Location Address:100 Queens Quay East, 9th Floor, Toronto
Number of Openings:1
Pay:$96,244.00 - $178,668.00
Job Posting Description:Senior Manager,
Cybersecurity Operations
#LI-OnsiteAre you passionate about overseeing strategic operations and developing a team of cybersecurity professionals? Reporting to the Director, Cybersecurity, you will advance threat intelligence, optimize security tools, manage proactive threat hunting programs, and refine security reporting and incident response strategies in the event of security breaches.
As senior manager. you will provide leadership for the information security operations team and external partners, focusing on strategic aspects of security operations, procurement, and contracts. Your work will involve critical decision-making responsibilities, long-term planning, and a substantial contribution to our overall security posture. You will help develop team capabilities and align cybersecurity operations goals with broader business goals.
If you have strong cybersecurity experience and enjoy leading a team, then this is the role for you!
About the RoleCyber Security Operations Leadership- Manage threat intelligence and Continuous Threat Exposure Management (CTEM) programs, leveraging the Microsoft security ecosystem and emerging capabilities such as Frontier AI to identify, prioritize, and mitigate cyber threats.
- Lead cybersecurity incident response activities, including containment, eradication, recovery, forensic investigations, incident response planning, and post-incident reviews to drive continuous improvement.
- Evaluate the effectiveness of security controls across information and technology systems and adjust security measures in response to emerging threats, vulnerabilities, and attack techniques.
- Lead a team of cybersecurity professionals while providing direction and oversight to Managed Service Providers and other security partners.
- Establish team and individual goals, monitor performance, and foster a culture of collaboration, innovation, and continuous improvement.
- Oversee the cybersecurity operations function to ensure proactive threat detection, incident management, and operational resilience.
Partnership and Resource Management- Maintain cybersecurity documentation, including incident response strategies, procedures, guidelines, and related artefacts.
- Develop and refine cybersecurity metrics and executive reporting, working with the Managed Security Service Provider (MSSP) to deliver meaningful operational insights.
- Be the primary liaison for the MSSP, third-party security vendors, and incident response providers, supporting vendor, contract, and budget management.
- Collaborate with the Director, Cybersecurity on strategy, governance, security architecture planning, and operational security requirements.
- Support the threat risk assessment (TRA) process and manage the periodic review and maintenance of the Incident Response Plan (IRP).
- Contribute operational threat intelligence to cybersecurity awareness initiatives, including GRC-led training and phishing simulation programs.
- Deploy, integrate, and configure new cybersecurity solutions and enhancements in accordance with established standards and procedures.
- Partner with the Director, Cybersecurity and the GRC team to implement policies that protect sensitive information and ensure compliance with applicable legal and regulatory requirements.
Compliance and Reporting- Ensure compliance with relevant regulatory requirements, industry standards, and best practices.
- Prepare and present regular reports on the state of cyber security operations, including key metrics, trends, and incidents, to senior management and stakeholders.
- Provides evidence to audit and risk teams as required.
- Work with internal auditors and external assessors during security audits and assessments.
About You- 5 years' experience in any combination of cybersecurity or information security, information technology, or IT risk management, including experience leading teams or service providers.
- Experience in incident response
- Familiarity with the MITRE ATT&CK framework
- Previous experience managing any or all the following types of tools: Firewalls, Vulnerability Management, Web Gateway/Proxy, Web Application Firewalls, Secure Code Review, CASB, DLP, Email Gateway, SIEM, AV/EDR/XDR, Certificate Management and Security Awareness Training.
- Experience with the Microsoft security ecosystem, including Microsoft Defender XDR, Sentinel, Entra, Purview, and Security Copilot.
- Experience with Payment Card Industry (PCI-DSS) compliance.
- Experience in managing budgets, as cybersecurity initiatives often require significant financial resources.
- Professional certification such as CRISC, CISA, CISM, CISSP
- Understanding of relevant Ontario provincial and Canadian Federal information security and information privacy legislation
We offer a comprehensive suite of benefits including:
- Health/Dental Benefits
- Access to an Employee & Family Assistance Program
- a Defined Benefit Pension
- Discounts on products and services via Workperks.
Work Hours:36.25
Union / Non-Union:Non-Union
Job Posting End Date:September 16, 2026