- Oversee the MSSP 24/7/365 monitoring capabilities, including the MSSP relationship.
- Work with the MSSP to define and maintain SOC playbooks, runbooks, and triage procedures.
- Collaborate with Technology Operations and Service Management on continual improvement activities.
- Ensure tuning and optimization of SIEM, SOAR, and threat‑detection platforms.
- Enforce SLA's, KPI's and other OLA's (e.g., MTTD, MTTR, alert quality etc.).
- Drive continuous improvement and remediate persistent service gaps.
- Oversee the optimization of security tools (SIEM, EDR, email security, DLP Policies etc.).
- Supervise forensic investigations and root cause analysis.
- With MSSP and MSP, lead containment, eradication, recovery, and post‑incident reviews for cybersecurity events.
- Maintain and improve the Cyber Incident Response Plan, communication protocols, and escalation workflows.
- Coordinate closely with the members of the CISRP, other key internal stakeholders and external parties such as forensics partners, law enforcement, etc.
- Ensure after‑action reporting, root‑cause analysis, and lessons‑learned processes are executed consistently.
- Manage threat‑intelligence sources and integrate intelligence into detection and response workflows.
- Oversee proactive threat‑hunting operations aligned with the organization's threat profile.
- Produce executive‑level threat briefings and strategic insights.
- Ensure appropriate policies and standards are in place.
- Support audits (internal/external), penetration tests, or other compliance initiatives.
- Provide evidence and reporting related to SOC operations.
- Ensure Cybersecurity Operations align with the NIST Cybersecurity Framework.
- Support ongoing cybersecurity risk posture reviews
- Produce operational dashboards, KPI/KRI reporting, and executive summaries.
- Track SOC performance, incident trends, threat landscape changes, and maturity metrics.
- Use data‑driven insights to guide improvements and decisions.
- Work with the broader cyber team to drive annual strategic planning and project initiatives as required.
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related discipline.
- 7–10+ years of experience in cybersecurity, with at least 3–5 years in operational leadership roles.
- Demonstrated experience managing SOC teams, incident response programs, or MSSP operations.
- Expert knowledge of SIEM, SOAR, EDR/XDR, IDS/IPS, vulnerability management, and cloud security platforms.
- Familiarity with cloud environments (Azure, GCP) and associated security controls.
- Experience with penetration testing, threat risk analysis and threat‑hunting methodologies.
- Willingness and demonstrated ability to adopt and effectively use AI tools such as Microsoft Copilot and ChatGPT
- CISSP and/or CISM are considered assets but are not required.
- ITIL certification is an asset for operational governance.
- Strategic and analytical thinker with ability to manage complex operational environments.
- Excellent communicator capable of delivering high‑quality briefings to senior leadership.
- Strong crisis‑management skills and calm decision‑making under pressure.
- Ability to build collaborative relationships across the Technology teams, and other business partners.
- Demonstrated leadership in maturing operational processes and driving continuous improvement.
-
We are seeking a Manager, · Cybersecurity Operations to join our Technology Data · & Delivery team in downtown Toronto.This role is responsible for managing day-to-day security operations, · ensuring continuous protection of enterprise information assets. · ...
Toronto, Ontario1 month ago
-
The candidate will define implement and maintain the operational environment for SOAR and WIZ ensuring stability and performance. They will be the main contact for operational process topics related to SOAR and WIZ managing external operational units through service level agreeme ...
Greater Toronto Area1 month ago
-
The Manager,Cybersecurity Operations is responsible for managing day-to-day security operations ensuring continuous protection of enterprise information assets. · This role oversees security monitoring incident response threat intelligence operational technology/process governanc ...
Toronto $85,600 - $135,600 (CAD)1 month ago
-
The Manager, Cybersecurity Operations is responsible for managing day-to-day security operations ensuring continuous protection of enterprise information assets. · ...
Toronto $85,600 - $135,600 (CAD) Full time3 weeks ago
-
Define implement and maintain the operational environment for SOAR and WIZ ensuring stability and performance. · ...
Toronto1 month ago
- Work in company
Associate Director, Cybersecurity and Privacy Operations
Only for registered members
Centennial College is hiring an Associate Director, Cybersecurity and Privacy Operations. · ...
Toronto $104,333 - $139,110 (CAD)6 days ago
- Work in company
Associate Director, Cybersecurity and Privacy Operations
Only for registered members
Centennial College is hiring an Associate Director, Cybersecurity and Privacy Operations. · ...
Toronto1 week ago
-
The Senior Cybersecurity Platform Operation Engineer is responsible for ensuring the cybersecurity platforms work correctly and reliably. · Platform Operations: Define, implement and maintain the operational environment for SOAR and WIZ. Point of Contact: Manage external operatio ...
Toronto3 weeks ago
- Work in company
Sr. Project Coordinator – Cybersecurity, Third-Party and Operational Resilience PMO
Only for registered members
We're building a relationshiporiented bank for the modern world. We need talented passionate professionals who are dedicated to doing what's right for our clients. · Project Financials: You will monitor project budgets track expenditures and ensure accurate financial reporting. · ...
Toronto, Ontario2 weeks ago
- Work in company
Sr. Project Manager, Cybersecurity, Third-Party and Operational Resilience
Only for registered members
We're building a relationship-oriented bank for the modern world. · We need talented professionals who are passionate about doing what's right for our clients. · We embrace your strengths and ambitions so you are empowered at work. · You will lead and manage a variety of strategi ...
Toronto Full time3 weeks ago
- Work in company
Sr. Project Manager, Cybersecurity, Third-Party and Operational Resilience
Only for registered members
We need talented professionals who are dedicated to doing what's right for our clients. We take a relationship-oriented approach and empower our employees at work.Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they ...
Toronto3 weeks ago
-
The Cybersecurity Operations and Compliance Lead will play a crucial role in maintaining the security and operational integrity of our software development and SaaS operations infrastructure. · This role focuses on managing and remediating security alerts from our external SOC wh ...
Whitby, ON LN T1 month ago
- Work in company
Sr. Project Coordinator – Cybersecurity, Third-Party and Operational Resilience PMO
Only for registered members
We're building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what's right for our clients. · At CIBC we embrace your strengths and your ambitions so you are empowered at work. Our team members have what th ...
Toronto2 weeks ago
- Work in company
Sr. Project Coordinator – Cybersecurity, Third-Party and Operational Resilience PMO
Only for registered members
We're building a relationship-oriented bank for the modern world. · You will join CIBC's Cyber Security Third Party and Resilience Project Management Office PMO and play a key role in supporting strategic initiatives that enhance cybersecurity operational resilience and third par ...
Toronto Full time2 weeks ago
-
This is a contract role for a Senior Cybersecurity Platform Operations Engineer based in Mississauga, ON. The engineer will manage monitor and optimize cybersecurity platforms ensuring security reliability of IT systems. · Cybersecurity platforms expertise · Security frameworks ...
Mississauga4 weeks ago
-
This role owns the day-to-day operations of the organization's SOAR and Wiz platforms within a global cyber defense environment. · * Define, implement, and execute the operating environment for SOAR and Wiz* Ensure a stable and high-performance infrastructure for SOAR and Wiz*, L ...
Mississauga1 month ago
-
We are looking for a Cybersecurity Manager 1 to join our team in Toronto, ON. The successful candidate will be responsible for analyzing program security needs and determining security objectives. · ...
Toronto, ON2 weeks ago
-
The Chief Technology Officer (CTO) provides visionary leadership and strategic direction for the hospital's digital infrastructure,cybersecurity,and telecommunications systems. · ...
Toronto, ON1 month ago
-
The Cybersecurity Advisor ensures consistency of project solutions that are cyber secure by design. That is, · according to defined cybersecurity policy, technical roadmap, and Customer requirements/needs.Overseeing and maintaining the cybersecurity process that includes defining ...
Toronto, ON1 week ago
-
We're looking for a full-time Network Security Intern in Toronto. You'll work alongside collaborative teammates to reduce Canada's busiest public transit system's carbon footprint by contributing to the On-Corridor Works project. · Taking on network security tasks in a cutting-ed ...
Toronto, ON1 week ago
-
A valued TELUS client is seeking a seasoned Microsoft Security Engineer to maintain optimize and secure their live enterprise environment. · ...
Toronto, ON1 month ago
Manager, Cybersecurity Operations - Toronto - ISACA
Description
THE ROLE
TheManager, Cybersecurity Operations is responsible for managing day‑to‑day security operations, ensuring continuous protection of enterprise information assets. This role oversees security monitoring, incident response, threat intelligence, and operational technology/process governance to maintain a resilient security posture.
This role reports to the Senior Director of Cybersecurity within the Technology Data and Delivery team.
This role is based in downtown Toronto in a hybrid work environment, allowing employees the flexibility to work remotely and in‑office (minimum two days per week in‑office).
Working Conditions:
This role may require after‑hours response during major incidents and coordination with third‑party providers, regulators, and external investigators.
This posting is for a existing vacancy.
KEY RESPONSIBILITIES
Security Operations Center (SOC) Leadership
Incident Response & Crisis Management
Threat Intelligence & Threat Hunting
Policy, Standards, and Compliance Support
Reporting & Metrics
Strategic Initiatives
QUALIFICATIONS & EXPERIENCE
ATTRIBUTES
#J-18808-Ljbffr
-
Manager, Cybersecurity Operations
Only for registered members Toronto, Ontario
-
Cybersecurity Platform Operations
Only for registered members Greater Toronto Area
-
Manager, Cybersecurity Operations
Only for registered members Toronto
-
Manager, Cybersecurity Operations
Full time Only for registered members Toronto
-
Cybersecurity Platform Operations
Only for registered members Toronto
-
Associate Director, Cybersecurity and Privacy Operations
Only for registered members Toronto
-
Associate Director, Cybersecurity and Privacy Operations
Only for registered members Toronto
-
Senior Cybersecurity Platform Operation Engineer
Only for registered members Toronto
-
Sr. Project Coordinator – Cybersecurity, Third-Party and Operational Resilience PMO
Only for registered members Toronto, Ontario
-
Sr. Project Manager, Cybersecurity, Third-Party and Operational Resilience
Full time Only for registered members Toronto
-
Sr. Project Manager, Cybersecurity, Third-Party and Operational Resilience
Only for registered members Toronto
-
Cybersecurity Operations and Compliance Lead
Only for registered members Whitby, ON LN T
-
Sr. Project Coordinator – Cybersecurity, Third-Party and Operational Resilience PMO
Only for registered members Toronto
-
Sr. Project Coordinator – Cybersecurity, Third-Party and Operational Resilience PMO
Full time Only for registered members Toronto
-
Senior Cybersecurity Platform Operations Engineer
Only for registered members Mississauga
-
Cybersecurity Platform Operations Engineer – SOAR
Only for registered members Mississauga
-
Project Cybersecurity Manager 1
Only for registered members Toronto, ON
-
Chief Technology Officer
Only for registered members Toronto, ON
-
OT Cyber Security Advisor
Only for registered members Toronto, ON
-
Network Security Intern
Only for registered members Toronto, ON
-
Microsoft Cybersecurity Speciaist
Only for registered members Toronto, ON
