Director overseeing integrated security operations, focusing on SOC management and cyber defense strategies for a fintech company in Canada.
Responsibilities
Lead the integration and ongoing management of multiple SOCs, ensuring unified processes, toolsets, and response protocols.
Direct operations for cyber security detection tools and technologies, aligning deployment and monitoring with enterprise risk appetite.
Manage talent acquisition, development, and retention to support the evolving needs of the integrated SOC environment.
Ensure effective governance and compliance with organizational policies and regulatory standards across all subsidiaries.
Maintain oversight of defensive security capabilities that directly impact the SOC’s effectiveness (e.g. Endpoint protection, Identity protection and monitoring etc.)
Oversee establishment of expanded use cases for Identity Threat Detection and Response, Insider risk management.
Accountable for endtoend ITDR operational ownership, including tooling strategy, control effectiveness, integration with IAM platforms, coordination with fraud and business teams, and executivelevel reporting on identity risk and attack trends.
Foster a collaborative environment between subsidiary SOC teams, promoting knowledge sharing and unified incident response.
Continuously assess and optimize SOC operations, identifying opportunities for improvement and innovation.
Manages performance and operational excellence of teams supporting cyber security tools under purview. Providing data driven insight into performance.
Ensures processes and monitoring measures are in place to ensure cyber security tools operate effectively and deployment coverage align with organization risk appetite.
Manage team’s talent and skill to ensure appropriate alignment with needs of administering technologies under purview. Ensure alignment and support of the Cyber defense centre with investigations into cyber events, with clear responsibilities and escalation paths for regulatory notifications.
Ensures expanded SIRT (Security Incident Response Team) structure supports responsiveness required to address current attack velocity trends.
Drive cross-functional collaboration to achieve objectives of the SOC.
Responsible for maintaining the standards, procedures and guidelines for domains under purview.
Provide technical guidance for team and subject matter advice to stakeholders.
Provide business view of SOC stability and executive reporting to support oversight.
Requirements
**Technical Expertise: **Strong understanding of SOC technologies, cyber security protection tools, network security, and Zero Trust Network Access principles.
**Operational Excellence:** Ability to establish, monitor, and optimize service levels, ensuring effective coverage and performance across subsidiaries.
**Stakeholder Engagement:** Excellent communication and relationship management skills to coordinate with senior leadership, subsidiary teams, and external partners.
**Governance & Compliance: **Deep knowledge of cyber security governance, regulatory requirements, and best practices for encryption, certificates, and network device hardening.
Strong engineering or security architecture knowledge, (prior hands-on technology engineering experience is preferred)
Service management or service excellence experience (i.e. IT service Management)
**Strategic Vision: **Ability to develop and execute a unified SOC strategy, integrating multiple subsidiaries to deliver effective cyber defense and operational resilience.
**Leadership & Team Building:** Proven experience in leading diverse teams, fostering a culture of collaboration, accountability, and continuous improvement across integrated operations.
Lead cybersecurity strategy, governance, and operations at Alberta Innovates. Oversee risk management, incident response, and team leadership in a hybrid role based in Edmonton.
Security operations manager defending Forward Financing’s fintech infrastructure and AI systems. Leading incident response, detection engineering, cybersecurity risk assessments, and AI security team development.
Security Training & Operations Team Lead at OLG overseeing security operations and developing training programs for personnel across various locations. Requires strong leadership in managing safety and compliance protocols.
Lead SOC Team at Starling Group ensuring information security and response for global operations. Collaborate with top SecOps professionals managing incident response and continuous improvement.
Head of Fusion & Cybersecurity Operations at TD responsible for strategic direction and operational oversight of protect operations. Safeguarding data and systems from cyber threats and managing teams in cyber crime prevention.
Intermediate Security Operations Centre Analyst at Long View managing security incidents and working with IT systems. Engaging with teams across Canada in a dynamic IT environment.
SOC Analyst responsible for monitoring security events and assessing risks while collaborating with global customers. Working with Fortinet's SOC - as - a - Service team to improve security posture.
IAM Operations Lead responsible for daily administration, governance, and security of identity infrastructure, ensuring correct access and minimizing risks.
CSOC Analyst responsible for managing security incidents and threat investigation at Just Eat Takeaway. Working with an internal team to detect, investigate, and respond to significant threats.