1

Cyber Security Operations Jobs in Ontario (NOW HIRING)

Cybersecurity Operations Manager

London, ON · On-site

CA$120K - CA$140K/yr

You as a Cybersecurity Operations Manager will: * Act as service delivery manager and Subject Matter Expert (SME) to the SOC team during the run phase of the service * Providing subject matter ...

Analyst (Tier 2) - Cybersecurity Operations Location: Krakow, Poland Responsibilities and Duties: Analyst (Tier 2) - Cybersecurity Operations must be able to do the following: * Correlate threat data ...

Partner with cybersecurity operations, architecture, compliance, and IT teams to align tools with business and technical requirements. * Participate in proof-of-concepts (POCs) for new security ...

Job Title: Cybersecurity Tier 2 (SOC) Location: Krakow, Poland Responsibilities and Duties ... Create custom tool content to enhance capabilities of security operations teams * Manage the ...

Cyber Defense Engineer

Toronto, ON · On-site

CA$69K - CA$93K/yr

This role sits within our Cyber Security Operations team and will focus on designing, building, and optimizing cloud-native security capabilities in Microsoft Azure , while working closely with our ...

This role combines Security Operations Center (SOC) and Network Operations Center (NOC ... The Cybersecurity Analyst leverages SIEM, MDR, EDR, RMM, monitoring, and automation platforms ...

This role combines Security Operations Center (SOC) and Network Operations Center (NOC ... The Cybersecurity Analyst leverages SIEM, MDR, EDR, RMM, monitoring, and automation platforms to ...

next page

Showing results 1-20

Cyber Security Operations information

See Ontario salary details

$24K

$108.9K

$178K

How much do cyber security operations jobs pay per year?

As of Aug 16, 2026, the average yearly pay for cyber security operations in Ontario is $108,854.00, according to ZipRecruiter salary data. Most workers in this role earn between $80,000.00 and $139,000.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in cyber security operations, and how can they be addressed?

Professionals in Cyber Security Operations often face challenges such as rapidly evolving threats, high-pressure incident response situations, and the need to balance proactive monitoring with reactive mitigation. Staying current with the latest cyberattack techniques and security tools is essential, as is maintaining effective communication within cross-functional teams. Addressing these challenges involves continuous learning, participating in threat intelligence sharing, and fostering a culture of collaboration and knowledge-sharing within the organization.

What is cyber security operations?

Cyber Security Operations refers to the processes, teams, and technologies involved in monitoring, detecting, analyzing, and responding to security threats in an organization's digital environment. Professionals in this field work to protect networks, systems, and data from cyberattacks by continuously assessing vulnerabilities and implementing security measures. Their responsibilities often include incident response, threat intelligence, and ensuring compliance with security policies. Cyber Security Operations centers (SOCs) are often established to centralize and manage these activities effectively.

What are 5 careers in cyber security?

Five common careers in cyber security include Security Analyst, Penetration Tester, Security Engineer, Incident Responder, and Security Architect. These roles involve protecting systems, identifying vulnerabilities, and implementing security measures, often requiring knowledge of tools like firewalls, intrusion detection systems, and relevant certifications such as CISSP or CEH.

What are the key skills and qualifications needed to thrive in cyber security operations?

To thrive in Cyber Security Operations, you need expertise in network security, incident response, threat analysis, and a relevant degree or industry certifications like CISSP or CEH. Familiarity with security information and event management (SIEM) tools, firewalls, intrusion detection systems, and malware analysis platforms is essential. Strong problem-solving skills, attention to detail, and effective communication help professionals respond quickly and collaborate with stakeholders. These skills are critical for protecting organizational assets, minimizing cyber risks, and ensuring operational resilience against evolving threats.

What is the difference between Cyber Security Operations vs Cyber Security Analyst?

AspectCyber Security OperationsCyber Security Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, CEH
Work EnvironmentSecurity operations centers, monitoring teamsAnalysis teams, incident response
Employer & Industry UsageOrganizations with dedicated security teamsOrganizations analyzing threats and vulnerabilities

Cyber Security Operations focuses on managing and monitoring security systems, incident response, and maintaining security infrastructure. Cyber Security Analysts primarily analyze security data, identify threats, and recommend improvements. While both roles require similar certifications and often work in overlapping environments, Operations roles are more hands-on with security tools, whereas Analysts focus on threat analysis and reporting.

What are popular job titles related to Cyber Security Operations jobs in Ontario?

For Cyber Security Operations jobs in Ontario, the most frequently searched job titles are:

What job categories do people searching Cyber Security Operations jobs in Ontario look for?

The top searched job categories for Cyber Security Operations jobs in Ontario are:

What cities in Ontario are hiring for Cyber Security Operations jobs?

Cities in Ontario with the most Cyber Security Operations job openings:

Infographic showing various Cyber Security Operations job openings in Ontario as of August 2026, with employment types broken down into 85% Full Time, 12% Part Time, 1% Temporary, and 2% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $108,854 per year, or $52.3 per hour.

Cybersecurity Operations Engineer

Hydro Ottawa

Ottawa, ON

Full-time

Posted 4 days ago


Job description

Please Note: If you are a current Hydro Ottawa employee with access to Workday, apply to this job via the Workday application.

At Hydro Ottawa, we empower the lives of the people in the communities we serve.

We help to power your professional growth at every step of your engineering career. For those starting out, we provide the training and skills needed to achieve your P.Eng. designation, and for established engineers, our structured framework offers a clear, transparent pathways to intermediate and senior levels. Wherever you are in your career, there's a path for growth ahead of you here.

As the electricity distributor to the Nation's Capital, our work powers the essential activities that make up our lives - at home, at work and at play. And as Ontario's largest municipally-owned producer of green power, we are leading the way to a greener tomorrow.

We are seeking a Cybersecurity Operations Engineer, a strategic thinker who can take initiatives from concept to completion and engineer the way to a smart energy future.

Are you ready to make a difference in our community?

JOB SUMMARY

The Cybersecurity Operations Engineer is responsible for the programmatic design, automation, and architectural integrity of Hydro Ottawa's cybersecurity infrastructure. Working within the Cybersecurity team to protect the organization's critical infrastructure and assets, this role leverages an engineering framework to design baseline system configurations, build automated integration pipelines, and orchestrate workflows to proactively prevent, detect, and manage cyber threats across corporate applications, identity systems, and infrastructure platforms.

Under the guidance of the Supervisor, Cybersecurity, the Cybersecurity Operations Engineer acts as the primary technical asset for cybersecurity systems architecture, incident response, automation activities, authentication policies, enterprise application interfacing, and day-to-day user support operations. The Cybersecurity Operations Engineer is responsible for evaluating, scripting, and supporting the development of all new system integrations, ticketing workflows, and related business processes to ensure advanced security controls, compliance baselines, and identity architectures are strictly incorporated across the corporate environment.

Additionally, the role serves as a core technical resource for confidential internal security investigations, regularly isolating and preserving digital forensic evidence relating to employee policy violations, data exfiltration, or labour relations breaches.

MAJOR RESPONSIBILITIES

  • Programmatically orchestrate, analyze and respond to security alerts by designing, identifying root causes and contributing factors, testing, and engineering automated playbooks to continuously harden infrastructure against future events and eliminate manual workflows.

  • Conduct confidential internal security investigations into potential policy violations, unauthorized access, and data exfiltration by personnel.

  • Regularly collect, analyze, and preserve digital forensic evidence required by Management for employee disciplinary actions, grievances, or formal labour relations proceedings.

  • Monitor internal employee system logs and network activities on a confidential basis to identify and report scrutiny irregularities or compliance breaches directly to Management.

  • Proactively monitor and analyze actionable threat intelligence from industry feeds and open-source intelligence (OSINT) to programmatically update detection rules, SIEM watchlists, and automated playbooks against emerging cyber threats.

  • Conduct exposure management across corporate systems to detect vulnerabilities, prioritize risk mitigation efforts, and guide other IT teams on architectural remediation.

  • Ensure strict alignment with corporate security frameworks through continuous validation of compliance baselines across internal endpoints, host infrastructure, and directory access permissions.

  • Address, respond to, and resolve incoming tickets within the corporate ticketing system, serving as a primary point of contact for security operations.

  • Provide advanced technical support and engineering guidance to internal units, resolving complex authentication blocks, systemic vulnerabilities, and integration constraints.

  • Act as the engineering liaison to the CSaaS Security Operations Center (SOC) to investigate security detections, manage data sources, and troubleshoot device connectivity.

  • Engineer, maintain, and secure core network trust infrastructure, by deploying automated solutions to manage trust certificates for internal resources (e.g., workstations, servers, websites).

  • Develop, write, and maintain custom scripts (e.g., PowerShell, Python, Bash) to automate repetitive security tasks, streamline log analysis, and optimize operational pipelines.

  • Architect, test, and implement secure integrations between new software applications, cloud environments, and existing core IT infrastructure.

  • Build, program, and maintain API integrations and automated pipelines to sync security tooling, directory services, and cloud platforms (e.g., Google Cloud, IBM).

  • Perform formal security compliance and architectural reviews on new system integrations, certifying that deployment configurations strictly follow secure designs and corporate frameworks.

  • Audit and review onboarded software assets and emerging tools to certify that all enterprise deployment pipelines align with established corporate policies and cybersecurity requirements.

  • Manage endpoint configuration and user policies by enforcing centralized and automated registry-level enforcement baselines.

  • Program and scale Identity and Access Management (IAM) environments, specifically configuring complex authentication policies, single sign-on (SSO), and automated identity governance.

  • Deploy, monitor, and maintain IdP authentication policies across the enterprise, managing user access and application-specific access rules.

  • Create analysis workflows and associated business processes to ensure cybersecurity needs and architectural designs are successfully incorporated in the practices and solutions of other corporate Divisions.

  • Participate in the technical development, planning and execution of new cybersecurity initiatives.

  • Perform other related duties as required.

EDUCATION AND EXPERIENCE

  • Undergraduate degree in Engineering from an accredited university

  • Professional Engineer, licensed or able to be licensed in the province of Ontario

  • Completion of-or the ability to obtain within two years-one or a combination of the following designations: CEH, OCSP, CISA, CISM, CISSP or GIAC certifications (i.e. GCIH, GPEN, etc.)

  • Experience in an electric utility engineering environment considered an asset

  • Experience in cloud security is considered an asset

  • Proficiency in scripting languages such as Python, Powershell considered an asset

  • Strong computer skills; proficient in the use of office productivity and collaboration tools, preferably Google Workspace, as well as different Microsoft tools

  • English essential, both oral and written; Bilingual (English/French) considered an asset

This is a management group opportunity and salary will be commensurate with qualifications.

Hydro Ottawa offers a Hybrid Work Model. Hybrid work is position specific, details of the hybrid model will be discussed with successful candidates.

Hydro Ottawa may use artificial intelligence ("AI") during the recruitment process to aid in the screening and selection of candidates.

Location:Ottawa, ON

This is a management group opportunity. The annual salary range for this position identified below depends on experience, education, and professional designation. The successful candidate will be offered a salary within this range based on their qualifications.

Pay Range Minimum:$89,420.99Pay Range Maximum:$134,130.81Posting End Date (if applicable):September 13, 2026

Hydro Ottawa is committed to establishing a qualified workforce that reflects the diverse population it serves and we encourage applications from all qualified individuals. We are also committed to preventing and removing barriers to employment for people with disabilities, and we invite you to inform us should you have any accessibility or accommodation needs.

Applicants must be legally entitled to work in Canada.