
Manager, Cyber Security Engineering
- Toronto, ON
- Permanent
- Full-time
- Work Location- 335 King Street East, Toronto, ON
- Department - Cyber Security Engineering
- Employee Type - Regular Employee FT Salaried
- Hybrid Work - This position currently offers a hybrid work schedule. Subject to change. The in-office requirement is a minimum of three (3) days per week (Tuesday, Wednesday & Thursday), with the flexibility to work from home the remaining days.
- Initial Posting Close Date - September 3, 2025
- Champion the design and implementation of security controls across firewalls, IAM, email systems, cloud, and networks.
- Design, launch, and optimize enterprise security architecture for hybrid cloud/on-prem environments.
- Lead the implementation and governance of IAM and PAM systems, including identity lifecycle, MFA, SSO, RBAC, and conditional access.
- Support secure network and firewall operations, including segmentation, VPNs, and perimeter defenses.
- Strengthen email security through thoughtful implementation of tools like Microsoft Defender and Proofpoint.
- Collaborate with IT infrastructure and DevOps teams to integrate security into cloud and CI/CD pipelines, with a focus on Microsoft Azure.
- Lead vulnerability management activities, including risk triage, remediation, and reporting.
- Provide calm, clear leadership during incident response and forensic investigations related to infrastructure and identity threats.
- Develop and maintain clear and accessible documentation, architecture diagrams, runbooks, and standards.
- Evaluate emerging technologies, conduct gap assessments, and recommend security enhancements.
- Mentor and empower junior team members and cross-functional peers through knowledge sharing and support.
- Ensure alignment with industry frameworks such as NIST, MITRE ATT&CK, and CIS Controls.
- Ensure regulatory and compliance requirements are met through secure design and access control enforcement.
- A college diploma in Cybersecurity, Computer Science, or a related technical discipline, or a Bachelor's Degree in these fields (preferred), is required.
- Certifications such as CISSP, AZ-500, SC-300, SC-200, CCSP, or equivalent are strong assets.
- 7+ years of experience in cybersecurity, with at least 2+ years in a technical leadership or senior engineering role.
- Experience leading vulnerability management and secure configuration baselines.
- Experience with firewall technologies, with a preference for Fortinet (e.g., Palo Alto, Fortinet, Cisco ASA).
- Proficiency in IAM/PAM, specifically Azure AD and Entra ID (required).
- Expertise in cloud security, particularly MS Azure and M365 (required).
- Experience with email security solutions, specifically MS Defender (required).
- Knowledge of infrastructure and network security design and operations.
- Strong understanding of identity governance, access control, network segmentation, and defense-in-depth architecture.
- Proficiency in automation and scripting (e.g., PowerShell, Python) to streamline operations.
- Exceptional communication, stakeholder engagement, and documentation skills.
- Strategic thinker with the ability to balance operational demands with long-term security vision.
- Passion for continuous learning, mentoring, and driving a culture of security excellence.