Director, Security Operations, Information & Corporate Security

CPP Investments | Investissements RPCToronto, ON
Onsite

About The Position

As Director, Information Security Operations, you will play a critical role in protecting CPP Investments' technology, information, and business operations by leading the delivery and continuous evolution of enterprise security operations capabilities. This senior individual contributor role provides technical leadership across vulnerability management, AI security operations, security monitoring, detection engineering, incident response, data loss prevention, and insider risk. Working collaboratively across Technology & Data and business teams, you will influence security outcomes, lead complex initiatives, and strengthen CPP Investments' cyber resilience through expertise, partnership, and execution.

Requirements

  • Bachelor's degree in Computer Science, Information Technology, Cyber Security, Business, or a related discipline, or an equivalent combination of education and experience.
  • 7–10+ years of progressive hands-on experience in information security with demonstrated expertise across multiple security operations disciplines.
  • Strong technical knowledge of vulnerability management, incident response, detection engineering, cloud and container security, SIEM/XDR platforms, data loss prevention, and insider risk.
  • Experience applying AI technologies or recognized AI security frameworks within security operations, with knowledge of security and regulatory frameworks including ISO 27001, NIST, COBIT, ITIL, OSFI B-13, PIPEDA, and SOX.
  • Proven ability to communicate effectively with technical and executive audiences while leading complex cross-functional initiatives and security incidents.
  • Demonstrated sound judgment, analytical thinking, collaboration, and a commitment to CPP Investments' Guiding Principles of Integrity, High Performance, and Partnership.

Nice To Haves

  • Professional security certification(s) such as CISSP, CISM, CISA, CCSP, GIAC (GCIH, GCFA, GDAT), SABSA, or equivalent are preferred.

Responsibilities

  • Lead enterprise security operations across vulnerability management, AI security operations, security monitoring, detection engineering, incident response, data loss prevention, and insider risk.
  • Drive risk-based vulnerability management across infrastructure and cloud environments by prioritizing remediation and partnering with stakeholders to reduce risk.
  • Design, implement, and continuously improve security detections, AI-enabled security capabilities, and Security Operations Centre (SOC) processes.
  • Act as Incident Commander during cyber security incidents, leading technical response, stakeholder communications, recovery activities, and post-incident improvements.
  • Provide senior technical expertise and trusted guidance on security risks, controls, and remediation strategies while leading cross-functional security initiatives.
  • Lead security operations audit activities, including evidence collection, control reviews, remediation planning, and reporting.
  • Advance the maturity of Security Operations by developing operational metrics, contributing to strategic roadmaps, and mentoring peers through technical leadership and knowledge sharing.

Benefits

  • cutting-edge AI tools
  • dedicated learning time
  • practical support
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service