Talent.com
TechAlliance of Southwestern Ontario, London Economic Development Corporation
Manager, Security Incident ResponseTechAlliance of Southwestern Ontario, London Economic Development Corporation • Toronto, ON, CA
Manager, Security Incident Response

Manager, Security Incident Response

TechAlliance of Southwestern Ontario, London Economic Development Corporation • Toronto, ON, CA
Il y a plus de 30 jours
Type de contrat
  • Temps plein
Description de poste

We are seeking an experienced Security Incident Response Manager to lead and manage our security incident response function. This role is critical to protecting our business, data, and clients by ensuring rapid, effective, and efficient responses to cybersecurity incidents and threats. The ideal candidate will have deep expertise in the incident response lifecycle, strong leadership skills, and the ability to collaborate across various departments and stakeholders.

As part of our Information Security team, you will manage a team of analysts, lead high-profile investigations, and develop and implement response plans for diverse security incidents. Your work will directly contribute to minimizing risks, safeguarding sensitive information, and enhancing the overall cybersecurity posture of our organization.

What you will do:

  • Develop, lead, and oversee the end-to-end security incident response process, including preparation, detection, analysis, containment, eradication, recovery, and post-incident review.
  • Act as the primary point of contact and coordinator during major security incidents, managing incident communications and escalating as needed.
  • Establish and maintain incident response playbooks, procedures, and runbooks aligned with industry frameworks (NIST, ISO 27035, SANS, etc.).
  • Coordinate with the Security Operations Center (SOC) team, Threat Intelligence, and Vulnerability Management to proactively detect and respond to potential threats.
  • Ensure incidents are properly documented, classified, and reported, and lead root cause analysis (RCA) efforts to identify lessons learned.
  • Regularly conduct tabletop exercises and simulations to assess and improve the organization’s incident response readiness.

Security Investigations and Threat Management

  • Manage and conduct security investigations to determine the cause, scope, and impact of security breaches.
  • Oversee evidence gathering to support investigations, ensuring chain of custody and compliance with legal and regulatory standards.
  • Work with threat intelligence team to analyze and respond to advanced persistent threats (APTs), malware outbreaks, ransomware incidents, and other cyberattacks.
  • Collaborate with external partners, law enforcement, and industry groups to stay informed of emerging threats and incorporate intelligence into incident response processes.

Collaboration and Stakeholder Engagement

  • Act as a liaison between the Security Incident Response Team (SIRT) and business units, IT, Legal, Compliance, Risk, and external vendors.
  • Work closely with internal audit, governance, and risk management teams to ensure alignment with corporate security policies and regulatory requirements.
  • Communicate effectively with senior leadership during high-severity incidents, providing regular updates on impact, response activities, and mitigation plans.
  • Partner with business continuity and disaster recovery teams to ensure seamless integration of incident response with overall organizational resilience.

Process Development and Maturity

  • Continuously enhance and refine the incident response framework to align with evolving threats, business objectives, and regulatory landscapes.
  • Develop and maintain comprehensive incident response policies, standards, and guidelines that address the needs of the business while aligning with global best practices.
  • Establish key performance indicators (KPIs) and metrics to measure the effectiveness and efficiency of the incident response program.
  • Lead initiatives to automate and optimize incident response activities through the integration of SOAR (Security Orchestration, Automation, and Response) platforms and other tools.

Leadership and Team Management

  • Build, mentor, and manage a team of incident responders and analysts, fostering a culture of continuous learning and collaboration.
  • Provide ongoing training and development for the team to ensure they are up-to-date with the latest threat landscapes, tools, and techniques.
  • Foster strong relationships with third-party incident response providers to ensure additional support when required.

What you bring:

  • Bachelor’s degree in computer science, Information Security, or a related field.
  • 5+ years of experience in cybersecurity with at least 3 years in incident response or related roles.
  • Demonstrated experience leading security incident response teams and managing major incidents.
  • Deep understanding of incident response frameworks (NIST 800-61, ISO 27035, MITRE ATT&CK, etc.) and industry best practices.
  • Strong knowledge of threat detection, digital forensics, malware analysis, network security, and endpoint security.
  • Experience in handling cloud-based incidents (Azure, AWS, GCP) and familiarity with cloud security principles.
  • Proficient in SIEM (Security Information and Event Management) tools, EDR/XDR platforms, and forensic tools.
  • Strong project management skills and the ability to manage multiple investigations and priorities simultaneously.
  • Certifications such as GCIH, GCFA, CISSP, CISM, or CRISC are highly desirable.
  • Experience in the insurance or financial services sector is a strong asset.
  • Familiarity with privacy regulations (GDPR, PIPEDA, CCPA) and industry compliance requirements.
  • Experience working with executive leadership and Board-level communications during incidents.
  • Critical thinking and problem-solving under pressure.
  • Excellent communication skills with the ability to explain technical concepts to non-technical audiences.
  • Strong collaboration and interpersonal skills to work effectively across teams and business units.
  • Detail-oriented with a high level of integrity and professionalism.

#J-18808-Ljbffr

Créer une alerte emploi pour cette recherche

Manager, Security Incident Response • Toronto, ON, CA

Offres similaires

Manager, Security Incident Response

TechAlliance of Southwestern Ontario, London Economic Development CorporationToronto, Ontario, Canada
Temps plein

Security Incident Response Manager.This role is critical to protecting our business, data, and clients by ensuring rapid, effective, and efficient responses to cybersecurity incidents and threats.T... Voir plus

 • Offre sponsorisée

Cybersecurity Incident Manager

PwC CanadaToronto, ON, CA
Temps plein

At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies.They work to identify vulnerabilities, develop secure systems, ... Voir plus

 • Offre sponsorisée

Threat Hunting & Incident Response Manager

Insight GlobalToronto, Ontario, Canada
Temps plein

A leading cybersecurity consultancy is looking for a Cybersecurity Manager with extensive experience in incident response and digital forensics.This role involves a mixture of technical work and ma... Voir plus

 • Offre sponsorisée

Senior Security Analyst: Incident Response & Threat Defense

MindlanceToronto, ON, CA
Temps plein

A global cybersecurity firm is seeking a Senior Security Analyst to join their team in Toronto.This role involves providing technical security consulting, ensuring timely incident resolution, and c... Voir plus

 • Offre sponsorisée

Associate X-Force Incident Response - Toronto or Ottawa

IBMToronto, ON, CA
Temps plein

Associate X-Force Incident Response - Toronto or Ottawa.Associate X-Force Incident Response - Toronto or Ottawa.In this role you will join IBM Consulting via our world class Associate Program for u... Voir plus

 • Offre sponsorisée

Agentic Incident Management Founder, Manufacturing

Forum VenturesToronto, ON, CA
Temps plein

Factory floors generate thousands of alerts every day.At $260,000 an hour in unplanned downtime, operators can't afford to guess which one matters.Manufacturing operations run on a fragmented stack... Voir plus

 • Offre sponsorisée

Senior Cybersecurity Manager Transforming Public Transport Security

ALSTOM GruppeToronto, ON, CA
Temps plein

Become a pivotal force in transportation safety as a Senior Cybersecurity Manager.Utilize your expertise in cybersecurity and system management in a hybrid work setting.This strategic role requires... Voir plus

 • Offre sponsorisée

H&S Incident & Training Coordinator

Trillium Guideway PartnersToronto, ON, CA
Temps plein

The Primary Construction Team consists of ACCIONA Infrastructure Canada Inc.ACCIONA) and Amico Major Projects Inc.Amico), as Trillium Guideway Partners (TGP).The Ontario Line (“OL”) is a fully inte... Voir plus

 • Offre sponsorisée

Nuclear Security Leader - Canada

GE VernovaMarkham, ON, CA
Permanent

We are seeking an experienced Nuclear Security Leader to support the GE Vernova Hitachi (GVH) Small Modular Reactor (SMR) business in Canada.In this position you will identify, communicate, impleme... Voir plus

 • Offre sponsorisée

Incident Management, Lead

Interac Corp.Toronto, ON, CA
Temps plein

Be among the first 25 applicants.Get AI-powered advice on this job and more exclusive features.At Interac, we design and deliver products and solutions that give Canadians control over their money ... Voir plus

 • Offre sponsorisée

Strategic Enterprise Account Executive — Incident Management

RootlyToronto, ON, CA
Temps plein

A growing technology firm is seeking an experienced Enterprise Account Executive in Toronto, Canada.You will shape the sales process, drive revenue through building relationships and closing high-v... Voir plus

 • Offre sponsorisée

Senior Secops Lead: Incident Response & Threat Hunting - C$126,000 - C$154,000 A Year

RelayEast York, Canada
Temps plein

Lead SecOps professional for a digital banking platform, focusing on incident response and threat hunting.Requires cloud security expertise and strong communication skills. Voir plus

 • Offre sponsorisée

Manager, Cyber Incident Readiness - C$90,000 - C$175,000 A Year

DeloitteToronto, Canada
Permanent

Location: Toronto, ON, CA, M5C 3G7 | Job Type: Permanent | Work Model: Hybrid | Reference code: 130773 | Primary Location: Toronto, ON | All Available Locations: Toronto, ON; Calgary, AB; Ottawa, O... Voir plus

 • Offre sponsorisée

Senior Cyber Security Architect — Incident Readiness Lead

Rubicon PathToronto, ON, CA
Temps plein

A consulting firm is seeking a Senior Cyber Security Specialist in Toronto to lead cyber tabletop exercises and enhance the incident response readiness for Ontario's ministries.The ideal candidate ... Voir plus

 • Offre sponsorisée

Incident Analyst

DexianToronto, ON, CA
Temps plein

Type: 1-year contract, contract-to-potential full-time.Location : Toronto, ON (Hybrid 2 days/ week).Lead remediation of incidents impacting Capital Markets.Act as a stakeholder in Major Incidents.D... Voir plus

 • Offre sponsorisée

AVP - Operational Resiliency, Safety & Security

Aviva CanadaMarkham, ON, CA
Temps plein

Our values — Care, Commitment, Community, and Confidence — guide how we show up for each other and for our customers.Together, they define who we are.At Aviva Canada, we put people first, our emplo... Voir plus

 • Offre sponsorisée

Principal Soc Incident Response Lead - C$114,143 - C$142,679 A Year

Financial Technology CompanyToronto County, Canada
Temps plein

Lead cybersecurity incident response and threat hunting for a financial tech company in Toronto, requiring 8+ years of experience and EDR tools knowledge. Voir plus

 • Offre sponsorisée

Hybrid Digital Security Specialist: Incident Response

IAMGOLD CorporationToronto, ON, CA
Temps plein

A leading Canadian mining company is seeking a Digital Security Specialist to bolster its cybersecurity operations.This role involves coordinating incident responses, managing vulnerabilities, and ... Voir plus

 • Offre sponsorisée

Security Program Manager Stouffville ON

CprvisionWhitchurch-Stouffville, ON, CA
Temps plein

Drive security excellence as a Security Program Manager at Portfolio+ Inc.Stouffville, ON, focusing on enterprise risk and compliance frameworks.This specialized role involves leading the enterpris... Voir plus

 • Offre sponsorisée

Technical Program Manager - Windows Security (1 year contract)

AMDMarkham, ON, CA
Temps plein

We are seeking a Technical Program Manager to lead co‑engineering programs between AMD, Microsoft, and OEM partners, enabling Windows Security features across AMD platforms.This role requires stron... Voir plus