Cyber Defence Director
nesto Canada
Looking for a Remote Cybersecurity role? Cyber Defence Director at nesto is listed on Makely Remote Jobs as a Contract opening based in Canada (Canada). Review the role overview below, then apply on the employer’s original listing — Makely Remote Jobs does not process applications.
Skills
- Cybersecurity Leadership
- Security Operations
- Incident Response
- Cyber Defense
- Information Security Management
- Cybersecurity Director
- Director Of Cybersecurity
- Head Of Cybersecurity
- IT Security Director
- Information Security Director
- Director of Information Security
- Cybersecurity Program Director
Role overview
Join nesto — proudly named Canadian Rocketship 2025*. A Deloitte Fast 50 company evolving alongside Canada’s top tech innovators and disrupting a 2.1 Trillion-dollar mortgage industry at light speed by building the mortgage ecosystem of the future.
BUILD lending technology with the best developers, AI engineers, and mortgage experts in the country. Work on a modern tech stack and a development framework designed to unlock your full potential and accelerate your career.
Why join us
- Hypergrowth: Deloitte Fast 50 — 3 years in a row
- Tech community credibility: TechTO Canadian Rocketship 2025*
- Industry leadership: CLA Lending Company of the Year — 4 consecutive years
- Talent magnet: CMP Top Mortgage Employer 2025
- Trusted technology: powering major financial institutions across Canada
- An entrepreneurial culture built on trust, speed, uncomfortable ambition, being stronger together, and a relentless obsession with our clients.
About the role
We're looking for a cyber defence leader to lead our security operations team and continue to grow our cyber defence practice alongside it. This is a hands-on leadership role for someone who can build operational excellence in detection and response while also elevating our security program's maturity through proactive testing, risk management, and cross-functional collaboration.
Your day-to-day in that role :
- Mentor, and develop a team of security professionals, defining career paths and skill development plans, and fostering a culture of excellence, curiosity, and continuous improvement.
- Own the full incident response lifecycle: triage, scoping, containment, eradication, recovery, and post-incident improvement.
- Act as senior technical and operational escalation point during high-severity incidents, partnering with Legal, Privacy, Fraud
- Own detection engineering, converting incident observations into higher-fidelity detections, tuning opportunities, and response automation.
- Own log source governance: telemetry coverage across our systems, periodic reviews as the environment and partners change, and log volume managed against detection value.
- Keep detection and response at machine speed as nesto adopts AI, on both sides: our own cycle, and the agents themselves.
- Drive continuous improvement of playbooks, enrichment, and orchestration that improve response speed and consistency.
- Champion a purple team approach that combines offensive and defensive collaboration: attack surface analysis, threat modelling, and adversarial simulation to identify and close gaps, with threat hunting and operationalized threat intelligence feeding the work.
- Own exposure and vulnerability management, prioritizing on asset criticality and exploitability, and driving remediation to closure with system owners.
- Own the strategy, selection, deployment, and ongoing management of core security tooling including EDR and SIEM, keeping it tuned, integrated, and generating actionable intelligence for the team.
- Serve as an active member of the risk management committee, translating business risk priorities into concrete defence strategies
What you bring
- 10+ years in cyber security, including people leadership in incident response, security operations, threat investigation, or digital forensics.
- Track record building, leading, and maturing a security operations function, including standing up new capability.
- Proven experience leading a security operations, blue team, or incident response function, ideally in a regulated or financial services environment.
- Deep expertise in incident response, digital forensics, EDR and SIEM platforms, threat modeling, and attack surface management.
- Experience selecting and managing SOC / MSSP providers, including contract negotiation and ongoing performance governance.
- Experience with a purple team or adversarial testing methodologies.
- Strong track record of engaging with executive stakeholders and contributing to enterprise risk management programs.
- Excellent leadership, communication, and team-building skills.
Nice to have
- Relevant certifications (such as GCIH, GCFA, OSCP, or CISSP) are an asset.
- AI security literacy: both AI-enabled attacker behaviour and AI-accelerated defence workflows.
- Experience managing an MSSP
Diversity and Inclusion
At nesto, we believe that creativity and collaboration are the result of a diverse team. We are committed to fostering a culture of diversity, equity, inclusion, and belonging, and we strongly encourage women, people of color, LGBTQIA+ individuals, and individuals with disabilities to apply. We are committed to creating a workplace that is inclusive and welcoming to all.
#nestoposition
#nestocloud
Originally posted on Himalayas
Summary provided for discovery. Always confirm details and apply on the original source. Makely Remote Jobs is not the employer and does not process applications.
Frequently asked questions
Is Cyber Defence Director at nesto a remote job?
Yes. This listing is categorized as Remote on Makely Remote Jobs. Confirm any location or timezone limits in the original posting before you apply.
What is the employment type for Cyber Defence Director?
Source data lists this as Contract. Always verify the contract type, benefits, and start date on the employer’s application page.
Where is Cyber Defence Director located?
Listed location: Canada. Many remote Cybersecurity roles allow work-from-home with country or timezone restrictions — check the full description.
Do I apply on Makely Remote Jobs?
No. Makely Remote Jobs aggregates public remote job feeds for discovery. Use “Apply on Original Site” to open the employer’s official application URL. We never host applications or collect resumes.
Does nesto list salary for this Cybersecurity role?
Salary was not published in the source feed. Check the original listing or ask the recruiter during screening for compensation details.