Jobs
>
Toronto

    Engineering -- Tech Risk -- Secure SDLC -- VP -- Toronto Toronto, Ontario, Canada Posted on 04/ - Toronto, ON, Canada - Goldman Sachs Group, Inc.

    Goldman Sachs Group, Inc.
    Goldman Sachs Group, Inc. Toronto, ON, Canada

    1 week ago

    Default job background
    Description

    Tech Risk – Advisory – Secure SDLC – VP

    WHO WE ARE

    Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and infrastructure, developing software in support of our efforts, measuring cybersecurity risk, and designing and driving implementation of cybersecurity controls. The team has global presence across the Americas, APAC, India and EMEA. Within Technology Risk, Advisory is the consultative and technology subject matter expertise arm, responsible for assessing new technology initiatives for risk, partnering with engineers to architect and design secure products and services, embedding implementation reviews as part of the SDLC and CI/CD pipeline via code analysis and penetration testing, and guiding technology innovation in terms of security and control across Goldman Sachs. The team plays a critical role in designing and assessing controls for our transition to building native public cloud applications.

    YOUR IMPACT

    In this role, you will join the global Secure SDLC (S-SDLC) team within Technology Risk – the team is responsible for the identification of software security flaws, along with providing security assurance advice and guidance to the engineers to help them manage application risks. You will interact with all parts of the firm giving you the opportunity to grow within the Technology Risk team as well as other divisions within the firm.

    The ideal candidate should have experience of integrating, and tuning, software security controls within continuous deployment SDLC, ability to review, triage and remediate findings by interfacing with the Business Units and help raise developer security awareness.

    HOW YOU WILL FULFILL YOUR POTENTIAL

    The Secure-SDLC team is responsible for the identification of software security flaws, along with providing security assurance advice and guidance to the engineers to help them manage application risks.

    You will become a highly committed trusted Risk Advisor with the discipline and interpersonal skills to work in a global environment communicating the impact of technology risks and the approach to mitigation and acceptance. You will provide Technology Risk Advisory risk assessment and advisory services to engineers as part of the Technology Risk function.

    Job Responsibilities:

    • Lead and support static, dynamic and security awareness services
    • Lead development, maintenance and improvement of detection controls, security reviews, remediation activities and business unit engagements
    • Lead S-SDLC training and guidance on security related issues
    • Drive adoption of embedded application security controls within Software Development Life Cycle (SDLC)
    • Lead product evaluation and help engineer tools and solutions that will facilitate the adoption of security controls across the firm
    • Review and provide advice and consultation to business owners for the identified security issues

    Basic Qualifications:

    Have a minimum of 5 years' experience in information security or related field. You will use your strong technical, interpersonal, organizational, written, and verbal communication skills to interact with your internal clients locally and globally. Your knowledge of Application Security, Risk Analysis and Risk Management techniques, methodologies and governance will enable you to be an active member of the team along with your professional experience in one, or more, of the following disciplines:

    • Understanding of common application security vulnerabilities and controls to remediate.
    • Ability to engage technical client base of engineers and communicate security requirements, potential risks and influence development practices
    • Ability to communicate security flaws in a clear and concise manner to a broad range of audience from engineers, SMEs to senior management
    • Ability to provide clear guidance on vulnerability remediation
    • Expert/Advanced knowledge of Secure software development practices and frameworks
    • Expert/Advanced knowledge of Secure Code Review and Application Security assessment
    • Expert/Advanced knowledge of at least one major programming language (e.g. Java, Python, Go etc.)
    • Expert/Advanced knowledge of CI/CD platforms e.g. Gitlab, Jenkins, BitBucket CI, Bamboo, Travis CI, Circle CI, AWS Code Commit and Deploy (or similar)
    • Expert/Advanced knowledge of DevSecOps solutions e.g.
      • Static Application Security Testing (SAST)
      • Dynamic/Interactive Application Security Testing (DAST/IAST)
      • Software Composition Analysis (SCA)
      • Infrastructure as Code (IaC)
      • Container Security
      • Mobile Security

    Preferred qualifications:

    • Program management skills
    • Expert Knowledge of Cloud (AWS, GCP, Azure) and Cloud Security applications

    #TechRiskCybersecurity

    ABOUT GOLDMAN SACHS

    At Goldman Sachs, we commit our people, capital and ideas to help our clients, shareholders and the communities we serve to grow. Founded in 1869, we are a leading global investment banking, securities and investment management firm. Headquartered in New York, we maintain offices around the world.

    We believe who you are makes you better at what you do. We're committed to fostering and advancing diversity and inclusion in our own workplace and beyond by ensuring every individual within our firm has a number of opportunities to grow professionally and personally, from our training and development opportunities and firmwide networks to benefits, wellness and personal finance offerings and mindfulness programs. Learn more about our culture, benefits, and people at . We're committed to finding reasonable accommodations for candidates with special needs or disabilities during our recruiting process. Learn more:
    The Goldman Sachs Group, Inc., 2024. All rights reserved.
    Goldman Sachs is an equal employment/affirmative action employer Female/Minority/Disability/Veteran/Sexual Orientation/Gender Identity #J-18808-Ljbffr


  • TD Bank Toronto, Canada

    **TD Description** · Stay current and competitive. Carve out a career for yourself. Grow with us. · **Department Overview** · TD Cards (including MBNA) is the largest dual issuer of Visa and MasterCard products and holds the position of #1 market share in Canada. TD Consumer and ...


  • ACB Cartage Inc Mississauga, Canada

    Az owner operator for local City work Morning shift for Canada Post · We pay Fuel surcharge. Cap your fuel. No need to worry about Increased fuel. Excellent pay. Direct Deposit. Excellent dispatch · Monday to Friday work. Dock to Dock. No touch freight work · weekend work is also ...


  • S & C Electric Company Toronto, ON, Canada

    Do you want to be a part of a global team whose mission is to be the leading specialist in electric power switching, protection, and control by creating innovative solutions that are easily applied and provide the best long-term value? We help companies like Bruce Power, Toronto ...


  • Royal Bank of Canada Toronto, Canada

    **Come Work with Us** · At RBC, our culture is deeply supportive and rich in opportunity and reward. You will help our clients thrive and our communities prosper, empowered by a spirit of shared purpose. · Whether you're helping clients find new opportunities, developing new tech ...


  • Canada Post - Postes Canada Toronto, Canada

    Job Requisition Id: 169416 · Business Function: Business Transformation · Primary City: Toronto · Other Location(s): · Province: Ont. - GTA · Employment Type: Full-Time · Employment Status: Term · Language Requirement: Bilingual Imperative (AAAA) · Employee Class and Level: SL 04 ...


  • Canada Post - Postes Canada Toronto, Canada

    Job Requisition Id: 172138 · Business Function: Sales · Primary City: Toronto · Other Location(s):Kitchener, London, Sarnia, Windsor, Oakville, Burlington · Province: Ont. - GTA · Employment Type: Full-Time · Employment Status: Permanent · Language Requirement: English Essential ...

  • Canada Post - Postes Canada

    Technical Advisor

    4 days ago


    Canada Post - Postes Canada Toronto, Canada

    Job Requisition Id: 174129 · Business Function: Engineering · Primary City: Toronto · Province: Ontario · Employment Type: Full-Time · Employment Status: Permanent · Language Requirement: English Essential · Employee Class and Level: UPCET02 · Number of Vacancies: 1 · Job Closing ...


  • Canada Post - Postes Canada Toronto, Canada

    Job Requisition Id: 178420 · Business Function: Sales · Primary City: GTA - Toronto · Other Location(s): · Province: Ont. - GTA · Employment Type: Full-Time · Employment Status: Permanent · Language Requirement: English Essential · Employee Class and Level: SL 06 · Number of Vaca ...


  • Canada Post - Postes Canada Toronto, Canada

    Job Requisition Id: 172164 · Business Function: Sales · Primary City: Toronto · Province: Ontario · Employment Type: Full-Time · Employment Status: Permanent · Language Requirement: English Essential · Employee Class and Level: SL 06 · Number of Vacancies: 1 · Job Closing Date (M ...


  • FedEx Express Canada Toronto, Canada

    **Job Description**: · **This posting is exclusively for FedEx Ground service provider driving personnel. The posting will remain open **until April 15, 2024.** · FedEx Express Canada has open Full-Time, Part-Time, and Flex Driver positions in the following areas: Scarborough, Wh ...


  • CBRE Toronto, Canada

    Posted- 10-Apr-2023- Service line- Advisory Segment- Role type- Full-time- Areas of Interest- Administrative, Communications/Public Relations, People/Human Resources- Location(s)- Toronto - Ontario - Canada**Description du poste** · **Nous recrutons un gestionnaire expérimenté en ...

  • City of Toronto

    Mailing Operator

    3 days ago


    City of Toronto Toronto, Canada

    **Job ID**: 43815 · **Job Category**:Administrative · **Division & Section**:City Clerk's, City Clerk's Member Svcs & Prog Support · **Work Location**:City Hall, 100 Queen Street West · **Job Type & Duration**:Full-time, Permanent Vacancy · **Hourly Rate and Wage Grade**:$ $30.59 ...

  • Canada Post - Postes Canada

    Postal Clerk 1

    1 week ago


    Canada Post - Postes Canada Toronto, Canada

    Job Requisition Id: 163772 · Business Function: Plant Operations · Primary City: Toronto · Province: Ont. - GTA · Employment Type: On Call · Employment Status: Temporary · Language Requirement: English Essential · Experience the dynamic mail operations environment only Canada Pos ...

  • City of Toronto

    Mailing Operator

    1 day ago


    City of Toronto Toronto, Canada

    **Job ID**: 34774 · **Job Category**:Administrative · **Division & Section**:City Clerk's, City Clerk's Member Svcs & Prog Support · **Work Location**:Metro Hall, 55 John Street · **Job Type & Duration**:Full-Time, Temporary Vacancy (12 months) · **Hourly Rate and Wage Grade**:$ ...


  • Bell Media Toronto, Canada

    Req Id: 416635 · At Bell, we do more than build world-class networks, develop innovative services and create original multiplatform media content - we advance how Canadians connect with each other and the world. · If you're ready to bring game-changing ideas to life and join a co ...


  • Canada Post - Postes Canada Toronto, Canada

    Job Requisition Id: 172433 · Business Function: Sales · Primary City: Toronto · Province: Ont. - GTA · Employment Type: Full-Time · Employment Status: Permanent · Language Requirement: English Essential · Employee Class and Level: CPMGA02 · Number of Vacancies 1 · Job Closing Dat ...


  • Canada Life Assurance Company Toronto, Canada

    **Job Description**: · The Mail Clerk is responsible for the accurate and timely picking, packing, and shipping of various items for Canada Life advisors and policyholders across Canada, with occasional shipments to the U.S. · This position is located at the Canada Life office in ...

  • Wildlife Conservation Society

    Media Manager

    1 week ago


    Wildlife Conservation Society Toronto, Canada

    **Position Title**:Media Manager · **Position Type**:Full-time, Permanent · **Salary range**: $60,000 to $70,000 annually · **Location**: Toronto, Hybrid or Remote in Canada · **Office**:WCS Canada Head office, Toronto · **Reports to**: Sue Novotny, Head of Communications · **Dat ...


  • Manulife Ontario, Canada

    locations- CAN, Ontario -Télétravail à temps plein- CAN, Nouveau-Brunswick -Télétravail à temps plein- CAN, Manitoba -Télétravail à temps plein- CAN, Saskatchewan -Télétravail à temps plein- CAN, Québec -Télétravail à temps plein**s** · - time type- Temps plein- posted on- Publié ...


  • BDC - Indigenous Recruitment Toronto, Canada

    **The following job posting and assessment questions were crafted by Kiinago Biinoogi Muskiiki ('**_Our Children's Medicine' _**in English) in consultation with Indigenous Elders, Knowledge Keepers and other members of the community. Applications housed on this platform provide a ...