Cyber Security Engineer - Junior (Toronto)

Cyber Security Engineer - Junior (Toronto)

11 Sep
|
CAAT Pension Plan
|
Toronto

11 Sep

CAAT Pension Plan

Toronto

We’re one of the fastest-growing pensions in the country for a reason. Driven by core values and a shared purpose, we’re fierce champions for better retirement security, known for our can‑do culture where everyone plays a role in bringing our vision to life. We are seeking a Senior Cybersecurity Engineer for our Information Technology team.

The Senior Cyber Security

Engineer will play a critical role within the Security Operations team, responsible for safeguarding the organization’s IT infrastructure, applications, and data against cyber threats. The role requires deep expertise in security monitoring, incident response, vulnerability management, and cloud security, ensuring the organization’s security posture remains strong. The successful incumbent will bring hands‑on experience with security tools and platforms such as Splunk Enterprise Security, Azure Cloud Security, CrowdStrike, Rapid7 InsightVM, Imperva WAF, and Data Loss Prevention (DLP) solutions.

Provide SME leadership to improve Cloud security posture, ensuring adherence to regulatory standards and best practices across all infrastructure and services. lead Incident Response efforts while integrating AI/ML threat detection to safeguard against evolving AI based and data‑centric risks. Partner with software engineering teams to embed secure coding, conduct application security testing (SAST & DAST), and reinforce application‑layer defenses throughout the SDLC. provide SME‑level threat intelligence to proactively track emerging vulnerabilities and drive the implementation of security patches, configuration changes, and targeted mitigations. Conduct regular risk assessments, support penetration testing (external & internal), and compliance audits to enforce adherence to industry frameworks (ISO 27001, NIST, CIS, GDPR, SOC 2), while actively supporting all security audit and regulatory requirement initiatives.

Lead IR efforts—including containment, eradication, and forensic analysis—while executing a strategic vision to develop innovative approaches that accelerate threat response and remediation and continuously refine incident response plans and threat‑hunting methodologies.



Harden CAAT environments against AI/ML‑based attacks; provide technical mentorship to junior security engineers and analysts; and clearly communicate security risks and mitigation strategies to stakeholders. Lead the documentation of security incidents, technical project requirements, runbooks, and standard operating procedures to institutionalize knowledge across teams as an SME.

Ensure adherence to industry standards (ISO 27001, NIST, CIS, GDPR, SOC 2) and actively support security audits and regulatory compliance initiatives. Communicate security risks and mitigation strategies to stakeholders, collaborate cross‑functionally with IT, development, and operations to embed security across the organization, and manage multiple concurrent projects while applying strong analytical and problem‑solving skills, working autonomously with excellent written and verbal communication. Integrate secure coding practices into the SDLC; and conduct threat modeling and risk assessments to identify application weaknesses.

Embed security controls into CI/CD pipelines to automate vulnerability scanning and compliance checks; utilize SCA to track and mitigate third‑party dependency risks; and enforce zero‑trust principles across DevOps workflows. Partner with development teams as an Application Security SME to foster a security‑first culture, promoting proactive ownership of security controls throughout software development. Rapidly acquire skills in fast‑moving domains (AI, ML, Quantum); understand attacker exploit techniques and remediation methods; maintain expertise across infrastructure, network, endpoint, and mobile security; and provide technical mentorship to junior security engineers and analysts.

A minimum of eight (8) years of practical experience in various cybersecurity areas such Application Security,



Vulnerability Management, Incident Response, Cloud Security. A degree in the field of computer science. Robust knowledge of technical configurations from various operating systems and security solutions (Windows, Linux, Mac, IDS / IPS, DLP, SIEM, SOAR, WAF, VPNs, firewalls, encryption, etc.) Good understanding of cloud security concepts and experience securing cloud‑based infrastructure is an asset.

Proven project management and organizational skills, specifically managing multiple, concurrent projects. Excellent written and verbal communication coupled with an ability to work with minimal supervision. Placement within our salary range will be based on factors such as internal equity, market conditions, and the candidate’s experience, skills, and qualifications relevant to the role.

From flexible work arrangements, comprehensive benefits to wellness incentives, and a defined benefit pension plan – we have you covered. It’s why we’re consistently recognized as one of Canada's Most Admired Corporate Cultures, one of Greater Toronto’s Top Employers, and one of the Best Places to Work. You’re giving Canadians the opportunity for better retirement security, and organizations the chance to do more.

If you believe that Canadians deserve a future where a secure lifetime retirement income contributes to their financial and overall well-being, then CAAT could be the right fit for you. No artificial intelligence tools are used to screen, assess, or select applicants for this position. Artificial intelligence tools may be used to help recruiters identify potential candidates on external platforms.

Diversity, Equity, Inclusion, and Belonging (DEIB): DEIB at CAAT means we respect and value the broadest range of experiences, geographies, gender, ethnicities, backgrounds, and perspectives as key elements of our culture. CAAT Pension Plan is an equal opportunity employer, and we will accommodate any needs under the Accessibility for Ontarians with Disabilities Act and the Ontario Human Rights Code. Hiring processes will be modified to remove barriers to accommodate those with disabilities, if requested.

📌 Cyber Security Engineer - Junior (Toronto)
🏢 CAAT Pension Plan
📍 Toronto

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: cyber security engineer - junior (toronto) / toronto

Subscribe to this job alert:

Get the latest job offers by email for: cyber security engineer - junior (toronto) / toronto