Director - CSIRT (Cybersecurity Incident Response Team)

KellyOCG

Montreal (administrative region)

Hybrid

CAD 180,000 - 230,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

KellyOCG is seeking a Director to lead enterprise-wide cybersecurity response and operations from a hybrid Montreal location. You will oversee global CSIRT activities, 24/7 coverage, and drive incident response, threat intelligence, and risk-focused decision-making at the executive level.

The role requires 15+ years in cybersecurity with 7+ years in senior leadership, and credentials such as CISSP/CISM/CISA.

Qualifications

  • 15+ years in cybersecurity and 7+ years in senior leadership.
  • Experience managing large, multi-region Security Operations Centers with 24/7 coverage.
  • Active CISSP, CISM, CISA or similar credential.
  • Strong incident response, threat intelligence, and vulnerability management expertise.
  • Ability to communicate threats to executives and the board; build diverse teams.

Responsibilities

  • Direct global CSIRT operations across three continents with follow-the-sun coverage.
  • Own incident response, threat intelligence, and proactive cyber-exposure strategies.
  • Act as trusted security advisor to executive leaders.
  • Collaborate with technical and business partners worldwide.
  • Build and lead high-performing distributed cybersecurity teams.
  • Develop crisis management playbooks and regulatory response processes.
  • Ensure programs are mature, scalable and aligned with business risk.
  • Drive global operational excellence and talent development.

Skills

Cybersecurity leadership
Incident response
Threat intelligence
Vulnerability management
Executive communication
Team building

Education

Bachelor's degree in a technical discipline

Tools

Splunk
CrowdStrike
ServiceNow
CTI tools

Job description

Director - CSIRT (Cybersecurity Incident Response Team)


Location: Hybrid in Montreal, Canada


Join a leading global technology company powering the world’s travel infrastructure. We're seeking a Director to lead enterprise-wide cybersecurity response and operations.


What You’ll Do:



  • Direct global Computer Security Incident Response Team (CSIRT) operations spanning three continents, with 24/7 follow-the-sun coverage.

  • Own and develop incident response, threat intelligence, and proactive cyber-exposure management strategies.

  • Serve as the trusted security advisor to executive leaders.

  • Collaborate with technical and business partners globally.

  • Build and inspire high-performing, distributed cybersecurity teams.

  • Develop and oversee crisis management, playbooks, and regulatory response processes.

  • Ensure security programs are mature, scalable, and align with business risk.

  • Innovate, build talent, and drive global operational excellence.


About You:



  • 15+ years in cybersecurity; 7+ years at the senior leadership level.

  • Extensive experience managing large, multi-region Security Operations Centers (SOCs), including 24/7/365 support.

  • Bachelor’s degree in a technical discipline or equivalent experience.

  • Active CISSP, CISM, CISA, or similar credential.

  • Strong expertise in incident response, threat intelligence, and vulnerability management.

  • Mastery of frameworks such as MITRE ATT&CK, NIST CSF.

  • Proven ability to communicate technical threats to executive and board audiences.

  • Track record of building high-performing, diverse teams.


Nice to Have:



  • Experience in aviation, transportation, or critical infrastructure.

  • Advanced sector or technical certifications.

  • Hands-on forensics, threat hunting or red teaming experience.

  • Knowledge of security platforms (Splunk, CrowdStrike, ServiceNow, CTI tools).


Competitive compensation, flexible work, global teams, unique benefits, and a culture of growth await.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Director of Global CSIRT & Incident Response
Director of Global CSIRT & Incident Response

KellyOCG • Montreal (administrative region)

Hybrid
CAD 180,000 - 230,000
Director, Cyber Security Operations
Director, Cyber Security Operations

TEEMA Group • Vancouver

Hybrid
CAD 180,000 - 220,000
L3 SOC Analyst / Incident Responder
L3 SOC Analyst / Incident Responder

act digital • Montreal (administrative region)

On-site
CAD 90,000 - 120,000
Remote working available
Flex Office work environment
Annual training and certification
Incident Response Manager
Incident Response Manager

CyberClan • Canada

Remote
GBP 75,000 - 91,000
Health Insurance
Dental Insurance
Remote Work
+1
Staff Security Operations Engineer
Staff Security Operations Engineer

Jobgether • Canada

Remote
CAD 130,000 - 170,000
Remote-first environment
Biannual in-person team sprints
USD 2,000 learning budget
+4
Incident Response Lead (Cyber)
Incident Response Lead (Cyber)

CyberClan • Canada

On-site
CAD 100,000 - 130,000
Manager, Security Incident Response
Manager, Security Incident Response

TechAlliance of Southwestern Ontario, London Economic Development Corporation • Toronto

On-site
CAD 80,000 - 120,000
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

10 Percent Recruiting Ltd. • Canada

Hybrid
CAD 110,000 - 140,000
Security Analyst
Security Analyst

EIZIE • West Hawk Lake

On-site
CAD 80,000 - 110,000
Competitive salary
Health and dental benefits
Professional development
+5
Sr CyberSec Spec Threat Intel
Sr CyberSec Spec Threat Intel

Canadian Tire • Toronto

Hybrid
CAD 64,000 - 106,000
Broadband salary range and incentives
Comprehensive benefits and retirement
Mental health benefits ($5,000/yr)