cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
kevinmathi
Viewer

Now Hiring! Manager, Cybersecurity Operations

OUR COMPANY BACKGROUND & CULTURE

UPP is the first pension plan of its kind in Ontario’s university sector, proudly serving over 41,000 members across six universities and fourteen sector organizations. Our purpose is to bring greater retirement peace of mind to the university sector by investing with integrity and serving members with care. As a sector-wide plan designed for growth, our doors are open to all Ontario universities. 

 

UPP is recognized as one of Greater Toronto’s Top Employers for 2026. Together, we’re a team of progressive thinkers and agile doers operating within a fast-paced culture of collaboration and respect. We believe in bringing smart and capable people together to create, solve, and grow with a clear shared vision and values of integrity, inclusivity, ingenuity, and impact.

 

Our culture is intentionally welcoming and purposefully rooted in equity, diversity, inclusion, and reconciliation (EDI&R). We believe diverse teams, perspectives, and lived experiences contribute to better decisions and a better workplace. As a pension plan, UPP approaches investing through a long-term lens to generate and safeguard value. Our commitment to investing responsibly accounts for material risks that impact our investment portfolio to generate sufficient risk-adjusted returns to meet the pension needs of our members.

 

Join us in building a bright future for our members, our organization, and each other.

 

THE ROLE

The Manager, Cybersecurity Operations is responsible for managing day-to-day security operations, ensuring continuous protection of enterprise information assets.  This role oversees security monitoring, incident response, threat intelligence, and operational technology/process governance to maintain a resilient security posture.

 

This role reports to the Senior Director of Cybersecurity within the Technology Data and Delivery team.

 

This role is based in downtown Toronto in a hybrid work environment, allowing employees the flexibility to work remotely and in-office (minimum two days per week in-office). 

 

Working Conditions: This role may require after-hours response during major incidents and coordination with third-party providers, regulators, and external investigators.

 

This posting is for a existing vacancy.

 

Apply Now: https://jobs.dayforcehcm.com/en-US/upp/EXTERNALCANDIDATEPORTAL/jobs/1848

 

KEY RESPONSIBILITIES

Security Operations Center (SOC) Leadership

  • Oversee the MSSP 24/7/365 monitoring capabilities, including the MSSP relationship.
  • Work with the MSSP to define and maintain SOC playbooks, runbooks, and triage procedures.
  • Collaborate with Technology Operations and Service Management on continual improvement activities.
  • Ensure tuning and optimization of SIEM, SOAR, and threat-detection platforms.
  • Enforce SLA’s, KPI’s and other OLA’s (e.g., MTTD, MTTR, alert quality etc.).
  • Drive continuous improvement and remediate persistent service gaps.
  • Oversee the optimization of security tools (SIEM, EDR, email security, DLP Policies etc.).
  • Supervise forensic investigations and root cause analysis.

Incident Response & Crisis Management

  • With MSSP and MSP, lead containment, eradication, recovery, and post-incident reviews for cybersecurity events.
  • Maintain and improve the Cyber Incident Response Plan, communication protocols, and escalation workflows.
  • Coordinate closely with the members of the CISRP, other key internal stakeholders and external parties such as forensics partners, law enforcement, etc.
  • Ensure after-action reporting, root-cause analysis, and lessons-learned processes are executed consistently.

Threat Intelligence & Threat Hunting

  • Manage threat-intelligence sources and integrate intelligence into detection and response workflows.
  • Oversee proactive threat-hunting operations aligned with the organization’s threat profile.
  • Produce executive-level threat briefings and strategic insights.

Policy, Standards, and Compliance Support

  • Ensure appropriate policies and standards are in place.
  • Support audits (internal/external), penetration tests, or other compliance initiatives.
  • Provide evidence and reporting related to SOC operations.
  • Ensure Cybersecurity Operations align with the NIST Cybersecurity Framework.
  • Support ongoing cybersecurity risk posture reviews

Reporting & Metrics

  • Produce operational dashboards, KPI/KRI reporting, and executive summaries.
  • Track SOC performance, incident trends, threat landscape changes, and maturity metrics.
  • Use data-driven insights to guide improvements and decisions.

Strategic Initiatives

  • Work with the broader cyber team to drive annual strategic planning and project initiatives as required.

QUALIFICATIONS & EXPERIENCE

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related discipline.
  • 7–10+ years of experience in cybersecurity, with at least 3–5 years in operational leadership roles.
  • Demonstrated experience managing SOC teams, incident response programs, or MSSP operations.
  • Expert knowledge of SIEM, SOAR, EDR/XDR, IDS/IPS, vulnerability management, and cloud security platforms.
  • Familiarity with cloud environments (Azure, GCP) and associated security controls.
  • Experience with penetration testing, threat risk analysis and threat-hunting methodologies.
  • Willingness and demonstrated ability to adopt and effectively use AI tools such as Microsoft Copilot and ChatGPT
  • CISSP and/or CISM are considered assets but are not required.
  • ITIL certification is an asset for operational governance.

ATTRIBUTES

  • Strategic and analytical thinker with ability to manage complex operational environments.
  • Excellent communicator capable of delivering high-quality briefings to senior leadership. 
  • Strong crisis-management skills and calm decision-making under pressure.
  • Ability to build collaborative relationships across the Technology teams, and other business partners.
  • Demonstrated leadership in maturing operational processes and driving continuous improvement.

EXPECTED COMPENSATION

 

The expected compensation for this role is an annualized base salary in the range of $85,600 to $135,600. This range reflects the expected range for new hire base salaries and is subject to change and may be modified in the future. 

 

You may also be eligible for a variable incentive depending on organizational, divisional and personal performance. The final total compensation offered will vary depending on your skills, experience and other factors.

 

LIFE AT UPP

 

Do work that matters. We are duty-bound to serve our members’ interests, and it’s a responsibility we don’t take lightly. That’s why we’ve ingrained sustainability in our work from day one—to ensure our members have a resilient future to retire into, both today and for generations to come.

 

Stronger together. Collaboration is how UPP was born, and it’s how we work with each other and our partners day in, day out. No one at UPP is just a number (even if they are excellent at math) and every win is a shared win.

 

Grow every day. You’ll have the opportunity to work on unique, once-in-a-career projects that maximize your skill set and probably teach you some new ones—at any stage in your career.

 

Prioritize wellness. At UPP, wellness takes many forms. Ultimately, it’s about ensuring our people are cared for in the ways that matter to them. Check out some highlights of our inclusive employee-focused benefits program including:

 

  • Defined benefit pension plan
  • Flexible hybrid work model
  • Paid time off – vacations, personal days and wellness days
  • Work remotely up to eight weeks/year
  • Comprehensive group benefits including medical, dental, vision, etc.
  • Extended paramedical and mental health service coverage
  • Health care and lifestyle spending accounts
  • Fertility treatments, paid parental leave, and gender affirmation coverage
  • Education Assistance program

This posting will remain open for a minimum of seven (7) days and will remain open until a sufficient number of qualified applications are received or finalist candidates have been identified. 

 

Artificial intelligence (AI) tools may be used to support certain stages of the recruitment process, including sourcing, screening, and assessment. All hiring decisions involve human review and intervention by UPP employees.

 

UPP enthusiastically welcomes applications from all qualified applicants and especially invites people with lived experience as an Indigenous person, a person with a disability or as a member of another Human Rights Code protected group that faces barriers to employment to apply. Our goal is to create a barrier-free experience for every candidate throughout the recruitment process.

 

UPP respects your privacy. For information on how UPP handles the personal information you provide during the application process, please see our Job Applicant Privacy Statement.

0 Replies