×
Register Here to Apply for Jobs or Post Jobs. X

CIT Information Security & GRC, Lead

Job in Markham, Ontario, I3P, Canada
Listing for: Perseus Group, Constellation Software
Full Time position
Listed on 2026-08-17
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, Security Management & Operations
Salary/Wage Range or Industry Benchmark: 104000 - 127000 CAD Yearly CAD 104000.00 127000.00 YEAR
Job Description & How to Apply Below

About

The Role

Constellation Software’s rapidly expanding Perseus Operating Group (CSI) is seeking an experienced Information Security Lead to drive the design, development, and secure deployment of complex information systems. This role requires translating security frameworks into practical, scalable governance across a diverse portfolio of global businesses, operating environments, and cultures.

CIT Information Security Lead
About

The Role

Constellation Software’s rapidly expanding Perseus Operating Group (CSI) is seeking an experienced Information Security Lead to drive the design, development, and secure deployment of complex information systems. This role requires translating security frameworks into practical, scalable governance across a diverse portfolio of global businesses, operating environments, and cultures.

The ideal candidate brings a strong foundation in risk management, with the ability to assess and balance threats, vulnerabilities, and information value to enable informed security decisions. This role also demands proven leadership in designing, evaluating, and continuously improving security processes, while guiding cross-functional teams in strengthening organizational security posture and operational maturity.

Key Responsibilities
  • Security Operations & Incident Response
  • Monitor and investigate security alerts across endpoint, identity, email, and data protection platforms
  • Respond to escalations and coordinate incident containment and remediation
  • Perform root cause analysis and document findings
  • Track incidents through full lifecycle (detection, response, closure)
  • Coordinate cross-team response efforts during active incidents
  • Provide mentorship and technical leadership to SOC analysts, driving skill development and process consistency.
Security Tooling & Platform Operations
  • Support operations of enterprise tools including EDR/XDR, DLP, email security, and identity monitoring
  • Lead escalation handling for endpoint protection platforms (e.g., Crowd Strike-like tools)
  • Coordinate sensor/agent deployments, upgrades, and onboarding during acquisitions
  • Maintain operational dashboards and reporting visibility
  • Ensure consistent alert handling and response workflows across platforms
  • Support dashboard displays and reporting visibility (e.g., office display dashboards)
Monitoring & Investigations
  • Investigate endpoint detections and behavioral alerts
  • Monitor identity risks including risky users and insider risk signals
  • Perform DLP monitoring, reporting, and coordination activities
  • Conduct email investigations including trace analysis and troubleshooting
  • Manage and resolve security-related tickets (e.g., email protection platforms utilizing Proofpoint-like tools)
Security Awareness & Phishing
  • Conduct phishing investigations and response coordination
  • Support phishing simulation campaigns and reporting
  • Manage user synchronization and participation in awareness platforms
  • Identify trends from phishing results and recommend improvements
Governance, Risk & Compliance
  • Implement and maintain security policies aligned with industry frameworks (NIST, ISO, PCI, SOC)
  • Conduct risk assessments and document findings
  • Track remediation activities and risk mitigation progress
  • Support audits and compliance reporting
  • Assist with control validation and evidence collection
Collaboration & Support
  • Work with IT, Infrastructure, and business teams on security initiatives
  • Provide guidance on security incidents, tools, and processes
  • Document procedures, runbooks, and operational standards
  • Identify and drive process improvements and automation opportunities
Required Qualifications
  • 3-5 years of experience in information security (operations, governance, or risk)
  • Experience operating in or supporting a Security Operations Center (SOC), including end-to-end incident lifecycle management (detection, investigation, response, and remediation)
  • Strong hands-on experience with endpoint detection, monitoring, and alerting tools, including tuning detections and improving signal quality
  • Proven experience with core Microsoft security technologies, including:
  • Microsoft Defender (Endpoint, M365, Identity) for threat detection and response
  • Data Loss Prevention (DLP)…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary