitting ContinuousStanding OccasionalWalking OccasionalMoving safely in confined spaces OccasionalLifting / Carrying (under 25 lbs.) OccasionalLifting / Carrying (over 25 lbs.) NeverSquatting OccasionalBending OccasionalKneeling NeverCrawling NeverClimbing NeverReaching overhead NeverReaching forward OccasionalPushing NeverPulling NeverTwisting NeverConcentrating for long periods of time ContinuousApplying common sense to deal with problems involving standardized situations ContinuousReading, writing and comprehending instructions ContinuousAdding, subtracting, multiplying and dividing ContinuousThe above statements are intended to describe the general nature and level of work being performed by people assigned to this job. They are not intended to be an exhaustive list of all responsibilities, duties and skills required. The listed or specified responsibilities & duties are considered essential functions for ADA purposes.
Who We Are : TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches / stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are