1

Vulnerability Manager Jobs in Ontario (NOW HIRING)

Engineer - Cybersecurity (Vulnerability & Threat Management) Location: Krakow, Poland (Hybrid) Type: Full-time employment Hybrid work: 2 days in office and 3 days remote Working Hours: 9 am - 5 pm ...

Conduct vulnerability assessments, validate findings, prioritize risks, and coordinate remediation efforts. Support identity and access management processes, including user provisioning, access ...

Analyze vulnerability and remediation data to produce dashboards and management reports ... Identifying and articulating the means to resolution / remediation of servers as part of the ...

Improve Vulnerability Management * Drive vulnerability triage, prioritization, remediation, and retesting. * Partner with engineering teams to implement risk-based remediation practices. * Mature bug ...

Director, Offensive Security

Toronto, ON ยท On-site

CA$138K - CA$181K/yr

Improve Vulnerability Management * Drive vulnerability triage, prioritization, remediation, and retesting. * Partner with engineering teams to implement risk-based remediation practices. * Mature bug ...

Proactively identify and mitigate potential network security threats, ensuring continuous vulnerability management. * Stay updated on emerging cybersecurity threats and vulnerabilities, implementing ...

Drive product vulnerability management for Sonova products, including intake, triage, remediation tracking, and post-market monitoring. * Prepare audit-ready cybersecurity evidence for regulatory ...

Provide architectural guidance for incident response workflows, vulnerability lifecycle processes, risk management frameworks, issue remediation, exceptions management, and policy/compliance ...

next page

Showing results 1-20

Vulnerability Manager information

See Ontario salary details

$29K

$109.6K

$161K

How much do vulnerability manager jobs pay per year?

As of Aug 15, 2026, the average yearly pay for vulnerability manager in Ontario is $109,556.00, according to ZipRecruiter salary data. Most workers in this role earn between $79,500.00 and $136,500.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a vulnerability manager, and why are they important?

To thrive as a Vulnerability Manager, you need expertise in risk assessment, vulnerability scanning, and cybersecurity fundamentals, typically supported by a degree in information security or a related field. Familiarity with tools like Nessus, Qualys, and vulnerability management platforms, as well as certifications such as CISSP or CEH, is often required. Strong analytical skills, attention to detail, and clear communication are crucial soft skills for effectively identifying issues and coordinating remediation efforts. These abilities ensure that organizations can proactively manage security risks and maintain robust defense against cyber threats.

What is the difference between Vulnerability Manager vs Security Analyst?

AspectVulnerability ManagerSecurity Analyst
CertificationsCertified Vulnerability Assessor (CVA), CISSP, CEHCISSP, Security+, CEH
Work EnvironmentOversees vulnerability assessments, manages teams, develops strategiesMonitors security systems, analyzes threats, responds to incidents
Employer & Industry UsageUsed in cybersecurity teams across industries to manage vulnerabilitiesCommonly employed in security operations centers (SOCs) to analyze threats

While both roles focus on cybersecurity, Vulnerability Managers primarily oversee vulnerability assessments and strategy, whereas Security Analysts focus on monitoring and incident response. Both roles require relevant certifications and work within cybersecurity teams, but their daily responsibilities and focus areas differ.

What does a vulnerability manager do?

A Vulnerability Manager is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's systems, networks, and applications. They oversee vulnerability scanning, analyze the results, prioritize risks, and work with various teams to implement remediation strategies. Their goal is to reduce the organization's exposure to cyber threats by ensuring that security weaknesses are addressed promptly and effectively.

What are some common challenges faced by vulnerability managers when prioritizing remediation efforts?

Vulnerability Managers often encounter challenges in balancing limited resources with a high volume of identified vulnerabilities. Prioritizing remediation efforts requires close collaboration with IT, development, and business teams to assess the potential impact and exploitability of each vulnerability. Additionally, they must stay updated on emerging threats, ensure compliance with industry standards, and communicate risk effectively to both technical and non-technical stakeholders. Navigating these complexities is essential for maintaining a strong security posture while minimizing disruption to business operations.

What cities in Ontario are hiring for Vulnerability Manager jobs?

Cities in Ontario with the most Vulnerability Manager job openings:

Infographic showing various Vulnerability Manager job openings in Ontario as of August 2026, with employment types broken down into 1% As Needed, 77% Full Time, 21% Part Time, and 1% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $109,556 per year, or $52.7 per hour.

Manager, Vulnerability Management

The Canada Life Assurance Company

Toronto, ON โ€ข On-site

Full-time

Medical, Dental, Life, Retirement

Posted 17 days ago


Job description

Permanent Full Timeย 

-

We are seeking an experienced Vulnerability Management Manager to lead and manage our centralized vulnerability management function for Canada Life. This role is critical to protecting our business, data, and clients by driving a risk-based approach to identifying, assessing, and responding to emerging threats, while prioritizing and coordinating the remediation of existing vulnerabilities across the enterprise. The ideal candidate will have deep expertise in the vulnerability management lifecycle, strong leadership skills, and the ability to collaborate across various departments and stakeholders.

As part of our Information Security team, you will align with regulatory expectations and industry best practices to deliver a mature and effective vulnerability management program.ย  Your work will directly contribute to minimizing risks, safeguarding sensitive information, and enhancing the overall cybersecurity posture of our organization.

What you will do:

ย 

Vulnerability Managementย ย ย ย ย ย ย ย 

  • Lead a centralized, risk-driven vulnerability management function to reduce enterprise cyber risk and enhance executive visibility
  • Define and maintain vulnerability management strategy, standards, governance, and reporting frameworks aligned to regulatory expectations
  • Operate a comprehensive program to identify, assess, prioritize, and track vulnerabilities across applications, infrastructure, and cloud environments
  • Oversee end-to-end vulnerability lifecycle management, ensuring clear ownership, accountability, and timely remediation
  • Tailor vulnerability reporting to reflect asset criticality, risk exposure, and organizational priorities
  • Drive performance measurement and continuous improvement of remediation effectiveness and timeliness
  • Serve as the primary escalation point for vulnerability-related risks and decisions

ย 

Threat Intelligence Integration

  • Continuously evaluate emerging cyber threat intelligence and assess relevance to the enterprise and industry
  • Incorporate threat intelligence, exploit data, and attack trends into vulnerability prioritization and response strategies

Collaboration and Stakeholder Engagement

  • Partner with technology, engineering, and business teams to identify, prioritize, and remediate vulnerabilities aligned to organizational risk
  • Collaborate with internal audit, governance, and risk management functions to ensure alignment with corporate policies and regulatory requirements
  • Communicate vulnerability posture, remediation performance, and material risk exposures to senior leadership through clear, concise reporting
  • Provide timely communication during critical vulnerabilities, including impact assessment, response actions, and mitigation plans
  • Translate technical vulnerability data into actionable business risk insights for non-technical stakeholders
  • Influence stakeholders to prioritize remediation based on risk, exploitability, and business impact

Process Development and Maturity

  • Develop, implement, and continuously enhance the vulnerability management framework in alignment with evolving threats, business objectives, and regulatory requirements
  • Establish and maintain policies, standards, and procedures aligned with industry best practices
  • Define and track key performance indicators (KPIs) and metrics to measure program effectiveness, efficiency, and maturity

Leadership and Team Management

  • Establish and execute the vision, strategy, and roadmap for the vulnerability management program
  • Define governance structures, roles, and responsibilities to support effective program execution
  • Lead and coordinate response efforts during critical vulnerability events, such as zero-day exposures
  • Ensure scalable, consistent processes across infrastructure, applications, cloud, and endpoint environments
  • Foster a culture of accountability, continuous improvement, and strong security ownership

What you will bring:

  • Bachelor's degree in computer science, Information Security, or a related field.
  • 5+ years of experience in vulnerability management with at least 3 years in a leadership role.
  • Demonstrated experience leading vulnerability management teams.
  • Strong project management skills and the ability to manage multiple issues and priorities simultaneously.

Preferred Qualifications

  • Certifications such as GIAC GEVA, CISSP, CRISC, or CompTIA PenTest+ are highly desirable.
  • Experience in the insurance or financial services sector is a strong asset.
  • Familiarity with privacy regulations (PIPEDA, GDPR, CCPA) and industry compliance requirements.
  • Experience working with executive leadership and Board-level communications during incidents.

Key Competencies

  • Critical thinking and problem-solving under pressure.
  • Excellent communication skills with the ability to explain technical concepts to non-technical audiences.
  • Strong collaboration and interpersonal skills to work effectively across teams and business units.
  • Detail-oriented with a high level of integrity and professionalism.

-

The base salary for this position is between $119,300 - $169,300 annually. This represents base salary only and does not represent other variable compensation components of our total compensation ( i.e. annual bonus, commission etc). If you are selected to move forward in our recruitment process, your recruiter will be able to discuss additional details of our total rewards program with you.

Career opportunities will be open a minimum of 5 business days from the date of posting, closing dates will vary depending on the search activity. All applications received will be reviewed on a rolling basis.

Grow with Canada Lifeย 

We'reย united by a shared purpose: to improve the financial,ย physicalย and mental well-beingย of Canadians. Our company is trusted by 1 in 3 Canadians and contributes to the strength of communities across the country.ย ย 

We'reย looking for people who live our values everyday: we step up, we do the right thing, and we deliver - for our customers,ย communitiesย and each other.ย Are you someone who always strives to do the right thing, who steps up for themselves and others, and who delivers with impact? Then we want to hear from you!ย 

What we offer:ย ย 

We're committed to supporting our employees through every stage of their career. Here's what you can expect as a full-time or part-time permanent team member:ย 

  • Career Development: Opportunities for career advancement, access to industry-leading learning programs and up to$2,000 annuallyย towardsย education reimbursement.ย 
  • Health & Wellness:Flexible health and dental benefits,ย plus a $5,000 mental health benefit to support your well-being.ย 
  • Time Off:In addition to regular vacation andย personal days,ย we support communityย involvement with aย volunteer day.ย 
  • Financial Security:Company-matching pension plan,share ownership program andย additionalinvestment options.ย 
  • Rewards and Recognition:ย Employee recognition programs, service milestone celebrations, employee discounts and more!ย ย 
  • Emphasis onย Community:ย We provide aย workplace whereย employeesย feel connected and supported throughย Employee Resource Groups (ERGs),ย mentorshipย programs,ย socialย clubsย andย events.ย ย 

Learn moreย aboutย Canada Life.ย ย 

We'reย committed to removing barriers and ensuring equal access to employment. Applicants requiring reasonable accommodation during the application process may contactย ย talentacquisitioncanada@canadalife.com. All information provided will be handledย in accordance withย applicable laws and Canada Life policies. ย 

Canada Lifewould like to thank all applicants, however only those who qualify for an interview will be contacted.ย 

#LI-Hybridย