Senior Manager, Cybersecurity & GRC
Lead the enterprise cybersecurity strategy, governance, risk, and compliance initiatives while partnering with executive leadership. Oversee critical security operations including SOC/MSSP, incident response, cloud security, and AI governance.
- On-site
- Mississauga, ON
- Posted Aug 22, 2026
- Apply by Sep 21, 2026
- 1 position
More jobs you can apply to directly
Similar opportunities posted by employers hiring on Jobs.ca, with no external application form.
Job summary
We are seeking a strategic Senior Manager, Cybersecurity & GRC to lead cybersecurity strategy, governance, risk, compliance, and continuous improvement initiatives. This role will partner with executive leadership and oversee key areas including GRC, SOC/MSSP, incident response, cyber resilience, cloud security, third-party risk, and AI security. Key Responsibilities Develop and execute the enterprise cybersecurity strategy and roadmap. Lead GRC, risk assessments, policies, controls, compliance, and audit programs. Advise CIO, executives, and senior stakeholders on cybersecurity risks and priorities. Oversee SOC/MSSP, incident response, vulnerability management, and cyber resilience. Establish security governance for AI, GenAI, cloud, and emerging technologies. Lead third-party and supply-chain cybersecurity risk management. Develop cybersecurity KPIs/KRIs, budgets, business cases, and investment priorities. Lead and mentor cybersecurity teams and drive continuous security improvement. Qualifications 12+ years of cybersecurity/information security experience. 5+ years in a leadership/management role. Strong experience in Cybersecurity Strategy, GRC, Enterprise Risk, and Security Assurance. Experience with SOC/MSSP oversight, incident response, cloud security, and compliance. Strong knowledge of NIST, ISO 27001, CIS Controls, and SOC 2. Experience presenting cybersecurity strategy and risk to executive leadership. Bachelor's degree in Cybersecurity, IT, Computer Science, Engineering, or related field. CISSP, CISM, CRISC, CCSP, or GIAC certification is an asset. If you're a senior cybersecurity leader with strong GRC and strategic experience, we'd like to hear from you.
What you’ll do
Lead the enterprise cybersecurity strategy, governance, risk, and compliance initiatives while partnering with executive leadership. Oversee critical security operations including SOC/MSSP, incident response, cloud security, and AI governance.
Requirements
Requires over 12 years of cybersecurity experience with at least 5 years in a leadership role and a bachelor's degree in a technical field. Proficiency in GRC frameworks like NIST and ISO 27001, along with professional certifications such as CISSP or CISM, is highly valued.
Other relevant skills
Identified from the job description. Confirm important requirements above.
- Cybersecurity Strategy
- Governance Risk and Compliance (GRC)
- Enterprise Risk Management
- Security Assurance
- SOC/MSSP Oversight
- Incident Response
- Cloud Security
- Third-Party Risk Management
- AI Security
- Vulnerability Management
- Cyber Resilience
- NIST
- ISO 27001
- CIS Controls
- SOC 2
- Executive Stakeholder Management
Job areas
- Security & Safety
- Technology
- Management & Leadership
- Transportation
- Consulting
Additional details
- Minimum education
- Professional degree
- Minimum experience
- 10+ years
- Apply by
- Sep 21, 2026
- Posting language
- English
- Working hours
- 40 hours per week
- Seniority
- Mid-Senior level
- Application method
- Direct apply is available
