CIBC

Consultant, Information Security

CIBC  •  Toronto, CA (Hybrid)  •  4 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.
82
AI Success™

Job Description

We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients.

At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute.

To learn more about CIBC, please visit CIBC.com

What you’ll be doing:

The Vulnerability Management Analyst supports the bank’s Information Security team by identifying, assessing, tracking, and reporting on vulnerabilities across internal and internet-facing technologies. This role helps execute and monitor vulnerability scans, coordinate remediation with technology teams, and produce clear risk reporting for technical and leadership audiences, while contributing to program documentation, audit support, and continuous improvement in a regulated financial environment. The role is responsible for delivering technical expertise in the development and support of activities, processes, procedures and tools for protecting technology based information. The role works on complex issues involving one or more technical areas, mentoring employees and performing tasks of advanced technical depth and breadth. The role troubleshoots complex issues for all levels while reviewing, developing, testing and implementing security plans and control techniques. The role exercises independent judgement and decision making within ownership of projects, defining and supporting the implementation of the minimum security configuration for all IT hardware and software and ensuring that industry best practices are maintained. Using strong analytic and inductive thinking, the role assesses projects for security risks, identifying the potential exposures, and presenting recommendations that are practical and achievable, enabling the business to make informed risk decisions. In this role, you’ll help protect the CIBC organization by identifying, assessing, tracking, and reporting on security vulnerabilities across internal and externally facing technology. You’ll work closely with technology teams to support remediation, provide clear risk communications, and contribute to continuous improvement of our vulnerability management program.

At CIBC we enable the work environment most optimal for you to thrive in your role. You’ll have the flexibility to manage your work activities within a hybrid work arrangement where you’ll spend 1-3 days per week on-site, while other days will be remote.

How you'll succeed

  • Vulnerability lifecycle support: Assist with identifying and triaging vulnerabilities using our Qualys vulnerability scanning tool, asset inventories (e.g., CMDB), and threat intelligence sources. Help validate findings and support risk-based prioritization.
  • Scanning operations Schedule, execute, and monitor vulnerability scans across in-scope internal and external assets; support the operational use of vulnerability management platforms (e.g., Qualys).
  • Remediation coordination Track remediation progress, follow up with technology owners, and help remove blockers by connecting teams with the right technical guidance and standards.
  • Reporting and communication: Produce repeatable reports, dashboards, and summaries for technical teams and leadership; support escalation communications for overdue/high-risk items.
  • Risk and security assessments (foundational support): Review requirement documents and basic architecture inputs with guidance from senior team members to identify security considerations and contribute to practical recommendations.
  • Governance and documentation: Maintain process documentation and support audit evidence gathering and responses (e.g., PCI, OSFI, SWIFT, NYDFS—depending on scope).
  • Continuous improvement: Identify trends, recurring issues, and data/reporting irregularities, and escalate observations to senior analysts/management.

Who you are

  • You can demonstrate 2 years of experience in an information security, infrastructure, or technology operations role (co-op/internship experience welcome). You have strong communication skills including the ability to translate technical details into clear actionable next steps for varied audiences. You have a structured, process-driven mindset with strong attention to detail, documentation discipline, and follow-through. You have ability to operate effectively in a high-visibility, fast-paced environment, managing multiple assignments through sound time management, prioritization, and proactive stakeholder engagement. It’s an asset if you have familiarity with vulnerability management concepts (CVEs, CVSS, patching, remediation validation) and experience with the Qualys vulnerability scanning tool.
  • You have a degree/diploma in Cybersecurity, Computer Science, Networking, IT, Engineering, or a related field—or equivalent practical experience.
  • You're passionate about people. You find meaning in relationships and surround yourself with a diverse network of partners. You connect with others through respect and authenticity.
  • You give meaning to data. You enjoy investigating complex problems and making sense of information. You communicate detailed information in a meaningful way. You have strong analytical skills with the ability to work confidently with data, reports, and basic security metrics.
  • You know that details matter. You notice things that others don't. Your critical thinking skills help to inform your decision making.
  • You're digitally savvy. You seek out innovative solutions and embrace evolving technologies. You can easily adapt to new tools and trends.
  • Values matter to you You bring your real self to work and you live our values - trust, teamwork, and accountability.

#LI-TA

What CIBC Offers

At CIBC, your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential. We aspire to give you a career, rather than just a paycheck.

  • We work to recognize you in meaningful, personalized ways including a competitive salary, incentive pay, banking benefits, a benefits program*, defined benefit pension plan*, an employee share purchase plan, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program.

  • Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients.

  • We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development.

*Subject to plan and program terms and conditions

What you need to know

  • CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience. If you need accommodation, please contact Mailbox.careers-carrieres@cibc.com

  • CIBC is committed to clarity in our hiring process. All roles posted are opportunities we’re actively recruiting for, unless stated otherwise.

  • You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit.

  • We may ask you to complete an attribute-based assessment and other skills test (such as simulation, coding, French proficiency).

  • We use artificial intelligence tools during the recruitment process. Our goal for the application process is to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us.

Job Location

Toronto-81 Bay, 17th Floor

Employment Type

Regular

Weekly Hours

37.5

Skills

Analytical Thinking, Analytical Thinking, Coaching, Collaboration, Communication, Computer Science, Continuous Improvement, Cybersecurity, Cyber Threat Intelligence, Decision Making, Driven, Independent Judgment, Information Security, IT Governance, Patching, Prioritization, Proactive Behavior, Remediation, Risk Assessments, Security Configuration, Security Evaluations, Security Metrics, Security Risk, Security Technologies, Security Testing {+ 3 more}

CIBC

About CIBC

CIBC is here to help all our clients reach their goals.

We know the importance of reliable financial products and services, and we’re dedicated to providing them in a way that lets you bank however you want, whenever you want.

With innovative tools designed around your priorities and a team fully focused on your success, you’ll get the insights you need to get even closer to achieving your goals.

This culture of innovation and shared values of trust, teamwork and accountability are why we’ve been named a top employer in Canada. They’re also why a career at CIBC is more than a job—it’s an opportunity to grow and work alongside some of the brightest in Canada.

La Banque CIBC est là pour aider tous nos clients à atteindre leurs objectifs.

Nous connaissons l'importance de produits et services financiers fiables, et nous nous engageons à les fournir d'une manière qui vous permette d'effectuer vos opérations bancaires comme vous le souhaitez, quand vous le souhaitez.

Avec des outils innovants conçus autour de vos priorités et une équipe entièrement centrée sur votre réussite, vous obtiendrez les informations dont vous avez besoin pour vous rapprocher encore plus de vos objectifs.

Cette culture de l'innovation et les valeurs partagées de confiance, de travail d'équipe et de responsabilité sont la raison pour laquelle nous avons été nommés l'un des meilleurs employeurs au Canada. C'est aussi pourquoi une carrière à la Banque CIBC est plus qu'un emploi : c'est une occasion de grandir et de travailler aux côtés de certaines des personnes plus brillantes au Canada.

Industry
Finance & Insurance
Company Size
10,000+ employees
Headquarters
Toronto, CA
Year Founded
Unknown
Website
cibc.com
Social Media