Cybersecurity Incident Manager
Posted A month ago
Job Description
At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide proactive solutions to safeguard sensitive data.In cybersecurity incident management at PwC, you will focus on effectively responding to, and mitigating, cyber threats, maintaining the security of client systems and data. You will be responsible for identifying, analysing, and resolving security incidents to minimise potential damage and protect against future attacks.
Meaningful work you'll be part of
As a Cybersecurity Incident Management Manager, you will serve as the technical lead and escalation point for complex and high-severity security incidents. You'll guide and mentor Level 2 analysts, ensure operational excellence, and collaborate closely with stakeholders to drive strategic incident response initiatives. Responsibilities include but are not limited to:
• Serve as the escalation contact for confirmed and high-impact incidents.
• Oversee technical investigations and coordinate response activities across multiple teams.
• Take technical ownership of the level 2 senior security analysts' team, ensuring advanced analysis and investigation of security incidents identified by level 1 security analysts or security tools.
• Provide guidance and assistance to level 2 senior security analysts with troubleshooting, escalation, and resolution of complex or critical security issues.
• Coordinate incident response and recovery actions with level 2 security analysts and other teams, ensuring appropriate countermeasures and remediation steps are implemented.
• Review and validate security incident reports and recommendations from level 2 senior security analysts to confirm quality and accuracy standards are met.
• Conduct quality assurance reviews of incident reports and provide feedback and suggestions for improvement to level 2 senior security analysts through regular interactions with the QA lead/team.
• Collaborate with level 2 security analysts and other teams regarding complex or high-severity incidents requiring further investigation or intervention.
• Conduct performance evaluations and feedback sessions for level 2 senior security analysts and identify areas for training and development.
• Develop and deliver training and mentoring programs for level 2 senior security analysts to support relevant skills acquisition and certification maintenance.
• Work with clients and stakeholders to offer strategic and technical guidance on security incidents and services, promoting customer satisfaction and retention.
• Monitor and report on key performance indicators and metrics for the level 2 senior security analyst team, confirming service level agreements and objectives are achieved.
• Maintain regular communication with shift leads to review daily security operations metrics, KPIs, and SLAs, addressing any identified gaps.
Experiences and skills you'll use to solve
• A bachelor's degree in a relevant area of study with a preference for Computer Science or Computer Engineering.
• Industry certifications (CISSP/GIAC suite/EC-Council) are an asset. Experience in MSSP environment.
• Minimum of 6 years in Information Technology and minimum of 4 years in Information Security.
• Proficient in Incident Response and Management.
• Knowledge of various security tools (e.g. SIEM, EDR, etc.) as well as operating system flavors including but not limited to Windows, Linux, Unix.
• In-depth knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management, etc.
• Knowledge of applications, databases, middleware to address security threats; Proficient in preparation of reports, dashboards and documentation.
• Excellent communication and leadership skills and experience in performing vendor management.
• Ability to handle high pressure situations with key stakeholders and good Analytical skills, Problem solving and Interpersonal skills
• Hybrid ways of working PwC Canada is committed to cultivating an inclusive, hybrid work environment. Exact expectations for your team can be discussed with your interviewer.
This position ensures continuity and upholds our standards of excellence following the departure of a valued team member.
The salary range for this position is $112,400-$162,400. The posted salary range r eprese nt s the exp ected hir ing range for PwC locations in major city c entres . Given our national recruiting approach, ranges may vary for positions in other locations. At PwC Canada, base salary is d etermined by yo ur skills, experience, qualifications and work location. I n addition to base salary, eligible employees may have opportunities to participate in variable incentive pay programs which are designed to reward individual and firm-wide achievements. We are committed to offering competitive compensation and adhere to all relevant pay transparency legislation. During the hiring process, our Talent Acquisition team will provide details about our comprehensive total rewards package.
Why you'll love PwC
We're inspiring and empowering our people to change the world. Powered by the latest technology, you'll be a part of diverse teams helping public and private clients build trust and deliver sustained outcomes. This meaningful work, and our continuous development environment, will take your career to the next level. We reward your impact, and support your wellbeing, through a competitive compensation package, inclusive benefits and flexibility programs that will help you thrive in work and life. Learn more a bout our Application Process and Total Rewards Package at: https://jobs-ca.pwc.com/ca/en/life-at-pwc
PwC Canada acknowledges that we work and live across Turtle Island, on the land that is now known as Canada, which are the lands of the ancestral, treaty and unceded territories of the First Nations, Métis and Inuit Peoples. We recognize the systemic racism, colonialism and oppression that Indigenous Peoples have experienced and still go through, and we commit to allyship and solidarity.
We're committed to providing accommodation throughout the application, interview, and employment process. If you require accommodation to be at your best, please let us know during the application process.
The use of artificial intelligence (AI) in recruiting is just getting started, so we know you have questions about how and why we use it. At certain points during our recruiting process, we rely on AI to improve your experience. This could be during resume review or curating personalized job recommendations, asking you clarifying questions via a chatbot or during our interview scheduling to improve your experience. Our use of AI helps ensure we combat bias by evaluating candidates equally and fairly, without seeing identity information, such as your name, or gender for example). AI also helps us better predict successful hires by reviewing all applicants for a role and the relationship between your skills, experience and likely success at PwC Canada. While AI supports parts of our recruitment process, final hiring decisions always involve human review. For more information about our use and protection of your data, please refer to our Privacy Policy (https://www.pwc.com/ca/en/privacy-policy.html).
Meaningful work you'll be part of
As a Cybersecurity Incident Management Manager, you will serve as the technical lead and escalation point for complex and high-severity security incidents. You'll guide and mentor Level 2 analysts, ensure operational excellence, and collaborate closely with stakeholders to drive strategic incident response initiatives. Responsibilities include but are not limited to:
• Serve as the escalation contact for confirmed and high-impact incidents.
• Oversee technical investigations and coordinate response activities across multiple teams.
• Take technical ownership of the level 2 senior security analysts' team, ensuring advanced analysis and investigation of security incidents identified by level 1 security analysts or security tools.
• Provide guidance and assistance to level 2 senior security analysts with troubleshooting, escalation, and resolution of complex or critical security issues.
• Coordinate incident response and recovery actions with level 2 security analysts and other teams, ensuring appropriate countermeasures and remediation steps are implemented.
• Review and validate security incident reports and recommendations from level 2 senior security analysts to confirm quality and accuracy standards are met.
• Conduct quality assurance reviews of incident reports and provide feedback and suggestions for improvement to level 2 senior security analysts through regular interactions with the QA lead/team.
• Collaborate with level 2 security analysts and other teams regarding complex or high-severity incidents requiring further investigation or intervention.
• Conduct performance evaluations and feedback sessions for level 2 senior security analysts and identify areas for training and development.
• Develop and deliver training and mentoring programs for level 2 senior security analysts to support relevant skills acquisition and certification maintenance.
• Work with clients and stakeholders to offer strategic and technical guidance on security incidents and services, promoting customer satisfaction and retention.
• Monitor and report on key performance indicators and metrics for the level 2 senior security analyst team, confirming service level agreements and objectives are achieved.
• Maintain regular communication with shift leads to review daily security operations metrics, KPIs, and SLAs, addressing any identified gaps.
Experiences and skills you'll use to solve
• A bachelor's degree in a relevant area of study with a preference for Computer Science or Computer Engineering.
• Industry certifications (CISSP/GIAC suite/EC-Council) are an asset. Experience in MSSP environment.
• Minimum of 6 years in Information Technology and minimum of 4 years in Information Security.
• Proficient in Incident Response and Management.
• Knowledge of various security tools (e.g. SIEM, EDR, etc.) as well as operating system flavors including but not limited to Windows, Linux, Unix.
• In-depth knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management, etc.
• Knowledge of applications, databases, middleware to address security threats; Proficient in preparation of reports, dashboards and documentation.
• Excellent communication and leadership skills and experience in performing vendor management.
• Ability to handle high pressure situations with key stakeholders and good Analytical skills, Problem solving and Interpersonal skills
• Hybrid ways of working PwC Canada is committed to cultivating an inclusive, hybrid work environment. Exact expectations for your team can be discussed with your interviewer.
This position ensures continuity and upholds our standards of excellence following the departure of a valued team member.
The salary range for this position is $112,400-$162,400. The posted salary range r eprese nt s the exp ected hir ing range for PwC locations in major city c entres . Given our national recruiting approach, ranges may vary for positions in other locations. At PwC Canada, base salary is d etermined by yo ur skills, experience, qualifications and work location. I n addition to base salary, eligible employees may have opportunities to participate in variable incentive pay programs which are designed to reward individual and firm-wide achievements. We are committed to offering competitive compensation and adhere to all relevant pay transparency legislation. During the hiring process, our Talent Acquisition team will provide details about our comprehensive total rewards package.
Why you'll love PwC
We're inspiring and empowering our people to change the world. Powered by the latest technology, you'll be a part of diverse teams helping public and private clients build trust and deliver sustained outcomes. This meaningful work, and our continuous development environment, will take your career to the next level. We reward your impact, and support your wellbeing, through a competitive compensation package, inclusive benefits and flexibility programs that will help you thrive in work and life. Learn more a bout our Application Process and Total Rewards Package at: https://jobs-ca.pwc.com/ca/en/life-at-pwc
PwC Canada acknowledges that we work and live across Turtle Island, on the land that is now known as Canada, which are the lands of the ancestral, treaty and unceded territories of the First Nations, Métis and Inuit Peoples. We recognize the systemic racism, colonialism and oppression that Indigenous Peoples have experienced and still go through, and we commit to allyship and solidarity.
We're committed to providing accommodation throughout the application, interview, and employment process. If you require accommodation to be at your best, please let us know during the application process.
The use of artificial intelligence (AI) in recruiting is just getting started, so we know you have questions about how and why we use it. At certain points during our recruiting process, we rely on AI to improve your experience. This could be during resume review or curating personalized job recommendations, asking you clarifying questions via a chatbot or during our interview scheduling to improve your experience. Our use of AI helps ensure we combat bias by evaluating candidates equally and fairly, without seeing identity information, such as your name, or gender for example). AI also helps us better predict successful hires by reviewing all applicants for a role and the relationship between your skills, experience and likely success at PwC Canada. While AI supports parts of our recruitment process, final hiring decisions always involve human review. For more information about our use and protection of your data, please refer to our Privacy Policy (https://www.pwc.com/ca/en/privacy-policy.html).
About PwC
Industry
Management and ConsultingCompany Size
5001-10,000 employees
Application closing date is 2026-01-19
Current Openings
-
Full Time
-
Full Time
-
SOAR Specialist
PwC
Full Time
-
Full Time
-
Manager, Cyber Incident Readiness
Deloitte
Full Time
-
Full Time
-
Full Time
-
Full Time
-
Full Time
-
Full Time