Talent.com
GroupHEALTH Benefit Solutions
Cyber Security ManagerGroupHEALTH Benefit Solutions • Surrey, BC, CA
Les candidatures ne sont plus acceptées
Cyber Security Manager

Cyber Security Manager

GroupHEALTH Benefit Solutions • Surrey, BC, CA
Il y a plus de 30 jours
Salaire
150 000,00 $CA par an
Type de contrat
  • Temps plein
Description de poste

Cyber Security Manager

About GroupHEALTH

At GroupHEALTH, we're proud of the work we do – but it's how we do it that truly sets us apart. We're a fast-moving, ever-evolving, stable organization with deep roots and a bold vision: to transform the way Canadians experience benefits. We combine agility with long-term stability to create meaningful impact.

Here, you'll find more than just a job. You'll find a purpose-driven, people-first culture where kindness, collaboration, and curiosity thrive. Whether you've been here fifteen years or fifteen days, you'll notice right away – our people are genuinely invested in one another's success and delivering exceptional experiences to our clients and plan members.

About the Role

The Cyber Security Manager will lead the development and implementation of our cybersecurity strategy, owning overall security posture and playing a crucial role in safeguarding our company. The Cyber Security Manager will be responsible for establishing and implementing robust security processes, developing policies, and building an Information Security Management System (ISMS). In this role, you will work on our existing roadmap of findings to identify and address security gaps, enhance our security posture, and ensure the protection of our valuable assets.

This is a hybrid role based out of our Surrey office, working a blend of days in office and days from home.

What to Expect in Your First 3 Months

First 30 Days:

  • Compute a baseline composite score across all six KPI domains and present to the CIO with a gap analysis and 90-day improvement plan.

First 60 Days:

  • Hire and onboard the Security Analyst and Security Engineer, with each team member receiving clear 90-day objectives within their first week.
  • Develop and present the 12-month Cyber Security roadmap covering all six NIST CSF functions, tool procurement, and maturity milestones by Day 45.

First 90 Days:

  • Deliver the first quarterly cyber security report to the board risk committee covering the composite score baseline, top risks, PIPEDA compliance status, and Munich Re alignment summary.
  • Oversee Security Analyst development of the GroupHEALTH policy suite, with all core policies approved by the CIO and communicated to all staff and entity presidents by Day 75.
  • Identify all Tier 1 vendors across all 10 entities, initiate security questionnaires, and launch a Microsoft EASM or UpGuard evaluation by Day 75.

What You'll Do

  • Establish and support an effective cybersecurity program aligned with industry best practices, regulatory requirements, and organizational objectives
  • Develop, document, and implement comprehensive security policies, standards, and procedures to protect information assets
  • Develop, implement, and monitor an ISMS program to ensure the confidentiality, integrity, and availability of sensitive data owned, controlled, or processed by the organization
  • Serve as the primary point of contact and responsible party for cyber and information security across the organization
  • Contribute to the development and oversight of a global security management strategy and framework
  • Oversee third-party reviews and risk assessments to ensure comprehensive evaluation of security risks
  • Lead business compliance efforts for security, including supporting regular risk assessments to identify potential vulnerabilities, threats, and areas for improvement, and developing action plans to mitigate identified risks
  • Develop a metrics and reporting framework to measure cybersecurity and governance KPIs and KRIs, including tracking industry trends and best practices
  • Collaborate with cross-functional teams and the Privacy and Risk team to ensure security requirements are integrated into system development and business processes
  • Provide guidance and support to technical teams in the design and implementation of security systems, networks, and applications
  • Stay current with the latest industry trends, emerging threats, and security technologies, and adjust the organization's security strategy accordingly
  • Develop and deliver a security training and awareness program to promote a culture of security and influence behavior that reduces cyber and information security risk
  • Monitor and respond to security incidents, conduct investigations, and lead incident response activities to effectively manage incidents to an acceptable resolution
  • Work with internal and external stakeholders, including auditors and regulators, to ensure compliance with relevant security standards, laws, and regulations
  • Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to current and emerging technology and security threats
  • Maintain effective communication channels with management of both GroupHEALTH and the parent company to report on cybersecurity initiatives, risks, and progress
  • Produce the monthly security input for the CIO's IT Executive Dashboard
  • Lead, develop, and manage the Security Analyst and Security Engineer
  • Manage all Cyber Security vendor relationships and Pen Testing engagements
  • Serve as the primary escalation point for all P1 and P2 security incidents, including availability outside business hours for P1 events
  • Lead P1 incident response and coordinate breach notification obligations under PIPEDA, and relevant contracts and agreements including Beneva and Munich Re
  • Ensure post-incident reviews are completed within 5 business days for every P1 and P2 event

What We're Looking For

  • Bachelor's degree in Information Security, Computer Science, or a related field; equivalent experience considered
  • CISSP or CISM preferred; AZ-500 (Microsoft Azure Security) or SC-200 (Microsoft Security Operations) is a strong asset
  • 7–10 years of progressive security experience in enterprise or regulated industry environments
  • Prior team leadership required; experience presenting to board-level audiences required
  • Insurance, healthcare, or financial services industry experience strongly preferred
  • Solid understanding of security best practices and international standards such as ISO 27001 and NIST
  • Cyber security consulting background is an asset
  • Knowledge and experience in Security Training and Awareness, Security Governance, and Security Incident Management
  • Basic knowledge of laws and regulations applicable in the area of responsibility
  • Advanced knowledge of organization, technology controls, security, and risk issues
  • Demonstrated ability to lead complex, comprehensive, or large-scale projects and initiatives
  • Strong customer orientation, negotiating, and problem-solving skills
  • Strong planning, organizational, and presentation skills
  • Excellent command of business English, both spoken and written

Critical Competencies

You will succeed in this role if you are:

  • An Effective Communicator – You communicate clearly, positively, and respectfully, building relationships through tact and diplomacy. You navigate difficult conversations with care, and you're experienced at translating technical concepts for non-technical audiences.
  • An Organized Professional – You invest in upfront planning to achieve goals and objectives, schedule work in an efficient and productive manner, and stay focused on key priorities to meet deadlines.
  • A Business Acumen & Strategic Thinker – You translate technical risk into financial impact, balance security rigor with business pragmatism, and think 12–18 months ahead to anticipate the threat landscape and position the program accordingly.
  • A Collaborator & Influencer – You build genuine relationships with GroupHEALTH Family of Companies leaders, IT teams, and staff without relying on direct authority to drive outcomes.
  • An Incident Management & Ownership Leader – You remain calm, decisive, and clear during P1 incidents, coordinate response effectively, and take full accountability for outcomes including the composite security score.
  • A People Developer – You invest genuinely in the growth of the Security Analyst and Security Engineer, treating their capability development as a core accountability.

Compensation

At the time of this posting, the estimated annual base salary for this position is $150,000-$170,000. Individual compensation within this range is determined by factors such as job-related skills, relevant experience, and education/training. This range reflects the annual base salary only and does not encompass the comprehensive total rewards package that we proudly offer.

Why Join Us

  • Beyond salary, we offer generous paid time off, extended health and dental benefits, RRSP matching, and flexible work options
  • Wellness support, including comprehensive mental health resources, to prioritize your well-being both in and out of the workplace
  • A supportive culture, with opportunities to grow, and where our team members feel valued and empowered to thrive.

Accommodation and Inclusion

GroupHEALTH is committed to equity, diversity, and inclusion. If you need accommodation during any stage of the hiring process, please let us know! We're here to help.

If you're ready to do meaningful work and grow your career with GroupHEALTH, we'd love to hear from you. Click Apply to submit your application.

Créer une alerte emploi pour cette recherche

Cyber Security Manager • Surrey, BC, CA

Offres similaires

IT Security & Infrastructure Manager Role

District of SquamishSquamish, Squamish-Lillooet Regional District, CA
Temps plein

Join the District of Squamish as the Manager of IT Security and Infrastructure, leading initiatives in a hybrid tech environment.This dynamic full-time role emphasizes IT security and infrastructur... Voir plus

 • Offre sponsorisée

Activision Senior Manager, Product Security

Activision BlizzardVancouver, British Columbia, Canada
Temps plein

Lead security innovation at Activision as a Senior Product Manager.Drive product strategies to combat cheating and ensure player safety across gaming platforms.In this pivotal role at Activision's ... Voir plus

 • Offre sponsorisée

IT Security Technical Manager

JotformVancouver, British Columbia, Canada
Temps plein

This role will be responsible for the design, development, and implementation of new and innovative solutions to protect the Confidentiality, Integrity, and Availability of Jotform owned/ managed i... Voir plus

 • Offre sponsorisée

Cyber Security Manager

Snowstorm TechnologiesVancouver
Temps plein

Cybersecurity, Cloud Security & Compliance.Compensation: 125K Base Salary.Snowstorm Technologies is looking for a Cyber Security Manager to own and advance our approach to protecting our platforms,... Voir plus

 • Offre sponsorisée

Lead Cybersecurity Analyst Specializing in Threat Detection and Risk Management

lululemonvancouver, metro vancouver regional district, Canada
Temps plein

Elevate your career as a Senior Cybersecurity Analyst, specializing in threat detection.In a hybrid work environment, apply your skills to enhance the organization's cybersecurity posture through p... Voir plus

 • Offre sponsorisée

Information Technology Security Manager

TEEMArichmond, metro vancouver regional district, Canada
Temps plein

Get AI-powered advice on this job and more exclusive features.This range is provided by TEEMA.Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Di... Voir plus

 • Offre sponsorisée

Director of IT Security for Directive Consulting

DirectiveVancouver, Metro Vancouver Regional District, CA
Temps plein

Enhance IT security as Director at Directive Consulting.Protect client data and manage risks within a fully remote framework.In this leadership role, you'll report to the Head of Finance and define... Voir plus

 • Offre sponsorisée

FIFA26 Security Operations Manager Position

FIFA World Cup 2026 - Canada, Mexico and the United StatesVancouver
Temps plein

Take on a pivotal role in ensuring security at FIFA World Cup 26 in Vancouver as the Stadium Exterior Security Operations Manager.Your leadership will be essential in overseeing all aspects of secu... Voir plus

 • Offre sponsorisée

Senior Network Architect - Enterprise Security & Hybrid

VancityVancouver, Metro Vancouver Regional District, Canada
Temps plein +1

A prominent Canadian credit union is seeking a skilled Network Architect to provide technical leadership in managing its network infrastructure.This full-time permanent position involves ensuring t... Voir plus

 • Offre sponsorisée

Cyber Security Architect

Intuitive.aiVancouver, Metro Vancouver Regional District, CA
Temps plein

Talent Acquisition Leader | Hiring Cloud Professionals Globally.Cloud is one of the fastest-growing (INC 5000, CRN) Cloud & SDx solution and services companies supporting enterprise customers on a ... Voir plus

 • Offre sponsorisée

IT Security Risk Analyst

Onico SolutionsVancouver, Metro Vancouver Regional District, CA
Permanent

The IT Security Risk Analyst supports the Information Security Risk Management and Governance programs.They work with technology and business stakeholders to identify Information Security risks, co... Voir plus

 • Offre sponsorisée

Senior Security Engineer

fispanVancouver
Temps plein +1

As a Senior Security Engineer, you will provide leadership, expertise, and advanced security analysis capabilities within the organization’s security operations.Operating at a senior level, you wil... Voir plus

 • Offre sponsorisée

Cyber Service Senior Manager

PwC CanadaVancouver, Metro Vancouver Regional District, CA
Temps plein

At PwC, our cybersecurity professionals protect organisations from cyber threats using advanced technologies and strategies.As a Cyber Service Senior Manager, you will lead the implementation of th... Voir plus

 • Offre sponsorisée

Remote Client Engagement Manager - Cyber Security

CyberClanVancouver, Metro Vancouver Regional District, CA
Télétravail
Temps plein +1

A leading cybersecurity firm is seeking a Client Engagement Manager to provide superior customer-centric experiences.The role involves overseeing project execution, ensuring seamless onboarding for... Voir plus

 • Offre sponsorisée

Director, Cyber Security Operations

Global RelayVancouver, Metro Vancouver Regional District, CA
Temps plein

For over 25 years, Global Relay has set the standard in enterprise information archiving with industry-leading cloud archiving, surveillance, eDiscovery, and analytics solutions.We securely capture... Voir plus

 • Offre sponsorisée

Cyber Security Engineer - Protect & Fortify IT Systems

Yeah! GlobalVancouver, Metro Vancouver Regional District, Canada
Temps plein

A leading technology solutions provider is seeking a highly skilled Cyber Security Engineer to join their dynamic team in Vancouver.The role involves designing and maintaining security measures for... Voir plus

 • Offre sponsorisée

Provident Security Senior Network Manager

The Security Centre LimitedVancouver, Metro Vancouver Regional District, Canada
Temps plein

Elevate network management standards at Provident Security in Vancouver, BC, as a Senior Network Services Manager.Focus on designing and deploying secure, reliable home networks for discerning clie... Voir plus

 • Offre sponsorisée

Signals Intelligence Specialist - High-Impact Cyber Defense

Canadian Armed Forces | Forces armées canadiennesSurrey, Metro Vancouver Regional District, CA
Temps plein

A leading military organization is seeking a Signals Intelligence Specialist in Surrey, British Columbia.This entry-level position involves intercepting and analyzing electronic transmissions, mana... Voir plus

 • Offre sponsorisée

Network Security Sales Engineering Specialist

StealthWatchVancouver, Metro Vancouver Regional District, CA
Temps plein

Become a key player in network security as a Sales Engineering Specialist.Provide technical expertise that drives customer satisfaction and solution alignment, all while working remotely anywhere i... Voir plus

 • Offre sponsorisée

Technology Manager Driving Security in Identity Access Management

Best Buy CanadaVancouver, British Columbia, Canada
Temps plein

Lead the charge in security and efficiency with a role as a Technology Manager in IAM.This remote-first position allows you to leverage your expertise in managing identity and access systems effect... Voir plus