Director, Security Operations, Information

6 days ago


Toronto, Ontario, Canada CPP Investments Full time
Company Description

Make an impact at a global and dynamic investment organization

When you join CPP Investments, you are joining one of the world's most admired and respected institutional investors. As a professional investment management organization, CPP Investments invests the funds of the Canada Pension Plan (CPP) to help ensure its financial sustainability for generations of working and retired Canadians.

CPP Investments invests across regions and asset classes to build a globally diversified portfolio. It holds assets in public equity, private equity, real estate, infrastructure, and fixed income, and the CPP Fund is projected to reach $3.6 trillion in assets by 2050. The organization is headquartered in Toronto with offices in Hong Kong, London, Mumbai, New York City, San Francisco, São Paulo, and Sydney.

CPP Investments successfully attracts, selects, and retains talented individuals from top-tier institutions worldwide. Join our team for access to:

  • Stimulating work in a fast-paced and intellectually challenging environment
  • Accelerated exposure and responsibility
  • Global career development opportunities
  • Diverse and inspiring colleagues and approachable leaders
  • A hybrid-flexible work environment with an emphasis on in-person collaboration
  • A culture rooted in principles of integrity, partnership, and high performance
  • An organization with an important social purpose that positively impacts lives

If you have a passion for performance, value a collegial and collaborative culture, and approach work with the highest integrity, invest your career here.

Job Description

The Director, Information Security Operations will be a senior member of the Information Security group and Technology & Data department. The role will manage the Security Operations Center with direct responsibility for Detection & Monitoring Operations, Digital Forensics & Incident Response (DFIR), and Threat Hunting & Intelligence. The successful candidate must have a proven track-record of working closely with internal and external stakeholders to understand and safeguard the assets, people, and processes across a global firm.

Role Specific Accountabilities:

  • Lead the Security Operations Center, monitor emerging threats, oversee DFIR capabilities, enable outcomes-based metrics, and work closely with internal and external stakeholders for incident responses to determine appropriate courses of actions
  • Direct improvements to SIEM and SOC efforts for continuous maturity to response times and SLA compliance
  • Work closely with the Managing Director to ensure that information security and risk management are embedded within the culture
  • Implement the next generation of cyber controls and threat analytics by leveraging automation, machine learning, and rich data sets.
  • Identify and drive the end-to-end remediation of discovered or potential security vulnerabilities and mature operational security processes and procedures.
  • With the Director, IT Risk Management, execute periodic security testing and reviews, promptly remediate any findings, and ensure policies, controls, and procedures are effective, documented, and understood by relevant stakeholders/roles through training and education.
  • Effectively communicate investigative findings and strategies to technical staff, executive leadership, legal counsel, and internal and external clients
Qualifications

If you possess the following, we'd like to hear from you:

  • Bachelor's degree, with a technology or business emphasis, or equivalent education and experience.
  • Possess one or more of the following industry certifications:
    • CISSP / CISA / CISM
    • CCSP – Certified Cloud Security Professional
    • SABSA - Security Architecture
    • Other industry recognized Information Security certifications
  • Demonstrated knowledge of current cloud platforms, services and security best practices for their protection
  • Demonstrated knowledge and understanding of information security industry standards (e.g., ISO17799, ISO27001, NIST, COBIT, ITIL, etc.), and legislative/regulatory requirements (e.g., SAS-70, SOX, B198, PIPEDA, etc.)
  • Minimum of 7-10 years experience in information security including:
    • Security Management, Policy & Procedure development, Governance Frameworks, Security Programs
    • Experience working with MSS partners
    • Developing and implementing cloud security architectures
    • Risk Assessment, Risk Management
    • Security Architecture, IS Infrastructure Processes
    • Operational security (network architecture, application, systems)
    • Strong vendor management
  • Strong sense of teamwork
  • Ability to create solutions to fit a diverse and complex environment
  • Adaptable to new technologies and challenges not previously encountered
  • Able to build strong relationships and communicate effectively with a diverse set of stakeholders, including business leaders, operational staff and technical engineers
  • Proven project management experience
  • Excellent written and oral communication skills, with the ability to work with both technical and business users
  • Self-motivated with acute attention to detail
  • Innovative and proactive
  • Exemplify CPP Investments' Guiding Principles of Integrity, High Performance and Partnership
Additional Information

Visit our LinkedIn Career Page or Follow us on LinkedIn. #LI-KE1 #LI-Onsite

At CPP Investments, we are committed to diversity and equitable access to employment opportunities based on ability.

We thank all applicants for their interest but will only contact candidates selected to advance in the hiring process.

Our Commitment to Inclusion and Diversity:

In addition to being dedicated to building a workforce that reflects diverse talent, we are committed to fostering an inclusive and accessible experience. If you require an accommodation for any part of the recruitment process (including alternate formats of materials, accessible meeting rooms, etc.), please let us know and we will work with you to meet your needs.

Disclaimer:

CPP Investments does not accept resumes from employment placement agencies, head-hunters or recruitment suppliers that are not in a formal contractual arrangement with us. Our recruitment supplier arrangements are restricted to specific hiring needs and do not include this or other web-site job postings. Any resume or other information received from a supplier not approved by CPP Investments to provide resumes to this posting or web-site will be considered unsolicited and will not be considered. CPP Investments will not pay any referral, placement or other fee for the supply of such unsolicited resumes or information.



  • Toronto, Ontario, Canada CPP Investments Full time

    Company Description Make an impact at a global and dynamic investment organizationWhen you join CPP Investments, you are joining one of the world's most admired and respected institutional investors. As a professional investment management organization, CPP Investments invests the funds of the Canada Pension Plan (CPP) to help ensure its financial...


  • Toronto, Ontario, Canada Holland Bloorview Kids Rehabilitation Hospital Full time

    Holland Bloorview Kids Rehabilitation Hospital is Canada's largest paediatric rehabilitation hospital and an internationally recognized leader in childhood disability care, research, and education. They deliver a unique blend of inpatient and outpatient services to over 7,500 children and youth annually, supporting those living with disability, medical...


  • Toronto, Ontario, Canada RewardOps Full time

    Job Description:Manager, Information SecurityCORA Loyalty - Jonas Software We are seeking an experiencedManager, Information Securityto support and enhance the organization's global cybersecurity operations, governance, and compliance efforts. This role will be responsible for implementing and maintaining security controls, coordinating compliance...


  • Toronto, Ontario, Canada CIBC Full time

    We're building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what's right for our clients.At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and...


  • Toronto, Ontario, Canada CIBC Full time

    We're building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what's right for our clients. At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and...


  • Toronto, Ontario, Canada Manulife Full time

    This is an exciting opportunity to lead Manulife's Business Unit Security Officers (BUSOs) team within our First Line of Defense. Reporting to the AVP - Technology Risk Management, you will manage risk-based information security assessments for new technologies and changes to IT solutions across Group Functions Technology. In this role, you'll help safeguard...

  • Director

    1 week ago


    Toronto, Ontario, Canada Isaac Operations Full time

    Company DescriptionWho we are.While technically we're an operational consultancy, we don't like to call ourselves consultants. We're a collection of engineers, innovators and creators who work with companies across industries to simplify the complex, realize untapped potential, and uncover opportunities. We know that our people are our superpower and loving...


  • Toronto, Ontario, Canada Fidelity Canada Full time

    Job DescriptionCurrent work authorization for Canada is required for all openings.You will be working on a Hybrid office schedule as part of Fidelity's dynamic working arrangement.At Fidelity, we've been helping Canadian investors build better financial futures for over 35 years. We offer individuals and institutions a range of trusted investment portfolios...


  • Toronto, Ontario, Canada Aecon Group Inc. Full time

    It has come to our attention that various international organizations or individuals have been offering false employment opportunities at Aecon Group Inc. Aecon Group Inc. employment policies and processes involve interviews, and candidates who seek employment are never required to pay us any sum of money. To do so would be contrary to our business conduct...


  • Toronto, Ontario, Canada York University Full time

    Purpose:The York University School of Medicine (SoM) is dedicated to preparing the next generation of primary care physicians through a patient-centered, community-based approach. The school emphasizes training in diverse, real-world settings and leveraging digital health technologies. With a focus on primary care specialties such as family medicine,...