
Director, P&T Operations – Incident Management, Risk
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in Canada.
• Create a unified incident management framework across Product & Technology, establishing standards, roles, severity definitions, escalation paths, communication protocols, and follow-through expectations.
• Integrate existing incident management practices from various teams while maintaining effective methodologies.
• Enhance post-incident practices by assigning actions and ensuring they are tracked to completion.
• Collaborate with leaders in Engineering and Security to boost incident readiness, response efficiency, and operational resilience.
• Fortify operating protocols for security incidents and vulnerability management, covering intake, prioritization, ownership, remediation tracking, escalation, and reporting.
• Provide clarity on significant vulnerabilities, remediation progress, aging issues, exceptions, and the necessity for leadership intervention.
• Link security incidents and vulnerabilities to larger incident, risk, and executive reporting frameworks.
• Detect recurring issues in processes, ownership, or controls and initiate cross-functional enhancements.
• Develop systems for actionable insights into significant technology and operational risks, trends, mitigations, and decision-making needs.
• Collaborate with stakeholders across responsible AI, application and infrastructure security, digital supply-chain risk, identity and access management, Zero Trust, data protection, shadow IT/AI, security compliance, and operational resilience.
• Convert complex risk data into clear priorities, trade-offs, and actionable steps.
• Identify trends across incidents, vulnerabilities, and risk indicators to guide priorities and systemic enhancements.
• Establish metrics and reporting frameworks for incident health, vulnerability exposure, remediation progress, risk trends, and operational resilience.
• Create executive-level presentations and materials for discussions with the CTO, Security leadership, and board committees.
• Enhance communication among technical teams, business stakeholders, executives, and partners.
• Lead intricate cross-functional initiatives across Engineering, Security, Product, Legal, Compliance, and other teams through influence.
• Foster ownership and accountability for cross-functional initiatives.
• Set up operational rhythms to drive significant incidents, vulnerabilities, and risks toward resolution.
• Continuously refine processes, tools, data, and organizational interfaces.
• Define the vision and operational model for incident management and technology risk operations within P&T Operations.
• Cultivate partnerships with Engineering and Security leadership, advising on operational readiness, risk visibility, and organizational response.
• Enhance capabilities, processes, and team dynamics as the scope evolves while remaining actively involved when necessary.
• Extensive experience in leading incident management, technology operations, security operations, risk programs, or a closely related area within a complex technology organization.
• Proven track record in designing or significantly enhancing incident management processes, standards, communications, reporting, and post-incident follow-up across multiple teams.
• Practical knowledge of security incident response and vulnerability management.
• Ability to build credible partnerships with Security and Engineering leaders without needing to be the foremost technical expert in every area.
• Experience in developing executive-level risk, incident, or operational reports.
• Strong grasp of how technology and security risks are identified, prioritized, mitigated, tracked, and communicated in an enterprise context.
• Experience in leading cross-functional change and fostering accountability across teams without direct authority.
• Excellent executive communication abilities, including the judgment to tailor messages for technical teams, senior executives, and board-level audiences.
• Capacity to impose structure on ambiguity, recognize systemic issues, and establish resilient operating mechanisms.
• Strong judgment, composure under pressure, and the ability to function effectively during high-severity or high-visibility incidents.
• Collaborative leadership approach with the ability to build trust across Product, Engineering, Security, Legal, Compliance, and executive leadership.
• Applicants are required to disclose any criminal convictions; criminal background checks are part of the hiring process.
• Legal eligibility to work in Canada and visa sponsorship requirements may apply.
• Opportunities for continuous learning.
• Global mobility options.
• Benefits tailored to support employees.
• A diverse and inclusive team environment.
• Accommodations available upon request for candidates with disabilities.
Cisco
Duck Creek Technologies
Trucordia
Trucordia
Get handpicked remote jobs straight to your inbox weekly.