Jobs
>
Toronto

    Manager - Cybersecurity operations (Global role – in a virtual working environment) - Toronto, Canada - Grant Thornton International Ltd

    Grant Thornton International Ltd
    Grant Thornton International Ltd Toronto, Canada

    1 week ago

    Default job background
    Description
    About Grant Thornton


    Grant Thornton is one of the world's leading professional services networks with over 68,000 people from member firms in over 140 markets around the world generating global revenues of USD7.2 billion a year.

    Member firms offer audit, tax, and advisory services to privately owned companies, publicly listed companies, public sector and not for profit organisations, both domestically and internationally.

    Grant Thornton International Ltd (GTIL) is the umbrella legal entity for the Grant Thornton global network of member firms.

    GTIL sets the strategic direction, convenes member firms, connects global communities, and protects the brand and reputation of the network.

    GTIL and the member firms will continually improve the sustainability of their operations and strive to make a positive impact on clients, people, markets, and the communities in which we operate, in line with the UN's Sustainable Development Goals (SDGs).

    Role purpose

    In our Go Beyond network strategy 2025 our vision is to become 'the most valued network in the profession'.


    The Manager of Cybersecurity Operations plays a crucial role in managing the proactive, operational and reactive cybersecurity posture for GTIL and member firms globally.


    Reporting directly to the lead of GTIL's cybersecurity operations and with key relationships to IT Operations and the Managed Security Service Provider (MSSP), this role provides subject matter expertise and orchestration across a wide range of cybersecurity services and solutions.

    This includes planning, implementation, operations, maintenance and continual improvement of these services and solutions to provide the best insight, protection and value for the organisation.

    Main Responsibilities


    Cybersecurity OperationsManage the various cybersecurity operational and monitoring tools for GTIL (and globally where tools extend across Member Firms).Liaise with the various Business Unit stakeholders, MSSP, and cybersecurity vendors, with regards to planning, provision and maintenance of operational and monitoring tools.

    Liaising with the GTIL Security Architect and IT Operations to implement responsibility and accountability across Identity Access Management (IAM) services.

    Respond to, redirect or escalate GTIL and Member Firm queries, in relation to impacting cybersecurity operations and potential threats.

    Oversee the security training and awareness programmes for GTIL.Hold various privileged functional roles within cybersecurity and IT operational platforms, as defined by team RACI models.

    Function as cybersecurity proxy on the IT/Shared Services Change Advisory Boards (CAB).Develop and maintain documentation of cybersecurity operations.

    Cybersecurity Engineering SupportEnforce security policies via technical configuration and end user awareness.
    Assist in successfully planning, testing, validating, and documenting secure configurations across multiple core platforms.
    Manage the identification, classification, labelling and protection of data across various productivity platforms.

    Actively participate in industry-specific threat intelligence sharing groups and forums to contribute insights and gain valuable knowledge on emerging threats.

    Design and implement advanced threat intelligence capabilities, including the development of automated processes for data collection, analysis, and dissemination.
    Assist in improving implementation of automated incident response via SOAR and workflows.
    Determine gaps in technology and processes to identify opportunities for further development.


    Risk Engagement – Advisory and ReportingEvaluate and advise on existing systems design and operational functions relative to security best practices and compliance requirements.

    Evaluate the security impact of changes to information systems and provide commensurate risk advice.

    Engage in complex technical discussions with other technical teams; Provide clear guidance on the security requirements of those issues or projects.


    Proactive – Threat Modelling and AnalyticsIndependently research and analyse emerging cyber threats, vulnerabilities, tactics, techniques, and procedures (TTPs)Assist in the design and management of appropriate risk management processes to collect, analyse and report on industry wide, imminent and emerging cybersecurity risks to GTIL and member firms.

    Liaise with key IT, Business Unit stakeholders and vendors to conduct technical probing and analysis of GTIL's information security architecture and defensive controls.

    Assist in testing methods to identify ways that attackers could exploit weaknesses in security systems.
    Assist in the development and maintenance of documentation on vulnerability assessments, threat modelling and risk remediation processes.

    Reactive – Incident ResponseAssist in investigating potential security incidents and the degree to which the investigation must happen.
    Determine the need to escalate a security incident to Cyber Operations management.
    Assist in root cause analysis, evaluate capability maturity and optimise future security incident handling through process improvements.

    Assist in development and maintenance of documentation on cyber security incident playbook and runbooks, process workflow, incident handling and response capabilities.

    MiscellaneousSupporting the Associate Director and other Cybersecurity leadership in meeting and delivering department and strategic objectives.

    Location

    Ideally within the Americas.

    Person Specification


    Bachelor's Degree OR equivalent post high school education and/or work-related experience in Computer Science, Information Systems, or other Information Technology related field.

    CISSP (Certified Information Systems Security Professional) certification is desired.
    OSCP (Offensive Security Certified Professional) certification is desired.


    Experience - essentialSolid experience of working in Information Security OR a combination of relevant experienceDemonstrated operational expertise in the following: Vulnerability management, Application security, Endpoint Detection and Response, Edge defence solutions (Firewalls, WAF, IDS/IPS ), Data protection solutions, Endpoint configuration management, Identity and Access Management, Logging and Monitoring (SIEM, User Behaviour Analytics), Incident response planning and invocation, Windows client, server and hyper-visor operating systems, On-premises architecture (security controls and configurations), Cloud architecture (security controls and configurations).The job requires effective leadership, communication (verbal and written) and project management skills to work with various levels and divisions within the organization.

    Strong organisational and communication skillsAbility to learn and adapt to a constantly changing technology and threat landscape.

    This role scope of responsibility will, on occasion, extend to include member firms across the globe, communication and relationship building is a key requirement.

    Provides expertise and solutions for complex initiatives and is capable of making independent decisions.
    Cultural awareness, the ability to work well with people from different disciplines and backgrounds.
    Ability to be agile, respond positively to change and contribute with an innovative and global mindset.

    Experience - desirableEthical hacking (red team, penetration testing) experienceSecurity Operations Centre (SOC) administration or leadershipSecurity automation and orchestrationIncident response forensic processes

    Benefits


    There are many benefits of being part of Grant Thornton International, working with a global and diverse team in a virtual setting is just one of them.

    We pride ourselves on our inclusive culture and believe it's one of our most valuable assets.

    We also recognise the importance of time off at Grant Thornton International. Taking time away can lead to improved wellbeing and better productivity, which is why we don't cap your leave. So if you need to take that extra Friday off (and Monday too), no problem.

    We believe work is no longer a location, it is what we do. This should help all of us deliver our best work, while achieving the right balance in our lives. We want to build a culture of virtual inclusivity.

    One where all our people have the ability to choose what works best for them but also provides our people the best shared working experience utilising the digital tools we have available.

    GTIL will provide individuals with the necessary support and equipment to work effectively from home. We also have a collaborative space to offer should you prefer working outside of your home.


    We fully understand the importance of balancing your life and we aim to support that with remote working and flexibility within your role.

    We understand the time you spend outside of work helps shape what you bring into work, so we encourage flexibility on both sides.

    However, if you prefer to work from the office, this is also something we offer.

    These are just some of the benefits of working at Grant Thornton International.

    We also have a wide range of attractive core benefits including pension, health insurance, wellbeing programmes and much much more.



  • CDW Toronto, Canada

    At CDW, we're always on, forever vigilant and information security is infused in our DNA. A Fortune 200 leader and Canada's number one provider of IT solutions, we have a proud 20-year track record of safeguarding companies' critical data and resources through the very latest cyb ...


  • Questrade Financial Group Toronto, Canada

    Questrade Financial Group (QFG) of Companies is committed to helping our customers become much more financially successful and secure. · We are everything a traditional financial institution is not. At QFG, you will be constantly moving forward, bringing the future of fintech int ...


  • ALSTOM Toronto, Canada

    Req ID:431499 · Imagine playing a central role in reducing the carbon footprint of Canada's busiest public transit system and doing so with a consistently ranked Top Employer with a global reach. As part of the ONxpress consortium, Alstom is proudly working to transform the colle ...

  • Toronto Public Library

    IT Security Expert

    1 week ago


    Toronto Public Library Toronto, Canada

    The IT Security Expert is responsible for the continuous improvement of TPL's information security · practice, which includes three core functions - performing threat risk assessments, continuous · improvement of the IT security governance practices, and resolving cybersecurity i ...


  • Sopra Steria I2S Toronto, Canada

    We are seeking an experienced Project Manager with a background in cybersecurity to lead and manage complex technical projects. As an Experience Project Manager, you will be responsible for overseeing the planning, execution, and delivery of projects on-time, within scope, and on ...

  • EY

    Staff Consultant

    4 days ago


    EY Toronto, Canada

    At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we're counting on your unique voice and perspective to help EY become even better, too. Join us and build ...


  • Atlantis IT group Toronto, Canada

    **JD**: · **Role · - Network Security Analyst** · **Location-** **CALGARY, AB (Hybrid)** · **Duration · - Contract** · Establishes and maintains security architecture frameworks and practices across the enterprise, and communicates the strategy and roadmaps with a broad range of ...


  • TD Bank Toronto, Canada

    **TD Description** · Stay current and competitive. Carve out a career for yourself. Grow with us. · **Department Overview** · The independent Operational Risk Management (ORM) team works in partnership with the business units and corporate groups of TD Bank Group to further the u ...


  • Dream Unlimited Toronto, Canada

    Job Details · Description · **Dream is looking to welcome its latest Cybersecurity, Analyst** · We are always looking for the best and brightest to join our thriving community. Dream's Cybersecurity Team is currently looking for a Cybersecurity Analyst to support our Technology O ...


  • Mjolnir Security Toronto, Canada

    **Location**: Canada (multiple locations available) · **About Us**: · Mjolnir Security is a leading provider of innovative cybersecurity solutions across the globe. We dedicate ourselves to fortifying digital landscapes, ensuring that our clients can operate safely in today's com ...

  • TD Bank

    Risk Manager, Data

    1 week ago


    TD Bank Toronto, Canada

    402569BR · Corporate Development / Strategy / Design · Toronto, ON · March 10, 2023 · Company Overview · Department Overview · The independent Operational Risk Management (ORM) team works in partnership with the business units and corporate groups of TD Bank Group to further the ...

  • The Travel Corporation (Canada)

    Data Centre

    1 day ago


    The Travel Corporation (Canada) Toronto, Canada

    The Travel Corporation is an industry leader, and career opportunities at The Travel Corporation are as diverse as the travel experiences we offer. Our teams, our family, is absolutely our greatest asset. Working with a collaborative team spirit, we are dedicated to providing exc ...


  • Questrade Financial Group Toronto, Canada

    Questrade Financial Group (QFG) of Companies is committed to helping Canadians become much more financially successful and secure. We are everything a traditional financial institution is not. Our vision is to revolutionize financial services for the benefit of Canadians by provi ...


  • Ontario Power Generation Toronto, Canada

    **Location**:Toronto, ON, CA, M5G 1X6**Req ID**:43120**Status**: Regular Full time**Working Conditions**:Hybrid (3 days in office)**Education Level**:4 years of University degree in an appropriate field such as Computer Science plus 1 year of further concentrated study in Cyberse ...


  • Vortalsoft Toronto, Canada

    Job Summary: · Facilitate and support the agile development process of our cybersecurity transformation initiatives and ongoing operational work · Pay: $75,000.00-$85,000.00 per year · Schedule: · - 8 hour shift · **Education**: · - Bachelor's Degree (preferred) · **Experience**: ...


  • Fidelity Investments Toronto, Canada

    Job Description · Job Posting - Team Manager, Cybersecurity · This is a hybrid role with a mix of remote and in-office working · a · At Fidelity, we've been helping Canadian investors build better financial futures for over 35 years. We offer individuals and institutions a range ...


  • City of Toronto Toronto, Canada

    **Job ID**: 42116 · **Job Category**:Information & Technology · **Division & Section**:Toronto Water, TW Customer & Technical Support · **Work Location**:60 Tiffield Road (Hybrid) · **Job Type & Duration**:Full-time, Permanent · **Hourly Rate**:$ $52.23 · **Shift Information**: M ...

  • TELUS

    Business Analyst

    4 days ago


    TELUS Toronto, Canada

    **Basic Information**: · Ref Number · - Req_ · Primary Location · - TELUS Harbour Toronto · Country · - Canada · Job Type · - Digital Solutions · Work Style · - Remote · **Description and Requirements**: · **Here's the impact you'll make and what we'll accomplish together** · - ...


  • Toronto Hydro Toronto, Canada

    Reporting to the Senior Manager, Enterprise Architecture & Cyber Security, the Cyber Security Specialist will assist in designing, implementing, and maintaining the organization's data protection infrastructure. The person in this role implements processes, systems or projects th ...


  • ISA Cybersecurity Toronto, Canada

    **About the Role** · Reporting to the Executive Vice President, the Client Engagement Manager (CEM) is responsible for assessing client needs for Role Based Consulting requirements. The CEM will use their in-depth industry knowledge and extensive network to effectively identify, ...