1

Cyber Security Operations Jobs in Toronto, ON (NOW HIRING)

Senior Manager, Cybersecurity Operations #LI-Onsite Are you passionate about overseeing strategic operations and developing a team of cybersecurity professionals? Reporting to the Director ...

Cyber Defense Engineer

Toronto, ON · On-site

CA$69K - CA$93K/yr

This role sits within our Cyber Security Operations team and will focus on designing, building, and optimizing cloud-native security capabilities in Microsoft Azure , while working closely with our ...

Develop and deliver cyber resilience plans and related materials to reduce operational impacts. What you bring to the role * 3-5 years of experience working on cybersecurity projects or activities

Develop and deliver cyber resilience plans and related materials to reduce operational impacts. What you bring to the role * 3-5 years of experience working on cybersecurity projects or activities

With operations in every corner of the world, our work goes to the cutting-edge of digital ... The Cybersecurity Advisor ensures consistency of project solutions that are cyber secure by design.

next page

Showing results 1-20

Cyber Security Operations information

See Toronto, ON salary details

$22.9K

$103.9K

$169.9K

How much do cyber security operations jobs pay per year?

As of Sep 8, 2026, the average yearly pay for cyber security operations in Toronto, ON is $103,884.00, according to ZipRecruiter salary data. Most workers in this role earn between $76,347.00 and $132,653.00 per year, depending on experience, location, and employer.

What is cyber security operations?

Cyber Security Operations refers to the processes, teams, and technologies involved in monitoring, detecting, analyzing, and responding to security threats in an organization's digital environment. Professionals in this field work to protect networks, systems, and data from cyberattacks by continuously assessing vulnerabilities and implementing security measures. Their responsibilities often include incident response, threat intelligence, and ensuring compliance with security policies. Cyber Security Operations centers (SOCs) are often established to centralize and manage these activities effectively.

What are the key skills and qualifications needed to thrive in cyber security operations?

To thrive in Cyber Security Operations, you need expertise in network security, incident response, threat analysis, and a relevant degree or industry certifications like CISSP or CEH. Familiarity with security information and event management (SIEM) tools, firewalls, intrusion detection systems, and malware analysis platforms is essential. Strong problem-solving skills, attention to detail, and effective communication help professionals respond quickly and collaborate with stakeholders. These skills are critical for protecting organizational assets, minimizing cyber risks, and ensuring operational resilience against evolving threats.

What are some common challenges faced by professionals in cyber security operations, and how can they be addressed?

Professionals in Cyber Security Operations often face challenges such as rapidly evolving threats, high-pressure incident response situations, and the need to balance proactive monitoring with reactive mitigation. Staying current with the latest cyberattack techniques and security tools is essential, as is maintaining effective communication within cross-functional teams. Addressing these challenges involves continuous learning, participating in threat intelligence sharing, and fostering a culture of collaboration and knowledge-sharing within the organization.

What is the difference between Cyber Security Operations vs Cyber Security Analyst?

AspectCyber Security OperationsCyber Security Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, CEH
Work EnvironmentSecurity operations centers, monitoring teamsAnalysis teams, incident response
Employer & Industry UsageOrganizations with dedicated security teamsOrganizations analyzing threats and vulnerabilities

Cyber Security Operations focuses on managing and monitoring security systems, incident response, and maintaining security infrastructure. Cyber Security Analysts primarily analyze security data, identify threats, and recommend improvements. While both roles require similar certifications and often work in overlapping environments, Operations roles are more hands-on with security tools, whereas Analysts focus on threat analysis and reporting.

What are 5 careers in cyber security?

Five common careers in cyber security include Security Analyst, Penetration Tester, Security Engineer, Incident Responder, and Security Architect. These roles involve protecting systems, identifying vulnerabilities, and developing security protocols, often requiring certifications like CISSP or CEH and familiarity with tools such as firewalls and intrusion detection systems.

What do cybersecurity operations do?

Cybersecurity operations involve monitoring, detecting, and responding to security threats and incidents to protect an organization’s information systems. Professionals in this field use tools like intrusion detection systems, firewalls, and security information and event management (SIEM) platforms to maintain the security posture and ensure data integrity. They often work in shifts and require certifications such as CISSP or Security+ to perform their duties effectively.

What are popular job titles related to Cyber Security Operations jobs in Toronto, ON?

For Cyber Security Operations jobs in Toronto, ON, the most frequently searched job titles are:

What job categories do people searching Cyber Security Operations jobs in Toronto, ON look for?

The top searched job categories for Cyber Security Operations jobs in Toronto, ON are:

Infographic showing various Cyber Security Operations job openings in Toronto, ON as of August 2026, with employment types broken down into 100% Full Time. Highlights an 50% In-person, and 50% Remote job distribution, with an average salary of $103,884 per year, or $49.9 per hour.

Senior Manager, Cybersecurity Operations

LCBO

Toronto, ON • On-site

CA$96K - CA$178K/yr

Full-time

Medical, Dental, Retirement

Posted 4 days ago


Job description

Location Address:

100 Queens Quay East, 9th Floor, Toronto

Number of Openings:

1

Pay:

$96,244.00 - $178,668.00


Job Posting Description:

Senior Manager,

Cybersecurity Operations

#LI-Onsite

Are you passionate about overseeing strategic operations and developing a team of cybersecurity professionals? Reporting to the Director, Cybersecurity, you will advance threat intelligence, optimize security tools, manage proactive threat hunting programs, and refine security reporting and incident response strategies in the event of security breaches.

As senior manager. you will provide leadership for the information security operations team and external partners, focusing on strategic aspects of security operations, procurement, and contracts. Your work will involve critical decision-making responsibilities, long-term planning, and a substantial contribution to our overall security posture. You will help develop team capabilities and align cybersecurity operations goals with broader business goals.

If you have strong cybersecurity experience and enjoy leading a team, then this is the role for you!

About the Role

Cyber Security Operations Leadership

  • Manage threat intelligence and Continuous Threat Exposure Management (CTEM) programs, leveraging the Microsoft security ecosystem and emerging capabilities such as Frontier AI to identify, prioritize, and mitigate cyber threats.
  • Lead cybersecurity incident response activities, including containment, eradication, recovery, forensic investigations, incident response planning, and post-incident reviews to drive continuous improvement.
  • Evaluate the effectiveness of security controls across information and technology systems and adjust security measures in response to emerging threats, vulnerabilities, and attack techniques.
  • Lead a team of cybersecurity professionals while providing direction and oversight to Managed Service Providers and other security partners.
  • Establish team and individual goals, monitor performance, and foster a culture of collaboration, innovation, and continuous improvement.
  • Oversee the cybersecurity operations function to ensure proactive threat detection, incident management, and operational resilience.

Partnership and Resource Management

  • Maintain cybersecurity documentation, including incident response strategies, procedures, guidelines, and related artefacts.
  • Develop and refine cybersecurity metrics and executive reporting, working with the Managed Security Service Provider (MSSP) to deliver meaningful operational insights.
  • Be the primary liaison for the MSSP, third-party security vendors, and incident response providers, supporting vendor, contract, and budget management.
  • Collaborate with the Director, Cybersecurity on strategy, governance, security architecture planning, and operational security requirements.
  • Support the threat risk assessment (TRA) process and manage the periodic review and maintenance of the Incident Response Plan (IRP).
  • Contribute operational threat intelligence to cybersecurity awareness initiatives, including GRC-led training and phishing simulation programs.
  • Deploy, integrate, and configure new cybersecurity solutions and enhancements in accordance with established standards and procedures.
  • Partner with the Director, Cybersecurity and the GRC team to implement policies that protect sensitive information and ensure compliance with applicable legal and regulatory requirements.

Compliance and Reporting

  • Ensure compliance with relevant regulatory requirements, industry standards, and best practices.
  • Prepare and present regular reports on the state of cyber security operations, including key metrics, trends, and incidents, to senior management and stakeholders.
  • Provides evidence to audit and risk teams as required.
  • Work with internal auditors and external assessors during security audits and assessments.

About You

  • 5 years' experience in any combination of cybersecurity or information security, information technology, or IT risk management, including experience leading teams or service providers.
  • Experience in incident response
  • Familiarity with the MITRE ATT&CK framework
  • Previous experience managing any or all the following types of tools: Firewalls, Vulnerability Management, Web Gateway/Proxy, Web Application Firewalls, Secure Code Review, CASB, DLP, Email Gateway, SIEM, AV/EDR/XDR, Certificate Management and Security Awareness Training.
  • Experience with the Microsoft security ecosystem, including Microsoft Defender XDR, Sentinel, Entra, Purview, and Security Copilot.
  • Experience with Payment Card Industry (PCI-DSS) compliance.
  • Experience in managing budgets, as cybersecurity initiatives often require significant financial resources.
  • Professional certification such as CRISC, CISA, CISM, CISSP
  • Understanding of relevant Ontario provincial and Canadian Federal information security and information privacy legislation

We offer a comprehensive suite of benefits including:

  • Health/Dental Benefits
  • Access to an Employee & Family Assistance Program
  • a Defined Benefit Pension
  • Discounts on products and services via Workperks.

There is a world of opportunities at the LCBO...

Join an organization where you can be challenged while achieving your true potential. A place where you can make a positive impact supporting Ontario business and communities. Discover a safe, healthy, diverse, inclusive, and accountable workplace where your wellbeing is our top priority. At the LCBO, your contributions are respected and valued. Be part of our journey as we invest in people and technology to transform an organization. There really is a world of opportunities at the LCBO.

We foster a culture of inclusion and belonging, so everyone feels valued, respected, and heard. The LCBO is an equal opportunity employer and committed to providing employment accommodation in accordance with the Ontario Human Rights Code and the Accessibility of Ontarians with Disabilities Act. If contacted for an interview or employment opportunity, please advise if you require an accommodation.

Please submit your resume via Workday by 11:59pm on the deadline date. We appreciate your interest and advise that only those selected for an interview will be contacted.

Your personal information is being collected under the authority of the Liquor Control Board of Ontario Act, 2019, SO 2019, c 15, Sch 21, Section 3 and in compliance with the Freedom of Information and Protection of Privacy Act for the purpose of processing your job application. When you select "Easy Apply", your personal information will be collected through LinkedIn and shared with the LCBO in accordance with the LinkedIn User Agreement.

If you wish to apply without sharing your personal information with LinkedIn, please visit the LCBO Careers website. If you have any questions regarding the LCBO's collection and use of personal information, please refer to the LCBO Customer Privacy Notice, or contact the Freedom of Information and Privacy Office at:

Freedom of Information and Privacy Office

100 Queens Quay East, 9th Floor

Toronto, Ontario M5E 0C7

Telephone: 416 864-2462

E-mail: foi.privacy@lcbo.com

Work Hours:

36.25

Union / Non-Union:

Non-Union

Job Posting End Date:

September 16, 2026

The LCBO is an equal opportunity employer and committed to providing employment accommodation in accordance with the Ontario Human Rights Code and the Accessibility for Ontarians with Disabilities Act.