Talent.com
SOCAN
Senior Information Security OfficerSOCAN • Toronto, ON, Canada
Senior Information Security Officer

Senior Information Security Officer

SOCAN • Toronto, ON, Canada
30+ days ago
Salary
CA$101,360.00 yearly
Job type
  • Permanent
Job description

Position Overview

Job Title: Senior Information Security Officer (SISO)

Location: Toronto, ON (Remote)

Employment Type: Permanent Full‑Time

Salary: $101,360 – $121,360

Language: English required; French is an asset

Key Responsibilities

  • Security Governance: develop, maintain, and socialize security policies, standards, procedures, and architecture guardrails aligned to business objectives.
  • Risk Management: lead and/or support security risk assessments, control reviews, threat modeling, risk treatment plans, and executive‑ready reporting.
  • Security Operations: design and continuously improve security monitoring, alerting, and response processes across Microsoft Azure cloud and on‑prem infrastructure (VMware ESX/NSX), as well as endpoint, identity, network, and SaaS environments.
  • Detection Engineering: build and tune SIEM detections and analytics (queries, correlation rules, use cases), reduce false positives, and measure detection coverage (e.g., mapped to MITRE ATT&CK).
  • Threat Hunting: conduct proactive hunts using logs/telemetry, develop hypotheses, document findings, and translate learnings into new detections and control improvements.
  • Incident Handling: triage and investigate security alerts; lead incident response from containment through eradication and recovery; run post‑incident reviews and drive corrective actions.
  • SIEM & Automation: operate and optimize SIEM/SOAR integrations, log onboarding, parsing/normalization, playbooks, and automations to improve MTTR and analyst efficiency.
  • Vulnerability Management: manage scanning and remediation workflows, prioritize findings based on risk, track SLAs, and validate fixes.
  • Security Assessments & Testing: perform technical security assessments, configuration reviews, and support or execute penetration testing; coordinate remediation with owners.
  • Application Security: partner with developers or vendors on secure SDLC practices and standards (OWASP ASVS and OWASP Top 10), including code review support, dependency scanning, secrets management, CI/CD security, and developer enablement.
  • Third‑Party & SaaS Security: assess vendors and integrations, review security controls, and monitor ongoing risk.
  • Security Awareness: contribute to security training, guidance, and internal communications to strengthen the security culture.
  • Documentation & Metrics: maintain runbooks and playbooks; define KPIs/KRIs (e.g., coverage, response times, patch SLAs) and report progress.

Qualifications & Experience

  • Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent practical experience).
  • 5+ years of progressive experience across multiple information security domains (governance/risk and hands‑on security operations).
  • Hands‑on experience with SIEM platforms (Microsoft Sentinel) including log onboarding, detection development, tuning, and dashboarding.
  • Demonstrated detection engineering and investigation skills: KQL proficiency, alert triage, and evidence‑based incident response.
  • Experience performing threat hunting and translating hunts into detection use cases and playbooks.
  • Incident response experience including scoping, containment, eradication, recovery, and post‑incident retrospectives.
  • Strong understanding of core security controls across identity (SSO/MFA), endpoint security, networking, logging/telemetry, and hybrid security concepts spanning Microsoft Azure and on‑prem infrastructure (VMware ESX/NSX), including Entra ID/Azure AD, Azure networking, key management, cloud posture management, and segmentation/micro‑segmentation.
  • Vulnerability management experience: scanning (infrastructure and apps), prioritization, remediation tracking, and verification.
  • Experience with security assessments and/or penetration testing methodologies and reporting.
  • Application security experience: secure SDLC, OWASP Top 10, API security, dependency and secrets scanning, and partnering with developers.
  • Automation/scripting ability (e.g., Python, PowerShell, Bash) and experience integrating security tools via APIs/webhooks; SOAR/playbook experience preferred.
  • Knowledge of security frameworks and standards (e.g., NIST CSF / 800‑53, ISO 27001, CIS Controls) and practical risk management.
  • Relevant certifications are an asset (e.g., CISSP, CISM, GIAC, GCIH, GCIA, GCED, OSCP, AZ‑500, SC‑200/SC‑100).
  • Excellent written and verbal communication skills; able to explain risk and technical findings to both technical and non‑technical audiences.

Benefits

  • 35‑hour work week schedule (possible flexible work options, e.g., 4‑day work week).
  • Twelve paid sick days annually (including five personal days).
  • Access to SOCAN fitness facility.
  • Annual Performance Incentive bonus (dependent on personal and company performance).
  • Defined contribution Pension Plan.
  • Comprehensive health and dental benefits program.
  • Inclusive and collaborative working environment.

Commitment to Diversity, Equity, Inclusion, and Anti‑Racism

SOCAN thrives with a variety of viewpoints, identities, and backgrounds, and we are committed to anti‑racism. Everyone is welcome to apply for our wide range of roles, regardless of gender identity, gender expression, ethnicity, race, age, culture, sexual orientation, religious belief, or physical ability. SOCAN remains dedicated to creating a more equitable, inclusive, and diverse workplace.

Accessibility & Accommodation

SOCAN is committed to providing an inclusive workplace environment that meets the accessibility needs of employees with disabilities.

Equal Employment Opportunity

Socan is an Equal Opportunity Employer. Hiring and other employment decisions at Socan are made without regard to race, colour, religion, sex, ancestry, national origin, ethnic origin, age, disability, citizenship, veteran status, sexual orientation, record of offences, marital status, family status, or any other characteristic protected by federal, provincial, or local law, regulation, or ordinance. We encourage applicants of all backgrounds to apply.

#J-18808-Ljbffr
Create a job alert for this search

Senior Information Security Officer • Toronto, ON, Canada

Similar jobs

Senior Information Security Officer

SOCANToronto
Full-time +1

Senior Information Security Officer (SISO).English required; French is an asset.Security Governance: develop, maintain, and socialize security policies, standards, procedures, and architecture guar... Show more

 • Promoted

Senior Information Security Analyst

TDToronto, ON, CA
Full-time

TD is committed to providing fair and equitable compensation opportunities to all colleagues.Growth opportunities and skill development are defining features of the colleague experience at TD.Our c... Show more

 • Promoted

Information Security Governance Analyst

Ontario Medical AssociationToronto, ON, CA
Full-time

Advance the cybersecurity landscape as an Information Security Governance Analyst.Focus on compliance oversight, risk management strategies, and security improvements in a flexible hybrid environme... Show more

 • Promoted

Senior Cloud Security Engineer, Information Security

Peoples GroupToronto, ON, CA
Full-time

We are hiring for this position out of our Toronto, Vancouver and Calgary offices.Successful candidates who apply outside of these areas will be expected to relocate and reside in a location that i... Show more

 • Promoted

Senior Information Security Specialist - C$96,900 - C$136,800 Par An

TD BankNorth York, Canada
Full-time

Le candidat conseillera sur les programmes de sécurité et gérera l'évaluation des risques. Show more

 • Promoted

Information Security Officer - $110,000 - $130,000 A Year

KcbToronto County, Canada
Full-time

Lead the development and execution of cybersecurity strategy, risk management, incident response, and policy compliance for an organization.Requires strong knowledge of security frameworks and tech... Show more

 • Promoted

Senior Information Security Officer - $101,360 - $121,360 A Year - Remote

SocanEast York, Canada
Remote
Full-time

Seeking a Senior Information Security Officer to manage security governance, risk, and operations.Responsibilities include threat hunting, incident response, and vulnerability management across clo... Show more

 • Promoted

Information Security Officer Business Operations · Vancouver · - C$110,000 - C$130,000 A Year

Klohn Crippen BergerToronto County, Canada
Full-time

Seeking an experienced Information Security Officer to lead KCB's enterprise cybersecurity program, focusing on strategy, risk management, policy, operations, and incident response across globa... Show more

 • Promoted

Senior Consultant in Information Security

Control Gap Inc.Toronto, ON, CA
Full-time

Make an impact as a Senior Consultant at CyberGuard Advantage, focusing on cybersecurity and compliance.Deliver insights into risk management and strengthen clients’ security postures.As a Senior I... Show more

 • Promoted

Information Security Operations Leader - $110,000 - $130,000 A Year

Global Engineering Consulting FirmEast York, Canada
Full-time

Experienced Information Security Officer to lead cybersecurity initiatives, manage governance, risk, and policy implementation for a global engineering consulting firm. Show more

 • Promoted

Senior Associate, Information Security

Publicis Groupe Holdings B.VToronto, ON, CA
Full-time

The Senior Associate, Information Security is part of a global team and is responsible for incident response of cyber security incidents that are associated with our businesses, clients, and vendor... Show more

 • Promoted

Senior Information Security Analyst

ScotiabankToronto
Full-time

Senior Information Security Analyst.Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.Contributes to the successful delivery and operational supp... Show more

 • Promoted

Senior Security Architect – Enterprise Security & DevSecOps

VancityToronto, ON, CA
Full-time

A member-owned credit union is seeking a Senior Security Architect to design and implement secure technology solutions.This role includes mentoring junior architects, leading security assessments, ... Show more

 • Promoted

Information Security Specialist

Raise - find a more meaningful working experienceToronto, ON, CA
Full-time

Information Security Specialist.We at Raise are hiring an Information Security Specialist for one of our top clients.After establishing themselves as an industry leader, they’re now expanding their... Show more

 • Promoted

Senior Manager, Information Security - C$95,000 - C$142,400 A Year

MeridianNorth York, Canada
Full-time

The Senior Manager will lead the cybersecurity team, implement the Cyber Security Strategy, and manage incident response. Show more

 • Promoted

Senior Information Security Analyst - $83,500 - $115,000 A Year

IvariNorth York, Canada
Full-time

Senior Information Security Analyst responsible for the day-to-day delivery of Security Operations, including oversight of security technologies, processes, and incident response. Show more

 • Promoted

Senior Information Security Architect Role

ColliersToronto, ON, CA
Full-time

Shape the future of cybersecurity at Colliers as a Senior Information Security Architect.This remote role offers the chance to lead strategic security initiatives for global operations.You'll be at... Show more

 • Promoted

Senior Director, Information Security Officer - C$185,772.5 - C$204,349.8 A Year

Toronto Community Housing CorporationToronto County, Canada
Full-time

Executive leadership role overseeing cybersecurity for Toronto Community Housing and Toronto Seniors Housing, protecting digital assets, ensuring resilience, and liaising with the City of Toronto. Show more

 • Promoted

Chief Information Security Officer - C$160,000 - C$180,000 A Year

Jewish Federation of Greater VancouverToronto County, Canada
Full-time

Develops and manages a comprehensive cybersecurity program for the Jewish Federation and its community, ensuring data confidentiality, integrity, and availability. Show more

 • Promoted

SENIOR SPECIALIST Cyber Architecture

City of TorontoToronto, ON, CA
Full-time

SENIOR SPECIALIST Cyber Architecture.Consider Your Role with Aliant Resources and Our Municipal Government Client The City of Toronto.Aliant Resources is a dedicated provider of IT staffing service... Show more