292 Information Security jobs in Canada
Information Security Specialist
Posted today
Job Viewed
Job Description
Work Location:
Toronto, Ontario, Canada
Hours
37.5
Line Of Business
Technology Solutions
Pay Details
$91,200 - $136,800 CAD
TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Job Description
Job Summary:
The Senior Information security analyst is responsible for identifying, assessing, prioritizing, and coordinating responses to security vulnerabilities within the organization's systems, applications, and networks. This role requires a deep understanding of vulnerability management, risk assessment, and cross-functional collaboration to ensure timely remediation and alignment with organizational security objectives.
Key Responsibilities
Vulnerability Management and Triage:
- Oversee the end-to-end vulnerability triage process, including identification, assessment, prioritization, and tracking.
- Develop and maintain a triage framework that balances risk levels, exploitability, and business impact.
- Analyze vulnerability reports from various sources (e.g., scanners, penetration tests, threat intelligence) to determine criticality.
- Ensure vulnerabilities are accurately classified and assigned to the appropriate teams for remediation.
Collaboration And Coordination
- Work closely with system owners, application teams, DevOps, and IT infrastructure to drive vulnerability remediation.
- Act as a liaison between technical teams and business stakeholders to communicate risk and remediation priorities effectively.
- Collaborate with threat intelligence teams to assess the real-world impact of vulnerabilities.
Risk Assessment And Prioritization
- Develop and maintain a risk-based approach to prioritize vulnerabilities based on business context, likelihood of exploitation, and potential impact.
- Establish timelines for remediation based on severity and compliance requirements.
Process Improvement
- Implement and optimize workflows for vulnerability triage and reporting.
- Continuously review and refine vulnerability management policies, processes, and tools.
- Stay updated on evolving industry best practices and emerging threats
Reporting And Metrics
- Define and track key performance indicators (KPIs) for vulnerability management, such as mean time to remediate (MTTR) and vulnerability closure rates.
- Create regular reports on vulnerability status and risk posture for executive leadership and technical teams.
Leadership And Team Management
- Manage and mentor the vulnerability triage team, ensuring high performance and professional growth.
- Provide training and guidance to enhance the team's technical expertise and analytical skills.
- Foster a culture of security awareness and proactive risk management across the organization.
Container Security
- Provide technical expertise and oversight for container scanning, container vulnerability prioritization, and remediation.
- Be a lead contributor to enterprise-level initiatives pertaining to container security and risk remediation.
- Effectively communicate critical vulnerabilities, their impacts, associated risk, and remediation priorities to cross-functional leadership teams.
- Help build and enforce technology controls, along with container security standards to ensure best practices are followed, when building and deploying application containers.
- Influence behavior to reduce risk and foster a strong technology risk management culture throughout the bank.
Qualifications
Education: Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience).
Experience
- 5+ years of experience in vulnerability management, security operations, or related fields.
- 2+ years of experience in a leadership or management role
Technical Skills
- Expertise in vulnerability scanning tools (e.g., Qualys, Nessus, Rapid7).
- Knowledge of CVSS (Common Vulnerability Scoring System) and threat modeling.
- Strong understanding of operating systems, cloud platforms, networks, and application security.
- Familiarity with compliance frameworks (e.g., ISO 27001, NIST, PCI-DSS).
- Soft Skills:
- Strong analytical and problem-solving skills.
- Excellent verbal and written communication skills, with the ability to present technical information to non-technical audiences.
- Proven ability to manage multiple priorities and work under tight deadlines.
Preferred Qualifications
- Certifications such as CISSP, CISM, CEH, or GIAC.
- Experience with threat intelligence platforms and integration.
- Familiarity with automation tools and scripting languages (e.g., Python, PowerShell).
Who We Are
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing – and so will you.
Our Total Rewards Package
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental well-being goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Learn more
Additional Information
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.
Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements.
Colleague Development
If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD – and we're committed to helping you identify opportunities that support your goals.
Training & Onboarding
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.
Interview Process
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
Accommodation
Your accessibility is important to us. Please let us know if you'd like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process.
We look forward to hearing from you
Language Requirement (Quebec Only)
Sans Objet
Manager, Information Security Innovation Accelerator Engineer
Posted today
Job Viewed
Job Description
Overview
At KPMG, you'll join a team of diverse and dedicated problem solvers, connected by a common cause turning insight into opportunity for clients and communities around the world.
We are seeking a talented and innovative Security Engineer to join our Global Security Operations Center (GSOC) team. This role focuses on Innovation, ensuring that automation supports and is part of any operationalization activities while leveraging DevOps principles to enhance security operations.The ideal candidate will possess expertise in Palo Alto Cortex, Azure technologies including Logic Apps and Microsoft Sentinel, and ServiceNow, and be responsible for building, improving, and maintaining automated workflows to streamline security monitoring and incident response.
What You Will Do
- Ensure continuous improvement to GSOC processes and technology through automation.
- Support the Innovation Lead and liaise with KPMG teams, business stakeholders, and vendors to design and setup activities at different stages of a technical project.
- Installation, management, maintenance and support of GSOC technologies hosted on multiple environments including physical Data Centers, Azure public cloud and O365.
- Monitor systems, identify/resolve issues, prepare status reviews and reports; Compile and maintain the necessary documentation of all system designs, builds and modifications.
- Responsible for coordination and delivery of user training and training material.
- Manage support cases to ensure issues are recorded, tracked, resolved, and follow-ups are done in a timely manner.
What You Bring To The Role
- 3 years' experience automating security workflows using scripting languages such as Python, PowerShell, or Bash. 3 years' experience with Query Languages preferably KQL. 3+ years of experience working as a Security Engineer or in a Security Operations Center (SOC) environment.
- Bachelor's degree, Master's, or PhD in Computing, Information Security, or related field (or equivalent work experience). Certifications such as CISSP, CISM, AWS Certified Security - Specialty, Azure Security Engineer are a plus.
- Familiarity with threat intelligence platforms and SIEM tools. Strong hands-on experience with automation and Azure Security technologies (including Azure Sentinel, Logic Apps, etc.). Expert in scripting or development languages e.g. Python, and a query language e.g. KQL
- Deep understanding of security technologies, principles, and best practices related to incident response and threat detection.
- Proven expertise in DevOps tools and practices (e.g., Git, Jenkins, Terraform, Docker, Kubernetes).
Providing you with the support you need to be at your best
Our Values, The KPMG Way
Integrity
, we do what is right |
Excellence
, we never stop learning and improving |
Courage
, we think and act boldly |
Together
, we respect each other and draw strength from our differences |
For Better
, we do what matters
KPMG in Canada is a proud equal opportunities employer and we are committed to creating a respectful, inclusive and barrier-free workplace that allows all of our people to reach their full potential. A diverse workforce is key to our success and we believe in bringing your whole self to work. We welcome all qualified candidates to apply and hope you will choose KPMG in Canada as your employer of choice.
Adjustments and accommodations throughout the recruitment process
At KPMG, we are committed to fostering an inclusive recruitment process where all candidates can be themselves and excel. We aim to provide a positive experience and are prepared to offer adjustments or accommodations to help you perform at your best. Adjustments (informal requests), such as extra preparation time or the option for micro breaks during interviews, and accommodations (formal requests), such as accessible communication supports or technology aids, are tailored to individual needs and role requirements. You will have an opportunity to request an adjustment or accommodation at any point throughout the recruitment process. If you require support, please contact KPMG's Employee Relations Service team by calling
Network Security Engineer
Posted today
Job Viewed
Job Description
Hello,
This is Deepak and I'm a professional Recruiter with Vlink.
VLink, founded in 2006, is a leading global provider of software engineering services with next-gen technologies and best-in-class talent. Our Headquarters are in the U.S, and we have offices in 7+ countries from North America-Europe to APAC, with expansion plans in the Middle East. With over 1,000 employees working globally, VLink has helped SMBs, and large enterprises achieve their business goals, and gained the trust of Fortune-250 companies. VLink is
'Great Place to Work Certified'
and has been a consistent winner as-
Best Places to Work in CT
.
Trust, collaboration
, and
accountability
are the three elements that are at the core of VLink's work culture. We value our professionals, providing comprehensive benefits and the opportunity for growth.
Job Descriptions
:
Role
:
Sr. Network Security Engineer
Experience: 8-10 Year
Primary Skills: Splunk, Palo Alto, Security
Additional Skills: TCP/IP, VPN, Cisco
Education: Bachelors
Relocation: Yes
Additional Information:
- Working hours: 40 hours
- Remote/Hybrid/Onsite? Montreal, QC
Job Description:
This position will support the implementation and administration of network security hardware and software, enforcing network security policy. This will include troubleshooting incidents, collaborating with the Security Operations Center, providing escalation support for Level 2 Operations, and providing problem resolution. Support of Firewalls in AWS/Azure cloud and in physical datacentres, Remote Access, and the advancement of security capabilities and concepts are the main focus areas.
Responsibilities:
- Support the refinement of operational procedures.
- Adhere to information security policies.
- Maintain consistent and punctual attendance.
- Analyze and upgrade network security; integrate new security technologies.
- Manage daily operational tasks, including firewall requests and incident responses.
- Design and implement remote access solutions like IPSec and SSL VPNs.
- Offer security advice and contribute to infrastructure decisions, ensuring compliance with security standards.
- Knowledgeable in firewall management (e.g., Palo Alto), network routing/switching, and advanced layer 7 firewall features.
- Regularly evaluate security measures and advocate for progressive global security initiatives.
Requirements:
- 5 years' experience in directly related work experience in network security administration engineering architecture.
- Development experience working with APIs to automate essential firewall tasks using languages such as Python to improve efficiency of day-to-day tasks.
- Experience with firewall assessment and compliance tools such as FireMon or Tufin
- Proven ability to understand and decode network traces and capture files.
- Strong knowledge of network security, Palo Alto firewalls, intrusion detection systems, authentication mechanisms, encryption technologies, and networking protocols including SMTP, HTTP, DNS, TCP/IP, and SNMP.
- Significant experience building, implementing, and administering Palo Alto firewalls both physical and virtual .
- Experience in network segmentation leveraging tools like Guardicore .
- Prior experience implementing complex network security concepts and technologies using (but not limited to):
- Palo Alto Networks Security Certifications (PCNSA/PCNSE)
- Remote Access VPN solutions (e.g. Prisma Access)
- SDN technology – Cisco ACI, Silver Peak
- Guardicore Security Certifications (GCSA/GCSE)
- AWS / Azure Cloud Certifications
- Splunk
- FireMon
- Experience with micro-segmentation concepts leveraging technologies such as Cisco ACI and Palo Alto Next Generation Firewall.
- Experience building and supporting various Palo Alto solutions such as Global Protect, Wildfire, Expedition, etc.
- Experience and deep knowledge of Palo Alto NextGen features and concepts such as UserID, AppID, ContentID, and HIPs.
- Subject matter expert of 2-4 technologies supported by the Network Operations Team and be able to cross-train other team members in these technologies. Examples above.
Security Architect with Development
Posted today
Job Viewed
Job Description
Inclusion without Exception:
Tata Consultancy Services (TCS) is an equal opportunity employer, and embraces diversity in race, nationality, ethnicity, gender, age, physical ability, neurodiversity, and sexual orientation, to create a workforce that reflects the societies we operate in. Our continued commitment to Culture and Diversity is reflected in our people stories across our workforce and implemented through equitable workplace policies and processes.
TCS is an IT services, consulting, and business solutions organization that has been partnering with many of the world's largest businesses in their transformation journeys for over 55 years. Its consulting-led, cognitive-powered portfolio of business, technology, and engineering services and solutions is delivered through its unique Location Independent Agile delivery model, recognized as a benchmark of excellence in software development. A part of the Tata group, India's largest multinational business group, TCS operates in 55 countries and employs over ,000 of the world's best-trained consultants highly skilled individuals in 55 countries, including more than 10,000 in Canada. The company generated consolidated revenues of US $29 30 billion in the fiscal year ended March 31, 20254 and is listed on the BSE and the NSE in India. TCS' proactive stance on climate change and award-winning work with communities across the world have earned it a place in leading sustainability indices such as the MSCI Global Sustainability Index and the FTSE4Good Emerging Index.
Skills and Responsibilities:
•Threat Modeler, Security Architect with Development background Artificial Intelligence, Machine Learning Data Science professional with experience in enterprise architecture, AI product security, and digital transformation.
•Strong hands-on expertise in cloud-native architecture (AWSGCP), threat modeling, secure AI system development, and AI governance.
•Led mission-critical initiatives with cross-functional teams, aligning product innovation with cybersecurity best practices and compliance standards.
Roles Responsibilities:
•Threat Modeler, Security Architect with Development background.
•Experience with threat modeling frameworks, attack vectors and vulnerability analysis CAPEC, Attack, STRIDE.
•Experience with application security controls (Web, API, Mobile, AI).
•Experience with common information security management and application frameworks NIST 800-53, CSF, OWASP ASVS.
•Experience with Application Security design and DevSecOps, Full stack knowledge of application architectures including Single Page Applications, REST APIs, SOAP APIs, Mobile Applications.
•Experience with Java, JavaScript and mobile application development.
•Knowledge of familiarity with database architecture including Oracle, SQL, DB2 and NoSQL Databases.
•Experience with Cloud security, architecture, design, implementation, and operations- Exposure to IAM Controls (OAuth 2.0, OIDC, JWT)- Strong familiarity with Cryptography Controls (Data at rest, in motion). CISSP, CSSLP, CISA, CRISC, OSCP
Tata Consultancy Services Canada Inc. is committed to meeting the accessibility needs of all individuals in accordance with the Accessibility for Ontarians with Disabilities Act (AODA) and the Ontario Human Rights Code (OHRC). Should you require accommodations during the recruitment and selection process, please inform Human Resources.
Thank you for your interest in TCS. Candidates that meet the qualifications for this position will be contacted within a 2-week period. We invite you to continue to apply for other opportunities that match your profile.
Information Security Analyst Co-Op
Posted 1 day ago
Job Viewed
Job Description
Job Description
Information Security Analyst Co-Op
Location: Mississauga, ON
Type: Winter 2026
WHATu2019S IN IT FOR YOU?
Competitive pay starting Rate: $22.00 -$24.00 per hour
4-Month Co-Op
Be part of a long standing and stable industry leader
WHEN YOU JOIN US, YOU WILL BE;
Support the development and maintenance of security policies, procedures, and guidelines in accordance with NIST CSF.
Participate in vulnerability assessments and penetration testing to identify and remediate security weaknesses.
Collaborate with IT teams to enhance security configurations and monitor network traffic for suspicious activity.
Contribute to incident response efforts, including investigation, documentation, and mitigation of security incidents.
Assist in conducting security awareness training and education programs for employees.
Work on specific security projects such as:
Implementing multi-factor authentication (MFA) across the organization.
Developing and deploying a secure file transfer system.
Enhancing the company''s endpoint security strategy.
Automating security compliance reporting and monitoring.
Assisting in the creation of a disaster recovery and business continuity plan
OUR IDEAL CANDIDATE;
Enrolled in a university-level program with a focus in Computer and Information Science, Data Science/Engineering, Computer Engineering, Information Technology, or equivalent program
Bachelor''s degree or equivalent in Information Technology, Computer Science, Engineering or related field.
Microsoft Office Suite proficiency required (Outlook, Word, Power Point and Excel).
Enthusiastic and pleasant attitude.
Strong desire to learn.
Upholds best practice standards as well as departmental policies and procedures.
Excellent listening skills, verbal and written communication.
WORK AUTHORIZATIONS AND TRAVEL;
Must be authorized to work in Canada
No travel requirements
Benefits of Employment: IKO recognizes that its success is due to the strength of its employees. A primary goal of IKO is to promote individual employee''s sense of accomplishment and contribution so that employees enjoy their association with IKO. The Company invests in its employees so that they are the most knowledgeable in the industry, and undertakes great efforts to nurture loyalty to, and teamwork at, IKO. We are pleased to offer competitive compensation, health care, a progressive and challenging workplace and a commitment to teamwork and integrity.
Diversity and Equal Opportunity Employment: IKO Industries Ltd. is an equal opportunity employer. We are committed to diversity and inclusion and are pleased to consider all qualified applicants for employment without consideration to race, religion, creed, color, national origin, age, gender, sexual orientation, marital status, veteran status or disability. IKO Industries Ltd. encourages and welcomes applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process.
Information Security Analyst Co-Op
Posted 1 day ago
Job Viewed
Job Description
Job Description
Information Security Analyst Co-Op
Location: Mississauga, ON
Type: Winter 2026
WHATu2019S IN IT FOR YOU?
Competitive pay starting Rate: $22.00 -$24.00 per hour
4-Month Co-Op
Be part of a long standing and stable industry leader
WHEN YOU JOIN US, YOU WILL BE;
Support the development and maintenance of security policies, procedures, and guidelines in accordance with NIST CSF.
Participate in vulnerability assessments and penetration testing to identify and remediate security weaknesses.
Collaborate with IT teams to enhance security configurations and monitor network traffic for suspicious activity.
Contribute to incident response efforts, including investigation, documentation, and mitigation of security incidents.
Assist in conducting security awareness training and education programs for employees.
Work on specific security projects such as:
Implementing multi-factor authentication (MFA) across the organization.
Developing and deploying a secure file transfer system.
Enhancing the company''s endpoint security strategy.
Automating security compliance reporting and monitoring.
Assisting in the creation of a disaster recovery and business continuity plan
OUR IDEAL CANDIDATE;
Enrolled in a university-level program with a focus in Computer and Information Science, Data Science/Engineering, Computer Engineering, Information Technology, or equivalent program
Bachelor''s degree or equivalent in Information Technology, Computer Science, Engineering or related field.
Microsoft Office Suite proficiency required (Outlook, Word, Power Point and Excel).
Enthusiastic and pleasant attitude.
Strong desire to learn.
Upholds best practice standards as well as departmental policies and procedures.
Excellent listening skills, verbal and written communication.
WORK AUTHORIZATIONS AND TRAVEL;
Must be authorized to work in Canada
No travel requirements
Benefits of Employment: IKO recognizes that its success is due to the strength of its employees. A primary goal of IKO is to promote individual employee''s sense of accomplishment and contribution so that employees enjoy their association with IKO. The Company invests in its employees so that they are the most knowledgeable in the industry, and undertakes great efforts to nurture loyalty to, and teamwork at, IKO. We are pleased to offer competitive compensation, health care, a progressive and challenging workplace and a commitment to teamwork and integrity.
Diversity and Equal Opportunity Employment: IKO Industries Ltd. is an equal opportunity employer. We are committed to diversity and inclusion and are pleased to consider all qualified applicants for employment without consideration to race, religion, creed, color, national origin, age, gender, sexual orientation, marital status, veteran status or disability. IKO Industries Ltd. encourages and welcomes applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process.
Senior Security Engineer, Cloud Security

Posted today
Job Viewed
Job Description
At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform - and with it, the future global financial system.
To achieve our mission, we're seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company's hardest problems.
Our is intense and isn't for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there's no better place to be.
While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported.
Coinbase Cloud Security (CloudSec) is looking for a Senior Security Engineer to build security controls and advise engineering teams on secure architecture requirements and best practices. CloudSec is responsible for the safety of cloud and compute platforms on which Coinbase applications are built. As an engineer on the CloudSec team you are a trusted expert on the security of these platforms. You will ensure the security of these platforms through security consultations, configuration reviews, policy-as-code, and development of guardrails and automation.
*What you'll be doing (ie. job duties):*
* Design, implement, and maintain network security controls across multi-cloud (AWS, GCP, etc.) and on-prem infrastructure
* Enforce network segmentation and firewall rules that minimize blast radius without impairing productivity.
* Review configuration changes and write policies to detect security invariants.
* Drive continuous improvement of secure-by-default network patterns for developers.
* Write code for automations that support security requirements like threat detection, incident containment, and network access management.
* Partner with engineering teams to review cloud, network and routing architecture design changes.
*What we look for in you (ie. job requirements):*
* At least 5 years of experience in cloud security with deep expertise in AWS.
* At least 2 years of experience in network security and cloud edge security experience.
* An ability to deploy cloud infrastructure with Terraform and to develop automations or guardrails with Golang.
* An execution-focused mindset, capable of navigating through ambiguity and delivering results.
* Your passion for building an open financial system that brings the world together drives you to excel in this role.
*Nice to haves:*
* Proficiency in crafting Rego rules for Open Policy Agent (OPA) or comparable policy-as-code solutions.
* Experience with both GCP and/or on-premise infrastructure.
* Have worked with detection platforms like Wiz, AWS Config.
Position ID: P72358
#LI-Remote
*Pay Transparency Notice: *The target annual salary for this position can range as detailed below. Full time offers from Coinbase also includebonus eligibility + equity eligibility + benefits (including medical, dental, and vision)
Pay Range:
$191,100-$191,100 CAD
Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying.
Commitment to Equal Opportunity
Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the in certain locations, as required by law.
Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations Data Privacy Notice for Job Candidates and Applicants
Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available Disclosure
For select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews to qualified applicants. The tool simulates realistic interview scenarios and engages in dynamic conversation. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description.
For select roles, Coinbase is also piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to fully focus on you as the candidate.
*The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment*. To request a reasonable accommodation due to disability, please contact accommodations(at)coinbase.com
Be The First To Know
About the latest Information security Jobs in Canada !
Staff Security Engineer, Network Security

Posted today
Job Viewed
Job Description
At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform - and with it, the future global financial system.
To achieve our mission, we're seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company's hardest problems.
Our is intense and isn't for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there's no better place to be.
While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported.
Coinbase Cloud Security (CloudSec) is looking for a Staff Security Engineer to enhance our network security across multiple cloud environments. This role involves leading the design, implementation, and continuous improvement of our security posture. You will leverage your extensive skills in WAF management, DDoS protection, network segmentation, and firewall policy management to enforce robust security measures while enabling developer efficiency.
*What you'll be doing (ie. job duties):*
* Design, implement, and maintain network security controls across multi-cloud (AWS, GCP, etc.) and on-prem infrastructure
* Own and optimize Web Application Firewalls (WAF) and DDoS protection services for scalability and resilience.
* Enforce network segmentation and firewall rules that minimize blast radius without impairing productivity.
* Review configuration changes and write policies to detect security invariants.
* Drive continuous improvement of secure-by-default network patterns for developers.
* Write code for automations that support security requirements like threat detection, incident containment, and network access management.
* Partner with engineering teams to review network and routing architecture design changes.
*What we look for in you (ie. job requirements):*
* At least 8 years of experience in network security with deep expertise in AWS and cloud edge security experience.
* An ability to deploy cloud infrastructure with Terraform and to develop automations or guardrails with Golang.
* An execution-focused mindset, capable of navigating through ambiguity and delivering results.
* Your passion for building an open financial system that brings the world together drives you to excel in this role.
*Nice to haves:*
* Proficiency in crafting Rego rules for Open Policy Agent (OPA) or comparable policy-as-code solutions.
* Proven experience implementing AWS Network Firewall or GCP Cloud Firewall in large-scale production environments.
* Demonstrated expertise in managing Cloudflare.
* Experience with both GCP and/or on-premise infrastructure.
Position ID: P72327
#LI-Remote
*Pay Transparency Notice: *The target annual salary for this position can range as detailed below. Full time offers from Coinbase also includebonus eligibility + equity eligibility + benefits (including medical, dental, and vision)
Pay Range:
$217,900-$217,900 CAD
Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying.
Commitment to Equal Opportunity
Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the in certain locations, as required by law.
Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations Data Privacy Notice for Job Candidates and Applicants
Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available Disclosure
For select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews to qualified applicants. The tool simulates realistic interview scenarios and engages in dynamic conversation. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description.
For select roles, Coinbase is also piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to fully focus on you as the candidate.
*The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment*. To request a reasonable accommodation due to disability, please contact accommodations(at)coinbase.com
Lead Security Architect (Director level, individual contributor)
Posted 1 day ago
Job Viewed
Job Description
As a **Lead Security Architect** , you'll be responsible for designing, developing, and implementing robust security strategies and solutions to protect Manulife's digital assets from advanced cyber threats. In this **hub-and-spoke model** , you will report to the Chief Security Architect and will be the dedicated security architecture lead for a specific business unit, ensuring alignment with the global security framework while addressing the unique needs of the segment. You will play a crucial role in shaping our global security posture and ensuring security is a foundational element of our technology and business initiatives.
**Office location: Toronto - Canada (ideal) or Boston - USA.**
**Work arrangement: Hybrid (3 days in office, 2 days from Home); Remote working option is not available.**
**Travel Flexibility:** **Willingness and ability to travel within Canada and USA to support business operations and stakeholder engagement.**
**Position Responsibilities:**
+ **Architectural Design** : Lead the design and development of robust security frameworks, standards, and best practices for global systems, data, and networks. This includes creating reference architectures and implementation patterns for security solutions.
+ **Strategic Planning** : Translate business, technology, and threat drivers into practical security roadmaps. You'll ensure our security strategy is aligned with broader organizational goals.
+ **Financial Analysis** : Conduct financial evaluations of security technologies, including quantifying purchasing and licensing options, estimating labor costs, and calculating the total cost of ownership (TCO), return on investment (ROI), or payback period.
+ **Project Management** : Draft project plans for security service and technology deployments and coordinate with stakeholders across the organization to ensure successful implementation.
+ **Collaboration & Integration** : Work closely with various teams across Manulife's business and IT units-including enterprise architecture, development, and risk management-to seamlessly integrate security throughout the entire project lifecycle.
+ **Risk Management** : Conduct comprehensive risk assessments to identify vulnerabilities and define necessary controls. Partner with global information risk management teams to prioritize and mitigate risks effectively.
+ **Security Evaluation** : Continuously evaluate the security of new and emerging technologies and potential solutions. You will stay ahead of the curve on cybersecurity trends to recommend and implement innovative solutions.
+ **Mentorship & Communication** : Act as a security subject matter expert, coaching and mentoring development teams. You will also communicate complex security standards and strategies to both technical staff and senior management with clarity and influence.
+ **AI Security:** Design and implement security frameworks for Machine Learning (ML), Generative AI (GenAI), and Agentic AI systems. Evaluate AI-powered security tools and integrate artificial intelligence capabilities into security operations and threat detection.
+ **Domain-Specific Accountabilities:**
+ **Application Security** : Assess solution architectures for compliance with security standards, define secure service interfaces, and provide guidance to application security engineers on threat modelling and secure software development methodologies.
+ **Cloud Security** : Provide deep expertise in securing multi-cloud computing environments (SaaS, IaaS, PaaS), with a strong focus on platforms like **Microsoft Azure** and **AWS** .
**Required Qualifications:**
+ To succeed in this role, a candidate must have a strong blend of technical expertise, professional experience, and interpersonal skills.
+ **Education & Certifications** **:**
+ Bachelor's or master's degree in computer science, information systems, cybersecurity, or a related field.
+ Relevant industry certifications such as **CISSP (Certified Information Systems Security Professional)** or **CCSP (Certified Cloud Security Professional)** are required.
+ **Experience** **:**
+ At least 10 years of experience specifically in senior information security architecture roles, with demonstrated progression in responsibility and complexity.
+ Proven experience in the financial services industry, with understanding of regulatory requirements, compliance frameworks, and industry-specific security challenges.
+ Experience in using architecture methodologies such as **SABSA, Zachman, and/or TOGAF.**
+ Direct, hands-on experience or strong working knowledge of managing security infrastructure-e.g., firewalls, intrusion prevention systems (IPSs), web application firewalls (WAFs), endpoint protection, SIEM, and log management technology.
+ Verifiable experience reviewing application code for security vulnerabilities.
+ Experience securing CI/CD pipelines.
+ Direct, hands-on experience or a strong working knowledge of vulnerability management tools.
+ Documented experience and a strong working knowledge of the methodologies to conduct threat-modelling exercises on new applications and services.
+ Experience designing the deployment of applications and infrastructure into public cloud services.
+ Direct experience designing IAM technologies and services, including Active Directory, Lightweight Directory Access Protocol (LDAP), and Amazon Web Service (AWS) IAM.
+ Extensive knowledge of full-stack IT infrastructure, including:
+ Applications
+ Databases
+ Operating systems-Windows, Unix, and Linux
+ Hypervisors
+ IP networks-WAN and LAN
+ Storage networks-Fibre Channel, iSCSI, and NAS
+ Backup networks and media
+ Containers/Kubernetes
+ **Soft Skills** :
+ **Communication** : Excellent verbal and written communication skills are crucial for articulating complex technical concepts and influencing stakeholders at all levels. You must be able to translate complex security matters into business terms that are easily understood by colleagues and senior management.
+ **Problem-Solving** : Strong analytical, problem-solving, and decision-making abilities.
+ **Collaboration** : The capacity to balance competing priorities and maintain a collaborative and positive attitude.
+ **Travel Flexibility:** Willingness and ability to travel within Canada and USA to support business operations and stakeholder engagement
**Preferred Qualifications:**
+ Experience from large complex environment is highly preferred but not a must.
+ Experience from large financial Org's is a definite plus but not a must.
**When you join our team:**
+ We'll empower you to learn and grow the career you want.
+ We'll recognize and support you in a flexible environment where well-being and inclusion are more than just words.
+ As part of our global team, we'll support you in shaping the future you want to see.
**Acerca de Manulife y John Hancock**
Manulife Financial Corporation es un importante proveedor internacional de servicios financieros que ayuda a las personas a tomar decisiones de una manera más fácil y a vivir mejor. Para obtener más información acerca de nosotros, visite .
**Manulife es un empleador que ofrece igualdad de oportunidades**
En Manulife/John Hancock, valoramos nuestra diversidad. Nos esforzamos por atraer, formar y retener una fuerza laboral tan diversa como los clientes a los que prestamos servicios, y para fomentar un entorno laboral inclusivo en el que se aprovechen las fortalezas de las culturas y las personas. Estamos comprometidos con la equidad en las contrataciones, la retención de talento, el ascenso y la remuneración, y administramos todas nuestras prácticas y programas sin discriminación por motivos de raza, ascendencia, lugar de origen, color, origen étnico, ciudadanía, religión o creencias religiosas, credo, sexo (incluyendo el embarazo y las afecciones relacionadas con este), orientación sexual, características genéticas, condición de veterano, identidad de género, expresión de género, edad, estado civil, estatus familiar, discapacidad, o cualquier otro aspecto protegido por la ley vigente.
Nuestra prioridad es eliminar las barreras para garantizar la igualdad de acceso al empleo. Un representante de Recursos Humanos trabajará con los solicitantes que requieran una adaptación razonable durante el proceso de solicitud. Toda la información que se haya compartido durante el proceso de solicitud de adaptación se almacenará y utilizará de manera congruente con las leyes y las políticas de Manulife/John Hancock correspondientes. Para solicitar una adaptación razonable en el proceso de solicitud, envíenos un mensaje a .
**Referenced Salary Location**
Toronto, Ontario
**Modalidades de Trabajo**
Híbrido
**Salary range is expected to be between**
$110,530.00 CAD - $205,270.00 CAD
Si se está postulando para este puesto fuera de la ubicación principal, póngase en contacto con para conocer el rango salarial de su ubicación. El salario real variará según las condiciones locales del mercado, la geografía y los factores relacionados con el trabajo pertinentes, como conocimiento, habilidades, calificaciones, experiencia y educación/capacitación. Los empleados también tienen la oportunidad de participar en programas de incentivos y obtener una compensación de incentivos vinculada al desempeño comercial e individual.
Manulife ofrece a los empleados aptos una amplia variedad de beneficios personalizables, entre ellos, beneficios de salud, odontológicos, de salud mental, oftalmológicos, por discapacidad a corto y a largo plazo, cobertura de seguro de vida y por muerte accidental y desmembramiento, adopción/subrogación y bienestar, y planes de asistencia al empleado/familiar. También ofrecemos a los empleados admisibles varios planes de ahorro para la jubilación (incluidos planes de pensiones y un plan mundial de propiedad de acciones con contribuciones equivalentes del empleador) y recursos de asesoramiento y educación financiera. Nuestro generoso programa de tiempo libre remunerado en Canadá incluye feriados, vacaciones, días personales y días por enfermedad, y ofrecemos la gama completa de ausencia laboral reglamentaria. Si se está postulando para este puesto en los EE. UU., póngase en contacto con para obtener más información sobre las disposiciones relativas al tiempo libre remunerado específicas de EE. UU.
Information Security Officer
Posted 2 days ago
Job Viewed
Job Description
**Responsibilities:**
+ Perform security reviews on SaaS and PaaS products
+ Performing security assessment on Saas & Paas
+ Ability to engage in deep technical discussions with other Engineering groups, as well as ability to convey the same concepts and issues at an elevated level to senior leadership.
+ Ability to execute technical responsibilities, including, Design / Architecture reviews, Code / Configuration reviews and vulnerability assessment.
+ Develops security architecture, strategy, planning, and problem-solving solutions on an enterprise level.
+ Identify opportunities to automate and standardize information security controls and for the supported groups
+ Resolve any vulnerabilities or issues detected in an application or infrastructure
+ Analyze source code to mitigate identified weaknesses and vulnerabilities within the system
+ Review and validate automated testing results and prioritize actions that resolve issues based on overall risk
+ Scan and analyze applications with automated tools, and perform manual testing if necessary
+ Reduce risk by analyzing the root cause of issues, their impact, and required corrective actions
+ Direct the development and delivery of secure solutions by coordinating with business and technical contacts
+ Recommend security solutions according to Security Policy and Practices established by Citigroup.
+ Establish and maintain relationships with domain architects, project managers, and others within the technology development unit.
+ Maintains continuous awareness of business, technical, and infrastructure issues and acts as a sounding board or consultant to aid in the development of creative GCP security architecture solutions.
+ Interfaces with vendors to security assess their technology and to guide their product roadmap based on Citi's security requirements.
**Qualifications:**
+ 6-10 years of relevant experience as an ISO officer
+ Proficiency in application, architecture, information, and cyber security
+ Proficiency in one or more: GCP, AWS and Azure
+ Advanced proficiency with Microsoft Office tools and software
+ Consistently demonstrates clear and concise written and verbal communication
+ 5-10 years of experience in Application Security and/or Security Architecture
+ 5-10 years of experience Public & Private Cloud Security
**Education:**
+ Bachelor's degree/University degree in Information Security/Computer Science/Electrical, Mechanical Engineering /Information Technology or equivalent experience
+ Master's degree preferred
+ Professional certifications, such as CISSP and CSSLP, or willingness to obtain certification within 12-18 months of start date.
This job description provides a high-level review of the types of work performed. Other job-related duties may be assigned as required
**About Citi**
Citi, the leading global bank, has approximately 200 million customer accounts and does business in more than 160 countries and jurisdictions. Citi provides consumers, corporations, governments, and institutions with a broad range of financial products and services, including consumer banking and credit, corporate and investment banking, securities brokerage, transaction services, and wealth management.
As a bank with a brain and a soul, Citi creates economic value that is systemically responsible and in our clients' best interests. As a financial institution that touches every region of the world and every sector that shapes your daily life, our Operations & Technology teams are charged with a mission that rivals any large tech company. Our technology solutions are the foundations of everything we do from keeping the bank safe, managing global resources, and providing the technical tools our workers need to be successful to designing our digital architecture and ensuring our platforms provide a first-class customer experience. We reimagine client and partner experiences to deliver excellence through secure, reliable, and efficient services.
Our commitment to diversity includes a workforce that represents the clients we serve from all walks of life, backgrounds, and origins. We foster an environment where the best people want to work. We value and demand respect for others, promote individuals based on merit, and ensure opportunities for personal development are widely available to all. Ideal candidates are innovators with well-rounded backgrounds who bring their authentic selves to work and complement our culture of delivering results with pride. If you are a problem solver who seeks passion in your work, come join us. We'll enable growth and progress together.
---
**Job Family Group:**
Technology
---
**Job Family:**
Information Security
---
**Time Type:**
Full time
---
**Primary Location Full Time Salary Range:**
$120,800.00 - $170,800.00
---
**Most Relevant Skills**
Please see the requirements listed above.
---
**Other Relevant Skills**
For complementary skills, please see above and/or contact the recruiter.
---
_Citi is an equal opportunity employer, and qualified candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other characteristic protected by law._
_If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review_ _Accessibility at Citi ( _._
_View Citi's_ _EEO Policy Statement ( _and the_ _Know Your Rights ( _poster._
Citi is an equal opportunity and affirmative action employer.
Minority/Female/Veteran/Individuals with Disabilities/Sexual Orientation/Gender Identity.