Senior Cybersecurity Specialist

ManulifeToronto, ON
Hybrid

About The Position

We are seeking an expert Senior Cybersecurity Specialist to strengthen our Cyber, Security, Risk & Controls (CSRC) organization. In this role, you will help establish and maintain cybersecurity governance frameworks, assess emerging threats, evaluate vulnerabilities, and ensure compliance with organizational standards and regulatory requirements. You will work closely with engineering, product, and risk partners to guide secure development practices and improve our overall security posture. This position is essential to maintaining continuity in our cybersecurity operations following the departure of the previous role holder.

Requirements

  • Strong understanding of information security controls, vulnerability management, and risk management frameworks such as NIST CSF and ISO 27001/27002.
  • Proficiency with security tools including SIEM, IDS/IPS, endpoint protection, vulnerability scanners, and application security testing platforms.
  • Experience with cybersecurity assessment frameworks (OWASP, PTES, OSSTM) and penetration testing techniques.
  • Strong analytical and reporting skills, including experience with data visualization tools (Power BI, Tableau).
  • Excellent written and verbal communication skills, with the ability to convey risks and recommendations to both technical and business stakeholders.

Nice To Haves

  • Industry-recognized cybersecurity certifications such as CISSP, CSSLP, OSCP, or equivalent.
  • Experience with ServiceNow Security Operations, Archer GRC, and cloud security (Azure, AWS).
  • Knowledge of regulatory requirements related to cybersecurity and technology risk management.
  • Ability to collaborate effectively in Agile/DevOps environments with cross‑functional teams.
  • Experience developing executive dashboards, KPIs, and KRIs for cybersecurity and risk reporting.

Responsibilities

  • Support the development, implementation, and continuous improvement of cybersecurity governance frameworks, risk methodologies, and compliance processes.
  • Conduct penetration testing, code scanning, threat modeling, vulnerability assessments, and prioritize remediation based on risk levels and business impacts.
  • Configure, validate, and optimize SAST, DAST, and SCA tools (e.g., Veracode, Snyk, SonarQube, BurpSuite) to ensure high‑quality results and actionable insights.
  • Lead security assessment intake, triage, documentation, and reporting activities, collaborating with technical teams to implement corrective actions.
  • Communicate risk findings, governance improvements, KPIs, and KRIs to senior leaders, and contribute to executive‑level dashboards and risk reporting.

Benefits

  • health, dental, mental health, vision, short- and long-term disability, life and AD&D insurance coverage, adoption/surrogacy and wellness benefits, and employee/family assistance plans.
  • various retirement savings plans (including pension and a global share ownership plan with employer matching contributions) and financial education and counseling resources.
  • generous paid time off program in Canada includes holidays, vacation, personal, and sick days, and we offer the full range of statutory leaves of absence.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service