Lead Cybersecurity Operations Analyst, Deloitte Global Technology

Deloitte

$69K — $114K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in computer science, cybersecurity, or equivalent experience
  • 4+ years experience in cybersecurity or solution design
  • Proven experience with vulnerability management tools (Qualys)
  • Strong communication skills for various audiences
  • Knowledge of cybersecurity principles and risk management processes
  • Familiarity with information security management frameworks (ISO/IEC 27001, NIST)
  • Technical certifications preferred (e.g., CISSP, CEH)

Responsibilities

  • Identify security threats to Deloitte's networks and systems
  • Develop risk-mitigating strategies for identified threats
  • Design and implement improvements in systems integration and technology
  • Monitor industry standards and incorporate findings into security protocols
  • Manage operations of vulnerability management tools for effective reporting
  • Track and report on remediation of risks and vulnerabilities
  • Provide cybersecurity support to fellow technology colleagues

Benefits

  • $4,000 per year for mental health support
  • $1,300 flexible benefit spending account
  • Flexible work arrangements with hybrid work structure
  • Paid time off for Development and Innovation Days
  • Deloitte Days for firm-wide closures to promote work-life balance
Full Job Description
9/15/26

Apply now
  • Start applying with LinkedIn
  • Apply Now


  • Start

  • Please wait...


Job Type: Permanent Work Model: Hybrid Reference code: 135049 Primary Location: Toronto, ON All Available Locations: Toronto, ON; Calgary, AB; Halifax, NS; Ottawa, ON

What will your typical day look like?

Work you'll do

As a member of the Cybersecurity team, you will play a key role in identifying emerging threats, reducing organizational risk, and advancing security capabilities across Deloitte's technology landscape. This position combines strategic risk management with hands-on operational execution, offering opportunities to influence security practices, drive remediation efforts, and support the adoption of secure technologies and processes.

Key Responsibilities:

Strategic

  • Identify security exposures that exist or may pose potential threats to Deloitte's networks or systems.
  • Notify leadership of potential or existing threats and lead the development of risk-mitigating strategies of assigned items.
  • Identify areas for improvement including systems integration, new technology, and automation and lead the design and implementation of solutions.
  • Monitor security blogs, articles, and reports and remain current on related laws, regulations, and industry standards to keep up-to-date on the latest security risks, threats, and technology trends, and where relevant notify leadership to incorporate information into processes, procedures, and audit preparedness activities.


Operational

  • Maintain the operation of the vulnerability management tool, ensuring the tool and supporting processes are working effectively to identify and report vulnerabilities in Deloitte systems.
  • Operate security controls and processes to identify vulnerability and risk for Deloitte technology systems and users, reporting and remediating items.
  • Track progress for the remediation of identified risks and vulnerabilities and provide appropriate reporting to leadership, intervening and escalating where necessary to ensure agreed priorities and timescales are met.
  • Identify non-compliances to global standards, lead work with GTI and GDAS colleagues to remediate and implement treatment plans.
  • Identify the need for, track, report on, and implement security-related Continual Service Improvement Plans to ensure control gaps and risks are remediated within agreed timescales.
  • Monitor ServiceNow queues and ensure requests are handled within specified SLEs.
  • Provide Cybersecurity SME support to Deloitte Technology colleagues and processes relating to vulnerability management, compliance to security controls, Active Directory policy, privileged access, cloud security, M365 security, network security, cyber security incidents, and change management.


About the team

Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in what is but rather what can be to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived.

Enough about us, let's talk about you

Qualifications

Required:

  • Bachelor's degree in computer science, cybersecurity, other technology-related fields, or equivalent education-related experience
  • 4+ years combined experience in cybersecurity and / or solution design in an information security context
  • Proven track record and experience of developing and driving security requirements across a broad spectrum of infrastructure and end user computing technologies
  • Proven track record and experience of operating a vulnerability management tool and process in an enterprise environment (Qualys)
  • Proven track record supporting external research findings such as BitSight
  • Relevant technical certification preferred (CISSP-ISSEP, CEH, CCNP Security, GSEC)
  • Strong interpersonal and collaborative skills, with ability to communicate strategic information security topics, policies, and standards as well as risk-related concepts to technical and nontechnical audiences at various hierarchical levels
  • Ability to communicate effectively in written and verbal formats with a variety of stakeholders.
  • Knowledge of business management principles, cybersecurity engineering, and secure solution design, with the ability to develop and document security hardening standards and practices.
  • Experience working in cross-functional environments and consulting with technical and business stakeholders to evaluate requirements, solve problems, and support security-related outcomes.
  • Knowledge of risk management processes (e.g., methods for assessing and mitigating risk), cybersecurity and privacy principles (relevant to confidentiality, integrity, availability, authentication, non-repudiation)
  • Knowledge of systems testing, evaluation methods, and countermeasures for identified security risks
  • Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth)
  • Knowledge of network protocols, GWAN and WAN technologies and fundamental networking skills (TCP, IP, IDS/IPS, virtualization, etc.)
  • Knowledge of common information security management frameworks, such as ISO/IEC 27001, COBIT, and NIST, including 800-53 and the NIST Cybersecurity Framework
  • Experience in designing and validating security controls based on cybersecurity objectives
  • Experience in discerning the protection needs (i.e., security controls) of information systems and networks
  • Experience in conducting audits or reviews of technical systems


Preferred:

  • Professional security management certifications strongly desirable, such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or other similar credentials


Total Rewards

The salary range for this position is $69,000 - $114,000, and individuals may be eligible to participate in our bonus program. Deloitte is fair and competitive when it comes to the salaries of our people. We regularly benchmark across a variety of positions, industries, sectors, targets, and levels. Our approach is grounded on recognizing people's unique strengths and contributions and rewarding the value that they deliver.

Our Total Rewards Package extends well beyond traditional compensation and benefit programs and is designed to recognize employee contributions, encourage personal wellness, and support firm growth. Along with a competitive base salary and variable pay opportunities, we offer a wide array of initiatives that differentiate us as a people-first organization. On top of our regular paid vacation days, some examples include: $4,000 per year for mental health support benefits, a $1,300 flexible benefit spending account, firm-wide closures known as "Deloitte Days", dedicated days of for learning (known as Development and Innovation Days), flexible work arrangements and a hybrid work structure.

Similar Jobs

More Jobs at Deloitte

More Information Technology Jobs

Find similar Lead Cybersecurity Operations Analyst, Deloitte Global Technology jobs: