Lead, Cybersecurity Incident Response

Canada Life

toronto, on, Canada
Full-time
Posted June 14, 2026

Job Description

Permanent Full Time

What will you do

  • Develop, lead, and oversee the end-to-end security incident response process, including preparation, detection, analysis, containment, eradication, recovery, and post-incident review.
  • Act as the primary point of contact and coordinator during major security incidents, managing incident communications and escalating as needed.
  • Establish and maintain incident response playbooks, procedures, and runbooks aligned with industry frameworks (NIST, ISO 27035, SANS, etc.).
  • Coordinate with the Security Operations Center (SOC) team, Threat Intelligence, and Vulnerability Management to proactively detect and respond to potential threats.
  • Ensure incidents are properly documented, classified, and reported, and lead root cause analysis (RCA) efforts to identify lessons learned.
  • Regularly conduct tabletop exercises and simulations to assess and improve the organization’s incident respon...