29 Aug
|
Contrans IT
|
Canada
29 Aug
Contrans IT
Canada
IT Security Supervisor
Department: Information Technology
Level: Supervisory
Reports to: IT Manager
Location: Woodstock, ON
About the Role
We're looking for a hands-on, security-minded IT Security Supervisor to lead our day-to-day security operations and help keep the organization's people, data, and systems safe. This is a working leadership role for someone who enjoys both the technical side of cybersecurity and the responsibility of guiding a small team toward consistent, dependable results.
You'll be the steady hand who turns security policy into everyday practice, monitoring threats, responding to incidents, hardening systems, and coaching staff on safe habits. You'll partner closely with IT, business teams, and leadership to balance protection with productivity, making security something the whole company understands rather than something that gets in the way.
This role operates within our enterprise security governance framework, executing centrally defined policies, standards, and controls at the operating-company level while partnering with the Information Security organization on incidents, risk, and program initiatives.
What You’ll Do
- Lead security operations. Oversee the daily monitoring of systems, alerts, and tools in alignment with our enterprise security operations, ensuring threats are caught early and handled through the established process.
- Supervise and develop the team. Guide, schedule, and mentor support staff; set priorities, review work, and help team members grow their skills.
- Respond to incidents. Coordinate the local response to security events and remediation, escalating to and operating within the enterprise incident response process (CIRT) for events meeting defined thresholds. Assist in documenting what happened and how to prevent it next time.
- Harden systems and access. Manage user access, enforce least-privilege principles,
and oversee patching, endpoint protection, and configuration of security controls using enterprise-standard tooling and baselines; any deviations or new tooling decisions are routed through our change management processes.
- Enforce policy and compliance. Apply enterprise security policies and standards, run regular reviews and audits in coordination with enterprise GRC, and help meet regulatory and contractual obligations.
- Champion security awareness. Deliver the enterprise security awareness program locally, including training sessions, phishing simulations, and how-to guidance. Any supplemental or role-specific campaigns are developed and executed in coordination with the Enterprise Information Security team to ensure consistency of message and approach.
- Report and improve. Track key security metrics, report status and risks to leadership and to Enterprise Information Security, and continuously refine controls and processes in alignment with enterprise direction.
- Document everything. Maintain accurate records of procedures, incidents, and lessons learned so the organization builds lasting security knowledge.
What You’ll Bring
Required
- Solid working knowledge of cybersecurity fundamentals - threats, vulnerabilities, access management, and incident response.
- Hands-on experience with security tools such as endpoint protection, firewalls, SIEM/monitoring platforms, and identity management.
- Experience supervising, coordinating, or mentoring others, with a calm,
supportive leadership style.
- Strong problem-solving skills and sound judgment under pressure during incidents.
- Comfort with Microsoft 365 and common enterprise IT environments (Windows, Active Directory/Entra ID, networking basics).
- Excellent written and verbal communication; you can explain risk clearly to both technical staff and business leaders.
- 3 - 5 years of experience in IT security, IT operations, or a related role, including some team or project lead responsibility.
- Demonstrated ability to operate within a multi-tier governance model, executing centrally defined standards while managing local operational priorities.
Nice to Have
- Security certifications such as CompTIA CySA+, GIAC GSEC or GCIH, (ISC)² CISSP, or a Microsoft security credential (SC-200, AZ-500).
- Experience with compliance frameworks (e.g., NIST, ISO 27001, SOC 2) or regulatory requirements relevant to the industry.
- Familiarity with cloud security (Microsoft Azure) and Microsoft security tooling (Defender, Purview, Sentinel).
- Post-secondary education in information technology, cybersecurity, or a related field.
What Success Looks Like
In your first 90 days, you'll have taken ownership of daily security operations, established a clear and consistent incident-response routine, and earned the trust of your team. You'll have identified the organization's most pressing security gaps, started closing them, and helped colleagues across the company feel more confident keeping our systems and data secure. You'll also have established working relationships with the Enterprise Information Security team, with clear handoff processes for incidents, risk reporting, and program participation.
Pay: $95,000.00-$110,000.00 per year
Benefits:
- Dental care
- Mileage reimbursement
- RRSP match
Work Location: Remote
📌 IT Security Supervisor (Canada)
🏢 Contrans IT
📍 Canada