Senior Cybersecurity Specialist
- Burlington, ON
- On-site
- Posted Sep 18, 2026
- 1 position
$110,000–$130,000 / year
Opens an external site
- Employment type
- Full-time
- Experience level
- Senior · 5+ years
- Apply by
- Oct 15, 2026
- Posting language
- English
- Working hours
- 40 hours per week
- Seniority
- Not Applicable
Job summary
The role involves owning the security roadmap and managing security across a large integrated technology environment. Key duties include investigating security alerts, strengthening identity controls, and driving vulnerability remediation in collaboration with various technical teams.
Job details
Could you be the person who sees what's missing, figures out what needs to change, and actually makes it happen? Our client is looking for a Senior Cybersecurity Specialist to own security across a large, highly integrated technology environment. This is a hands-on role for someone who can move comfortably between security engineering, incident response, identity, vulnerability remediation, application security, and security program coordination. You'll have the autonomy to assess the environment, identify priorities, and drive meaningful improvements, working closely with IT leadership, infrastructure, development teams, and external security partners. 💻 Who You Are You're a senior security practitioner with a broad technical perspective. You don't need to be an expert in every security product, but you know how to investigate, make sound decisions, implement controls, and follow through until the outcome is verified. You're equally comfortable digging into an identity issue, investigating a security alert, working with developers on an application security concern, or coordinating a vendor to close a vulnerability. Most importantly, you understand that security exists within a live business environment. You know how to balance risk reduction with uptime, testing, change windows, rollback planning, and operational realities. 📍 Work Type Location: Burlington, ON - on-site Vacancy Type: This role reflects an existing vacancy Requirements 🎯 What You'll Do Assess the existing security environment, identify priorities, and take ownership of the security roadmap. Investigate security alerts and incidents and drive remediation through verified closure. Strengthen identity security across Active Directory and Microsoft Entra, including MFA, Conditional Access, PIM, privileged access, and lifecycle controls. Implement and improve Microsoft security capabilities across Defender, Microsoft 365, Purview, Intune, and XDR. Drive vulnerability remediation based on technical risk and business impact. Partner with development, infrastructure, MDR/SIEM/XDR providers, and other vendors to improve security across the environment. Support application and integration security, including authentication, APIs, permissions, and threat modeling. Maintain security playbooks, procedures, documentation, risk tracking, and program reporting. Introduce security changes thoughtfully, with appropriate testing, monitoring, rollback planning, and consideration for live business operations. ⭐ What We're Looking For 5+ years of hands-on cybersecurity experience in a senior security engineering, security operations, or similar role. Strong experience with hybrid Active Directory and Microsoft Entra environments. Hands-on knowledge of MFA, Conditional Access, PIM, privileged identities, service accounts, access reviews, and identity lifecycle controls. Experience with Microsoft Defender, Microsoft 365/XDR, Purview, Intune, and related security controls. Proven experience with incident investigation and vulnerability remediation. Working knowledge of Azure and AWS security, Windows/Linux, networking, and cloud logging. Scripting experience with PowerShell or Python. Understanding of application/integration security, APIs, authentication, threat modeling, SAST, or DAST. Strong judgement when implementing security changes in production environments. Excellent communication skills and the ability to influence technical and non-technical stakeholders. A hands-on builder-operator mindset, comfortable implementing solutions rather than simply making recommendations. 🔥 What Makes This Role Exciting? Real Ownership: Shape security priorities and determine what needs to happen next. Technical Breadth: Work across identity, cloud, infrastructure, applications, and security operations. Visible Impact: Make meaningful security improvements across a large, highly integrated environment. Hands-On Influence: Design, implement, coordinate, and verify security improvements. Benefits Base Salary: $110,000 - $130,000 + 10% annual bonus Paid Vacation and Personal Days Comprehensive Health Benefits & RRSP Matching 📩 Ready to Elevate Your IT Career? Apply Now! At STACK IT Recruitment, we connect top technical talent with standout opportunities across Canada. If you meet at least 70% of the qualifications, we encourage you to apply — we'd love to chat! Know someone perfect for this role? Share this posting! You might help them find their next great opportunity. ✨ We're proud to support diversity and inclusion. Need accommodation during the hiring process? Just let us know — we're here to help. AI Use Disclosure: STACK IT uses AI-enhanced tools to support initial candidate screening and interview note analysis. All assessments and hiring decisions remain human-led.
What you’ll do
The role involves owning the security roadmap and managing security across a large integrated technology environment. Key duties include investigating security alerts, strengthening identity controls, and driving vulnerability remediation in collaboration with various technical teams.
Requirements
Candidates need over 5 years of hands-on cybersecurity experience with a strong focus on hybrid Active Directory and Microsoft Entra environments. Proficiency in Microsoft security tools, cloud security (Azure/AWS), and scripting with PowerShell or Python is required.
Benefits
• Annual bonus • Paid vacation • Personal days • Comprehensive health benefits • RRSP matching
Listed skills
- Active Directory · Preferred
- Microsoft 365 · Preferred
- Python · Preferred
Other relevant skills
Identified from the job description. Confirm important requirements above.
- Cybersecurity Engineering
- Incident Response
- Identity And Access Management
- Vulnerability Remediation
- Application Security
- Microsoft Entra
- Active Directory
- Microsoft Defender
- Microsoft 365
- Microsoft Purview
- Microsoft Intune
- XDR
- Azure Security
- AWS Security
- PowerShell
- Python
Job areas
- Technology
- Security & Safety
- Software
- Consulting
- Engineering
More jobs you can apply to directly
Similar opportunities posted by employers hiring on Jobs.ca, with no external application form.
Desjardins
Analyste d'affaires système(BSA) Guidewire
Direct employerEasy Apply- Hybrid
- Lévis, QC
- Posted Sep 21, 2026
Desjardins
Administrateur ou administratrice de plateforme TI - Senior
Direct employerEasy Apply- Hybrid
- Montréal, QC
- Posted Sep 17, 2026