Associate Director, Cybersecurity
$99,297–$124,121 year
HybridToronto, Ontario, Canada
Job Summary
Monitor, triage, and respond to security events across SIEM, EDR, email security, and WAF platforms while leading Level 2/3 incident analysis and root-cause investigations. Maintain and tune detection rules, alert thresholds, and playbooks to reduce false positives, and administer Imperva, Abnormal AI, and Sophos tooling in partnership with vendors. Apply MITRE ATT&CK techniques to map threat actor behavior, align controls to the NIST Cybersecurity Framework, and integrate threat intelligence feeds. Maintain the IT/Cyber Risk Register, conduct periodic reviews, and present status updates to leadership. Design and execute enterprise-wide awareness campaigns, coordinate phishing simulations, and facilitate annual tabletop exercises with cross-functional stakeholders. Incorporate AI-enabled tools to automate alert triage, analysis, and reporting, reducing manual tasks while ensuring responsible and secure application.
Required Qualifications
- 8+ years of progressive cybersecurity experience
- at least 5 years in a senior or lead role
- Hands-on experience in a Security Operations Centre (SOC) environment
- Demonstrated working knowledge of MITRE ATT&CK framework
- Demonstrated working knowledge of NIST CSF
- Proven experience owning or contributing to an IT/Cyber Risk Register
- Experience delivering security awareness programs
- Experience delivering phishing simulations
- Familiarity with security tools: Imperva, Abnormal AI, and Sophos
- Good understanding of cybersecurity architecture principles
- Good understanding of network security
- Good understanding of cloud security
- Excellent communication skills
- Stakeholder management skills
- Experience using automation and AI-enabled security tools
- minimum two days per week in-office (Tuesday and Wednesday)
Desired Qualifications
- CISSP certification
- CISM certification
- GIAC certification
- equivalent certifications to CISSP, CISM, or GIAC
- Familiarity with ISO 27001 framework
- Familiarity with SOC 2 framework
- Familiarity with CIS Controls
- Experience with SOAR platforms
- experience automating security workflows
- Post-secondary education in Computer Science
- Post-secondary education in Information Security
- Post-secondary education in a related discipline
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.