Resume Score

Check how well your resume matches this job before you apply.

Sign in to check score

About the role

  • Security operations manager defending Forward Financing’s fintech infrastructure and AI systems. Leading incident response, detection engineering, cybersecurity risk assessments, and AI security team development.

Responsibilities

  • Hire, grow, and develop a team of security engineers defending endpoints, SaaS, and infrastructure.
  • Own corporate systems security, including configuration hardening and vulnerability/patch oversight.
  • Lead security operations and incident response as senior Incident Commander for the SIRT.
  • Own and tune the detection and response funnel and CrowdStrike detection platform.
  • Build and maintain detection coverage across endpoint, SaaS, identity, logs, proxy traffic, DLP events, and access trails.
  • Partner with teams to build network allowlists, egress proxy, and proxy-level DLP controls.
  • Partner with AppSec on detection opportunities from penetration testing.
  • Set detection and response quality and coverage standards and report on metrics.
  • Conduct enterprise-wide cybersecurity risk assessments.
  • Build Forward's AI security capability, including detection tooling, response processes, and a specialized team.

Requirements

  • 7 or more years in detection engineering, security operations, or incident response, including team leadership.
  • Deep familiarity with adversary TTPs, MITRE ATT&CK, event correlation, and high-signal detection design.
  • Hands-on experience with EDR/SIEM platforms and detection-as-code practices.
  • Incident command experience covering triage, containment, forensics, and stakeholder communication under pressure.
  • Experience securing SaaS environments and endpoint fleets, including configuration management, access governance, and vulnerability/patch management.
  • Ability to communicate risk and priorities to engineers and executives.
  • Cloud control-plane monitoring and identity threat detection using AWS.
  • Scripting or automation in Python, Ruby, or Go.
  • Bachelor's Degree in Computer Science or equivalent technical degree, or equivalent industry experience.
  • Experience with SSPM or CASB tooling.
  • Gen-AI triage or LLM-as-Judge production experience preferred.
  • CISSP and/or CISM certification preferred.
  • Red-team exposure preferred.
  • Required authorization to work for any employer in the US, as asked in the application form.

Benefits

  • Annual bonus potential of 12%
  • Medical insurance
  • Dental insurance
  • Vision insurance
  • Flexible time-off policy
  • Paid parental leave
  • RRSP match
  • Wellness reimbursement
  • Volunteering days
  • Annual professional development budget
  • Charitable donation match
  • Flexible hours
  • Remote-first workplace flexibility
  • Access to premiere office locations
  • Virtual and in-person team events

Job type

Full Time

Experience level

SeniorLead

Salary

CA$172,000 - CA$237,000 per year

Degree requirement

No Education Requirement

Tech skills

AWSCloudCyber SecurityPythonRubyGo

Location requirements

RemoteCanada

Report this job

Found something wrong with the page? Please let us know by submitting a report below.