Get notified about similar jobs!
Questrade Financial Group (QFG), through its companies - Questrade, Questbank, Questrade Wealth Management, Community Trust Company, Zolo, and Flexiti, provides securities and foreign currency investment, professionally managed investment portfolios, mortgages, real estate services, financial services and more. We use cutting-edge technology to help Canadians become much more financially successful and secure.
At QFG, we combine human-centric collaboration with AI-driven innovation to redefine financial services. The ideal candidate will be a catalyst for change, using AI to transform and deliver unparalleled customer experiences and shaping a future where AI empowers our teams to do their best work.
Join our diverse, inclusive, and hybrid workplace to unleash your creativity and nurture your curiosity without limits. If you share this sense of infinite possibility, come shape your future at QFG.
What’s in it for you as an employee of QFG?
Health & wellbeing resources and programs
Paid vacation, personal, and sick days for work-life balance
Competitive compensation and benefits packages
Work-life balance in a hybrid environment with at least 3 days in office
Career growth and development opportunities
Opportunities to contribute to community causes
Work with diverse team members in an inclusive and collaborative environment
This job posting is for an existing vacancy.
We’re looking for our next Senior Manager, JSOC & Threat Hunting. Could It Be You?
The Senior Manager, JSOC & Threat Hunting is a hands-on technical leader accountable for security monitoring, incident response, threat hunting and intelligence, detection and security engineering, vulnerability management and DevSecOps across Questrade Financial Group's regulated entities. She/he leads the Joint Security Operations Centre (JSOC) as a 24x7, multi-shift operation spanning three teams (SOC and Incident Response, Threat Operations and Engineering, and DevSecOps), owns the JSOC service catalogue, and remains directly involved in major incidents, complex investigations, detection design, SIEM optimization and security tooling decisions. This is not a coordination-only leadership role. The role operates in a dual regulatory environment covering CIRO regulated dealer and wealth entities and OSFI regulated federal financial institutions, and is the senior escalation point for cyber incident detection, containment and the incident inputs required for regulator reporting.
Need more details? Keep reading…
So are YOU our nextSenior Manager, JSOC & Threat Hunting? You are if you…
Have 10+ years of relevant cybersecurity experience, including substantial experience in security operations, incident response, detection engineering or threat hunting, with 5+ years leading technical security professionals and at least 2 years leading managers or team leads.
Strong hands-on incident response experience, including investigation, scoping, containment, remediation, recovery and post-incident analysis, with major incident leadership in a regulated financial services environment.
Demonstrated experience running a 24x7 or follow-the-sun security operations function across multiple countries and shifts.
Demonstrated experience conducting threat hunts and converting findings into durable detections or security improvements.
Deep knowledge of SIEM operations, including alert development, query optimisation, data onboarding, false-positive reduction and detection coverage measurement.
Strong practical experience with Elastic Security, Elasticsearch, Kibana, Elastic Query Language (EQL) and Kibana Query Language (KQL), or equivalent query and detection capabilities.
Solid understanding of application security concepts, including common web and API attack techniques, secure development practices, vulnerability management and application-layer telemetry.
Strong knowledge of endpoint, network, identity, cloud and application security data sources, and the ability to analyse logs, network activity, authentication events, endpoint telemetry and application behaviour without relying solely on tool-generated conclusions.
Experience with MITRE ATT&CK and the Cyber Kill Chain, and with developing security automation, scripts, integrations or repeatable investigation workflows.
Strong written and verbal communication skills, with the ability to explain technical risk clearly, make sound decisions in high-pressure situations and present to executive and Board committee audiences.
A leadership style grounded in technical credibility, accountability, collaboration and continuous improvement, with proven ability to build a leadership layer and manage span of control across a geographically distributed team.
Experience in a regulated financial services environment such as banking, brokerage, wealth management, payments or fintech.
CISSP, GCIH, GCIA, GCFA, GNFA, OSED, CPTS, Security+ or equivalent practical experience.
Familiarity with OSFI B-13, B-10 and E-21, OSFI technology and cyber security incident reporting expectations and CIRO cybersecurity incident reporting obligations, or demonstrated ability to learn a new prudential regime quickly.
Deep expertise with Zscaler products, including ZIA, ZPA, ZDX and related integrations and telemetry.
Familiarity with CrowdStrike Falcon, Wiz, Aikido and cloud-native security operations in Google Cloud Platform or another major cloud provider.
Experience integrating security controls and testing into CI/CD pipelines, and familiarity with SOAR platforms and AI-assisted triage and automation workflows.
Experience investigating fraud, account takeover, abuse or other threats affecting online financial services.
Experience with scripting or development in Python, JavaScript, Bash or another relevant language.
Work Arrangement
Compensation Information:
Base salary range: $170,000 - $185,000
The final compensation package will be commensurate with the successful candidate's experience, skills, and geographic location (Canada). It includes a comprehensive benefits plan and a competitive incentive (bonus) program for Full-Time Permanent roles.
Sounds like you? Click below to apply!#LI-Hybrid #LI-MM1
At Questrade Financial Group of Companies, with multiple office locations around the world, we are committed to fostering a diverse, inclusive and accessible work environment. This is an environment where individuals are treated with dignity and respect. Here, the unique skills and experience you bring will be valued. You will be supported and motivated, so that you can harness your unlimited potential. Our team reflects the diversity of the communities we serve and operate in. Having a collaborative and diverse team helps us push boundaries to bring the future of fintech into existence—not only for the benefit of our customers, but for those who build their career with us.
Questrade Financial Group of companies Applicant Tracking System utilizes artificial intelligence (AI) for application screening. The AI system operates on predetermined criteria, with final decisions subject to human review.
Candidates selected for an interview will be contacted directly. If you require accommodation during the recruitment/selection process, please let us know and we will work with you to meet your needs.